Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-07-28 18:54:04.000 00:06:00.001 TCP 179.21.23.21:38570 -> 179.21.23.23:179 13 809 1 2025-07-28 18:59:20.067 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35492 10 6452 1 2025-07-28 18:59:55.714 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-28 18:59:55.723 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-28 18:59:55.338 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-28 18:59:55.722 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-28 18:59:55.805 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-28 18:55:04.004 00:06:00.001 TCP 179.21.23.23:179 -> 179.21.23.21:38570 13 790 1 2025-07-28 19:00:20.468 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59514 10 6452 1 2025-07-28 19:01:20.876 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:50260 10 6452 1 2025-07-28 19:02:21.276 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:34984 10 6452 1 2025-07-28 19:03:21.684 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:37510 10 6452 1 2025-07-28 19:04:22.102 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:37066 10 6452 1 2025-07-28 19:04:55.964 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-28 19:04:55.837 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-28 19:04:55.784 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-28 19:04:55.706 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-28 19:04:55.880 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-28 19:00:04.275 00:06:00.002 TCP 179.21.23.21:38570 -> 179.21.23.23:179 13 790 1 2025-07-28 19:05:22.474 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54362 10 6452 1 2025-07-28 19:01:04.274 00:06:00.002 TCP 179.21.23.23:179 -> 179.21.23.21:38570 13 809 1 2025-07-28 19:06:22.883 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:34878 12 6556 1 2025-07-28 19:07:23.309 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:57550 10 6452 1 2025-07-28 19:08:23.714 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:45232 10 6452 1 2025-07-28 19:09:24.132 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51168 10 6452 1 2025-07-28 19:09:56.089 00:00:00.027 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-28 19:09:55.888 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-28 19:09:55.941 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-28 19:09:55.803 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-28 19:09:56.007 00:00:00.027 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-28 19:10:24.542 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:41316 10 6452 1 2025-07-28 19:11:24.941 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:35774 10 6452 1 2025-07-28 19:07:04.030 00:06:00.251 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-07-28 19:12:25.355 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:40492 10 6452 1 2025-07-28 19:08:04.035 00:06:00.244 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-07-28 19:13:25.756 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:38030 10 6452 1 2025-07-28 19:14:26.158 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:50940 10 6452 1 2025-07-28 19:14:55.873 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-28 19:14:55.791 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-28 19:14:55.909 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-28 19:14:55.913 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-28 19:14:55.750 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-28 19:15:26.561 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:55032 10 6452 1 2025-07-28 19:16:26.965 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50838 10 6452 1 2025-07-28 19:17:27.368 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:56062 12 6556 1 2025-07-28 19:18:27.774 00:00:10.448 TCP 1.101.0.1:3000 -> 23.104.0.1:35482 12 10367 1 2025-07-28 19:14:04.035 00:06:00.250 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-07-28 19:19:28.257 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37188 10 6452 1 2025-07-28 19:19:56.292 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-28 19:19:56.460 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-28 19:19:56.195 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-28 19:19:56.118 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-28 19:19:56.210 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-28 19:15:04.036 00:06:00.246 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-07-28 19:20:28.663 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:39660 10 6452 1 2025-07-28 19:21:29.100 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57472 11 6492 1 2025-07-28 19:22:29.500 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:34090 10 6452 1 2025-07-28 19:23:29.862 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:53054 10 6452 1 2025-07-28 19:24:30.277 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55748 10 6452 1 2025-07-28 19:24:55.979 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-28 19:24:56.172 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-28 19:24:56.058 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-28 19:24:56.095 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-28 19:24:56.176 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-28 19:25:30.689 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:40862 10 6452 1 2025-07-28 19:21:04.037 00:06:00.001 TCP 179.21.23.21:38570 -> 179.21.23.23:179 13 809 1 2025-07-28 19:26:31.123 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39742 10 6452 1 2025-07-28 19:22:04.040 00:06:00.245 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-07-28 19:27:31.526 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43350 10 6452 1 2025-07-28 19:28:31.927 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:56410 10 6452 1 2025-07-28 19:29:32.350 