Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-07-28 13:55:03.896 00:05:00.301 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-28 13:59:19.108 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:42290 10 6452 1 2025-07-28 13:59:49.404 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-28 13:59:49.599 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-28 13:59:49.606 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-28 13:59:49.384 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-28 13:59:49.321 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-28 14:00:19.523 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:58424 10 6452 1 2025-07-28 14:01:19.940 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:51344 10 6452 1 2025-07-28 14:02:20.361 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48752 10 6452 1 2025-07-28 14:03:20.772 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:57438 10 6452 1 2025-07-28 14:00:03.894 00:05:00.308 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-28 14:04:21.181 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39266 10 6452 1 2025-07-28 14:04:49.815 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-28 14:04:49.753 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-28 14:04:49.542 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-28 14:04:49.745 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-28 14:04:49.827 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-28 14:01:03.898 00:05:00.302 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-28 14:05:21.585 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:53470 10 6452 1 2025-07-28 14:06:21.946 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39326 10 6452 1 2025-07-28 14:07:22.355 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:37800 10 6452 1 2025-07-28 14:08:22.719 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:38694 10 6452 1 2025-07-28 14:09:23.107 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51032 10 6452 1 2025-07-28 14:09:49.899 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-28 14:09:49.748 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-28 14:09:49.878 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-28 14:09:49.829 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-28 14:09:49.816 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-28 14:06:03.895 00:05:00.316 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-28 14:10:23.511 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38286 10 6452 1 2025-07-28 14:07:03.897 00:05:00.306 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-28 14:11:23.915 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57928 10 6452 1 2025-07-28 14:12:24.316 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:43780 10 6452 1 2025-07-28 14:13:24.680 00:00:10.396 TCP 1.101.0.1:3000 -> 23.104.0.1:45994 12 10365 1 2025-07-28 14:14:25.118 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54766 10 6452 1 2025-07-28 14:14:49.894 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-28 14:14:49.879 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-28 14:14:49.651 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-28 14:14:49.812 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-28 14:14:49.808 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-28 14:15:25.517 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:36830 10 6452 1 2025-07-28 14:12:03.896 00:05:00.310 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-28 14:16:25.927 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:60972 10 6452 1 2025-07-28 14:13:03.899 00:05:00.305 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-28 14:17:26.345 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:35420 10 6452 1 2025-07-28 14:18:26.710 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:34236 10 6452 1 2025-07-28 14:19:27.121 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:43266 10 6452 1 2025-07-28 14:19:49.772 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-28 14:19:49.945 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-28 14:19:50.028 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-28 14:19:50.135 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-28 14:19:50.232 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-28 14:20:27.491 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:54074 10 6452 1 2025-07-28 14:21:27.857 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:39556 10 6452 1 2025-07-28 14:18:03.899 00:05:00.309 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-28 14:22:28.274 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:48148 10 6452 1 2025-07-28 14:19:03.901 00:05:00.304 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-28 14:23:28.675 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:45586 10 6452 1 2025-07-28 14:24:29.106 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56592 10 6452 1 2025-07-28 14:24:50.054 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-28 14:24:50.000 00:00:00.042 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-28 14:24:50.097 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-28 14:24:50.047 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-28 14:24:50.130 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-28 14:25:29.519 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:60286 10 6452 1 2025-07-28 14:26:29.942 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:52514 10 6452 1 2025-07-28 14:27:30.370 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:35322 10 6452 1 2025-07-28 14:24:03.900 00:05:00.312 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-28 14:28:30.776 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:60718 10 6452 1 2025-07-28 14:25:03.902 00:05:00.307 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-28 14:29:31.151 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49976 10 6452 1 2025-07-28 14:29:49.840 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-28 14:29:50.427 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-28 14:29:50.046 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-28 14:29:50.270 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-28 14:29:50.343 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-28 14:30:31.560 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35216 10 6452 1 2025-07-28 14:31:31.965 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56990 10 6452 1 2025-07-28 14:32:32.366 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:57120 10 6452 1 2025-07-28 14:33:32.769 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:45166 10 6452 1 2025-07-28 14:30:03.902 00:05:00.311 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-28 14:34:33.186 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:37078 10 6452 1 2025-07-28 14:34:51.249 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-28 14:34:51.182 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-28 14:34:51.213 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-28 14:34:51.169 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-28 14:34:51.251 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-28 14:31:03.904 00:05:00.306 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-28 14:35:33.585 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:58246 10 6452 1 2025-07-28 14:36:33.986 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:40610 10 6452 1 2025-07-28 14:37:34.410 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53592 10 6452 1 2025-07-28 14:38:34.809 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:38326 10 6452 1 2025-07-28 14:39:35.218 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59748 10 6452 1 2025-07-28 14:39:50.278 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-28 14:39:50.276 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-28 14:39:50.080 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-28 14:39:50.490 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-28 14:39:50.572 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-28 14:36:03.903 00:05:00.311 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-28 14:40:35.621 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:44454 10 6452 1 2025-07-28 14:37:03.905 00:05:00.307 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-28 14:41:36.031 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43898 10 6452 1 2025-07-28 14:42:36.430 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43652 10 6452 1 2025-07-28 14:43:36.832 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:55724 10 6452 1 2025-07-28 14:44:37.230 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59730 10 6452 1 2025-07-28 14:44:50.577 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-28 14:44:50.551 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-28 14:44:50.519 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-28 14:44:50.357 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-28 14:44:50.603 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-28 14:45:37.634 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:41368 10 6452 1 2025-07-28 14:42:03.905 00:05:00.311 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-28 14:46:38.038 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:47656 10 6452 1 2025-07-28 14:43:03.907 00:05:00.306 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-28 14:47:38.442 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57740 10 6452 1 2025-07-28 14:48:38.846 00:00:10.461 TCP 1.101.0.1:3000 -> 23.104.0.1:51964 12 10367 1 2025-07-28 14:49:39.355 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:42182 10 6452 1 2025-07-28 14:49:50.711 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-28 14:49:50.465 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-28 14:49:50.538 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-28 14:49:50.461 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-28 14:49:50.629 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-28 14:50:39.767 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:35812 10 6452 1 2025-07-28 14:51:40.137 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:55110 10 6452 1 2025-07-28 14:48:03.906 00:05:00.312 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-28 14:52:40.499 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:45960 10 6452 1 2025-07-28 14:49:03.908 00:05:00.307 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-28 14:53:40.902 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39644 12 6556 1 2025-07-28 14:54:50.699 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-28 14:54:41.305 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:60182 10 6452 1 2025-07-28 14:54:50.617 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-28 14:54:50.747 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-28 14:54:50.620 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-28 14:54:50.665 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-28 14:55:41.712 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:59686 10 6452 1 2025-07-28 14:56:42.113 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59856 10 6452 1 2025-07-28 14:57:42.519 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54256 10 6452 1 2025-07-28 14:54:03.908 00:05:00.311 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 Summary: total flows: 139, total bytes: 418480, total packets: 1016, avg bps: 871, avg pps: 0, avg bpp: 411 Time window: 2025-07-28 13:55:03 - 2025-07-28 14:59:04 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0020s User: 0.0020s Wall: 0.0018s flows/second: 75304.6 Runtime: 0.0019s