Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-07-30 18:58:51.750 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38204 10 6452 1 2025-07-30 18:59:52.151 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:54034 10 6452 1 2025-07-30 18:55:05.040 00:06:00.298 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-07-30 19:00:53.253 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-30 19:00:53.348 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-30 19:00:53.424 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-30 19:00:53.199 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-30 19:00:53.170 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-30 19:00:52.554 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35150 10 6452 1 2025-07-30 18:56:05.038 00:06:00.303 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-07-30 19:01:52.955 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:49528 10 6452 1 2025-07-30 19:02:53.376 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47214 10 6452 1 2025-07-30 19:03:53.773 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:37478 10 6452 1 2025-07-30 19:04:54.188 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:59456 10 6452 1 2025-07-30 19:05:53.564 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-30 19:05:53.963 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-30 19:05:53.610 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-30 19:05:53.927 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-30 19:05:54.010 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-30 19:05:54.598 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:35928 10 6452 1 2025-07-30 19:02:05.042 00:06:00.300 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-07-30 19:06:55.005 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36722 10 6452 1 2025-07-30 19:07:55.406 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37412 10 6452 1 2025-07-30 19:03:05.040 00:06:00.305 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-07-30 19:08:55.814 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:32890 10 6452 1 2025-07-30 19:09:56.221 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36984 10 6452 1 2025-07-30 19:10:53.671 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-30 19:10:53.673 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-30 19:10:53.580 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-30 19:10:53.672 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-30 19:10:53.754 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-30 19:10:56.630 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:43454 10 6452 1 2025-07-30 19:11:57.033 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59844 10 6452 1 2025-07-30 19:12:57.433 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:35676 10 6452 1 2025-07-30 19:09:05.043 00:06:00.302 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-07-30 19:13:57.795 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:35268 10 6452 1 2025-07-30 19:10:05.042 00:06:00.310 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-07-30 19:14:58.202 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:46738 10 6452 1 2025-07-30 19:15:53.578 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-30 19:15:53.850 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-30 19:15:53.704 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-30 19:15:53.664 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-30 19:15:53.496 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-30 19:15:58.559 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:40538 10 6452 1 2025-07-30 19:16:58.963 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46782 10 6452 1 2025-07-30 19:17:59.370 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:36276 10 6452 1 2025-07-30 19:18:59.764 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:43352 10 6452 1 2025-07-30 19:20:00.174 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:59156 10 6452 1 2025-07-30 19:20:54.119 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-30 19:20:54.202 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-30 19:20:53.733 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-30 19:20:54.194 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-30 19:20:54.277 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-30 19:16:05.047 00:06:00.304 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-07-30 19:21:00.576 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:55544 10 6452 1 2025-07-30 19:17:05.044 00:06:00.310 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-07-30 19:22:00.936 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:54312 10 6452 1 2025-07-30 19:23:01.358 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:58178 10 6452 1 2025-07-30 19:24:01.760 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:50002 10 6452 1 2025-07-30 19:25:02.130 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57822 10 6452 1 2025-07-30 19:25:53.941 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-30 19:25:53.979 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-30 19:25:53.919 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-30 19:25:53.937 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-30 19:25:53.856 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-30 19:26:02.533 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49146 10 6452 1 2025-07-30 19:27:02.935 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:40868 10 6452 1 2025-07-30 19:23:05.049 00:06:00.305 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-07-30 19:28:03.356 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:42224 10 6452 1 2025-07-30 19:24:05.048 00:06:00.311 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-07-30 19:29:03.762 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:49340 12 6556 1 2025-07-30 19:30:04.193 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:52144 10 6452 1 2025-07-30 19:30:54.100 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-30 19:30:53.980 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-30 19:30:53.626 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-30 19:30:53.821 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-30 19:30:53.904 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-30 19:31:04.591 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60976 10 6452 1 2025-07-30 19:32:04.990 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43804 10 6452 1 2025-07-30 19:33:05.392 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45406 10 6452 1 2025-07-30 19:34:05.798 00:00:10.443 TCP 1.101.0.1:3000 -> 23.104.0.1:50214 12 10367 1 2025-07-30 19:30:05.052 00:06:00.304 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-07-30 19:35:06.279 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:53828 10 6452 1 2025-07-30 19:35:54.354 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-30 19:35:54.044 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-30 19:35:54.211 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-30 19:35:54.012 00:00:00.043 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-30 19:35:54.273 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-30 19:31:05.051 00:06:00.309 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-07-30 19:36:06.642 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:54838 10 6452 1 2025-07-30 19:37:07.067 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46990 10 6452 1 2025-07-30 19:38:07.465 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47522 10 6452 1 2025-07-30 19:39:07.870 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:41490 10 6452 1 2025-07-30 19:40:08.290 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53236 10 6452 1 2025-07-30 19:40:54.083 00:00:00.049 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-30 19:40:54.122 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-30 19:40:54.195 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-30 19:40:54.135 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-30 19:40:54.000 00:00:00.050 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-30 19:41:08.699 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:50952 10 6452 1 2025-07-30 19:37:05.062 00:06:00.297 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-07-30 19:42:09.111 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38108 10 6452 1 2025-07-30 19:38:05.057 00:06:00.303 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-07-30 19:43:09.515 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40364 10 6452 1 2025-07-30 19:44:09.921 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:58958 10 6452 1 2025-07-30 19:45:10.332 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:57408 10 6452 1 2025-07-30 19:45:54.465 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-30 19:45:54.260 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-30 19:45:54.334 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-30 19:45:54.189 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-30 19:45:54.384 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-30 19:46:10.697 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55548 10 6452 1 2025-07-30 19:47:11.113 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41366 10 6452 1 2025-07-30 19:48:11.519 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:57888 10 6452 1 2025-07-30 19:44:05.061 00:06:00.297 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-07-30 19:49:11.931 00:00:10.394 TCP 1.101.0.1:3000 -> 23.104.0.1:49212 10 6452 1 2025-07-30 19:45:05.060 00:06:00.302 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-07-30 19:50:12.360 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33510 10 6452 1 2025-07-30 19:50:54.717 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-30 19:50:54.536 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-30 19:50:54.680 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-30 19:50:54.248 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-30 19:50:54.634 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-30 19:51:12.760 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56646 10 6452 1 2025-07-30 19:52:13.165 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:55522 10 6452 1 2025-07-30 19:53:13.570 00:00:10.317 TCP 1.101.0.1:3000 -> 23.104.0.1:45768 10 6452 1 2025-07-30 19:54:13.926 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:48704 10 6452 1 2025-07-30 19:55:14.349 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44622 10 6452 1 2025-07-30 19:55:54.627 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-30 19:55:54.593 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-30 19:55:54.473 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-30 19:55:54.508 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-30 19:55:54.545 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-30 19:51:05.063 00:06:00.296 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-07-30 19:56:14.753 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:41364 10 6452 1 2025-07-30 19:52:05.061 00:06:00.301 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-07-30 19:57:15.181 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:49126 10 6452 1 2025-07-30 19:58:15.583 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:44548 10 6452 1 Summary: total flows: 138, total bytes: 421757, total packets: 1036, avg bps: 887, avg pps: 0, avg bpp: 407 Time window: 2025-07-30 18:55:05 - 2025-07-30 19:58:25 Total flows processed: 138, passed: 138, Blocks skipped: 0, Bytes read: 14416 Sys: 0.0043s User: 0.0000s Wall: 0.0025s flows/second: 55596.4 Runtime: 0.0025s