Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-07-29 10:57:04.349 00:02:00.276 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-07-29 10:58:50.718 00:00:10.437 TCP 1.101.0.1:3000 -> 23.104.0.1:46340 12 10365 1 2025-07-29 10:59:51.196 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43564 10 6452 1 2025-07-29 11:00:14.766 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-29 11:00:14.763 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-29 11:00:15.216 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-29 11:00:14.990 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-29 11:00:15.134 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-29 11:00:04.350 00:01:00.277 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-07-29 11:00:51.598 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57660 10 6452 1 2025-07-29 11:01:52.000 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:55702 10 6452 1 2025-07-29 10:58:04.352 00:04:00.272 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-07-29 11:02:52.401 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:54236 10 6452 1 2025-07-29 11:03:04.354 00:01:00.271 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-07-29 11:02:04.350 00:02:00.276 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-07-29 11:03:52.810 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55180 10 6452 1 2025-07-29 11:04:53.217 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:40494 10 6452 1 2025-07-29 11:05:14.804 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-29 11:05:14.942 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-29 11:05:15.026 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-29 11:05:14.990 00:00:00.039 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-29 11:05:15.069 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-29 11:05:04.351 00:01:00.277 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-07-29 11:05:53.619 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:48442 10 6452 1 2025-07-29 11:06:53.987 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:45208 10 6452 1 2025-07-29 11:05:04.352 00:02:00.271 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-07-29 11:07:54.400 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:44618 10 6452 1 2025-07-29 11:08:04.355 00:01:00.270 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-07-29 11:08:54.813 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:44960 10 6452 1 2025-07-29 11:09:55.223 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:42338 10 6452 1 2025-07-29 11:10:14.918 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-29 11:10:14.869 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-29 11:10:15.173 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-29 11:10:15.056 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-29 11:10:15.140 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-29 11:07:04.352 00:04:00.275 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-07-29 11:10:55.636 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:50104 10 6452 1 2025-07-29 11:10:04.355 00:02:00.270 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-07-29 11:11:56.061 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:59800 10 6452 1 2025-07-29 11:12:04.353 00:01:00.275 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-07-29 11:12:56.483 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:59704 10 6452 1 2025-07-29 11:13:04.355 00:01:00.270 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-07-29 11:13:56.887 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:56464 10 6452 1 2025-07-29 11:14:57.302 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:33596 10 6452 1 2025-07-29 11:15:15.330 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-29 11:15:14.997 00:00:00.037 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-29 11:15:15.310 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-29 11:15:15.004 00:00:00.038 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-29 11:15:15.086 00:00:00.039 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-29 11:14:04.353 00:02:00.275 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-07-29 11:15:57.704 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57912 10 6452 1 2025-07-29 11:15:04.355 00:02:00.271 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-07-29 11:16:58.113 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:51236 10 6452 1 2025-07-29 11:17:04.354 00:01:00.275 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-07-29 11:17:58.513 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:33944 10 6452 1 2025-07-29 11:18:04.356 00:01:00.270 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-07-29 11:18:58.923 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59824 10 6452 1 2025-07-29 11:19:59.323 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51490 10 6452 1 2025-07-29 11:20:16.402 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-29 11:20:16.307 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-29 11:20:16.275 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-29 11:20:16.359 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-29 11:20:16.443 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-29 11:19:04.354 00:02:00.275 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-07-29 11:20:59.725 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:56178 10 6452 1 2025-07-29 11:20:04.358 00:02:00.270 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-07-29 11:22:00.133 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:37036 10 6452 1 2025-07-29 11:22:04.355 00:01:00.275 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-07-29 11:23:00.537 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:46888 10 6452 1 2025-07-29 11:23:04.358 00:01:00.270 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-07-29 11:24:00.901 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:39710 10 6452 1 2025-07-29 11:25:01.306 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:47790 10 6452 1 2025-07-29 11:25:15.331 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-29 11:25:15.243 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-29 11:25:15.274 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-29 11:25:15.337 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-29 11:25:15.419 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-29 11:24:04.355 00:02:00.275 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-07-29 11:26:01.703 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:51216 10 6452 1 2025-07-29 11:27:02.121 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52078 10 6452 1 2025-07-29 11:27:04.356 00:01:00.277 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-07-29 11:28:02.537 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:37850 10 6452 1 2025-07-29 11:25:04.359 00:04:00.270 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-07-29 11:29:02.894 