Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-07-16 17:58:43.010 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45270 10 6438 1 2025-07-16 17:59:08.188 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-16 17:59:07.995 00:00:00.044 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-16 17:59:08.192 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-16 17:59:07.965 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-16 17:59:08.275 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-16 17:59:43.413 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42106 10 6438 1 2025-07-16 18:00:43.813 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59036 10 6438 1 2025-07-16 17:56:57.444 00:05:00.617 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-16 18:01:44.224 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:54424 10 6438 1 2025-07-16 18:02:44.588 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45496 10 6438 1 2025-07-16 17:58:57.449 00:05:00.610 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-16 18:03:44.986 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:43166 10 6438 1 2025-07-16 18:04:07.956 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-16 18:04:07.934 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-16 18:04:07.581 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-16 18:04:07.873 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-16 18:04:07.724 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-16 18:04:45.354 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53714 10 6438 1 2025-07-16 18:05:45.764 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:40938 10 6438 1 2025-07-16 18:06:46.188 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:46970 10 6438 1 2025-07-16 18:02:57.446 00:05:00.617 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-16 18:07:46.582 00:00:10.442 TCP 1.101.0.1:3000 -> 23.104.0.1:49316 12 10352 1 2025-07-16 18:08:47.093 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38822 10 6438 1 2025-07-16 18:04:57.449 00:05:00.612 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-16 18:09:08.174 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-16 18:09:07.990 00:00:00.050 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-16 18:09:07.968 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-16 18:09:08.092 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-16 18:09:08.134 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-16 18:09:47.498 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:43968 10 6438 1 2025-07-16 18:10:47.909 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:42934 10 6438 1 2025-07-16 18:11:48.273 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:44364 10 6438 1 2025-07-16 18:12:48.677 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:43430 10 6438 1 2025-07-16 18:08:57.450 00:05:00.616 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-16 18:13:49.112 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:50460 10 6438 1 2025-07-16 18:14:07.981 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-16 18:14:08.004 00:00:00.030 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-16 18:14:08.147 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-16 18:14:07.900 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-16 18:14:08.231 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-16 18:14:49.485 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:38818 10 6438 1 2025-07-16 18:10:57.452 00:05:00.610 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-16 18:15:49.907 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:46302 10 6438 1 2025-07-16 18:16:50.314 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:42992 10 6438 1 2025-07-16 18:17:50.717 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:49306 10 6438 1 2025-07-16 18:14:57.450 00:05:00.617 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-16 18:18:51.125 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:44314 10 6438 1 2025-07-16 18:19:08.190 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-16 18:19:08.215 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-16 18:19:08.106 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-16 18:19:08.352 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-16 18:19:08.188 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-16 18:19:51.538 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:58130 10 6438 1 2025-07-16 18:16:57.455 00:05:00.610 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-16 18:20:51.940 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:47524 10 6438 1 2025-07-16 18:21:52.351 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37074 10 6438 1 2025-07-16 18:22:52.754 00:00:10.395 TCP 1.101.0.1:3000 -> 23.104.0.1:39848 10 6438 1 2025-07-16 18:23:53.185 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41248 10 6438 1 2025-07-16 18:24:08.471 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-16 18:24:08.106 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-16 18:24:08.337 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-16 18:24:08.644 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-16 18:24:08.420 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-16 18:20:57.451 00:05:00.616 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-16 18:24:53.586 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38600 10 6438 1 2025-07-16 18:25:53.996 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58644 10 6438 1 2025-07-16 18:22:57.456 00:05:00.646 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-16 18:26:54.399 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:38204 10 6438 1 2025-07-16 18:27:54.797 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:59762 10 6438 1 2025-07-16 18:28:55.208 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33084 10 6438 1 2025-07-16 18:29:08.283 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-16 18:29:08.395 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-16 18:29:08.474 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-16 18:29:08.403 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-16 18:29:08.557 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-16 18:29:55.610 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54988 10 6438 1 2025-07-16 18:26:57.453 00:05:00.652 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-16 18:30:56.017 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:49330 10 6438 1 2025-07-16 18:31:56.434 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49282 10 6438 1 2025-07-16 18:28:57.456 00:05:00.647 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-16 18:32:56.838 00:00:10.345 TCP 1.101.0.1:3000 -> 23.104.0.1:36026 10 6438 1 2025-07-16 18:34:08.794 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-16 18:34:08.701 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-16 18:34:08.635 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-16 18:34:08.711 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-16 18:34:08.786 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-16 18:33:57.227 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46288 10 6438 1 2025-07-16 18:34:57.629 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36164 10 6438 1 2025-07-16 18:35:58.030 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41646 10 6438 1 2025-07-16 18:32:57.455 00:05:00.653 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-16 18:36:58.441 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42614 10 6438 1 2025-07-16 18:37:58.848 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:50702 10 6438 1 2025-07-16 18:34:57.458 00:05:00.648 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-16 18:39:08.619 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-16 18:39:08.541 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-16 18:39:08.484 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-16 18:38:59.271 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:48400 10 6438 1 2025-07-16 18:39:08.537 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-16 18:39:08.444 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-16 18:39:59.687 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:56612 10 6438 1 2025-07-16 18:41:00.111 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47372 10 6438 1 2025-07-16 18:42:00.514 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39568 10 6438 1 2025-07-16 18:38:57.456 00:05:00.654 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-16 18:43:00.915 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51790 10 6438 1 2025-07-16 18:44:08.892 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-16 18:44:08.910 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-16 18:44:08.655 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-16 18:44:08.809 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-16 18:44:08.561 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-16 18:44:01.319 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42362 10 6438 1 2025-07-16 18:40:57.458 00:05:00.650 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-16 18:45:01.719 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:59044 10 6438 1 2025-07-16 18:46:02.125 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36866 10 6438 1 2025-07-16 18:47:02.528 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:51260 10 6438 1 2025-07-16 18:48:02.968 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:37684 10 6438 1 2025-07-16 18:44:57.467 00:05:00.644 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-16 18:49:08.868 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-16 18:49:08.838 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-16 18:49:08.731 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-16 18:49:08.738 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-16 18:49:08.815 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-16 18:49:03.376 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34346 10 6438 1 2025-07-16 18:50:03.773 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:58656 10 6438 1 2025-07-16 18:46:57.470 00:05:00.638 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-16 18:51:04.179 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46254 10 6438 1 2025-07-16 18:52:04.582 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:44692 10 6438 1 2025-07-16 18:53:04.987 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:53400 10 6438 1 2025-07-16 18:54:08.773 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-16 18:54:08.916 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-16 18:54:08.735 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-16 18:54:08.692 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-16 18:54:08.579 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-16 18:54:05.398 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46710 10 6438 1 2025-07-16 18:50:57.469 00:05:00.643 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-16 18:55:05.800 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:39020 10 6438 1 2025-07-16 18:56:06.203 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:47540 10 6438 1 2025-07-16 18:52:57.471 00:05:00.639 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-16 18:57:06.609 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60384 10 6438 1 2025-07-16 18:58:07.019 00:00:10.438 TCP 1.101.0.1:3000 -> 23.104.0.1:32946 12 10350 1 Summary: total flows: 140, total bytes: 423986, total packets: 1024, avg bps: 921, avg pps: 0, avg bpp: 414 Time window: 2025-07-16 17:56:57 - 2025-07-16 18:58:17 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0036s User: 0.0009s Wall: 0.0033s flows/second: 42696.3 Runtime: 0.0033s