Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-07-20 14:59:11.914 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58228 10 6438 1 2025-07-20 15:00:12.318 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35672 10 6438 1 2025-07-20 15:00:59.588 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-20 15:00:59.766 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-20 15:00:59.673 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 15:00:59.590 00:00:00.043 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 15:00:59.672 00:00:00.043 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-20 14:56:59.595 00:05:00.675 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-20 14:56:59.597 00:05:00.670 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-20 15:01:12.723 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:44122 10 6438 1 2025-07-20 15:02:13.126 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:36326 10 6438 1 2025-07-20 15:03:13.540 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:48014 10 6438 1 2025-07-20 15:04:13.952 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:54838 10 6438 1 2025-07-20 15:05:14.361 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41674 10 6438 1 2025-07-20 15:05:59.898 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-20 15:05:59.513 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 15:05:59.742 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 15:05:59.826 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-20 15:06:00.121 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-20 15:06:14.764 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:53558 10 6438 1 2025-07-20 15:02:59.626 00:05:00.644 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-20 15:02:59.625 00:05:00.649 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-20 15:07:15.176 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:32784 10 6438 1 2025-07-20 15:08:15.539 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50180 10 6438 1 2025-07-20 15:09:15.941 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:48646 10 6438 1 2025-07-20 15:10:16.356 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:33762 10 6438 1 2025-07-20 15:10:59.878 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-20 15:10:59.832 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 15:10:59.792 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 15:10:59.874 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-20 15:11:00.090 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-20 15:11:16.718 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:60922 10 6438 1 2025-07-20 15:12:17.113 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52738 10 6438 1 2025-07-20 15:08:59.626 00:05:00.650 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-20 15:08:59.627 00:05:00.645 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-20 15:13:17.520 00:00:10.440 TCP 1.101.0.1:3000 -> 23.104.0.1:60642 12 10350 1 2025-07-20 15:14:17.997 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:54374 10 6438 1 2025-07-20 15:15:18.409 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52188 10 6438 1 2025-07-20 15:15:59.828 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-20 15:15:59.744 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-20 15:15:59.746 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 15:15:59.981 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 15:16:00.273 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-20 15:16:18.811 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:44532 10 6438 1 2025-07-20 15:17:19.222 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:50686 10 6438 1 2025-07-20 15:18:19.633 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:44436 10 6438 1 2025-07-20 15:14:59.629 00:05:00.646 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-20 15:14:59.627 00:05:00.651 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-20 15:19:19.991 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:58512 10 6438 1 2025-07-20 15:20:20.400 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54890 10 6438 1 2025-07-20 15:21:00.409 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-20 15:21:00.393 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-20 15:21:00.166 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 15:21:00.326 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 15:21:00.060 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-20 15:21:20.805 00:00:10.346 TCP 1.101.0.1:3000 -> 23.104.0.1:45874 10 6438 1 2025-07-20 15:22:21.189 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48844 10 6438 1 2025-07-20 15:23:21.591 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:52254 10 6438 1 2025-07-20 15:24:21.964 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:56136 10 6438 1 2025-07-20 15:20:59.639 00:05:00.639 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-20 15:20:59.638 00:05:00.644 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-20 15:25:22.332 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:40354 10 6438 1 2025-07-20 15:25:59.811 00:00:00.029 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 15:26:00.065 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-20 15:26:00.331 00:00:00.018 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-20 15:26:00.319 00:00:00.028 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-20 15:25:59.982 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 15:26:22.733 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54348 10 6438 1 2025-07-20 15:27:23.134 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43258 10 6438 1 2025-07-20 15:28:23.540 00:00:10.394 TCP 1.101.0.1:3000 -> 23.104.0.1:35062 12 10352 1 2025-07-20 15:29:23.971 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:36074 10 6438 1 2025-07-20 15:30:24.383 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47816 10 6438 1 2025-07-20 15:31:00.528 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-20 15:26:59.637 00:05:00.645 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-20 15:31:00.325 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-20 15:31:00.313 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 15:31:00.320 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 15:31:00.402 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-20 15:26:59.640 00:05:00.639 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-20 15:31:24.786 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:42034 12 6542 1 2025-07-20 15:32:25.199 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53292 10 6438 1 2025-07-20 15:33:25.598 00:00:10.419 TCP 1.101.0.1:3000 -> 23.104.0.1:41442 11 6490 1 2025-07-20 15:34:26.064 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:53834 10 6438 1 2025-07-20 15:35:26.473 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:36540 10 6438 1 2025-07-20 15:36:00.556 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-20 15:36:00.503 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-20 15:36:00.297 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 15:36:00.511 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 15:36:00.594 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-20 15:36:26.875 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:44772 10 6438 1 2025-07-20 15:32:59.638 00:05:00.645 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-20 15:32:59.642 00:05:00.639 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-20 15:37:27.291 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:60452 10 6438 1 2025-07-20 15:38:27.684 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:34174 10 6438 1 2025-07-20 15:39:28.103 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56086 10 6438 1 2025-07-20 15:40:28.503 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:55234 10 6438 1 2025-07-20 15:41:00.546 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-20 15:41:00.544 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-20 15:41:00.583 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 15:41:00.670 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 15:41:00.753 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-20 15:41:28.909 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33466 10 6438 1 2025-07-20 15:42:29.310 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:42020 10 6438 1 2025-07-20 15:38:59.643 00:05:00.639 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-20 15:38:59.641 00:05:00.643 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-20 15:43:29.714 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:40836 10 6438 1 2025-07-20 15:44:30.138 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51204 10 6438 1 2025-07-20 15:45:30.543 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:43098 10 6438 1 2025-07-20 15:46:00.679 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-20 15:46:00.503 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-20 15:46:00.532 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 15:46:00.598 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 15:46:00.746 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-20 15:46:30.944 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:45786 10 6438 1 2025-07-20 15:47:31.354 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:57296 10 6438 1 2025-07-20 15:48:31.717 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:60424 10 6438 1 2025-07-20 15:44:59.643 00:05:00.639 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-20 15:44:59.642 00:05:00.643 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-20 15:49:32.131 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50334 10 6438 1 2025-07-20 15:50:32.532 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:36812 10 6438 1 2025-07-20 15:51:01.052 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-20 15:51:00.901 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-20 15:51:00.899 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-20 15:51:00.821 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 15:51:00.969 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 15:51:32.895 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53642 10 6438 1 2025-07-20 15:52:33.299 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59578 10 6438 1 2025-07-20 15:53:33.699 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:44028 10 6438 1 2025-07-20 15:54:34.122 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:52210 10 6438 1 2025-07-20 15:50:59.642 00:05:00.643 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-20 15:50:59.646 00:05:00.638 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-20 15:55:34.486 00:00:10.343 TCP 1.101.0.1:3000 -> 23.104.0.1:37282 10 6438 1 2025-07-20 15:56:00.898 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-20 15:56:00.841 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-20 15:56:00.795 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 15:56:00.830 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 15:56:00.913 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-20 15:56:34.867 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:34688 10 6438 1 2025-07-20 15:57:35.280 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:35384 10 6438 1 2025-07-20 15:58:35.641 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:38970 10 6438 1 Summary: total flows: 140, total bytes: 424142, total packets: 1027, avg bps: 915, avg pps: 0, avg bpp: 412 Time window: 2025-07-20 14:56:59 - 2025-07-20 15:58:46 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0030s User: 0.0010s Wall: 0.0026s flows/second: 53827.3 Runtime: 0.0026s