Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-07-30 11:59:00.189 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:47514 10 6452 1 2025-07-30 12:00:00.594 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48780 10 6452 1 2025-07-30 12:00:44.946 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-30 12:00:44.812 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-30 12:00:44.970 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-30 12:00:45.073 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-30 12:00:45.053 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-30 12:01:00.999 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:41090 10 6452 1 2025-07-30 11:58:04.847 00:05:00.333 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-30 12:02:01.395 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:54760 10 6452 1 2025-07-30 11:59:04.844 00:05:00.338 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-30 12:03:01.819 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40266 10 6452 1 2025-07-30 12:04:02.219 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:52618 10 6452 1 2025-07-30 12:05:02.616 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60370 10 6452 1 2025-07-30 12:05:44.683 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-30 12:05:45.147 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-30 12:05:45.108 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-30 12:05:45.063 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-30 12:05:45.064 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-30 12:06:03.023 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56474 10 6452 1 2025-07-30 12:07:03.425 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48502 10 6452 1 2025-07-30 12:04:04.848 00:05:00.333 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-30 12:08:03.825 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:57202 10 6452 1 2025-07-30 12:05:04.846 00:05:00.338 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-30 12:09:04.204 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:36946 10 6452 1 2025-07-30 12:10:04.605 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33338 10 6452 1 2025-07-30 12:10:45.252 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-30 12:10:45.092 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-30 12:10:45.217 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-30 12:10:45.036 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-30 12:10:45.170 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-30 12:11:05.015 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:42090 10 6452 1 2025-07-30 12:12:05.415 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41662 10 6452 1 2025-07-30 12:13:05.820 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:44412 10 6452 1 2025-07-30 12:10:04.850 00:05:00.333 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-30 12:14:06.222 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:38112 10 6452 1 2025-07-30 12:11:04.848 00:05:00.339 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-30 12:15:06.626 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54280 10 6452 1 2025-07-30 12:15:46.727 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-30 12:15:46.642 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-30 12:15:46.717 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-30 12:15:46.681 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-30 12:15:46.644 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-30 12:16:07.026 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:40108 10 6452 1 2025-07-30 12:17:07.436 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:40656 10 6452 1 2025-07-30 12:18:07.840 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:52382 10 6452 1 2025-07-30 12:19:08.214 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:52140 10 6452 1 2025-07-30 12:16:04.850 00:05:00.339 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-30 12:20:08.580 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:57016 10 6452 1 2025-07-30 12:20:45.543 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-30 12:20:45.506 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-30 12:20:45.291 00:00:00.028 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-30 12:20:45.287 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-30 12:20:45.461 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-30 12:17:04.851 00:05:00.338 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-30 12:21:08.976 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:37820 10 6452 1 2025-07-30 12:22:09.390 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:52504 10 6452 1 2025-07-30 12:23:09.791 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44458 10 6452 1 2025-07-30 12:24:10.197 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39298 10 6452 1 2025-07-30 12:25:10.603 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:54416 10 6452 1 2025-07-30 12:25:45.390 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-30 12:25:45.488 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-30 12:25:45.628 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-30 12:25:45.339 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-30 12:25:45.307 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-30 12:22:04.856 00:05:00.330 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-30 12:26:11.023 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:55480 10 6452 1 2025-07-30 12:23:04.854 00:05:00.337 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-30 12:27:11.423 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:38712 10 6452 1 2025-07-30 12:28:11.843 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:41552 10 6452 1 2025-07-30 12:29:12.266 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:46858 10 6452 1 2025-07-30 12:30:12.635 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:47962 10 6452 1 2025-07-30 12:30:45.485 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-30 12:30:45.562 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-30 12:30:45.529 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-30 12:30:45.604 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-30 12:30:45.689 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-30 12:31:13.031 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36230 10 6452 1 2025-07-30 12:28:04.858 00:05:00.332 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-30 12:32:13.435 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56666 10 6452 1 2025-07-30 12:29:04.855 00:05:00.337 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-30 12:33:13.841 00:00:10.407 TCP 1.101.0.1:3000 -> 23.104.0.1:48278 12 10365 1 2025-07-30 12:34:14.287 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:51316 10 6452 1 2025-07-30 12:35:14.651 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:44454 10 6452 1 2025-07-30 12:35:46.546 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-30 12:35:46.465 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-30 12:35:46.199 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-30 12:35:46.397 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-30 12:35:46.131 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-30 12:36:15.068 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51540 10 6452 1 2025-07-30 12:37:15.474 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39196 10 6452 1 2025-07-30 12:34:04.860 00:05:00.332 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-30 12:38:15.876 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:58230 10 6452 1 2025-07-30 12:35:04.857 00:05:00.336 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-30 12:39:16.289 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:45734 10 6452 1 2025-07-30 12:40:16.717 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:36802 10 6452 1 2025-07-30 12:40:45.944 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-30 12:40:45.802 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-30 12:40:45.907 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-30 12:40:45.741 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-30 12:40:45.862 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-30 12:41:17.139 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:46172 10 6452 1 2025-07-30 12:42:17.520 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38882 10 6452 1 2025-07-30 12:43:17.923 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:60054 12 6556 1 2025-07-30 12:40:04.860 00:05:00.332 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-30 12:44:18.347 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52930 10 6452 1 2025-07-30 12:41:04.858 00:05:00.337 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-30 12:45:18.751 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:36624 10 6452 1 2025-07-30 12:45:45.980 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-30 12:45:45.904 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-30 12:45:45.979 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-30 12:45:45.920 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-30 12:45:45.897 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-30 12:46:19.173 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37280 10 6452 1 2025-07-30 12:47:19.575 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:55292 10 6452 1 2025-07-30 12:48:19.936 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:57704 10 6452 1 2025-07-30 12:49:20.353 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:33494 10 6452 1 2025-07-30 12:46:04.862 00:05:00.331 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-30 12:50:20.760 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:39910 10 6452 1 2025-07-30 12:50:45.770 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-30 12:50:45.757 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-30 12:50:46.132 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-30 12:50:45.986 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-30 12:50:46.070 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-30 12:47:04.861 00:05:00.337 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-30 12:51:21.176 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38548 10 6452 1 2025-07-30 12:52:21.575 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:59424 10 6452 1 2025-07-30 12:53:21.969 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:44880 10 6452 1 2025-07-30 12:54:22.378 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:41106 10 6452 1 2025-07-30 12:55:22.776 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:59930 10 6452 1 2025-07-30 12:55:45.875 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-30 12:55:46.132 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-30 12:55:46.096 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-30 12:55:46.129 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-30 12:55:46.212 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-30 12:52:04.863 00:05:00.330 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-30 12:56:23.187 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:39904 12 6556 1 2025-07-30 12:53:04.861 00:05:00.335 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-30 12:57:23.614 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:58222 10 6452 1 2025-07-30 12:58:23.975 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:41522 10 6452 1 Summary: total flows: 140, total bytes: 421121, total packets: 1026, avg bps: 928, avg pps: 0, avg bpp: 410 Time window: 2025-07-30 11:58:04 - 2025-07-30 12:58:34 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0044s User: 0.0000s Wall: 0.0022s flows/second: 62889.9 Runtime: 0.0022s