Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-07-17 11:58:57.038 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44952 12 6542 1 2025-07-17 11:59:29.622 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-17 11:59:29.339 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-17 11:59:29.398 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 11:59:29.541 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 11:59:29.452 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-17 11:59:57.447 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55824 10 6438 1 2025-07-17 11:56:57.857 00:05:00.693 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-17 12:00:57.847 00:00:10.397 TCP 1.101.0.1:3000 -> 23.104.0.1:43518 10 6438 1 2025-07-17 12:01:58.281 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33280 10 6438 1 2025-07-17 11:58:57.860 00:05:00.687 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-17 12:02:58.682 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:45406 10 6438 1 2025-07-17 12:03:59.112 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42216 10 6438 1 2025-07-17 12:04:29.610 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-17 12:04:29.631 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-17 12:04:29.295 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 12:04:29.528 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 12:04:29.443 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-17 12:04:59.515 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35358 10 6438 1 2025-07-17 12:05:59.914 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:42894 10 6438 1 2025-07-17 12:02:57.861 00:05:00.690 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-17 12:07:00.282 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48106 10 6438 1 2025-07-17 12:08:00.685 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:44540 10 6438 1 2025-07-17 12:04:57.863 00:05:00.687 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-17 12:09:01.117 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:45858 10 6438 1 2025-07-17 12:09:29.702 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-17 12:09:29.605 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-17 12:09:29.552 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 12:09:29.620 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 12:09:29.770 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-17 12:10:01.526 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42854 10 6438 1 2025-07-17 12:11:01.933 00:00:10.346 TCP 1.101.0.1:3000 -> 23.104.0.1:56454 10 6438 1 2025-07-17 12:12:02.327 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:48736 10 6438 1 2025-07-17 12:08:57.862 00:05:00.692 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-17 12:13:02.729 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:59290 10 6438 1 2025-07-17 12:14:03.142 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:40770 10 6438 1 2025-07-17 12:14:29.743 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-17 12:14:29.802 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 12:14:29.746 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 12:14:29.747 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-17 12:14:29.829 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-17 12:10:57.865 00:05:00.687 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-17 12:15:03.546 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:50322 10 6438 1 2025-07-17 12:16:03.972 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:58328 10 6438 1 2025-07-17 12:17:04.347 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40234 10 6438 1 2025-07-17 12:18:04.756 00:00:10.414 TCP 1.101.0.1:3000 -> 23.104.0.1:41430 12 10350 1 2025-07-17 12:14:57.864 00:05:00.693 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-17 12:19:05.217 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59094 10 6438 1 2025-07-17 12:19:29.914 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-17 12:19:29.832 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-17 12:19:29.816 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 12:19:29.832 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 12:19:29.833 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-17 12:20:05.625 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:52358 10 6438 1 2025-07-17 12:16:57.866 00:05:00.688 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-17 12:21:06.039 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60646 10 6438 1 2025-07-17 12:22:06.440 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:54272 10 6438 1 2025-07-17 12:23:06.840 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:50786 10 6438 1 2025-07-17 12:24:07.276 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:35878 10 6438 1 2025-07-17 12:24:30.187 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-17 12:24:29.991 00:00:00.047 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-17 12:24:29.628 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 12:24:30.104 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 12:24:30.006 00:00:00.030 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-17 12:20:57.864 00:05:00.693 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-17 12:25:07.691 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:51738 10 6438 1 2025-07-17 12:26:08.110 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38440 10 6438 1 2025-07-17 12:22:57.871 00:05:00.684 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-17 12:27:08.515 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:37300 10 6438 1 2025-07-17 12:28:08.932 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:38378 10 6438 1 2025-07-17 12:29:09.352 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42718 10 6438 1 2025-07-17 12:29:29.934 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-17 12:29:30.058 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-17 12:29:29.937 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 12:29:29.851 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 12:29:29.950 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-17 12:30:09.758 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:49040 10 6438 1 2025-07-17 12:26:57.870 00:05:00.689 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-17 12:31:10.177 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:37722 10 6438 1 2025-07-17 12:32:10.582 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:37564 10 6438 1 2025-07-17 12:28:57.873 00:05:00.685 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-17 12:33:10.991 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:48288 10 6438 1 2025-07-17 12:34:11.398 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51628 10 6438 1 2025-07-17 12:34:29.968 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-17 12:34:29.879 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 12:34:29.887 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 12:34:30.186 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-17 12:34:29.996 00:00:00.044 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-17 12:35:11.799 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43786 10 6438 1 2025-07-17 12:36:12.203 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:55494 10 6438 1 2025-07-17 12:32:57.870 00:05:00.691 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-17 12:37:12.609 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:35220 10 6438 1 2025-07-17 12:38:12.969 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39686 10 6438 1 2025-07-17 12:34:57.875 00:05:00.685 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-17 12:39:13.373 00:00:10.412 TCP 1.101.0.1:3000 -> 23.104.0.1:42352 11 6490 1 2025-07-17 12:39:30.321 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 12:39:30.222 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-17 12:39:30.375 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-17 12:39:30.275 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 12:39:30.403 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-17 12:40:13.824 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45668 10 6438 1 2025-07-17 12:41:14.228 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45724 10 6438 1 2025-07-17 12:42:14.639 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50014 10 6438 1 2025-07-17 12:38:57.878 00:05:00.690 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-17 12:43:15.052 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:42740 10 6438 1 2025-07-17 12:44:30.244 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-17 12:44:15.460 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:42322 10 6438 1 2025-07-17 12:44:30.362 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-17 12:44:30.160 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 12:44:30.162 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 12:44:30.362 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-17 12:40:57.879 00:05:00.685 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-17 12:45:15.832 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:44988 10 6438 1 2025-07-17 12:46:16.204 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:45862 10 6438 1 2025-07-17 12:47:16.578 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36642 10 6438 1 2025-07-17 12:48:16.982 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:46256 10 6438 1 2025-07-17 12:44:57.878 00:05:00.689 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-17 12:49:30.470 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-17 12:49:30.387 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 12:49:30.443 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-17 12:49:17.353 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55210 10 6438 1 2025-07-17 12:49:30.277 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-17 12:49:30.287 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 12:50:17.756 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:41968 10 6438 1 2025-07-17 12:46:57.883 00:05:00.684 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-17 12:51:18.158 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38928 12 6542 1 2025-07-17 12:52:18.566 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:50594 10 6438 1 2025-07-17 12:53:18.972 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55282 10 6438 1 2025-07-17 12:54:30.396 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-17 12:54:30.725 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-17 12:54:19.376 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:52878 10 6438 1 2025-07-17 12:54:30.583 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 12:54:30.313 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 12:54:30.698 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-17 12:50:57.880 00:05:00.689 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-17 12:55:19.778 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:60262 10 6438 1 2025-07-17 12:56:20.195 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48990 10 6438 1 2025-07-17 12:52:57.883 00:05:00.684 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-17 12:57:20.598 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34322 10 6438 1 2025-07-17 12:58:21.002 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53726 10 6438 1 Summary: total flows: 140, total bytes: 420332, total packets: 1027, avg bps: 910, avg pps: 0, avg bpp: 409 Time window: 2025-07-17 11:56:57 - 2025-07-17 12:58:31 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0036s User: 0.0009s Wall: 0.0018s flows/second: 76668.3 Runtime: 0.0018s