Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-07-20 22:59:24.176 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58066 10 6438 1 2025-07-20 23:00:24.577 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:59378 10 6438 1 2025-07-20 22:56:59.832 00:05:00.585 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-20 22:56:59.835 00:05:00.580 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-20 23:01:09.551 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-20 23:01:09.428 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-20 23:01:09.465 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-20 23:01:08.978 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 23:01:09.468 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 23:01:24.977 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:42466 10 6438 1 2025-07-20 23:02:25.341 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49214 10 6438 1 2025-07-20 23:03:25.745 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54066 10 6438 1 2025-07-20 23:04:26.155 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47234 10 6438 1 2025-07-20 23:05:26.557 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:55322 10 6438 1 2025-07-20 23:06:09.612 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-20 23:06:09.529 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 23:06:09.486 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-20 23:06:09.358 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-20 23:06:09.607 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 23:06:26.959 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:50650 10 6438 1 2025-07-20 23:02:59.836 00:05:00.580 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-20 23:02:59.834 00:05:00.585 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-20 23:07:27.383 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:35542 10 6438 1 2025-07-20 23:08:27.785 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:50518 10 6438 1 2025-07-20 23:09:28.145 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:43684 10 6438 1 2025-07-20 23:10:28.557 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:47936 10 6438 1 2025-07-20 23:11:09.653 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-20 23:11:09.508 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-20 23:11:09.616 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 23:11:09.570 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 23:11:09.633 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-20 23:11:28.966 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54036 10 6438 1 2025-07-20 23:12:29.375 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:42782 10 6438 1 2025-07-20 23:08:59.836 00:05:00.583 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-20 23:08:59.839 00:05:00.578 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-20 23:13:29.775 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60170 10 6438 1 2025-07-20 23:14:30.174 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:51492 10 6438 1 2025-07-20 23:15:30.594 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51186 10 6438 1 2025-07-20 23:16:09.762 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-20 23:16:09.738 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-20 23:16:09.672 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-20 23:16:09.542 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 23:16:09.678 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 23:16:30.998 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:45804 10 6438 1 2025-07-20 23:17:31.408 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46856 10 6438 1 2025-07-20 23:18:31.807 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:49628 10 6438 1 2025-07-20 23:14:59.838 00:05:00.583 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-20 23:14:59.840 00:05:00.578 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-20 23:19:32.222 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51468 10 6438 1 2025-07-20 23:20:32.625 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47578 10 6438 1 2025-07-20 23:21:09.849 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-20 23:21:09.749 00:00:00.027 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 23:21:09.885 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 23:21:09.526 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-20 23:21:09.969 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-20 23:21:33.030 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48296 10 6438 1 2025-07-20 23:22:33.432 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60118 10 6438 1 2025-07-20 23:23:33.845 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:42602 10 6438 1 2025-07-20 23:24:34.266 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:45742 10 6438 1 2025-07-20 23:20:59.854 00:05:00.567 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-20 23:20:59.851 00:05:00.573 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-20 23:25:34.666 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:44584 10 6438 1 2025-07-20 23:26:09.944 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-20 23:26:09.709 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 23:26:09.860 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 23:26:10.011 00:00:00.039 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-20 23:26:10.048 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-20 23:26:35.102 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:46780 10 6438 1 2025-07-20 23:27:35.507 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:43142 10 6438 1 2025-07-20 23:28:35.868 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:50118 10 6438 1 2025-07-20 23:29:36.233 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:43278 10 6438 1 2025-07-20 23:30:36.632 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:36752 10 6438 1 2025-07-20 23:26:59.851 00:05:00.574 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-20 23:26:59.854 00:05:00.568 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-20 23:31:09.905 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-20 23:31:09.840 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-20 23:31:09.825 00:00:00.034 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-20 23:31:09.823 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 23:31:10.083 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 23:31:37.035 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:34560 10 6438 1 2025-07-20 23:32:37.437 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:43762 10 6438 1 2025-07-20 23:33:37.835 00:00:10.451 TCP 1.101.0.1:3000 -> 23.104.0.1:42060 12 10350 1 2025-07-20 23:34:38.326 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47448 10 6438 1 2025-07-20 23:35:38.730 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:45762 10 6438 1 2025-07-20 23:36:09.882 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-20 23:36:09.882 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-20 23:36:09.793 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 23:36:09.985 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 23:36:10.067 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-20 23:36:39.143 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54488 10 6438 1 2025-07-20 23:32:59.856 00:05:00.568 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-20 23:32:59.853 00:05:00.573 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-20 23:37:39.544 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:56570 10 6438 1 2025-07-20 23:38:39.967 00:00:10.441 TCP 1.101.0.1:3000 -> 23.104.0.1:37184 12 10352 1 2025-07-20 23:39:40.448 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:40348 10 6438 1 2025-07-20 23:40:40.847 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:53684 10 6438 1 2025-07-20 23:41:10.852 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-20 23:41:10.320 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-20 23:41:10.356 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 23:41:10.318 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 23:41:10.401 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-20 23:41:41.285 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:56848 10 6438 1 2025-07-20 23:42:41.697 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:47938 10 6438 1 2025-07-20 23:38:59.863 00:05:00.567 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-20 23:38:59.865 00:05:00.562 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-20 23:43:42.120 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:57446 10 6438 1 2025-07-20 23:44:42.522 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:46562 10 6438 1 2025-07-20 23:45:42.924 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:44370 10 6438 1 2025-07-20 23:46:10.296 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-20 23:46:09.955 00:00:00.031 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-20 23:46:10.349 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-20 23:46:10.179 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 23:46:10.214 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 23:46:43.336 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:45184 10 6438 1 2025-07-20 23:47:43.747 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:58244 10 6438 1 2025-07-20 23:48:44.124 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57958 10 6438 1 2025-07-20 23:44:59.864 00:05:00.566 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-20 23:44:59.867 00:05:00.561 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-20 23:49:44.531 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56414 10 6438 1 2025-07-20 23:50:44.932 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:46482 10 6438 1 2025-07-20 23:51:10.378 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-20 23:51:10.372 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-20 23:51:10.249 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 23:51:10.315 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 23:51:10.396 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-20 23:51:45.311 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48064 10 6438 1 2025-07-20 23:52:45.723 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:36500 10 6438 1 2025-07-20 23:53:46.132 00:00:10.590 TCP 1.101.0.1:3000 -> 23.104.0.1:59872 10 6438 1 2025-07-20 23:54:46.765 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:42338 10 6438 1 2025-07-20 23:50:59.865 00:05:00.566 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-20 23:50:59.867 00:05:00.562 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-20 23:55:47.184 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51654 10 6438 1 2025-07-20 23:56:10.436 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-20 23:56:10.439 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-20 23:56:10.541 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 23:56:10.504 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-20 23:56:10.586 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-20 23:56:47.586 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:33942 10 6438 1 2025-07-20 23:57:47.993 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:32874 10 6438 1 Summary: total flows: 139, total bytes: 417548, total packets: 1014, avg bps: 913, avg pps: 0, avg bpp: 411 Time window: 2025-07-20 22:56:59 - 2025-07-20 23:57:58 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0009s User: 0.0027s Wall: 0.0017s flows/second: 84031.2 Runtime: 0.0017s