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:49098 10 6452 1 2025-07-29 11:30:03.307 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52738 10 6452 1 2025-07-29 11:30:15.430 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-29 11:30:15.513 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-29 11:30:15.203 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-29 11:30:15.493 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-29 11:30:15.577 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-29 11:29:04.357 00:02:00.276 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-07-29 11:31:03.717 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:48496 10 6452 1 2025-07-29 11:32:04.133 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:40808 10 6452 1 2025-07-29 11:32:04.357 00:01:00.278 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-07-29 11:33:04.540 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:49200 10 6452 1 2025-07-29 11:30:04.360 00:04:00.274 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-07-29 11:34:04.909 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54966 10 6452 1 2025-07-29 11:35:15.664 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-29 11:35:15.658 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-29 11:35:15.490 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-29 11:35:15.599 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-29 11:35:05.315 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:52768 10 6452 1 2025-07-29 11:35:15.683 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-29 11:35:04.359 00:01:00.273 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-07-29 11:34:04.356 00:02:00.279 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-07-29 11:36:05.727 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:57552 10 6452 1 2025-07-29 11:37:06.117 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48738 10 6452 1 2025-07-29 11:37:04.360 00:01:00.277 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-07-29 11:38:06.530 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:53208 10 6452 1 2025-07-29 11:37:04.363 00:02:00.271 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-07-29 11:39:06.942 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:57466 10 6452 1 2025-07-29 11:40:15.541 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-29 11:40:15.796 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-29 11:40:07.383 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:56330 10 6452 1 2025-07-29 11:40:15.585 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-29 11:40:15.537 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-29 11:40:15.619 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-29 11:39:04.360 00:02:00.277 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-07-29 11:40:04.367 00:01:00.268 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-07-29 11:41:07.789 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52134 10 6452 1 2025-07-29 11:42:08.194 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:54178 11 6492 1 2025-07-29 11:42:04.364 00:01:00.275 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-07-29 11:43:08.558 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59320 10 6452 1 2025-07-29 11:42:04.366 00:02:00.270 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-07-29 11:44:08.956 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:34874 10 6452 1 2025-07-29 11:45:16.148 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-29 11:45:16.263 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-29 11:45:15.569 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-29 11:45:16.067 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-29 11:45:09.332 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42996 10 6452 1 2025-07-29 11:45:15.925 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-29 11:45:04.372 00:01:00.266 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-07-29 11:46:09.732 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:36460 10 6452 1 2025-07-29 11:47:10.112 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:33896 10 6452 1 2025-07-29 11:44:04.368 00:04:00.272 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-07-29 11:48:10.522 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:37260 10 6452 1 2025-07-29 11:47:04.373 00:02:00.266 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-07-29 11:49:10.890 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:57668 10 6452 1 2025-07-29 11:49:04.369 00:01:00.272 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-07-29 11:50:16.037 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-29 11:50:15.954 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-29 11:50:15.808 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-29 11:50:15.915 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-29 11:50:15.826 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-29 11:50:11.307 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51080 10 6452 1 2025-07-29 11:50:04.373 00:01:00.266 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-07-29 11:51:11.708 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:55984 10 6452 1 2025-07-29 11:52:12.095 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55940 10 6452 1 2025-07-29 11:51:04.370 00:02:00.271 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-07-29 11:53:12.497 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35476 10 6452 1 2025-07-29 11:52:04.373 00:02:00.266 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-07-29 11:54:12.896 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:58886 10 6452 1 2025-07-29 11:54:04.372 00:01:00.271 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-07-29 11:55:15.774 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-29 11:55:15.960 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-29 11:55:15.982 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-29 11:55:16.048 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-29 11:55:16.132 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-29 11:55:13.309 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:40820 10 6452 1 2025-07-29 11:55:04.374 00:01:00.265 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-07-29 11:56:13.723 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:55982 10 6452 1 2025-07-29 11:57:14.129 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39284 10 6452 1 2025-07-29 11:56:04.372 00:02:00.270 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-07-29 11:58:14.537 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41154 10 6452 1 Summary: total flows: 164, total bytes: 421076, total packets: 1025, avg bps: 915, avg pps: 0, avg bpp: 410 Time window: 2025-07-29 10:57:04 - 2025-07-29 11:58:24 Total flows processed: 164, passed: 164, Blocks skipped: 0, Bytes read: 17120 Sys: 0.0027s User: 0.0018s Wall: 0.0023s flows/second: 72209.3 Runtime: 0.0023s