Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-07-20 02:59:22.569 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:44468 10 6438 1 2025-07-20 02:58:59.339 00:01:00.613 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-07-20 03:00:22.940 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:60880 10 6438 1 2025-07-20 03:00:45.398 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-20 03:00:45.470 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-20 03:00:45.417 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 03:00:45.522 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 03:00:45.605 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-20 02:58:59.337 00:02:00.619 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-07-20 03:01:23.364 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44868 10 6438 1 2025-07-20 03:02:23.769 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:36142 10 6438 1 2025-07-20 03:01:59.337 00:01:00.619 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-07-20 03:03:24.182 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:46914 10 6438 1 2025-07-20 03:04:24.591 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45188 10 6438 1 2025-07-20 03:00:59.340 00:04:00.614 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-07-20 03:05:25.009 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:44832 10 6438 1 2025-07-20 03:05:45.667 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-20 03:05:45.667 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-20 03:05:45.507 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 03:05:45.793 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 03:05:45.875 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-20 03:03:59.338 00:02:00.619 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-07-20 03:06:25.410 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57802 10 6438 1 2025-07-20 03:07:25.816 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59006 10 6438 1 2025-07-20 03:06:59.340 00:01:00.618 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-07-20 03:08:26.219 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:43130 10 6438 1 2025-07-20 03:09:26.577 00:00:10.867 TCP 1.101.0.1:3000 -> 23.104.0.1:53798 10 6438 1 2025-07-20 03:05:59.342 00:04:00.613 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-07-20 03:10:27.487 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38138 10 6438 1 2025-07-20 03:10:45.570 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 03:10:45.439 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 03:10:45.437 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-20 03:10:45.509 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-20 03:10:45.521 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-20 03:08:59.339 00:02:00.618 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-07-20 03:11:27.891 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:50476 10 6438 1 2025-07-20 03:10:59.342 00:01:00.613 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-07-20 03:12:28.307 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:60966 10 6438 1 2025-07-20 03:11:59.340 00:01:00.619 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-07-20 03:13:28.671 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:48540 10 6438 1 2025-07-20 03:14:29.104 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:49000 10 6438 1 2025-07-20 03:12:59.352 00:02:00.605 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-07-20 03:15:29.520 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:40190 10 6438 1 2025-07-20 03:15:45.733 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-20 03:15:45.483 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-20 03:15:45.660 00:00:00.026 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 03:15:45.494 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 03:15:45.575 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-20 03:13:59.345 00:02:00.616 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-07-20 03:16:29.932 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:33738 10 6438 1 2025-07-20 03:15:59.349 00:01:00.611 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-07-20 03:17:30.358 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50324 10 6438 1 2025-07-20 03:16:59.346 00:01:00.616 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-07-20 03:18:30.769 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:56014 10 6438 1 2025-07-20 03:19:31.140 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:56640 10 6438 1 2025-07-20 03:17:59.348 00:02:00.611 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-07-20 03:20:31.546 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:37276 10 6438 1 2025-07-20 03:20:45.724 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-20 03:20:45.733 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-20 03:20:45.737 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-20 03:20:45.403 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 03:20:45.641 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 03:21:31.959 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52916 10 6438 1 2025-07-20 03:20:59.348 00:01:00.611 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-07-20 03:22:32.359 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:50778 10 6438 1 2025-07-20 03:18:59.347 00:04:00.616 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-07-20 03:23:32.760 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:50526 10 6438 1 2025-07-20 03:24:33.170 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:33214 10 6438 1 2025-07-20 03:22:59.350 00:02:00.611 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-07-20 03:25:33.572 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47092 10 6438 1 2025-07-20 03:25:45.899 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-20 03:25:45.892 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-20 03:25:45.983 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-20 03:25:45.628 00:00:00.020 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 03:25:45.817 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 03:26:33.972 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:51610 10 6438 1 2025-07-20 03:25:59.349 00:01:00.612 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-07-20 03:27:34.384 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:38872 10 6438 1 2025-07-20 03:23:59.346 00:04:00.617 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-07-20 03:28:34.800 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54744 10 6438 1 2025-07-20 03:29:35.223 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49552 10 6438 1 2025-07-20 03:28:59.348 00:01:00.616 