Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-07-18 14:58:48.312 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42362 10 6438 1 2025-07-18 14:54:58.478 00:05:00.681 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-18 14:59:48.719 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:58704 10 6438 1 2025-07-18 15:00:01.874 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-18 15:00:01.796 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-18 15:00:01.903 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 15:00:02.144 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 15:00:02.227 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-18 15:00:49.130 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:57014 12 6542 1 2025-07-18 15:01:49.551 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:42302 10 6438 1 2025-07-18 15:02:49.958 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50888 10 6438 1 2025-07-18 14:59:58.482 00:05:00.676 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-18 15:03:50.363 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:34024 10 6438 1 2025-07-18 15:00:58.481 00:05:00.680 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-18 15:05:02.097 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-18 15:05:02.168 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-18 15:05:01.860 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 15:05:01.898 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 15:04:50.768 00:00:10.393 TCP 1.101.0.1:3000 -> 23.104.0.1:36476 10 6438 1 2025-07-18 15:05:01.980 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-18 15:05:51.177 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46230 10 6438 1 2025-07-18 15:06:51.578 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:44008 10 6438 1 2025-07-18 15:07:51.974 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:52266 10 6438 1 2025-07-18 15:08:52.389 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:48414 10 6438 1 2025-07-18 15:05:58.485 00:05:00.674 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-18 15:10:02.285 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-18 15:09:52.756 00:00:10.411 TCP 1.101.0.1:3000 -> 23.104.0.1:36482 10 6438 1 2025-07-18 15:10:02.202 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 15:10:02.056 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-18 15:10:02.058 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-18 15:10:02.241 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 15:06:58.482 00:05:00.680 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-18 15:10:53.183 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:55532 10 6438 1 2025-07-18 15:11:53.593 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:47126 10 6438 1 2025-07-18 15:12:53.994 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:60980 10 6438 1 2025-07-18 15:13:54.404 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:40084 10 6438 1 2025-07-18 15:15:02.305 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-18 15:15:02.286 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-18 15:15:02.217 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-18 15:15:02.249 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 15:15:02.222 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 15:14:54.810 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:38238 10 6438 1 2025-07-18 15:11:58.487 00:05:00.674 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-18 15:15:55.221 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55156 10 6438 1 2025-07-18 15:12:58.485 00:05:00.678 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-18 15:16:55.624 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53944 10 6438 1 2025-07-18 15:17:56.027 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56022 10 6438 1 2025-07-18 15:18:56.430 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:51548 10 6438 1 2025-07-18 15:20:02.390 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-18 15:20:02.388 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-18 15:20:02.292 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 15:20:02.161 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 15:20:02.244 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-18 15:19:56.851 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:44252 10 6438 1 2025-07-18 15:20:57.283 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:57604 10 6438 1 2025-07-18 15:17:58.510 00:05:00.654 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-18 15:21:57.685 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43136 10 6438 1 2025-07-18 15:18:58.507 00:05:00.660 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-18 15:22:58.110 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:60130 10 6438 1 2025-07-18 15:23:58.539 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:38448 10 6438 1 2025-07-18 15:25:02.527 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 15:25:02.372 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-18 15:25:02.465 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-18 15:25:02.336 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 15:25:02.610 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-18 15:24:58.945 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:41222 10 6438 1 2025-07-18 15:25:59.361 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44368 10 6438 1 2025-07-18 15:26:59.762 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:35516 10 6438 1 2025-07-18 15:23:58.517 00:05:00.648 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-18 15:28:00.186 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48068 10 6438 1 2025-07-18 15:24:58.514 00:05:00.655 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-18 15:29:00.596 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:36662 10 6438 1 2025-07-18 15:30:02.885 00:00:00.033 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-18 15:30:02.699 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 15:30:02.895 00:00:00.026 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 15:30:02.829 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-18 15:30:02.981 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-18 15:30:01.005 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:39506 10 6438 1 2025-07-18 15:31:01.368 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:41816 10 6438 1 2025-07-18 15:32:01.773 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:46366 10 6438 1 2025-07-18 15:33:02.182 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57824 10 6438 1 2025-07-18 15:29:58.519 00:05:00.649 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-18 15:34:02.586 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:54852 10 6438 1 2025-07-18 15:30:58.518 00:05:00.653 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-18 15:35:02.913 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-18 15:35:02.866 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-18 15:35:02.588 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 15:35:02.913 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 15:35:02.995 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-18 15:35:02.950 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59356 10 6438 1 2025-07-18 15:36:03.356 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:46318 10 6438 1 2025-07-18 15:37:03.720 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59140 10 6438 1 2025-07-18 15:38:04.126 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:58408 10 6438 1 2025-07-18 15:39:04.533 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41800 10 6438 1 2025-07-18 15:35:58.522 00:05:00.647 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-18 15:40:02.821 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-18 15:40:02.708 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-18 15:40:02.707 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 15:40:02.603 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 15:40:02.686 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-18 15:40:04.933 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:36488 10 6438 1 2025-07-18 15:36:58.520 00:05:00.652 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-18 15:41:05.347 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49902 10 6438 1 2025-07-18 15:42:05.746 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39908 10 6438 1 2025-07-18 15:43:06.150 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:39544 10 6438 1 2025-07-18 15:44:06.515 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:52020 10 6438 1 2025-07-18 15:45:02.957 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-18 15:45:02.990 00:00:00.035 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-18 15:45:02.820 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 15:45:02.864 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 15:45:02.948 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-18 15:45:06.922 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:34232 10 6438 1 2025-07-18 15:41:58.523 00:05:00.648 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-18 15:46:07.333 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45966 10 6438 1 2025-07-18 15:42:58.520 00:05:00.652 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-18 15:47:07.744 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:45722 10 6438 1 2025-07-18 15:48:08.146 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60484 10 6438 1 2025-07-18 15:49:08.551 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:50328 10 6438 1 2025-07-18 15:50:03.056 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-18 15:50:02.911 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-18 15:50:03.118 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 15:50:03.180 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 15:50:03.263 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-18 15:50:08.915 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:58016 10 6438 1 2025-07-18 15:51:09.323 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:57810 10 6438 1 2025-07-18 15:47:58.523 00:05:00.647 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-18 15:52:09.725 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:60006 10 6438 1 2025-07-18 15:48:58.522 00:05:00.652 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-18 15:53:10.141 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:40094 10 6438 1 2025-07-18 15:54:10.500 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46112 10 6438 1 2025-07-18 15:55:03.042 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-18 15:55:03.123 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-18 15:55:02.762 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 15:55:03.045 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 15:55:03.129 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-18 15:55:10.899 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:54520 10 6438 1 2025-07-18 15:56:11.273 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51192 10 6438 1 2025-07-18 15:57:11.678 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:51714 10 6438 1 2025-07-18 15:53:58.527 00:05:00.646 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-18 15:58:12.104 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:51532 10 6438 1 Summary: total flows: 140, total bytes: 416264, total packets: 1022, avg bps: 867, avg pps: 0, avg bpp: 407 Time window: 2025-07-18 14:54:58 - 2025-07-18 15:58:59 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0021s User: 0.0021s Wall: 0.0026s flows/second: 54689.6 Runtime: 0.0026s