Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-07-28 17:55:03.982 00:05:00.280 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-28 17:58:55.600 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:47356 10 6452 1 2025-07-28 17:59:54.490 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-28 17:59:54.424 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-28 17:59:54.510 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-28 17:59:54.307 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-28 17:59:54.390 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-28 17:59:56.020 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39594 10 6452 1 2025-07-28 18:00:56.429 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:44600 10 6452 1 2025-07-28 18:01:56.842 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:60844 10 6452 1 2025-07-28 18:02:57.256 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56920 10 6452 1 2025-07-28 18:00:03.979 00:05:00.286 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-28 18:03:57.661 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:59988 10 6452 1 2025-07-28 18:04:54.528 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-28 18:04:54.599 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-28 18:04:54.443 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-28 18:04:54.465 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-28 18:04:54.446 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-28 18:01:03.981 00:05:00.282 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-28 18:04:58.090 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40820 12 6556 1 2025-07-28 18:05:58.496 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46520 10 6452 1 2025-07-28 18:06:58.898 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:38562 12 6556 1 2025-07-28 18:07:59.321 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:40076 10 6452 1 2025-07-28 18:08:59.729 00:00:10.564 TCP 1.101.0.1:3000 -> 23.104.0.1:43758 11 6504 1 2025-07-28 18:09:54.829 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-28 18:09:54.758 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-28 18:09:54.749 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-28 18:09:54.863 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-28 18:09:54.748 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-28 18:06:03.983 00:05:00.283 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-28 18:10:00.330 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42498 10 6452 1 2025-07-28 18:07:03.985 00:05:00.279 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-28 18:11:00.739 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41950 10 6452 1 2025-07-28 18:12:01.147 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:33986 10 6452 1 2025-07-28 18:13:01.549 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:33686 10 6452 1 2025-07-28 18:14:01.951 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:44052 10 6452 1 2025-07-28 18:14:54.770 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-28 18:14:54.920 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-28 18:14:54.797 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-28 18:14:54.621 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-28 18:14:54.704 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-28 18:15:02.325 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59484 10 6452 1 2025-07-28 18:12:03.984 00:05:00.283 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-28 18:16:02.728 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:42366 10 6452 1 2025-07-28 18:13:03.987 00:05:00.277 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-28 18:17:03.130 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:57064 10 6452 1 2025-07-28 18:18:03.536 00:00:10.438 TCP 1.101.0.1:3000 -> 23.104.0.1:54594 12 10365 1 2025-07-28 18:19:04.012 00:00:10.355 TCP 1.101.0.1:3000 -> 23.104.0.1:57976 10 6452 1 2025-07-28 18:19:54.865 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-28 18:19:54.963 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-28 18:19:55.343 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-28 18:19:55.260 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-28 18:19:55.074 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-28 18:20:04.416 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:34146 10 6452 1 2025-07-28 18:21:04.778 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47336 10 6452 1 2025-07-28 18:18:03.984 00:05:00.283 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-28 18:22:05.182 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:40220 10 6452 1 2025-07-28 18:19:03.987 00:05:00.280 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-28 18:23:05.549 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:33988 10 6452 1 2025-07-28 18:24:05.955 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:49500 10 6452 1 2025-07-28 18:24:55.013 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-28 18:24:54.679 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-28 18:24:54.839 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-28 18:24:54.929 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-28 18:24:54.996 00:00:00.050 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-28 18:25:06.365 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:38462 10 6452 1 2025-07-28 18:26:06.737 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:33108 10 6452 1 2025-07-28 18:27:07.154 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56450 10 6452 1 2025-07-28 18:24:03.987 00:05:00.283 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-28 18:28:07.560 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:47686 10 6452 1 2025-07-28 18:25:03.990 00:05:00.277 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-28 18:29:07.951 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:47886 10 6452 1 2025-07-28 18:29:54.954 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-28 18:29:54.954 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-28 18:29:55.127 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-28 18:29:55.069 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-28 18:29:55.152 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-28 18:30:08.379 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:45666 10 6452 1 2025-07-28 18:31:08.743 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43640 10 6452 1 2025-07-28 18:32:09.145 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41444 10 6452 1 2025-07-28 18:33:09.550 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:33650 10 6452 1 2025-07-28 18:30:03.992 00:05:00.280 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-28 18:34:09.951 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:46736 10 6452 1 2025-07-28 18:34:54.936 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-28 18:34:54.836 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-28 18:34:55.173 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-28 18:34:55.178 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-28 18:34:55.261 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-28 18:31:03.993 00:05:00.275 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-28 18:35:10.361 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:54712 10 6452 1 2025-07-28 18:36:10.774 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:53092 10 6452 1 2025-07-28 18:37:11.184 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:43024 10 6452 1 2025-07-28 18:38:11.589 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46870 10 6452 1 2025-07-28 18:39:11.990 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57904 10 6452 1 2025-07-28 18:39:55.954 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-28 18:39:55.757 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-28 18:39:55.799 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-28 18:39:55.861 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-28 18:39:55.943 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-28 18:36:03.994 00:05:00.278 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-28 18:40:12.396 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54014 10 6452 1 2025-07-28 18:37:03.995 00:05:00.274 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-28 18:41:12.803 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:55764 10 6452 1 2025-07-28 18:42:13.211 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:37944 10 6452 1 2025-07-28 18:43:13.611 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:42674 10 6452 1 2025-07-28 18:44:13.977 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:35710 10 6452 1 2025-07-28 18:44:56.513 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-28 18:44:56.340 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-28 18:44:56.281 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-28 18:44:56.214 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-28 18:44:56.431 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-28 18:45:14.386 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38718 10 6452 1 2025-07-28 18:42:03.997 00:05:00.276 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-28 18:46:14.789 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48516 10 6452 1 2025-07-28 18:43:04.001 00:04:00.269 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-07-28 18:47:15.193 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:47034 10 6452 1 2025-07-28 18:48:15.596 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:34574 10 6452 1 2025-07-28 18:49:16.000 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:48572 10 6452 1 2025-07-28 18:49:55.416 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-28 18:49:55.419 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-28 18:49:55.200 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-28 18:49:55.483 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-28 18:49:55.565 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-28 18:50:16.364 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:45088 10 6452 1 2025-07-28 18:51:16.737 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:51552 10 6452 1 2025-07-28 18:48:03.999 00:05:00.275 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-28 18:52:17.148 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:33760 10 6452 1 2025-07-28 18:48:04.002 00:06:00.270 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-07-28 18:53:17.564 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:37768 10 6452 1 2025-07-28 18:54:17.971 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:54798 10 6452 1 2025-07-28 18:54:55.687 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-28 18:54:55.532 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-28 18:54:55.353 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-28 18:54:55.719 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-28 18:54:55.802 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-28 18:55:18.395 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:34722 10 6452 1 2025-07-28 18:56:18.773 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:36652 10 6452 1 2025-07-28 18:57:19.189 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55944 10 6452 1 2025-07-28 18:58:19.589 00:00:10.440 TCP 1.101.0.1:3000 -> 23.104.0.1:43534 14 10469 1 Summary: total flows: 139, total bytes: 424452, total packets: 1019, avg bps: 892, avg pps: 0, avg bpp: 416 Time window: 2025-07-28 17:55:03 - 2025-07-28 18:58:30 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0022s User: 0.0022s Wall: 0.0021s flows/second: 64771.5 Runtime: 0.0022s