Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-07-20 21:58:59.959 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:60952 10 6438 1 2025-07-20 22:00:00.366 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:54476 10 6438 1 2025-07-20 21:56:59.797 00:05:00.605 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-20 21:56:59.801 00:05:00.601 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-20 22:01:08.077 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-20 22:01:08.082 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-20 22:01:07.895 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 22:01:08.146 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 22:01:08.230 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-20 22:01:00.761 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:56296 10 6438 1 2025-07-20 22:02:01.170 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:36904 10 6438 1 2025-07-20 22:03:01.572 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:42334 10 6438 1 2025-07-20 22:04:01.978 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:41082 10 6438 1 2025-07-20 22:05:02.397 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:53600 10 6438 1 2025-07-20 22:06:08.444 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-20 22:06:08.449 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-20 22:06:08.482 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 22:06:08.547 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 22:06:08.630 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-20 22:06:02.797 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:59030 10 6438 1 2025-07-20 22:02:59.799 00:05:00.603 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-20 22:02:59.802 00:05:00.598 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-20 22:07:03.160 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46708 10 6438 1 2025-07-20 22:08:03.562 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:34774 10 6438 1 2025-07-20 22:09:03.963 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:47648 10 6438 1 2025-07-20 22:10:04.330 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:52204 10 6438 1 2025-07-20 22:11:08.496 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-20 22:11:08.091 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 22:11:08.464 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 22:11:08.245 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-20 22:11:08.546 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-20 22:11:04.738 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39202 10 6438 1 2025-07-20 22:12:05.154 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47464 10 6438 1 2025-07-20 22:08:59.809 00:05:00.592 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-20 22:08:59.806 00:05:00.597 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-20 22:13:05.559 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:50224 10 6438 1 2025-07-20 22:14:05.970 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:53248 10 6438 1 2025-07-20 22:15:06.374 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:42442 10 6438 1 2025-07-20 22:16:08.600 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 22:16:08.721 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-20 22:16:08.387 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-20 22:16:08.599 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 22:16:08.682 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-20 22:16:06.796 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60790 10 6438 1 2025-07-20 22:17:07.198 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:45938 10 6438 1 2025-07-20 22:18:07.561 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39374 10 6438 1 2025-07-20 22:14:59.813 00:05:00.592 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-20 22:14:59.810 00:05:00.597 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-20 22:19:07.966 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33618 10 6438 1 2025-07-20 22:20:08.373 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:47224 10 6438 1 2025-07-20 22:21:08.577 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-20 22:21:08.583 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-20 22:21:08.579 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-20 22:21:08.530 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 22:21:08.494 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 22:21:08.782 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:35024 10 6438 1 2025-07-20 22:22:09.186 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42934 10 6438 1 2025-07-20 22:23:09.595 00:00:10.435 TCP 1.101.0.1:3000 -> 23.104.0.1:52528 11 6490 1 2025-07-20 22:24:10.065 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48800 10 6438 1 2025-07-20 22:20:59.812 00:05:00.593 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-20 22:20:59.810 00:05:00.598 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-20 22:25:10.470 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:34454 10 6438 1 2025-07-20 22:26:08.905 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-20 22:26:08.764 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-20 22:26:08.831 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-20 22:26:08.710 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 22:26:08.824 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 22:26:10.880 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38794 10 6438 1 2025-07-20 22:27:11.288 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60166 10 6438 1 2025-07-20 22:28:11.695 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34860 10 6438 1 2025-07-20 22:29:12.106 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:34338 10 6438 1 2025-07-20 22:30:12.506 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:39908 10 6438 1 2025-07-20 22:26:59.820 00:05:00.591 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-20 22:26:59.821 00:05:00.586 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-20 22:31:09.348 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-20 22:31:09.266 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 22:31:08.978 00:00:00.027 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-20 22:31:09.279 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-20 22:31:08.917 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 22:31:12.868 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:40262 10 6438 1 2025-07-20 22:32:13.278 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50810 10 6438 1 2025-07-20 22:33:13.679 00:00:10.421 TCP 1.101.0.1:3000 -> 23.104.0.1:33528 11 6490 1 2025-07-20 22:34:14.145 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:48754 10 6438 1 2025-07-20 22:35:14.564 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:60634 10 6438 1 2025-07-20 22:36:08.822 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-20 22:36:08.975 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-20 22:36:08.839 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 22:36:08.735 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 22:36:08.818 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-20 22:36:14.931 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:50922 10 6438 1 2025-07-20 22:32:59.827 00:05:00.582 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-20 22:32:59.824 00:05:00.587 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-20 22:37:15.347 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:40600 10 6438 1 2025-07-20 22:38:15.714 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44922 11 6478 1 2025-07-20 22:39:16.117 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:51586 10 6438 1 2025-07-20 22:40:16.513 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:33808 10 6438 1 2025-07-20 22:41:09.083 00:00:00.033 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-20 22:41:08.938 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-20 22:41:09.007 00:00:00.028 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-20 22:41:09.110 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 22:41:09.002 00:00:00.033 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 22:41:16.913 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46550 10 6438 1 2025-07-20 22:42:17.317 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33430 10 6438 1 2025-07-20 22:38:59.825 00:05:00.587 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-20 22:38:59.828 00:05:00.582 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-20 22:43:17.720 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:45912 11 6478 1 2025-07-20 22:44:18.132 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47750 10 6438 1 2025-07-20 22:45:18.538 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:41754 10 6438 1 2025-07-20 22:46:09.364 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-20 22:46:09.182 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-20 22:46:08.940 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-20 22:46:08.889 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 22:46:09.282 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 22:46:18.904 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:36366 10 6438 1 2025-07-20 22:47:19.315 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42440 10 6438 1 2025-07-20 22:48:19.722 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:38472 10 6438 1 2025-07-20 22:44:59.831 00:05:00.581 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-20 22:44:59.828 00:05:00.586 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-20 22:49:20.129 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39042 10 6438 1 2025-07-20 22:50:20.531 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:35648 10 6438 1 2025-07-20 22:51:09.379 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-20 22:51:09.417 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-20 22:51:09.219 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 22:51:09.276 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 22:51:09.359 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-20 22:51:20.939 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:36802 10 6438 1 2025-07-20 22:52:21.353 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46920 10 6438 1 2025-07-20 22:53:21.755 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:46448 10 6438 1 2025-07-20 22:54:22.180 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59392 10 6438 1 2025-07-20 22:50:59.830 00:05:00.584 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-20 22:50:59.832 00:05:00.579 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-20 22:55:22.578 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46064 10 6438 1 2025-07-20 22:56:09.069 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-20 22:56:09.320 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-20 22:56:09.270 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 22:56:08.986 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 22:56:09.316 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-20 22:56:22.983 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:59014 10 6438 1 2025-07-20 22:57:23.352 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45952 10 6438 1 2025-07-20 22:58:23.761 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:41102 10 6438 1 Summary: total flows: 140, total bytes: 416344, total packets: 1024, avg bps: 901, avg pps: 0, avg bpp: 406 Time window: 2025-07-20 21:56:59 - 2025-07-20 22:58:34 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0036s User: 0.0007s Wall: 0.0021s flows/second: 66104.1 Runtime: 0.0021s