Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-07-22 15:58:50.350 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:55230 10 6438 1 2025-07-22 15:59:50.719 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:40080 10 6438 1 2025-07-22 16:00:51.137 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49146 10 6438 1 2025-07-22 15:57:00.803 00:05:00.542 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-22 16:01:58.684 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-22 16:01:58.696 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 16:01:58.944 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 16:01:58.703 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-22 16:01:59.027 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-22 16:01:51.546 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:53902 10 6438 1 2025-07-22 16:02:51.967 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:48034 10 6438 1 2025-07-22 16:00:00.805 00:05:00.538 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-22 16:03:52.392 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:56638 10 6438 1 2025-07-22 16:04:52.757 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:43018 10 6438 1 2025-07-22 16:05:53.130 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:43342 10 6438 1 2025-07-22 16:06:58.779 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-22 16:06:59.364 00:00:00.028 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 16:06:58.763 00:00:00.030 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 16:06:59.393 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-22 16:06:58.846 00:00:00.030 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-22 16:03:00.803 00:05:00.543 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-22 16:06:53.541 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46788 10 6438 1 2025-07-22 16:07:53.945 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:45054 11 6478 1 2025-07-22 16:08:54.315 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44532 10 6438 1 2025-07-22 16:06:00.808 00:05:00.537 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-22 16:09:54.723 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:52314 10 6438 1 2025-07-22 16:10:55.140 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:59726 10 6438 1 2025-07-22 16:11:58.954 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-22 16:11:58.955 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-22 16:11:58.653 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 16:11:58.959 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 16:11:59.041 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-22 16:11:55.542 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41910 10 6438 1 2025-07-22 16:09:00.816 00:05:00.532 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-22 16:12:55.948 00:00:10.396 TCP 1.101.0.1:3000 -> 23.104.0.1:46710 10 6438 1 2025-07-22 16:13:56.364 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42970 10 6438 1 2025-07-22 16:14:56.763 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:33688 10 6438 1 2025-07-22 16:12:00.822 00:05:00.524 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-22 16:15:57.168 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:44666 10 6438 1 2025-07-22 16:16:59.139 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-22 16:16:59.142 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-22 16:16:58.957 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 16:16:59.227 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 16:16:59.309 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-22 16:16:57.568 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:48468 10 6438 1 2025-07-22 16:17:57.983 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46536 10 6438 1 2025-07-22 16:15:00.821 00:05:00.527 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-22 16:18:58.388 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:41094 10 6438 1 2025-07-22 16:19:58.791 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:47128 10 6438 1 2025-07-22 16:20:59.206 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53164 10 6438 1 2025-07-22 16:21:59.354 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-22 16:21:59.281 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-22 16:21:59.203 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 16:21:59.267 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 16:21:59.351 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-22 16:18:00.826 00:05:00.521 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-22 16:21:59.610 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:60244 10 6438 1 2025-07-22 16:23:00.020 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:46564 10 6438 1 2025-07-22 16:24:00.429 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43198 10 6438 1 2025-07-22 16:21:00.823 00:05:00.527 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-22 16:25:00.835 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:43824 10 6438 1 2025-07-22 16:26:01.241 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37274 10 6438 1 2025-07-22 16:26:59.259 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-22 16:26:59.330 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-22 16:26:59.335 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-22 16:26:59.127 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 16:26:59.175 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 16:27:01.640 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:48868 10 6438 1 2025-07-22 16:24:00.825 00:05:00.522 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-22 16:28:02.042 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36122 10 6438 1 2025-07-22 16:29:02.445 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:41486 10 6438 1 2025-07-22 16:30:02.799 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:54424 10 6438 1 2025-07-22 16:27:00.826 00:05:00.525 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-22 16:31:03.167 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:41474 10 6438 1 2025-07-22 16:31:59.372 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 16:31:59.369 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-22 16:31:59.294 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-22 16:31:58.907 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 16:31:59.454 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-22 16:32:03.572 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:51416 10 6438 1 2025-07-22 16:33:03.991 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38036 10 6438 1 2025-07-22 16:30:00.833 00:05:00.519 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-22 16:34:04.395 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:38750 10 6438 1 2025-07-22 16:35:04.823 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:58824 10 6438 1 2025-07-22 16:36:05.229 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:44840 10 6438 1 2025-07-22 16:36:59.313 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-22 16:36:59.313 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-22 16:36:59.478 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 16:36:59.316 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 16:36:59.400 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-22 16:33:00.829 00:05:00.540 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-22 16:37:05.588 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:43646 10 6438 1 2025-07-22 16:38:05.947 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:33486 10 6438 1 2025-07-22 16:39:06.374 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:50978 10 6438 1 2025-07-22 16:36:00.832 00:05:00.523 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-22 16:40:06.775 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:46266 10 6438 1 2025-07-22 16:41:07.181 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:38922 10 6438 1 2025-07-22 16:41:59.540 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-22 16:41:59.450 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-22 16:41:59.667 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-22 16:41:59.674 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 16:41:59.458 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 16:42:07.582 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:55508 10 6438 1 2025-07-22 16:39:00.829 00:05:00.529 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-22 16:43:07.947 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:60112 10 6438 1 2025-07-22 16:44:08.363 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:41698 10 6438 1 2025-07-22 16:45:08.766 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:37850 10 6438 1 2025-07-22 16:42:00.833 00:05:00.529 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-22 16:46:09.135 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:51848 10 6438 1 2025-07-22 16:46:59.887 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-22 16:46:59.624 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-22 16:46:59.758 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 16:46:59.628 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 16:46:59.713 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-22 16:47:09.500 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55940 10 6438 1 2025-07-22 16:48:09.908 00:00:10.449 TCP 1.101.0.1:3000 -> 23.104.0.1:46654 12 10352 1 2025-07-22 16:45:00.831 00:05:00.533 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-22 16:49:10.397 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41052 10 6438 1 2025-07-22 16:50:10.799 00:00:10.343 TCP 1.101.0.1:3000 -> 23.104.0.1:43498 10 6438 1 2025-07-22 16:51:11.173 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:43750 10 6438 1 2025-07-22 16:51:59.680 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 16:51:59.760 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 16:51:59.906 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-22 16:51:59.993 00:00:00.028 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-22 16:51:59.844 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-22 16:48:00.835 00:05:00.527 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-22 16:52:11.605 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56688 10 6438 1 2025-07-22 16:53:12.007 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55736 10 6438 1 2025-07-22 16:54:12.411 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:35454 10 6438 1 2025-07-22 16:51:00.833 00:05:00.540 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-22 16:55:12.770 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:36536 10 6438 1 2025-07-22 16:56:13.177 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:45644 10 6438 1 2025-07-22 16:56:59.938 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-22 16:56:59.820 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-22 16:56:59.814 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-22 16:56:59.539 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 16:56:59.855 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 16:57:13.544 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:39516 10 6438 1 2025-07-22 16:54:00.836 00:05:00.537 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-22 16:58:13.956 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:48518 10 6438 1 Summary: total flows: 140, total bytes: 420114, total packets: 1023, avg bps: 903, avg pps: 0, avg bpp: 410 Time window: 2025-07-22 15:57:00 - 2025-07-22 16:59:01 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0045s User: 0.0000s Wall: 0.0021s flows/second: 66667.0 Runtime: 0.0021s