Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-07-22 18:55:00.879 00:05:00.525 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-22 18:59:02.455 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:34316 10 6438 1 2025-07-22 19:00:02.853 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:60400 10 6438 1 2025-07-22 18:57:00.876 00:05:00.531 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-22 19:01:03.280 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55002 10 6438 1 2025-07-22 19:02:02.384 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-22 19:02:02.379 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 19:02:02.538 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 19:02:02.262 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-22 19:02:02.621 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-22 19:02:03.686 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:54806 10 6438 1 2025-07-22 19:03:04.111 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:58250 10 6438 1 2025-07-22 19:04:04.511 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:50140 10 6438 1 2025-07-22 19:01:00.881 00:05:00.525 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-22 19:05:04.917 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57994 10 6438 1 2025-07-22 19:06:05.325 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:39152 10 6438 1 2025-07-22 19:07:02.826 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-22 19:03:00.880 00:05:00.530 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-22 19:07:02.675 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-22 19:07:02.510 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 19:07:02.743 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 19:07:02.882 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-22 19:07:05.722 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51544 10 6438 1 2025-07-22 19:08:06.129 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:37530 10 6438 1 2025-07-22 19:09:06.537 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:53058 10 6438 1 2025-07-22 19:10:06.957 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:58500 10 6438 1 2025-07-22 19:07:00.888 00:05:00.519 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-22 19:11:07.369 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:43696 10 6438 1 2025-07-22 19:12:02.659 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-22 19:12:02.655 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 19:12:02.509 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 19:12:02.587 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-22 19:12:02.592 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-22 19:12:07.808 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36426 10 6438 1 2025-07-22 19:09:00.886 00:05:00.524 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-22 19:13:08.215 00:00:10.424 TCP 1.101.0.1:3000 -> 23.104.0.1:58974 11 6490 1 2025-07-22 19:14:08.679 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:42426 10 6438 1 2025-07-22 19:15:09.109 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:47268 10 6438 1 2025-07-22 19:16:09.482 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:39654 10 6438 1 2025-07-22 19:13:00.889 00:05:00.519 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-22 19:17:02.668 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-22 19:17:02.472 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-22 19:17:02.717 00:00:00.026 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 19:17:02.585 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 19:17:02.739 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-22 19:17:09.846 00:00:10.436 TCP 1.101.0.1:3000 -> 23.104.0.1:36096 11 6490 1 2025-07-22 19:18:10.320 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:43956 10 6438 1 2025-07-22 19:15:00.887 00:05:00.526 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-22 19:19:10.729 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:59772 10 6438 1 2025-07-22 19:20:11.139 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:48062 10 6438 1 2025-07-22 19:21:11.547 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:50952 10 6438 1 2025-07-22 19:22:02.681 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-22 19:22:02.597 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 19:22:02.600 00:00:00.026 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 19:22:02.829 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-22 19:22:02.682 00:00:00.026 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-22 19:22:11.917 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:40744 10 6438 1 2025-07-22 19:19:00.890 00:05:00.520 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-22 19:23:12.319 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:52048 10 6438 1 2025-07-22 19:24:12.735 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:42154 10 6438 1 2025-07-22 19:21:00.889 00:05:00.526 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-22 19:25:13.143 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38776 10 6438 1 2025-07-22 19:26:13.546 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42722 11 6478 1 2025-07-22 19:27:02.971 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-22 19:27:02.889 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 19:27:02.784 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-22 19:27:02.937 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-22 19:27:02.859 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 19:27:13.948 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:51472 10 6438 1 2025-07-22 19:28:14.357 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51876 10 6438 1 2025-07-22 19:25:00.898 00:05:00.514 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-22 19:29:14.761 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:54106 10 6438 1 2025-07-22 19:30:15.193 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:41860 10 6438 1 2025-07-22 19:27:00.897 00:05:00.520 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-22 19:31:15.587 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48238 10 6438 1 2025-07-22 19:32:03.086 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-22 19:32:02.954 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 19:32:03.210 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 19:32:03.086 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-22 19:32:03.292 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-22 19:32:15.984 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:55874 10 6438 1 2025-07-22 19:33:16.391 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:48818 10 6438 1 2025-07-22 19:34:16.801 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:57876 10 6438 1 2025-07-22 19:31:00.907 00:05:00.505 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-22 19:35:17.208 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:49842 10 6438 1 2025-07-22 19:36:17.568 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:60234 10 6438 1 2025-07-22 19:37:02.956 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-22 19:37:03.073 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 19:37:03.065 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 19:37:03.185 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-22 19:33:00.901 00:05:00.516 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-22 19:37:03.148 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-22 19:37:17.972 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:55764 10 6438 1 2025-07-22 19:38:18.381 00:00:10.419 TCP 1.101.0.1:3000 -> 23.104.0.1:59066 11 6490 1 2025-07-22 19:39:18.841 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:47674 10 6438 1 2025-07-22 19:40:19.267 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:52308 10 6438 1 2025-07-22 19:37:00.904 00:05:00.510 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-22 19:41:19.676 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56164 10 6438 1 2025-07-22 19:42:03.210 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-22 19:42:02.818 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 19:42:03.138 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 19:42:03.205 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-22 19:42:03.221 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-22 19:42:20.104 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:46210 10 6438 1 2025-07-22 19:39:00.904 00:05:00.515 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-22 19:43:20.473 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:54698 10 6438 1 2025-07-22 19:44:20.889 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:58672 12 6542 1 2025-07-22 19:45:21.307 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:48662 10 6438 1 2025-07-22 19:46:21.749 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:40820 10 6438 1 2025-07-22 19:43:00.915 00:05:00.500 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-22 19:47:03.380 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-22 19:47:03.301 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-22 19:47:03.234 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 19:47:03.298 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 19:47:03.350 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-22 19:47:22.152 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:56364 10 6438 1 2025-07-22 19:48:22.551 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:35720 10 6438 1 2025-07-22 19:45:00.912 00:05:00.505 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-22 19:49:22.974 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53418 10 6438 1 2025-07-22 19:50:23.384 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:48158 10 6438 1 2025-07-22 19:51:23.757 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:37494 10 6438 1 2025-07-22 19:52:03.455 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-22 19:52:03.538 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 19:52:03.691 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 19:52:03.639 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-22 19:52:03.775 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-22 19:52:24.171 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36654 10 6438 1 2025-07-22 19:49:00.917 00:05:00.501 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-22 19:53:24.571 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:40414 10 6438 1 2025-07-22 19:54:24.930 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:57154 10 6438 1 2025-07-22 19:51:00.914 00:05:00.508 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-22 19:55:25.344 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55160 10 6438 1 2025-07-22 19:56:25.747 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47402 10 6438 1 2025-07-22 19:57:03.407 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 19:57:03.664 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-22 19:57:03.623 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-22 19:57:03.185 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 19:57:03.491 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-22 19:57:26.150 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:52404 10 6438 1 2025-07-22 19:58:26.513 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56340 10 6438 1 Summary: total flows: 140, total bytes: 416460, total packets: 1026, avg bps: 873, avg pps: 0, avg bpp: 405 Time window: 2025-07-22 18:55:00 - 2025-07-22 19:58:36 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0042s User: 0.0000s Wall: 0.0023s flows/second: 59875.9 Runtime: 0.0024s