Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-07-18 09:58:47.729 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:49700 10 6438 1 2025-07-18 09:54:58.383 00:05:00.681 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-18 09:59:55.862 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 09:59:55.847 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 09:59:55.768 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-18 09:59:55.930 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-18 09:59:56.118 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-18 09:59:48.146 00:00:10.343 TCP 1.101.0.1:3000 -> 23.104.0.1:38958 10 6438 1 2025-07-18 10:00:48.536 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:50000 10 6438 1 2025-07-18 09:57:58.388 00:05:00.673 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-18 10:01:48.941 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:55010 10 6438 1 2025-07-18 10:02:49.358 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57612 10 6438 1 2025-07-18 10:03:49.758 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:35638 10 6438 1 2025-07-18 10:04:55.972 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 10:04:56.055 00:00:00.035 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-18 10:00:58.387 00:05:00.682 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-18 10:04:56.122 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-18 10:04:56.157 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 10:04:50.189 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:32894 10 6438 1 2025-07-18 10:04:56.187 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-18 10:05:50.593 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:46656 10 6438 1 2025-07-18 10:06:51.000 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58714 10 6438 1 2025-07-18 10:03:58.392 00:05:00.675 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-18 10:07:51.403 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:54052 11 6478 1 2025-07-18 10:08:51.766 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:37450 10 6438 1 2025-07-18 10:09:55.965 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 10:09:55.951 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-18 10:09:56.049 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-18 10:09:56.186 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-18 10:09:56.146 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 10:09:52.180 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57628 10 6438 1 2025-07-18 10:06:58.389 00:05:00.683 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-18 10:10:52.583 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:36570 10 6438 1 2025-07-18 10:11:52.987 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43570 10 6438 1 2025-07-18 10:12:53.391 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:36018 10 6438 1 2025-07-18 10:09:58.392 00:05:00.678 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-18 10:13:53.794 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57460 10 6438 1 2025-07-18 10:14:56.386 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-18 10:14:56.185 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-18 10:14:56.360 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 10:14:56.302 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 10:14:56.190 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-18 10:14:54.209 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:41456 10 6438 1 2025-07-18 10:15:54.623 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:35070 10 6438 1 2025-07-18 10:12:58.395 00:05:00.682 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-18 10:16:55.025 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51748 10 6438 1 2025-07-18 10:17:55.429 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:33526 10 6438 1 2025-07-18 10:18:55.835 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:45146 10 6438 1 2025-07-18 10:15:58.398 00:05:00.676 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-18 10:19:56.583 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-18 10:19:56.548 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-18 10:19:56.088 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 10:19:56.501 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 10:19:56.496 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-18 10:19:56.251 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:33466 10 6438 1 2025-07-18 10:20:56.651 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:34078 10 6438 1 2025-07-18 10:21:57.094 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:42508 10 6438 1 2025-07-18 10:18:58.396 00:05:00.682 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-18 10:22:57.505 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:44726 10 6438 1 2025-07-18 10:23:57.910 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:52390 10 6438 1 2025-07-18 10:24:56.496 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 10:24:56.408 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-18 10:24:56.505 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-18 10:24:56.245 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 10:24:56.580 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-18 10:24:58.276 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45582 10 6438 1 2025-07-18 10:21:58.400 00:05:00.676 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-18 10:25:58.682 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:50528 10 6438 1 2025-07-18 10:26:59.037 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55404 10 6438 1 2025-07-18 10:27:59.438 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:36856 10 6438 1 2025-07-18 10:24:58.397 00:05:00.681 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-18 10:28:59.836 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:38784 10 6438 1 2025-07-18 10:29:56.496 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-18 10:29:56.742 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-18 10:29:56.334 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 10:29:56.413 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 10:29:56.517 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-18 10:30:00.266 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:44098 10 6438 1 2025-07-18 10:31:00.634 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:47816 10 6438 1 2025-07-18 10:27:58.400 00:05:00.676 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-18 10:32:01.031 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46624 10 6438 1 2025-07-18 10:33:01.433 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:60668 10 6438 1 2025-07-18 10:34:01.836 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:42198 10 6438 1 2025-07-18 10:34:56.755 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-18 10:34:56.533 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 10:34:56.684 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 10:34:56.678 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-18 10:30:58.399 00:05:00.680 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-18 10:34:56.766 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-18 10:35:02.268 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:57216 10 6438 1 2025-07-18 10:36:02.640 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:35456 10 6438 1 2025-07-18 10:37:03.063 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:52100 10 6438 1 2025-07-18 10:33:58.401 00:05:00.676 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-18 10:38:03.464 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:56752 10 6438 1 2025-07-18 10:39:03.829 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:58594 10 6438 1 2025-07-18 10:39:56.650 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-18 10:39:56.699 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 10:39:56.720 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 10:39:56.766 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-18 10:39:56.803 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-18 10:40:04.199 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:45822 10 6438 1 2025-07-18 10:36:58.400 00:05:00.681 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-18 10:41:04.559 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:39634 10 6438 1 2025-07-18 10:42:04.961 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:57838 10 6438 1 2025-07-18 10:43:05.361 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:34570 10 6438 1 2025-07-18 10:39:58.402 00:05:00.676 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-18 10:44:05.720 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:49296 10 6438 1 2025-07-18 10:44:56.890 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-18 10:44:57.054 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 10:44:57.200 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 10:44:57.138 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-18 10:44:57.284 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-18 10:45:06.131 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35328 10 6438 1 2025-07-18 10:46:06.540 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:36098 10 6438 1 2025-07-18 10:42:58.402 00:05:00.679 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-18 10:47:06.954 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:54598 10 6438 1 2025-07-18 10:48:07.363 00:00:10.441 TCP 1.101.0.1:3000 -> 23.104.0.1:36614 12 10352 1 2025-07-18 10:49:07.847 00:00:10.345 TCP 1.101.0.1:3000 -> 23.104.0.1:48730 10 6438 1 2025-07-18 10:49:56.802 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-18 10:49:56.803 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 10:49:56.804 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 10:49:56.805 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-18 10:45:58.404 00:05:00.675 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-18 10:49:56.887 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-18 10:50:08.234 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37846 10 6438 1 2025-07-18 10:51:08.636 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44708 10 6438 1 2025-07-18 10:52:09.059 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46648 10 6438 1 2025-07-18 10:48:58.403 00:05:00.680 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-18 10:53:09.460 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38116 10 6438 1 2025-07-18 10:54:09.862 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:44154 10 6438 1 2025-07-18 10:54:56.863 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-18 10:54:56.991 00:00:00.043 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 10:54:57.078 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 10:54:57.143 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-18 10:54:57.160 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-18 10:55:10.234 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:36672 10 6438 1 2025-07-18 10:51:58.408 00:05:00.673 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-18 10:56:10.631 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:43364 10 6438 1 2025-07-18 10:57:11.061 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:54448 10 6438 1 2025-07-18 10:58:11.472 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46688 10 6438 1 Summary: total flows: 140, total bytes: 420114, total packets: 1023, avg bps: 883, avg pps: 0, avg bpp: 410 Time window: 2025-07-18 09:54:58 - 2025-07-18 10:58:21 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0022s User: 0.0022s Wall: 0.0021s flows/second: 67078.2 Runtime: 0.0021s