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49126 10 6452 1 2025-07-28 19:29:56.293 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-28 19:29:56.210 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-28 19:29:56.291 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-28 19:29:56.284 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-28 19:29:56.227 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-28 19:30:32.750 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:54490 10 6452 1 2025-07-28 19:31:33.113 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:41348 10 6452 1 2025-07-28 19:27:04.289 00:06:00.000 TCP 179.21.23.21:38570 -> 179.21.23.23:179 13 790 1 2025-07-28 19:32:33.514 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58494 10 6452 1 2025-07-28 19:33:33.926 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:42448 10 6452 1 2025-07-28 19:29:04.042 00:06:00.003 TCP 179.21.23.23:179 -> 179.21.23.21:38570 13 790 1 2025-07-28 19:34:34.345 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:57520 10 6452 1 2025-07-28 19:34:56.575 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-28 19:34:56.433 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-28 19:34:56.461 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-28 19:34:56.442 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-28 19:34:56.526 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-28 19:35:34.711 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:52588 10 6452 1 2025-07-28 19:36:35.107 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:39338 10 6452 1 2025-07-28 19:37:35.471 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:36616 10 6452 1 2025-07-28 19:34:04.041 00:04:00.251 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-07-28 19:38:35.871 00:00:10.440 TCP 1.101.0.1:3000 -> 23.104.0.1:46394 12 10367 1 2025-07-28 19:39:36.349 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:51710 10 6452 1 2025-07-28 19:39:56.816 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-28 19:39:56.771 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-28 19:39:56.772 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-28 19:39:56.598 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-28 19:39:56.735 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-28 19:35:04.287 00:06:00.002 TCP 179.21.23.23:179 -> 179.21.23.21:38570 13 809 1 2025-07-28 19:40:36.719 00:00:10.344 TCP 1.101.0.1:3000 -> 23.104.0.1:36200 10 6452 1 2025-07-28 19:41:37.101 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42148 10 6452 1 2025-07-28 19:42:37.503 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:40252 10 6452 1 2025-07-28 19:39:04.042 00:04:00.250 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-07-28 19:43:37.942 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:35944 10 6452 1 2025-07-28 19:44:38.316 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38692 10 6452 1 2025-07-28 19:44:56.576 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-28 19:44:56.635 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-28 19:44:56.314 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-28 19:44:56.639 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-28 19:44:56.722 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-28 19:45:38.723 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:56292 10 6452 1 2025-07-28 19:42:04.046 00:04:00.245 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-07-28 19:46:39.131 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38852 10 6452 1 2025-07-28 19:47:39.537 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:35912 10 6452 1 2025-07-28 19:48:39.937 00:00:10.408 TCP 1.101.0.1:3000 -> 23.104.0.1:59940 10 6452 1 2025-07-28 19:44:04.043 00:06:00.251 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-07-28 19:49:40.400 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:52156 10 6452 1 2025-07-28 19:49:56.622 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-28 19:49:56.618 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-28 19:49:56.666 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-28 19:49:56.674 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-28 19:49:56.539 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-28 19:50:40.804 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52270 10 6452 1 2025-07-28 19:47:04.049 00:04:00.242 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-07-28 19:51:41.207 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51634 10 6452 1 2025-07-28 19:52:41.610 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:34832 10 6452 1 2025-07-28 19:53:42.012 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49916 10 6452 1 2025-07-28 19:54:42.416 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:60462 10 6452 1 2025-07-28 19:54:56.823 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-28 19:54:56.640 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-28 19:54:56.687 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-28 19:54:56.823 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-28 19:54:56.905 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-28 19:55:42.827 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:46820 10 6452 1 2025-07-28 19:51:04.048 00:06:00.249 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-07-28 19:56:43.234 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50310 10 6452 1 2025-07-28 19:52:04.051 00:06:00.242 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-07-28 19:57:43.635 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:37352 10 6452 1 Summary: total flows: 139, total bytes: 419610, total packets: 1035, avg bps: 874, avg pps: 0, avg bpp: 405 Time window: 2025-07-28 18:54:04 - 2025-07-28 19:58:04 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0023s User: 0.0015s Wall: 0.0019s flows/second: 72056.4 Runtime: 0.0020s