Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-07-21 11:54:00.207 00:06:00.467 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-07-21 11:59:37.562 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:50460 10 6438 1 2025-07-21 12:00:37.973 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:53230 10 6438 1 2025-07-21 12:01:24.920 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-21 12:01:24.919 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-21 12:01:24.687 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-21 12:01:25.117 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-21 12:01:25.200 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-21 12:01:38.391 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53504 10 6438 1 2025-07-21 12:02:38.796 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:41390 10 6438 1 2025-07-21 12:03:39.197 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56386 10 6438 1 2025-07-21 11:59:00.206 00:06:00.473 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-07-21 12:04:39.609 00:00:10.414 TCP 1.101.0.1:3000 -> 23.104.0.1:42032 11 6490 1 2025-07-21 12:05:40.073 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48460 10 6438 1 2025-07-21 12:01:00.210 00:06:00.467 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-07-21 12:06:24.927 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-21 12:06:24.927 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-21 12:06:24.991 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-21 12:06:25.147 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-21 12:06:25.230 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-21 12:06:40.477 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:38024 10 6438 1 2025-07-21 12:07:40.848 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:40746 10 6438 1 2025-07-21 12:08:41.272 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:42034 10 6438 1 2025-07-21 12:09:41.669 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33640 10 6438 1 2025-07-21 12:10:42.102 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:35118 10 6438 1 2025-07-21 12:06:00.208 00:06:00.474 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-07-21 12:11:25.610 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-21 12:11:25.608 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-21 12:11:25.613 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-21 12:11:25.608 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-21 12:11:25.691 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-21 12:11:42.466 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49872 10 6438 1 2025-07-21 12:12:42.874 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:39550 10 6438 1 2025-07-21 12:08:00.212 00:06:00.469 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-07-21 12:13:43.237 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:52148 10 6438 1 2025-07-21 12:14:43.601 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:34638 10 6438 1 2025-07-21 12:15:44.012 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52962 10 6438 1 2025-07-21 12:16:25.360 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-21 12:16:25.356 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-21 12:16:25.273 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-21 12:16:25.230 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-21 12:16:25.314 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-21 12:16:44.410 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:38700 10 6438 1 2025-07-21 12:17:44.816 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:55474 10 6438 1 2025-07-21 12:13:00.210 00:06:00.475 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-07-21 12:18:45.227 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47934 10 6438 1 2025-07-21 12:19:45.635 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60690 10 6438 1 2025-07-21 12:15:00.213 00:06:00.469 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-07-21 12:20:46.031 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:35442 10 6438 1 2025-07-21 12:21:25.289 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-21 12:21:25.286 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-21 12:21:25.310 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-21 12:21:25.440 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-21 12:21:25.522 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-21 12:21:46.433 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:45512 10 6438 1 2025-07-21 12:22:46.833 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:54730 10 6438 1 2025-07-21 12:23:47.255 00:00:10.314 TCP 1.101.0.1:3000 -> 23.104.0.1:51052 10 6438 1 2025-07-21 12:24:47.611 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52314 10 6438 1 2025-07-21 12:20:00.212 00:06:00.475 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-07-21 12:25:48.017 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58974 10 6438 1 2025-07-21 12:26:25.574 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-21 12:26:25.458 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-21 12:26:25.347 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-21 12:26:25.460 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-21 12:26:25.544 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-21 12:26:48.419 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34250 10 6438 1 2025-07-21 12:22:00.214 00:06:00.470 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-07-21 12:27:48.821 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:54158 10 6438 1 2025-07-21 12:28:49.228 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:52548 10 6438 1 2025-07-21 12:29:49.589 