Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-07-20 15:59:36.062 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:51936 10 6438 1 2025-07-20 16:00:36.422 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57574 10 6438 1 2025-07-20 16:01:00.892 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-20 16:01:00.809 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 16:01:00.952 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-20 16:01:01.026 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 16:01:01.109 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-20 16:01:36.833 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:59998 10 6438 1 2025-07-20 15:57:59.650 00:05:00.637 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-20 16:02:37.230 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:49244 10 6438 1 2025-07-20 15:58:59.649 00:05:00.635 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-20 16:03:37.636 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:38722 10 6438 1 2025-07-20 16:04:38.007 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:44248 10 6438 1 2025-07-20 16:05:38.408 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:57540 10 6438 1 2025-07-20 16:06:00.875 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 16:06:00.947 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 16:06:00.947 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-20 16:06:01.029 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-20 16:06:01.007 00:00:00.046 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-20 16:06:38.815 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45530 10 6438 1 2025-07-20 16:07:39.219 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41616 10 6438 1 2025-07-20 16:03:59.650 00:05:00.640 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-20 16:08:39.625 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55068 10 6438 1 2025-07-20 16:04:59.653 00:05:00.635 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-20 16:09:40.034 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38668 10 6438 1 2025-07-20 16:10:40.437 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58826 10 6438 1 2025-07-20 16:11:00.871 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 16:11:01.133 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-20 16:11:01.266 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 16:11:01.214 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-20 16:11:01.348 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-20 16:11:40.840 00:00:10.349 TCP 1.101.0.1:3000 -> 23.104.0.1:35238 10 6438 1 2025-07-20 16:12:41.227 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:51446 10 6438 1 2025-07-20 16:13:41.638 00:00:10.518 TCP 1.101.0.1:3000 -> 23.104.0.1:45522 13 10402 1 2025-07-20 16:09:59.651 00:05:00.640 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-20 16:14:42.193 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:44588 10 6438 1 2025-07-20 16:10:59.654 00:05:00.635 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-20 16:15:42.553 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40752 10 6438 1 2025-07-20 16:16:01.395 00:00:00.028 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-20 16:16:01.005 00:00:00.045 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 16:16:01.245 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 16:16:01.312 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-20 16:16:01.328 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-20 16:16:42.957 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:35534 10 6438 1 2025-07-20 16:17:43.335 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:39232 10 6438 1 2025-07-20 16:18:43.700 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46664 10 6438 1 2025-07-20 16:19:44.109 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51082 10 6438 1 2025-07-20 16:15:59.655 00:05:00.640 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-20 16:20:44.512 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:43306 10 6438 1 2025-07-20 16:16:59.657 00:05:00.633 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-20 16:21:01.374 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-20 16:21:01.456 00:00:00.035 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-20 16:21:01.343 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 16:21:01.292 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 16:21:01.296 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-20 16:21:44.915 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:59334 10 6438 1 2025-07-20 16:22:45.315 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50004 12 6542 1 2025-07-20 16:23:45.714 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:45796 10 6438 1 2025-07-20 16:24:46.114 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:55692 10 6438 1 2025-07-20 16:25:46.531 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:59312 10 6438 1 2025-07-20 16:21:59.656 00:05:00.639 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-20 16:26:01.381 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-20 16:26:01.421 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 16:26:01.597 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 16:26:01.549 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-20 16:26:01.680 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-20 16:22:59.658 00:05:00.634 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-20 16:26:46.900 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54382 10 6438 1 2025-07-20 16:27:47.305 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58584 10 6438 1 2025-07-20 16:28:47.710 00:00:10.441 TCP 1.101.0.1:3000 -> 23.104.0.1:51064 12 10352 1 2025-07-20 16:29:48.190 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51864 10 6438 1 2025-07-20 16:30:48.594 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57768 10 6438 1 2025-07-20 16:31:01.501 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-20 16:31:01.510 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 16:31:01.397 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 16:31:01.560 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-20 16:31:01.479 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-20 16:27:59.659 00:05:00.636 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-20 16:31:48.994 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:37984 10 6438 1 2025-07-20 16:32:49.359 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34830 10 6438 1 2025-07-20 16:28:59.660 00:05:00.632 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-20 16:33:49.765 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:45934 10 6438 1 2025-07-20 16:34:50.171 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34162 10 6438 1 2025-07-20 16:35:50.579 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:56392 10 6438 1 2025-07-20 16:36:01.541 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-20 16:36:01.471 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 16:36:01.525 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 16:36:01.750 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-20 16:36:01.607 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-20 16:36:50.941 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:48114 10 6438 1 2025-07-20 16:37:51.351 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43804 10 6438 1 2025-07-20 16:33:59.660 00:05:00.636 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-20 16:34:59.664 00:05:00.631 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-20 16:38:51.753 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:46356 10 6438 1 2025-07-20 16:39:52.121 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55228 10 6438 1 2025-07-20 16:41:01.755 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-20 16:40:52.521 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:57062 10 6438 1 2025-07-20 16:41:01.590 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-20 16:41:01.503 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 16:41:01.673 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 16:41:01.797 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-20 16:41:52.883 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56634 10 6438 1 2025-07-20 16:42:53.285 00:00:10.418 TCP 1.101.0.1:3000 -> 23.104.0.1:35174 11 6490 1 2025-07-20 16:39:59.664 00:05:00.634 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-20 16:43:53.744 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:49146 10 6438 1 2025-07-20 16:40:59.665 00:05:00.629 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-20 16:44:54.145 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:37768 10 6438 1 2025-07-20 16:45:54.555 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:37240 10 6438 1 2025-07-20 16:46:01.943 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-20 16:46:01.862 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 16:46:01.894 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 16:46:01.949 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-20 16:46:01.975 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-20 16:46:54.954 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:59892 10 6438 1 2025-07-20 16:47:55.358 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59374 10 6438 1 2025-07-20 16:48:55.772 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:39140 10 6438 1 2025-07-20 16:45:59.663 00:05:00.635 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-20 16:49:56.139 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:37720 10 6438 1 2025-07-20 16:46:59.666 00:05:00.631 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-20 16:51:01.924 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-20 16:51:01.831 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-20 16:51:01.771 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 16:51:01.841 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 16:51:01.900 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-20 16:50:56.503 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:43228 10 6438 1 2025-07-20 16:51:56.899 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:35050 10 6438 1 2025-07-20 16:52:57.304 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:53714 10 6438 1 2025-07-20 16:53:57.705 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:36522 10 6438 1 2025-07-20 16:54:58.116 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:46034 10 6438 1 2025-07-20 16:51:59.666 00:05:00.635 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-20 16:56:02.140 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-20 16:56:02.065 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 16:56:02.092 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 16:56:02.140 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-20 16:56:02.177 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-20 16:55:58.528 00:00:10.395 TCP 1.101.0.1:3000 -> 23.104.0.1:48268 10 6438 1 2025-07-20 16:52:59.668 00:05:00.630 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-20 16:56:58.961 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:46966 10 6438 1 2025-07-20 16:57:59.366 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55964 10 6438 1 Summary: total flows: 139, total bytes: 417756, total packets: 1018, avg bps: 925, avg pps: 0, avg bpp: 410 Time window: 2025-07-20 15:57:59 - 2025-07-20 16:58:09 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0011s User: 0.0033s Wall: 0.0020s flows/second: 69637.9 Runtime: 0.0020s