Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-07-20 16:58:59.772 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:51426 10 6438 1 2025-07-20 17:00:00.180 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:52638 10 6438 1 2025-07-20 17:01:02.235 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-20 16:56:59.670 00:05:00.632 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-20 17:01:02.286 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-20 17:01:02.117 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 17:01:02.061 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 17:01:02.145 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-20 16:56:59.673 00:05:00.627 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-20 17:01:00.549 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55556 10 6438 1 2025-07-20 17:02:00.957 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41442 10 6438 1 2025-07-20 17:03:01.363 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49950 10 6438 1 2025-07-20 17:04:01.765 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:51116 10 6438 1 2025-07-20 17:05:02.181 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55156 10 6438 1 2025-07-20 17:06:02.306 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-20 17:06:01.971 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-20 17:06:01.970 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-20 17:06:02.260 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 17:06:02.224 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 17:06:02.581 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49372 10 6438 1 2025-07-20 17:02:59.681 00:05:00.620 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-20 17:02:59.678 00:05:00.626 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-20 17:07:02.982 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39626 10 6438 1 2025-07-20 17:08:03.388 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36498 10 6438 1 2025-07-20 17:09:03.787 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44524 10 6438 1 2025-07-20 17:10:04.189 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37714 10 6438 1 2025-07-20 17:11:02.382 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-20 17:11:02.299 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-20 17:11:02.299 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-20 17:11:02.411 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 17:11:02.299 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 17:11:04.589 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:52504 10 6438 1 2025-07-20 17:12:05.010 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:36006 10 6438 1 2025-07-20 17:08:59.678 00:05:00.626 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-20 17:08:59.682 00:05:00.621 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-20 17:13:05.415 00:00:10.317 TCP 1.101.0.1:3000 -> 23.104.0.1:60078 10 6438 1 2025-07-20 17:14:05.779 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:33794 10 6438 1 2025-07-20 17:15:06.141 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:37248 10 6438 1 2025-07-20 17:16:02.549 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-20 17:16:02.698 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-20 17:16:02.639 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 17:16:02.702 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 17:16:02.784 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-20 17:16:06.539 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:56464 10 6438 1 2025-07-20 17:17:06.935 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:51388 10 6438 1 2025-07-20 17:18:07.349 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41286 10 6438 1 2025-07-20 17:14:59.682 00:05:00.621 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-20 17:14:59.679 00:05:00.626 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-20 17:19:07.765 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:35702 10 6438 1 2025-07-20 17:20:08.180 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:33856 10 6438 1 2025-07-20 17:21:02.934 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-20 17:21:02.477 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-20 17:21:02.295 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 17:21:02.841 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 17:21:03.103 00:00:00.026 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-20 17:21:08.582 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:51624 10 6438 1 2025-07-20 17:22:08.992 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33804 10 6438 1 2025-07-20 17:23:09.393 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:44438 10 6438 1 2025-07-20 17:24:09.809 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46586 10 6438 1 2025-07-20 17:20:59.682 00:05:00.626 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-20 17:20:59.683 00:05:00.621 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-20 17:25:10.211 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:38426 10 6438 1 2025-07-20 17:26:02.637 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-20 17:26:02.706 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-20 17:26:02.706 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 17:26:02.536 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 17:26:02.619 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-20 17:26:10.617 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:46984 10 6438 1 2025-07-20 17:27:11.002 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:51994 10 6438 1 2025-07-20 17:28:11.401 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39510 10 6438 1 2025-07-20 17:29:11.801 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:60158 10 6438 1 2025-07-20 17:30:12.211 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:46782 10 6438 1 2025-07-20 17:31:02.830 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 17:31:02.769 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-20 17:26:59.684 00:05:00.625 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-20 17:31:02.681 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-20 17:31:02.574 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 17:26:59.688 00:05:00.619 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-20 17:31:02.914 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-20 17:31:12.615 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47262 10 6438 1 2025-07-20 17:32:13.018 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:37750 10 6438 1 2025-07-20 17:33:13.381 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:41716 10 6438 1 2025-07-20 17:34:13.801 00:00:10.345 TCP 1.101.0.1:3000 -> 23.104.0.1:45718 10 6438 1 2025-07-20 17:35:14.178 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40534 10 6438 1 2025-07-20 17:36:02.921 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-20 17:36:02.764 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-20 17:36:02.894 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-20 17:36:02.778 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 17:36:02.838 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 17:36:14.580 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:44634 10 6438 1 2025-07-20 17:32:59.689 00:05:00.620 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-20 17:32:59.687 00:05:00.624 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-20 17:37:14.985 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55848 10 6438 1 2025-07-20 17:38:15.390 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:46430 10 6438 1 2025-07-20 17:39:15.754 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54132 10 6438 1 2025-07-20 17:40:16.155 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:51512 10 6438 1 2025-07-20 17:41:02.776 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-20 17:41:02.874 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-20 17:41:02.904 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 17:41:02.938 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 17:41:03.022 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-20 17:41:16.550 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39532 10 6438 1 2025-07-20 17:42:16.952 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41798 10 6438 1 2025-07-20 17:38:59.696 00:05:00.616 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-20 17:38:59.698 00:05:00.611 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-20 17:43:17.356 00:00:10.440 TCP 1.101.0.1:3000 -> 23.104.0.1:59120 12 10352 1 2025-07-20 17:44:17.834 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:46646 10 6438 1 2025-07-20 17:45:18.257 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:40174 10 6438 1 2025-07-20 17:46:03.358 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-20 17:46:03.208 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-20 17:46:03.094 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 17:46:03.200 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 17:46:03.285 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-20 17:46:18.668 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:38122 10 6438 1 2025-07-20 17:47:19.095 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55588 10 6438 1 2025-07-20 17:48:19.502 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43548 10 6438 1 2025-07-20 17:44:59.700 00:05:00.617 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-20 17:44:59.703 00:05:00.611 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-20 17:49:19.907 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:42930 10 6438 1 2025-07-20 17:50:20.317 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:59652 10 6438 1 2025-07-20 17:51:03.113 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-20 17:51:03.113 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-20 17:51:03.182 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 17:51:03.175 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 17:51:03.258 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-20 17:51:20.718 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:40328 10 6438 1 2025-07-20 17:52:21.129 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:38948 10 6438 1 2025-07-20 17:53:21.506 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39410 10 6438 1 2025-07-20 17:54:21.909 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51336 10 6438 1 2025-07-20 17:50:59.702 00:05:00.615 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-20 17:50:59.704 00:05:00.610 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-20 17:55:22.310 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40576 10 6438 1 2025-07-20 17:56:03.397 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-20 17:56:03.310 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 17:56:03.310 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-20 17:56:03.359 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-20 17:56:03.193 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 17:56:22.709 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:34508 10 6438 1 2025-07-20 17:57:23.119 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:38034 10 6438 1 2025-07-20 17:58:23.535 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:37172 10 6438 1 Summary: total flows: 140, total bytes: 420074, total packets: 1022, avg bps: 909, avg pps: 0, avg bpp: 411 Time window: 2025-07-20 16:56:59 - 2025-07-20 17:58:33 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0021s User: 0.0021s Wall: 0.0019s flows/second: 73455.4 Runtime: 0.0019s