Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-07-19 10:54:58.941 00:05:00.657 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-19 10:58:54.877 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:35574 10 6438 1 2025-07-19 10:59:55.284 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:41496 10 6438 1 2025-07-19 11:00:25.888 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-19 11:00:25.962 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-19 11:00:26.077 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-19 11:00:26.126 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-19 11:00:26.208 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-19 11:00:55.683 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41562 10 6438 1 2025-07-19 10:57:58.945 00:05:00.651 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-19 11:01:56.110 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:55570 10 6438 1 2025-07-19 11:02:56.520 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:40132 10 6438 1 2025-07-19 11:03:56.885 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44938 10 6438 1 2025-07-19 11:00:58.943 00:05:00.657 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-19 11:04:57.289 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34714 10 6438 1 2025-07-19 11:05:26.199 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-19 11:05:26.189 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-19 11:05:26.059 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-19 11:05:26.116 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-19 11:05:26.234 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-19 11:05:57.689 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:32992 10 6438 1 2025-07-19 11:06:58.113 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58372 10 6438 1 2025-07-19 11:03:58.945 00:05:00.652 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-19 11:07:58.516 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47378 10 6438 1 2025-07-19 11:08:58.920 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:34914 10 6438 1 2025-07-19 11:09:59.341 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47290 10 6438 1 2025-07-19 11:10:26.347 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-19 11:10:26.354 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-19 11:10:26.312 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-19 11:10:26.264 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-19 11:10:26.312 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-19 11:06:58.944 00:05:00.658 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-19 11:10:59.750 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47176 10 6438 1 2025-07-19 11:12:00.155 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:44058 10 6438 1 2025-07-19 11:13:00.557 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:51614 10 6438 1 2025-07-19 11:09:58.946 00:05:00.657 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-19 11:14:00.974 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60414 10 6438 1 2025-07-19 11:15:01.381 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:42064 10 6438 1 2025-07-19 11:15:26.401 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-19 11:15:26.371 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-19 11:15:26.455 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-19 11:15:26.396 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-19 11:15:26.537 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-19 11:16:01.779 00:00:11.472 TCP 1.101.0.1:3000 -> 23.104.0.1:37416 10 6438 1 2025-07-19 11:12:58.945 00:05:00.662 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-19 11:17:03.308 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43100 10 6438 1 2025-07-19 11:18:03.715 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:48526 10 6438 1 2025-07-19 11:19:04.144 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:35812 10 6438 1 2025-07-19 11:15:58.947 00:05:00.657 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-19 11:20:04.558 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:50104 10 6438 1 2025-07-19 11:20:26.368 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-19 11:20:26.466 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-19 11:20:26.438 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-19 11:20:26.507 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-19 11:20:26.521 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-19 11:21:04.973 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:34934 10 6438 1 2025-07-19 11:22:05.381 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40850 10 6438 1 2025-07-19 11:18:58.944 00:05:00.664 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-19 11:23:05.798 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43352 12 6542 1 2025-07-19 11:24:06.198 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54854 10 6438 1 2025-07-19 11:25:06.601 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:54084 10 6438 1 2025-07-19 11:25:26.501 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-19 11:25:26.238 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-19 11:25:26.506 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-19 11:25:26.351 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-19 11:25:26.584 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-19 11:21:58.951 00:05:00.658 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-19 11:26:07.023 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:32780 10 6438 1 2025-07-19 11:27:07.427 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:42322 10 6438 1 2025-07-19 11:28:07.790 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:59172 10 6438 1 2025-07-19 11:24:58.947 00:05:00.664 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-19 11:29:08.191 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57544 10 6438 1 2025-07-19 11:30:08.592 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48438 10 6438 1 2025-07-19 11:30:27.046 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-19 11:30:26.963 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-19 11:30:26.827 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-19 11:30:26.963 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-19 11:30:26.705 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-19 11:31:08.997 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:54224 10 6438 1 2025-07-19 11:27:58.951 00:05:00.659 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-19 11:32:09.359 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40648 10 6438 1 2025-07-19 11:33:09.761 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:35632 10 6438 1 2025-07-19 11:34:10.189 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44400 10 6438 1 2025-07-19 11:30:58.948 00:05:00.667 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-19 11:35:10.591 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56190 10 6438 1 2025-07-19 11:35:26.758 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-19 11:35:26.645 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-19 11:35:26.768 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-19 11:35:26.570 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-19 11:35:26.850 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-19 11:36:10.996 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53888 10 6438 1 2025-07-19 11:37:11.399 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:38886 10 6438 1 2025-07-19 11:33:58.952 00:05:00.660 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-19 11:38:11.801 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:54180 10 6438 1 2025-07-19 11:39:12.201 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:56010 10 6438 1 2025-07-19 11:40:27.126 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-19 11:40:12.562 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:48876 10 6438 1 2025-07-19 11:40:27.086 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-19 11:40:26.987 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-19 11:40:27.043 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-19 11:40:26.898 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-19 11:36:58.951 00:05:00.663 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-19 11:41:12.967 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:58462 10 6438 1 2025-07-19 11:42:13.374 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:47708 10 6438 1 2025-07-19 11:43:13.782 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:41592 10 6438 1 2025-07-19 11:39:58.955 00:05:00.658 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-19 11:44:14.192 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43774 10 6438 1 2025-07-19 11:45:14.595 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:52724 10 6438 1 2025-07-19 11:45:27.039 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-19 11:45:27.162 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-19 11:45:26.978 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-19 11:45:26.957 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-19 11:45:26.949 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-19 11:46:15.019 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:59792 10 6438 1 2025-07-19 11:42:58.952 00:05:00.663 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-19 11:47:15.431 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47210 10 6438 1 2025-07-19 11:48:15.837 00:00:10.355 TCP 1.101.0.1:3000 -> 23.104.0.1:40946 10 6438 1 2025-07-19 11:49:16.223 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48966 10 6438 1 2025-07-19 11:45:58.956 00:05:00.658 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-19 11:50:26.983 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-19 11:50:26.870 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-19 11:50:16.627 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:53598 10 6438 1 2025-07-19 11:50:26.848 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-19 11:50:26.968 00:00:00.028 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-19 11:50:26.930 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-19 11:51:17.017 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:56120 10 6438 1 2025-07-19 11:52:17.414 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58882 10 6438 1 2025-07-19 11:48:58.953 00:05:00.663 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-19 11:53:17.817 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:34668 10 6438 1 2025-07-19 11:54:18.220 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:49882 10 6438 1 2025-07-19 11:55:27.475 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-19 11:55:27.338 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-19 11:55:27.278 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-19 11:55:18.582 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57050 10 6438 1 2025-07-19 11:55:27.392 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-19 11:55:27.336 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-19 11:51:58.957 00:05:00.658 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-19 11:56:18.988 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60690 10 6438 1 2025-07-19 11:57:19.397 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43660 10 6438 1 2025-07-19 11:58:19.801 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49292 10 6438 1 Summary: total flows: 140, total bytes: 416264, total packets: 1022, avg bps: 873, avg pps: 0, avg bpp: 407 Time window: 2025-07-19 10:54:58 - 2025-07-19 11:58:30 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0036s User: 0.0012s Wall: 0.0028s flows/second: 49469.5 Runtime: 0.0028s