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-07-20 03:27:59.349 00:02:00.612 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-07-20 03:30:45.838 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-20 03:30:35.620 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:37232 10 6438 1 2025-07-20 03:30:45.734 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-20 03:30:45.785 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 03:30:46.065 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 03:30:46.148 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-20 03:31:35.982 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:38616 10 6438 1 2025-07-20 03:30:59.351 00:01:00.610 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-07-20 03:32:36.338 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:57478 10 6438 1 2025-07-20 03:30:59.349 00:02:00.615 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-07-20 03:33:36.703 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:37048 10 6438 1 2025-07-20 03:34:37.109 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:53140 10 6438 1 2025-07-20 03:33:59.353 00:01:00.613 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-07-20 03:35:46.206 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-20 03:35:46.206 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-20 03:35:45.914 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 03:35:37.523 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47160 10 6438 1 2025-07-20 03:35:45.998 00:00:00.040 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 03:35:46.082 00:00:00.040 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-20 03:36:37.924 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60092 10 6438 1 2025-07-20 03:32:59.353 00:04:00.610 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-07-20 03:37:38.323 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:52664 10 6438 1 2025-07-20 03:35:59.352 00:02:00.613 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-07-20 03:38:38.724 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:52336 10 6438 1 2025-07-20 03:37:59.356 00:01:00.608 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-07-20 03:39:39.139 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51260 10 6438 1 2025-07-20 03:38:59.352 00:01:00.614 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-07-20 03:40:46.113 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-20 03:40:46.118 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-20 03:40:45.971 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 03:40:39.544 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:51200 10 6438 1 2025-07-20 03:40:46.185 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 03:40:46.268 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-20 03:41:39.960 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:53014 10 6438 1 2025-07-20 03:39:59.356 00:02:00.609 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-07-20 03:42:40.333 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:57460 10 6438 1 2025-07-20 03:40:59.354 00:02:00.613 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-07-20 03:43:40.751 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:35368 10 6438 1 2025-07-20 03:42:59.359 00:01:00.606 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-07-20 03:44:41.178 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:55686 10 6438 1 2025-07-20 03:43:59.356 00:01:00.611 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-07-20 03:45:46.428 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-20 03:45:46.481 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-20 03:45:46.448 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 03:45:46.395 00:00:00.027 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 03:45:46.478 00:00:00.027 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-20 03:45:41.580 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:52014 10 6438 1 2025-07-20 03:46:41.947 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43608 10 6438 1 2025-07-20 03:44:59.360 00:02:00.606 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-07-20 03:47:42.350 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:57400 10 6438 1 2025-07-20 03:45:59.356 00:02:00.611 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-07-20 03:48:42.718 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:55920 10 6438 1 2025-07-20 03:47:59.362 00:01:00.605 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-07-20 03:49:43.124 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42968 10 6438 1 2025-07-20 03:48:59.358 00:01:00.610 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-07-20 03:50:46.282 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-20 03:50:46.282 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-20 03:50:46.188 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-20 03:50:45.966 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 03:50:46.200 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 03:50:43.530 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54502 10 6438 1 2025-07-20 03:51:43.939 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:45808 10 6438 1 2025-07-20 03:49:59.362 00:02:00.605 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-07-20 03:52:44.365 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:41420 10 6438 1 2025-07-20 03:52:59.362 00:01:00.619 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-07-20 03:53:44.730 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:54346 10 6438 1 2025-07-20 03:50:59.358 00:04:00.624 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-07-20 03:54:45.137 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:60092 10 6438 1 2025-07-20 03:55:46.407 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 03:55:46.504 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-20 03:55:46.594 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-20 03:55:46.135 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 03:55:46.489 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-20 03:55:45.542 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:36996 10 6438 1 2025-07-20 03:54:59.361 00:02:00.621 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-07-20 03:56:45.906 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:40878 12 6542 1 2025-07-20 03:57:46.308 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:33780 10 6438 1 Summary: total flows: 160, total bytes: 409334, total packets: 1004, avg bps: 925, avg pps: 0, avg bpp: 407 Time window: 2025-07-20 02:58:59 - 2025-07-20 03:57:56 Total flows processed: 160, passed: 160, Blocks skipped: 0, Bytes read: 16704 Sys: 0.0037s User: 0.0009s Wall: 0.0024s flows/second: 67398.7 Runtime: 0.0024s