Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-07-18 06:59:35.411 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56376 10 6438 1 2025-07-18 06:59:52.295 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-18 06:59:52.427 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-18 06:59:52.155 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 06:59:52.214 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 06:59:52.306 00:00:00.030 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-18 07:00:35.820 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:32994 10 6438 1 2025-07-18 06:55:58.318 00:06:00.655 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-07-18 07:01:36.225 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:39636 10 6438 1 2025-07-18 07:02:36.642 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:47816 10 6438 1 2025-07-18 06:57:58.321 00:06:00.650 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-07-18 07:03:37.003 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:55566 10 6438 1 2025-07-18 07:04:37.411 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:33628 10 6438 1 2025-07-18 07:04:52.491 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-18 07:04:52.379 00:00:00.026 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 07:04:52.561 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 07:04:52.560 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-18 07:04:52.643 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-18 07:05:37.822 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59586 10 6438 1 2025-07-18 07:06:38.225 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39116 10 6438 1 2025-07-18 07:07:38.630 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:40000 10 6438 1 2025-07-18 07:02:58.320 00:06:00.657 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-07-18 07:08:39.029 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48076 10 6438 1 2025-07-18 07:09:39.430 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:51848 10 6438 1 2025-07-18 07:09:52.709 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-18 07:09:52.533 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-18 07:09:52.275 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 07:09:52.626 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 07:09:52.461 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-18 07:04:58.322 00:06:00.652 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-07-18 07:10:39.837 00:00:10.350 TCP 1.101.0.1:3000 -> 23.104.0.1:57532 10 6438 1 2025-07-18 07:11:40.228 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:60698 10 6438 1 2025-07-18 07:12:40.638 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34702 10 6438 1 2025-07-18 07:13:41.038 00:00:10.437 TCP 1.101.0.1:3000 -> 23.104.0.1:50966 12 10352 1 2025-07-18 07:14:52.664 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-18 07:14:41.517 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:40536 10 6438 1 2025-07-18 07:14:52.618 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 07:14:52.508 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 07:14:52.756 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-18 07:14:52.590 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-18 07:09:58.321 00:06:00.657 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-07-18 07:15:41.919 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:53062 10 6438 1 2025-07-18 07:16:42.289 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:57626 10 6438 1 2025-07-18 07:11:58.324 00:06:00.654 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-07-18 07:17:42.665 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60132 10 6438 1 2025-07-18 07:18:43.088 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52534 10 6438 1 2025-07-18 07:19:52.891 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-18 07:19:43.490 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:60628 10 6438 1 2025-07-18 07:19:52.943 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-18 07:19:52.811 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 07:19:52.809 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 07:19:52.884 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-18 07:20:43.853 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:38286 10 6438 1 2025-07-18 07:21:44.269 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:55270 10 6438 1 2025-07-18 07:16:58.322 00:06:00.659 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-07-18 07:22:44.680 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41614 10 6438 1 2025-07-18 07:23:45.108 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58258 10 6438 1 2025-07-18 07:18:58.325 00:06:00.657 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-07-18 07:24:52.914 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-18 07:24:45.512 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47696 10 6438 1 2025-07-18 07:24:52.829 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-18 07:24:52.660 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 07:24:52.832 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 07:24:52.744 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-18 07:25:45.911 00:01:10.738 TCP 1.101.0.1:3000 -> 23.104.0.1:54004 20 12876 1 2025-07-18 07:27:46.699 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:51646 10 6438 1 2025-07-18 07:28:47.062 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36408 10 6438 1 2025-07-18 07:23:58.323 00:06:00.659 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-07-18 07:29:53.104 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-18 07:29:52.551 00:00:00.027 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 07:29:52.996 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 07:29:52.993 00:00:00.033 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-18 07:29:53.079 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-18 07:29:47.476 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35956 10 6438 1 2025-07-18 07:25:58.326 00:06:00.654 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-07-18 07:30:47.882 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53220 10 6438 1 2025-07-18 07:31:48.287 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:56138 10 6438 1 2025-07-18 07:32:48.708 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:33626 10 6438 1 2025-07-18 07:33:49.109 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:42550 10 6438 1 2025-07-18 07:34:53.196 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-18 07:34:52.843 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 07:34:53.199 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 07:34:53.044 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-18 07:34:53.281 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-18 07:34:49.508 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50542 10 6438 1 2025-07-18 07:35:49.916 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56958 10 6438 1 2025-07-18 07:30:58.326 00:06:00.658 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-07-18 07:36:50.323 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48386 10 6438 1 2025-07-18 07:32:58.329 00:06:00.652 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-07-18 07:37:50.730 00:00:10.445 TCP 1.101.0.1:3000 -> 23.104.0.1:40828 12 10350 1 2025-07-18 07:38:51.222 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59658 10 6438 1 2025-07-18 07:39:53.088 00:00:00.048 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-18 07:39:52.887 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-18 07:39:53.064 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 07:39:53.006 00:00:00.047 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 07:39:53.186 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-18 07:39:51.627 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:47168 10 6438 1 2025-07-18 07:40:51.991 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52732 10 6438 1 2025-07-18 07:41:52.401 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:47016 10 6438 1 2025-07-18 07:37:58.329 00:06:00.657 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-07-18 07:42:52.821 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:39430 10 6438 1 2025-07-18 07:43:53.222 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47858 10 6438 1 2025-07-18 07:44:53.268 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-18 07:44:53.192 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-18 07:44:53.206 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 07:44:53.187 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 07:44:53.351 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-18 07:39:58.333 00:06:00.651 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-07-18 07:44:53.625 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56028 10 6438 1 2025-07-18 07:45:54.028 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:53850 10 6438 1 2025-07-18 07:46:54.428 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39196 10 6438 1 2025-07-18 07:47:54.834 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:51948 10 6438 1 2025-07-18 07:48:55.258 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:43814 10 6438 1 2025-07-18 07:49:53.302 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-18 07:49:53.210 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 07:49:53.208 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 07:49:53.218 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-18 07:49:53.291 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-18 07:44:58.334 00:06:00.655 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-07-18 07:49:55.662 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:52074 10 6438 1 2025-07-18 07:50:56.100 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:39512 10 6438 1 2025-07-18 07:46:58.336 00:06:00.649 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-07-18 07:51:56.496 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:60772 10 6438 1 2025-07-18 07:52:56.918 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39010 10 6438 1 2025-07-18 07:53:57.321 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46228 10 6438 1 2025-07-18 07:54:53.490 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-18 07:54:53.400 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-18 07:54:53.365 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 07:54:53.407 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 07:54:53.400 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-18 07:54:57.722 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:47510 10 6438 1 2025-07-18 07:55:58.129 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:51260 10 6438 1 2025-07-18 07:51:58.334 00:06:00.655 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-07-18 07:56:58.529 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:45062 10 6438 1 2025-07-18 07:57:58.936 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:56380 10 6438 1 Summary: total flows: 135, total bytes: 417425, total packets: 1012, avg bps: 895, avg pps: 0, avg bpp: 412 Time window: 2025-07-18 06:55:58 - 2025-07-18 07:58:09 Total flows processed: 135, passed: 135, Blocks skipped: 0, Bytes read: 14104 Sys: 0.0019s User: 0.0019s Wall: 0.0024s flows/second: 57322.4 Runtime: 0.0024s