Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-07-24 17:58:57.355 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:45292 10 6438 1 2025-07-24 17:59:57.725 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:45104 10 6438 1 2025-07-24 17:57:01.866 00:05:00.467 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-24 18:00:58.114 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48672 10 6438 1 2025-07-24 17:58:01.876 00:05:00.455 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-24 18:01:58.514 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:38376 10 6438 1 2025-07-24 18:02:58.847 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-24 18:02:58.843 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-24 18:02:58.774 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-24 18:02:58.449 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-24 18:02:58.931 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-24 18:02:58.917 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:39504 10 6438 1 2025-07-24 18:03:59.300 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:48304 10 6438 1 2025-07-24 18:04:59.701 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55796 10 6438 1 2025-07-24 18:06:00.115 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43148 10 6438 1 2025-07-24 18:03:01.867 00:05:00.467 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-24 18:07:00.519 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:35256 10 6438 1 2025-07-24 18:07:59.139 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-24 18:07:59.056 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-24 18:07:59.126 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-24 18:07:58.873 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-24 18:07:59.056 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-24 18:04:01.870 00:05:00.462 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-24 18:08:00.922 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:47298 10 6438 1 2025-07-24 18:09:01.334 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44316 10 6438 1 2025-07-24 18:10:01.739 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52220 10 6438 1 2025-07-24 18:11:02.143 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:44048 10 6438 1 2025-07-24 18:12:02.545 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42634 10 6438 1 2025-07-24 18:12:59.077 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-24 18:12:58.941 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-24 18:12:58.989 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-24 18:12:58.938 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-24 18:12:59.022 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-24 18:09:01.868 00:05:00.467 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-24 18:13:02.954 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:34048 10 6438 1 2025-07-24 18:10:01.872 00:05:00.461 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-24 18:14:03.362 00:00:10.422 TCP 1.101.0.1:3000 -> 23.104.0.1:53290 11 6490 1 2025-07-24 18:15:03.822 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:57998 10 6438 1 2025-07-24 18:16:04.189 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56586 10 6438 1 2025-07-24 18:17:04.591 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:52230 10 6438 1 2025-07-24 18:17:59.197 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-24 18:17:59.060 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-24 18:17:59.170 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-24 18:17:59.198 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-24 18:17:59.282 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-24 18:18:04.994 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50142 10 6438 1 2025-07-24 18:15:01.872 00:05:00.466 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-24 18:19:05.399 00:00:10.429 TCP 1.101.0.1:3000 -> 23.104.0.1:50388 12 6530 1 2025-07-24 18:16:01.876 00:05:00.459 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-24 18:20:05.867 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:43702 10 6438 1 2025-07-24 18:21:06.277 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39074 10 6438 1 2025-07-24 18:22:06.676 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:53502 10 6438 1 2025-07-24 18:22:59.224 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-24 18:22:59.526 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-24 18:22:59.164 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-24 18:22:59.429 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-24 18:22:59.512 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-24 18:23:07.056 00:00:10.445 TCP 1.101.0.1:3000 -> 23.104.0.1:55632 12 10352 1 2025-07-24 18:24:07.541 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41320 10 6438 1 2025-07-24 18:21:01.874 00:05:00.463 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-24 18:25:07.939 00:00:10.394 TCP 1.101.0.1:3000 -> 23.104.0.1:60140 10 6438 1 2025-07-24 18:22:01.877 00:05:00.459 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-24 18:26:08.368 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60016 10 6438 1 2025-07-24 18:27:08.777 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:54338 10 6438 1 2025-07-24 18:27:59.482 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-24 18:27:59.424 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-24 18:27:59.254 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-24 18:27:59.368 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-24 18:27:59.565 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-24 18:28:09.182 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:54752 10 6438 1 2025-07-24 18:29:09.588 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:55606 10 6438 1 2025-07-24 18:30:09.997 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:45446 10 6438 1 2025-07-24 18:27:01.875 00:05:00.465 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-24 18:31:10.400 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:52044 10 6438 1 2025-07-24 18:28:01.877 00:05:00.460 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-24 18:32:10.804 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:36134 10 6438 1 2025-07-24 18:32:59.468 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-24 18:32:59.596 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-24 18:32:59.580 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-24 18:32:59.539 00:00:00.014 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-24 18:32:59.551 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-24 18:33:11.203 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41524 10 6438 1 2025-07-24 18:34:11.605 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:52562 10 6438 1 2025-07-24 18:35:12.016 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:37748 10 6438 1 2025-07-24 18:36:12.413 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:48884 10 6438 1 2025-07-24 18:33:01.878 00:05:00.463 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-24 18:37:12.821 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53008 10 6438 1 2025-07-24 18:37:59.648 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-24 18:37:59.473 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-24 18:37:59.579 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-24 18:37:59.645 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-24 18:37:59.728 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-24 18:34:01.880 00:05:00.459 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-24 18:38:13.222 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48264 10 6438 1 2025-07-24 18:39:13.629 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:33458 10 6438 1 2025-07-24 18:40:13.996 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:39958 10 6438 1 2025-07-24 18:41:14.407 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:39240 10 6438 1 2025-07-24 18:42:14.820 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:54086 10 6438 1 2025-07-24 18:42:59.817 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-24 18:42:59.817 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-24 18:42:59.767 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-24 18:42:59.917 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-24 18:39:01.878 00:05:00.466 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-24 18:43:00.001 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-24 18:43:15.225 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38090 10 6438 1 2025-07-24 18:40:01.881 00:05:00.461 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-24 18:44:15.627 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:42522 10 6438 1 2025-07-24 18:45:16.037 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45306 10 6438 1 2025-07-24 18:46:16.440 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:46642 12 6542 1 2025-07-24 18:47:16.847 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:33088 10 6438 1 2025-07-24 18:47:59.746 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-24 18:47:59.883 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-24 18:47:59.830 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-24 18:47:59.852 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-24 18:47:59.829 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-24 18:48:17.267 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:54124 10 6438 1 2025-07-24 18:45:01.882 00:05:00.465 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-24 18:49:17.666 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:56228 10 6438 1 2025-07-24 18:46:01.885 00:05:00.460 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-24 18:50:18.095 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:55372 10 6438 1 2025-07-24 18:51:18.502 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:54164 10 6438 1 2025-07-24 18:52:18.904 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:53320 10 6438 1 2025-07-24 18:52:59.750 00:00:00.028 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-24 18:52:59.844 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-24 18:52:59.850 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-24 18:52:59.802 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-24 18:52:59.667 00:00:00.028 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-24 18:53:19.312 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:48782 10 6438 1 2025-07-24 18:54:19.731 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36090 10 6438 1 2025-07-24 18:51:01.884 00:05:00.464 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-24 18:55:20.137 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:55100 10 6438 1 2025-07-24 18:52:01.885 00:05:00.459 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-24 18:56:20.501 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34852 12 6542 1 2025-07-24 18:57:20.908 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39060 12 6542 1 2025-07-24 18:57:59.907 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-24 18:58:00.071 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-24 18:57:59.992 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-24 18:58:00.070 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-24 18:58:00.152 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-24 18:58:21.311 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36156 10 6438 1 Summary: total flows: 140, total bytes: 420530, total packets: 1031, avg bps: 911, avg pps: 0, avg bpp: 407 Time window: 2025-07-24 17:57:01 - 2025-07-24 18:58:31 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0019s User: 0.0019s Wall: 0.0018s flows/second: 79191.2 Runtime: 0.0018s