Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-07-24 14:58:45.485 00:00:10.397 TCP 1.101.0.1:3000 -> 23.104.0.1:47368 12 10352 1 2025-07-24 14:59:45.922 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43970 10 6438 1 2025-07-24 15:00:46.329 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48412 10 6438 1 2025-07-24 14:57:01.810 00:05:00.458 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-24 15:01:46.735 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:50210 10 6438 1 2025-07-24 14:58:01.813 00:05:00.453 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-24 15:02:55.228 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-24 15:02:55.141 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-24 15:02:55.164 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-24 15:02:55.006 00:00:00.034 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-24 15:02:47.156 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:57212 10 6438 1 2025-07-24 15:02:55.088 00:00:00.035 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-24 15:03:47.567 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49992 10 6438 1 2025-07-24 15:04:47.973 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:36970 10 6438 1 2025-07-24 15:05:48.377 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:48516 10 6438 1 2025-07-24 15:06:48.795 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:52908 10 6438 1 2025-07-24 15:03:01.812 00:05:00.458 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-24 15:07:55.397 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-24 15:07:55.631 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-24 15:07:55.505 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-24 15:07:49.193 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:55608 10 6438 1 2025-07-24 15:07:55.507 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-24 15:07:55.589 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-24 15:04:01.814 00:05:00.453 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-24 15:08:49.596 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:49788 10 6438 1 2025-07-24 15:09:49.958 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:60240 10 6438 1 2025-07-24 15:10:50.323 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:41174 10 6438 1 2025-07-24 15:11:50.745 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:35178 10 6438 1 2025-07-24 15:12:55.653 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-24 15:12:55.526 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-24 15:12:55.423 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-24 15:12:55.466 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-24 15:12:55.548 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-24 15:09:01.812 00:05:00.458 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-24 15:12:51.146 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54386 10 6438 1 2025-07-24 15:13:51.551 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36378 10 6438 1 2025-07-24 15:10:01.815 00:05:00.453 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-24 15:14:51.952 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38262 10 6438 1 2025-07-24 15:15:52.356 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47428 10 6438 1 2025-07-24 15:16:52.770 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:42540 10 6438 1 2025-07-24 15:17:55.711 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-24 15:17:55.599 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-24 15:17:55.506 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-24 15:17:55.709 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-24 15:17:55.791 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-24 15:17:53.189 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49580 10 6438 1 2025-07-24 15:15:01.814 00:05:00.456 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-24 15:18:53.589 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49246 10 6438 1 2025-07-24 15:19:53.996 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:56144 10 6438 1 2025-07-24 15:16:01.823 00:05:00.448 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-24 15:20:54.402 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:57292 10 6438 1 2025-07-24 15:21:54.814 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60136 10 6438 1 2025-07-24 15:22:55.780 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-24 15:22:55.694 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-24 15:22:55.646 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-24 15:22:55.699 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-24 15:22:55.787 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-24 15:22:55.219 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:52526 10 6438 1 2025-07-24 15:23:55.627 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:40362 10 6438 1 2025-07-24 15:21:01.820 00:05:00.452 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-24 15:24:56.029 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:54872 10 6438 1 2025-07-24 15:22:01.823 00:05:00.447 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-24 15:25:56.390 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:33454 10 6438 1 2025-07-24 15:26:56.755 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:45712 10 6438 1 2025-07-24 15:27:55.749 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-24 15:27:55.746 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-24 15:27:55.775 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-24 15:27:55.840 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-24 15:27:55.924 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-24 15:27:57.178 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59960 10 6438 1 2025-07-24 15:28:57.578 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60984 10 6438 1 2025-07-24 15:29:57.977 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:38574 10 6438 1 2025-07-24 15:27:01.823 00:05:00.450 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-24 15:30:58.389 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:44732 10 6438 1 2025-07-24 15:28:01.827 00:05:00.445 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-24 15:31:58.788 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:34206 10 6438 1 2025-07-24 15:32:55.755 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-24 15:32:56.062 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-24 15:32:55.994 00:00:00.040 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-24 15:32:55.899 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-24 15:32:55.838 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-24 15:32:59.155 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38900 10 6438 1 2025-07-24 15:33:59.559 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41294 10 6438 1 2025-07-24 15:34:59.962 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48520 10 6438 1 2025-07-24 15:36:00.365 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:49454 10 6438 1 2025-07-24 15:33:01.828 00:05:00.447 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-24 15:37:00.780 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:47850 10 6438 1 2025-07-24 15:37:56.106 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-24 15:37:56.032 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-24 15:37:55.840 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-24 15:37:56.102 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-24 15:37:56.186 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-24 15:34:01.830 00:05:00.443 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-24 15:38:01.145 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43816 10 6438 1 2025-07-24 15:39:01.543 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:58840 10 6438 1 2025-07-24 15:40:01.954 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:57022 10 6438 1 2025-07-24 15:41:02.360 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51640 10 6438 1 2025-07-24 15:42:02.764 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41386 10 6438 1 2025-07-24 15:42:56.158 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-24 15:42:56.100 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-24 15:42:56.195 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-24 15:42:56.158 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-24 15:42:56.241 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-24 15:39:01.829 00:05:00.447 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-24 15:43:03.167 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:54122 10 6438 1 2025-07-24 15:40:01.833 00:05:00.441 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-24 15:44:03.578 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:44084 10 6438 1 2025-07-24 15:45:03.979 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38992 10 6438 1 2025-07-24 15:46:04.386 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60372 10 6438 1 2025-07-24 15:47:04.793 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:35426 10 6438 1 2025-07-24 15:47:55.991 00:00:00.038 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-24 15:47:56.132 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-24 15:47:56.124 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-24 15:47:56.256 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-24 15:47:56.338 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-24 15:48:05.200 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:54650 10 6438 1 2025-07-24 15:45:01.830 00:05:00.447 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-24 15:49:05.562 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50436 10 6438 1 2025-07-24 15:46:01.833 00:05:00.441 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-24 15:50:05.973 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48660 10 6438 1 2025-07-24 15:51:06.378 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:50676 10 6438 1 2025-07-24 15:52:06.778 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:36042 10 6438 1 2025-07-24 15:52:56.197 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-24 15:52:56.314 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-24 15:52:56.294 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-24 15:52:56.104 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-24 15:52:56.187 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-24 15:53:07.189 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:36484 10 6438 1 2025-07-24 15:54:07.555 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:49576 10 6438 1 2025-07-24 15:51:01.832 00:05:00.446 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-24 15:55:07.958 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:57588 10 6438 1 2025-07-24 15:52:01.836 00:05:00.441 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-24 15:56:08.365 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:59500 10 6438 1 2025-07-24 15:57:08.742 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34968 10 6438 1 2025-07-24 15:57:56.415 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-24 15:57:56.504 00:00:00.029 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-24 15:57:56.745 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-24 15:57:56.601 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-24 15:57:56.498 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-24 15:58:09.144 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:36978 10 6438 1 Summary: total flows: 140, total bytes: 420074, total packets: 1022, avg bps: 913, avg pps: 0, avg bpp: 411 Time window: 2025-07-24 14:57:01 - 2025-07-24 15:58:19 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0028s User: 0.0000s Wall: 0.0013s flows/second: 110501.0 Runtime: 0.0013s