00:00:10.349 TCP 1.101.0.1:3000 -> 23.104.0.1:52460 10 6438 1 2025-07-21 12:30:49.978 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:49258 10 6438 1 2025-07-21 12:31:25.780 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-21 12:31:25.830 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-21 12:31:25.512 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-21 12:31:25.496 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-21 12:31:25.696 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-21 12:31:50.396 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:57322 10 6438 1 2025-07-21 12:27:00.213 00:06:00.475 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-07-21 12:32:50.809 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41174 10 6438 1 2025-07-21 12:29:00.218 00:06:00.469 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-07-21 12:33:51.214 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:34322 10 6438 1 2025-07-21 12:34:51.621 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53760 10 6438 1 2025-07-21 12:35:52.024 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60354 10 6438 1 2025-07-21 12:36:25.676 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-21 12:36:25.571 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-21 12:36:25.678 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-21 12:36:25.677 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-21 12:36:25.759 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-21 12:36:52.432 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36808 10 6438 1 2025-07-21 12:37:52.839 00:00:10.344 TCP 1.101.0.1:3000 -> 23.104.0.1:40374 10 6438 1 2025-07-21 12:34:00.214 00:06:00.482 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-07-21 12:38:53.223 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:35902 10 6438 1 2025-07-21 12:39:53.635 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:35648 10 6438 1 2025-07-21 12:40:54.002 00:00:10.314 TCP 1.101.0.1:3000 -> 23.104.0.1:34764 10 6438 1 2025-07-21 12:36:00.217 00:06:00.476 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-07-21 12:41:25.781 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-21 12:41:25.867 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-21 12:41:25.844 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-21 12:41:25.839 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-21 12:41:25.927 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-21 12:41:54.353 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:49430 10 6438 1 2025-07-21 12:42:54.753 00:00:10.437 TCP 1.101.0.1:3000 -> 23.104.0.1:37598 12 10352 1 2025-07-21 12:43:55.239 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:33512 10 6438 1 2025-07-21 12:44:55.644 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:52414 10 6438 1 2025-07-21 12:41:00.216 00:06:00.488 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-07-21 12:45:56.066 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:51778 10 6438 1 2025-07-21 12:46:25.929 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-21 12:46:25.992 00:00:00.045 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-21 12:46:25.756 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-21 12:46:25.747 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-21 12:46:25.848 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-21 12:46:56.479 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:49268 10 6438 1 2025-07-21 12:43:00.219 00:06:00.483 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-07-21 12:47:56.845 00:00:10.345 TCP 1.101.0.1:3000 -> 23.104.0.1:37266 10 6438 1 2025-07-21 12:48:57.230 00:00:10.355 TCP 1.101.0.1:3000 -> 23.104.0.1:49672 10 6438 1 2025-07-21 12:49:57.625 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:42920 10 6438 1 2025-07-21 12:50:58.037 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:46052 10 6438 1 2025-07-21 12:51:26.065 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-21 12:51:25.982 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-21 12:51:25.925 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-21 12:51:26.097 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-21 12:51:25.932 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-21 12:51:58.441 00:00:10.601 TCP 1.101.0.1:3000 -> 23.104.0.1:40696 10 6438 1 2025-07-21 12:48:00.216 00:06:00.489 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-07-21 12:52:59.101 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54540 10 6438 1 2025-07-21 12:53:59.506 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47332 10 6438 1 2025-07-21 12:50:00.220 00:06:00.483 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-07-21 12:54:59.915 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:37014 10 6438 1 2025-07-21 12:56:00.320 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:42802 10 6438 1 2025-07-21 12:56:26.268 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-21 12:56:26.221 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-21 12:56:26.213 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-21 12:56:25.867 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-21 12:56:26.185 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-21 12:57:00.722 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:39460 10 6438 1 2025-07-21 12:58:01.130 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:40420 10 6438 1 Summary: total flows: 136, total bytes: 413565, total packets: 1011, avg bps: 859, avg pps: 0, avg bpp: 409 Time window: 2025-07-21 11:54:00 - 2025-07-21 12:58:11 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0018s User: 0.0018s Wall: 0.0015s flows/second: 89887.4 Runtime: 0.0015s