Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-07-19 04:54:58.793 00:05:00.675 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-19 04:59:26.916 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:37294 10 6438 1 2025-07-19 05:00:18.776 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-19 05:00:18.696 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-19 05:00:18.497 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-19 05:00:18.844 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-19 05:00:18.927 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-19 05:00:27.314 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:53010 10 6438 1 2025-07-19 05:01:27.723 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:41078 10 6438 1 2025-07-19 05:02:28.134 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:54342 10 6438 1 2025-07-19 05:03:28.538 00:00:10.316 TCP 1.101.0.1:3000 -> 23.104.0.1:38242 10 6438 1 2025-07-19 04:59:58.795 00:05:00.671 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-19 05:04:28.896 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41562 10 6438 1 2025-07-19 05:00:58.793 00:05:00.676 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-19 05:05:19.083 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-19 05:05:18.977 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-19 05:05:19.007 00:00:00.031 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-19 05:05:18.977 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-19 05:05:19.059 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-19 05:05:29.308 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:41264 10 6438 1 2025-07-19 05:06:29.707 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:40686 12 6542 1 2025-07-19 05:07:30.109 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33612 10 6438 1 2025-07-19 05:08:30.519 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:55976 10 6438 1 2025-07-19 05:09:30.934 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:32846 10 6438 1 2025-07-19 05:05:58.798 00:05:00.670 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-19 05:10:19.202 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-19 05:10:19.242 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-19 05:10:19.030 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-19 05:10:19.264 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-19 05:10:19.119 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-19 05:10:31.300 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:54616 10 6438 1 2025-07-19 05:06:58.796 00:05:00.675 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-19 05:11:31.706 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:50868 10 6438 1 2025-07-19 05:12:32.109 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42866 10 6438 1 2025-07-19 05:13:32.511 00:00:10.416 TCP 1.101.0.1:3000 -> 23.104.0.1:38126 11 6490 1 2025-07-19 05:14:32.967 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:49486 10 6438 1 2025-07-19 05:15:19.213 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-19 05:15:19.195 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-19 05:15:19.189 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-19 05:15:19.000 00:00:00.043 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-19 05:15:19.131 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-19 05:15:33.375 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:32844 10 6438 1 2025-07-19 05:11:58.800 00:05:00.670 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-19 05:16:33.782 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:46018 10 6438 1 2025-07-19 05:12:58.797 00:05:00.674 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-19 05:17:34.149 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:34278 10 6438 1 2025-07-19 05:18:34.564 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:45780 10 6438 1 2025-07-19 05:19:34.976 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:41094 10 6438 1 2025-07-19 05:20:19.394 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-19 05:20:18.958 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-19 05:20:19.201 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-19 05:20:19.054 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-19 05:20:19.310 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-19 05:20:35.388 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:56800 10 6438 1 2025-07-19 05:21:35.778 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:58856 10 6438 1 2025-07-19 05:17:58.800 00:05:00.673 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-19 05:22:36.197 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49778 10 6438 1 2025-07-19 05:18:58.797 00:05:00.679 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-19 05:23:36.596 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:42988 10 6438 1 2025-07-19 05:24:37.006 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38520 10 6438 1 2025-07-19 05:25:19.586 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-19 05:25:19.565 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-19 05:25:19.624 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-19 05:25:19.456 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-19 05:25:19.504 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-19 05:25:37.405 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:43408 10 6438 1 2025-07-19 05:26:37.814 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:50348 10 6438 1 2025-07-19 05:27:38.223 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42778 10 6438 1 2025-07-19 05:23:58.800 00:05:00.674 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-19 05:28:38.627 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:46236 10 6438 1 2025-07-19 05:24:58.797 00:05:00.683 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-19 05:29:39.028 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56840 10 6438 1 2025-07-19 05:30:19.525 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-19 05:30:19.455 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-19 05:30:19.313 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-19 05:30:19.443 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-19 05:30:19.457 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-19 05:30:39.436 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:44920 10 6438 1 2025-07-19 05:31:39.804 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:35442 10 6438 1 2025-07-19 05:32:40.176 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39848 10 6438 1 2025-07-19 05:33:40.577 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:57022 10 6438 1 2025-07-19 05:29:58.800 00:05:00.679 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-19 05:34:40.987 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37702 10 6438 1 2025-07-19 05:30:58.798 00:05:00.683 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-19 05:35:19.455 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-19 05:35:19.371 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-19 05:35:19.605 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-19 05:35:19.484 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-19 05:35:19.372 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-19 05:35:41.408 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40856 10 6438 1 2025-07-19 05:36:41.802 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:45304 10 6438 1 2025-07-19 05:37:42.207 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:37264 10 6438 1 2025-07-19 05:38:42.607 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58676 10 6438 1 2025-07-19 05:39:43.010 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60566 10 6438 1 2025-07-19 05:35:58.809 00:05:00.671 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-19 05:40:19.772 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-19 05:40:19.570 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-19 05:40:19.765 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-19 05:40:19.405 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-19 05:40:19.688 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-19 05:40:43.413 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56992 10 6438 1 2025-07-19 05:36:58.807 00:05:00.677 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-19 05:41:43.814 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:50546 10 6438 1 2025-07-19 05:42:44.192 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42898 10 6438 1 2025-07-19 05:43:44.598 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60592 10 6438 1 2025-07-19 05:44:45.009 00:00:14.278 TCP 1.101.0.1:3000 -> 23.104.0.1:50906 10 6438 1 2025-07-19 05:45:19.633 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-19 05:45:19.552 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-19 05:45:19.661 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-19 05:45:19.721 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-19 05:45:19.541 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-19 05:45:49.324 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48922 10 6438 1 2025-07-19 05:41:58.813 00:05:00.669 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-19 05:42:58.810 00:05:00.675 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-19 05:46:49.722 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:36210 10 6438 1 2025-07-19 05:47:50.140 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:52772 10 6438 1 2025-07-19 05:48:50.536 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40734 10 6438 1 2025-07-19 05:49:50.938 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:51504 10 6438 1 2025-07-19 05:50:19.773 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-19 05:50:19.838 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-19 05:50:19.713 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-19 05:50:19.843 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-19 05:50:19.927 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-19 05:50:51.357 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:43490 10 6438 1 2025-07-19 05:47:58.815 00:05:00.672 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-19 05:51:51.760 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:35636 10 6438 1 2025-07-19 05:48:58.814 00:05:00.676 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-19 05:52:52.178 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45358 10 6438 1 2025-07-19 05:53:52.579 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:54462 10 6438 1 2025-07-19 05:54:52.986 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:51682 10 6438 1 2025-07-19 05:55:19.913 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-19 05:55:19.906 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-19 05:55:19.955 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-19 05:55:19.913 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-19 05:55:19.996 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-19 05:55:53.349 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:53898 10 6438 1 2025-07-19 05:56:53.767 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:44918 10 6438 1 2025-07-19 05:53:58.818 00:05:00.670 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-19 05:57:54.138 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52622 10 6438 1 Summary: total flows: 139, total bytes: 409878, total packets: 1013, avg bps: 853, avg pps: 0, avg bpp: 404 Time window: 2025-07-19 04:54:58 - 2025-07-19 05:58:59 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0037s User: 0.0009s Wall: 0.0022s flows/second: 62561.2 Runtime: 0.0022s