Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-07-18 15:54:58.526 00:05:00.650 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-18 15:59:12.499 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:34500 10 6438 1 2025-07-18 16:00:03.293 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-18 16:00:03.255 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-18 16:00:03.123 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 16:00:03.211 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 16:00:03.166 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-18 16:00:12.904 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:53594 10 6438 1 2025-07-18 16:01:13.308 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:35152 10 6438 1 2025-07-18 15:57:58.529 00:05:00.645 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-18 16:02:13.714 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:55614 10 6438 1 2025-07-18 16:03:14.116 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36066 10 6438 1 2025-07-18 16:04:14.519 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:47152 10 6438 1 2025-07-18 16:00:58.527 00:05:00.650 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-18 16:05:03.427 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-18 16:05:03.283 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 16:05:03.542 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 16:05:03.379 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-18 16:05:03.624 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-18 16:05:14.884 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:60800 10 6438 1 2025-07-18 16:06:15.286 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33484 10 6438 1 2025-07-18 16:07:15.689 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:40966 10 6438 1 2025-07-18 16:03:58.530 00:05:00.644 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-18 16:08:16.110 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54514 10 6438 1 2025-07-18 16:09:16.511 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:37526 10 6438 1 2025-07-18 16:10:03.361 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-18 16:10:03.279 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 16:10:03.357 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-18 16:10:03.415 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-18 16:10:03.240 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 16:10:16.916 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41692 10 6438 1 2025-07-18 16:06:58.528 00:05:00.649 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-18 16:11:17.331 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48000 10 6438 1 2025-07-18 16:12:17.741 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47308 10 6438 1 2025-07-18 16:13:18.151 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:59894 10 6438 1 2025-07-18 16:09:58.530 00:05:00.648 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-18 16:14:18.551 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:52056 10 6438 1 2025-07-18 16:15:03.335 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-18 16:15:03.202 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 16:15:03.453 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 16:15:03.573 00:00:00.040 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-18 16:15:03.535 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-18 16:15:18.953 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40276 10 6438 1 2025-07-18 16:16:19.362 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:53780 10 6438 1 2025-07-18 16:12:58.530 00:05:00.659 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-18 16:17:19.726 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:54218 10 6438 1 2025-07-18 16:18:20.146 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55756 10 6438 1 2025-07-18 16:19:20.546 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:55566 10 6438 1 2025-07-18 16:15:58.533 00:05:00.647 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-18 16:20:03.630 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-18 16:20:03.531 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 16:20:03.561 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 16:20:03.394 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-18 16:20:03.643 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-18 16:20:20.953 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:47756 10 6438 1 2025-07-18 16:21:21.358 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:34540 10 6438 1 2025-07-18 16:22:21.779 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54084 10 6438 1 2025-07-18 16:18:58.532 00:05:00.653 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-18 16:23:22.183 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:58122 10 6438 1 2025-07-18 16:24:22.543 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:60000 10 6438 1 2025-07-18 16:25:03.656 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-18 16:25:03.581 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 16:25:03.799 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 16:25:03.808 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-18 16:25:03.881 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-18 16:25:22.947 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:48082 10 6438 1 2025-07-18 16:21:58.534 00:05:00.649 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-18 16:26:23.356 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:48850 10 6438 1 2025-07-18 16:27:23.752 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:38028 10 6438 1 2025-07-18 16:28:24.176 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56010 10 6438 1 2025-07-18 16:24:58.533 00:05:00.653 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-18 16:29:24.581 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58760 10 6438 1 2025-07-18 16:30:03.850 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-18 16:30:03.585 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-18 16:30:03.413 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 16:30:03.768 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 16:30:03.754 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-18 16:30:24.985 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:36988 10 6438 1 2025-07-18 16:31:25.394 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:41610 10 6438 1 2025-07-18 16:27:58.538 00:05:00.645 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-18 16:32:25.792 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:36984 10 6438 1 2025-07-18 16:33:26.205 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:59328 10 6438 1 2025-07-18 16:34:26.615 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57992 10 6438 1 2025-07-18 16:30:58.538 00:05:00.659 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-18 16:35:04.029 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-18 16:35:03.774 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-18 16:35:03.961 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 16:35:03.945 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 16:35:03.955 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-18 16:35:27.019 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:42098 10 6438 1 2025-07-18 16:36:27.423 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:59122 10 6438 1 2025-07-18 16:37:27.836 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:37312 10 6438 1 2025-07-18 16:33:58.542 00:05:00.654 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-18 16:38:28.271 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36124 10 6438 1 2025-07-18 16:39:28.672 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:55236 10 6438 1 2025-07-18 16:40:03.941 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-18 16:40:03.932 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-18 16:40:03.959 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 16:40:03.858 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 16:40:03.936 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-18 16:40:29.042 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40674 10 6438 1 2025-07-18 16:36:58.540 00:05:00.660 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-18 16:41:29.442 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36844 10 6438 1 2025-07-18 16:42:29.847 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:34454 10 6438 1 2025-07-18 16:43:30.269 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36740 10 6438 1 2025-07-18 16:39:58.544 00:05:00.656 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-18 16:44:30.675 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51310 10 6438 1 2025-07-18 16:45:04.453 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-18 16:45:04.270 00:00:00.026 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-18 16:45:04.282 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 16:45:04.370 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 16:45:04.475 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-18 16:45:31.106 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35188 10 6438 1 2025-07-18 16:46:31.512 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:38818 10 6438 1 2025-07-18 16:42:58.541 00:05:00.661 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-18 16:47:31.915 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59024 10 6438 1 2025-07-18 16:48:32.322 00:00:10.457 TCP 1.101.0.1:3000 -> 23.104.0.1:37434 12 10352 1 2025-07-18 16:49:32.822 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:57584 10 6438 1 2025-07-18 16:50:04.115 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-18 16:50:04.123 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 16:50:04.265 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 16:50:03.975 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-18 16:45:58.547 00:05:00.654 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-18 16:50:04.347 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-18 16:50:33.232 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41906 10 6438 1 2025-07-18 16:51:33.634 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39424 10 6438 1 2025-07-18 16:52:34.037 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49776 10 6438 1 2025-07-18 16:48:58.543 00:05:00.659 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-18 16:53:34.443 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:48858 10 6438 1 2025-07-18 16:54:34.853 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:38486 10 6438 1 2025-07-18 16:55:04.249 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-18 16:55:04.251 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-18 16:55:04.108 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 16:55:04.167 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 16:55:04.318 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-18 16:55:35.278 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:58746 10 6438 1 2025-07-18 16:51:58.546 00:05:00.655 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-18 16:56:35.683 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:35240 10 6438 1 2025-07-18 16:57:36.105 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:59252 10 6438 1 2025-07-18 16:58:36.512 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:39508 10 6438 1 Summary: total flows: 140, total bytes: 420074, total packets: 1022, avg bps: 877, avg pps: 0, avg bpp: 411 Time window: 2025-07-18 15:54:58 - 2025-07-18 16:58:46 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0024s User: 0.0012s Wall: 0.0020s flows/second: 70961.0 Runtime: 0.0020s