Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-07-21 17:59:02.248 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36342 10 6438 1 2025-07-21 18:00:02.655 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58420 10 6438 1 2025-07-21 17:56:00.325 00:06:00.488 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-07-21 18:01:03.067 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:39540 10 6438 1 2025-07-21 18:01:32.312 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-21 18:01:32.117 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-21 18:01:32.138 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-21 18:01:32.263 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-21 18:01:32.344 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-21 18:02:03.476 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47704 10 6438 1 2025-07-21 17:58:00.329 00:06:00.484 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-07-21 18:03:03.879 00:00:10.442 TCP 1.101.0.1:3000 -> 23.104.0.1:41476 12 10350 1 2025-07-21 18:04:04.369 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:57680 10 6438 1 2025-07-21 18:05:04.726 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:34024 10 6438 1 2025-07-21 18:06:05.145 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:39700 10 6438 1 2025-07-21 18:06:32.481 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-21 18:06:32.216 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-21 18:06:32.421 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-21 18:06:32.329 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-21 18:06:32.504 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-21 18:07:05.549 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:47088 10 6438 1 2025-07-21 18:03:00.332 00:06:00.485 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-07-21 18:08:05.970 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:55762 10 6438 1 2025-07-21 18:09:06.379 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:35624 10 6438 1 2025-07-21 18:05:00.335 00:06:00.480 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-07-21 18:10:06.778 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:41084 10 6438 1 2025-07-21 18:11:07.190 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58752 10 6438 1 2025-07-21 18:11:32.629 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-21 18:11:32.373 00:00:00.030 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-21 18:11:32.580 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-21 18:11:32.282 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-21 18:11:32.546 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-21 18:12:07.593 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:49638 10 6438 1 2025-07-21 18:13:07.956 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:59344 10 6438 1 2025-07-21 18:14:08.365 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:47156 10 6438 1 2025-07-21 18:10:00.333 00:06:00.485 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-07-21 18:15:08.726 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:44444 12 6542 1 2025-07-21 18:16:09.137 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59256 10 6438 1 2025-07-21 18:16:32.741 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-21 18:16:32.683 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-21 18:16:32.745 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-21 18:16:32.317 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-21 18:16:32.826 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-21 18:12:00.336 00:06:00.480 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-07-21 18:17:09.540 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:54602 10 6438 1 2025-07-21 18:18:09.907 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:35746 10 6438 1 2025-07-21 18:19:10.280 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39132 10 6438 1 2025-07-21 18:20:10.680 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:55122 10 6438 1 2025-07-21 18:21:11.114 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39852 10 6438 1 2025-07-21 18:21:32.854 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-21 18:21:32.773 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-21 18:21:32.705 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-21 18:21:32.555 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-21 18:21:32.676 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-21 18:17:00.334 00:06:00.489 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-07-21 18:22:11.516 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:35498 10 6438 1 2025-07-21 18:23:11.927 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:37420 10 6438 1 2025-07-21 18:19:00.338 00:06:00.483 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-07-21 18:24:12.347 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:33538 10 6438 1 2025-07-21 18:25:12.756 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:47028 10 6438 1 2025-07-21 18:26:13.117 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43642 10 6438 1 2025-07-21 18:26:32.797 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-21 18:26:32.800 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-21 18:26:32.532 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-21 18:26:32.687 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-21 18:26:32.769 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-21 18:27:13.523 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45178 10 6438 1 2025-07-21 18:28:13.928 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:56888 10 6438 1 2025-07-21 18:24:00.338 00:06:00.487 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-07-21 18:29:14.349 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43722 10 6438 1 2025-07-21 18:30:14.766 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:39280 10 6438 1 2025-07-21 18:26:00.340 00:06:00.481 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-07-21 18:31:15.182 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56772 10 6438 1 2025-07-21 18:31:32.673 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-21 18:31:32.910 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-21 18:31:32.866 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-21 18:31:32.646 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-21 18:31:32.729 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-21 18:32:15.585 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33724 10 6438 1 2025-07-21 18:33:15.991 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:34732 10 6438 1 2025-07-21 18:34:16.350 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55906 10 6438 1 2025-07-21 18:35:16.762 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:52102 10 6438 1 2025-07-21 18:31:00.339 00:06:00.488 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-07-21 18:36:17.180 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:55232 10 6438 1 2025-07-21 18:36:33.143 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-21 18:36:33.061 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-21 18:36:32.896 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-21 18:36:32.717 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-21 18:36:33.061 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-21 18:37:17.591 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52990 10 6438 1 2025-07-21 18:33:00.342 00:06:00.483 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-07-21 18:38:17.992 00:00:10.354 TCP 1.101.0.1:3000 -> 23.104.0.1:56638 10 6438 1 2025-07-21 18:39:18.369 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:33336 10 6438 1 2025-07-21 18:40:18.734 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52856 10 6438 1 2025-07-21 18:41:19.136 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55316 10 6438 1 2025-07-21 18:41:33.224 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-21 18:41:32.932 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-21 18:41:33.011 00:00:00.040 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-21 18:41:33.315 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-21 18:41:33.399 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-21 18:42:19.539 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:55980 10 6438 1 2025-07-21 18:38:00.341 00:06:00.488 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-07-21 18:43:19.943 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:46184 10 6438 1 2025-07-21 18:44:20.360 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:41714 10 6438 1 2025-07-21 18:40:00.346 00:06:00.481 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-07-21 18:45:20.776 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:41432 10 6438 1 2025-07-21 18:46:33.394 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-21 18:46:33.340 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-21 18:46:33.394 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-21 18:46:21.140 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:41286 10 6438 1 2025-07-21 18:46:33.388 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-21 18:46:33.477 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-21 18:47:21.500 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:37702 10 6438 1 2025-07-21 18:48:21.905 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:45718 10 6438 1 2025-07-21 18:49:22.271 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53804 10 6438 1 2025-07-21 18:45:00.346 00:06:00.484 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-07-21 18:50:22.675 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:53856 10 6438 1 2025-07-21 18:51:33.360 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-21 18:51:33.396 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-21 18:51:33.126 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-21 18:51:23.107 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:41542 10 6438 1 2025-07-21 18:51:33.354 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-21 18:51:33.437 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-21 18:47:00.348 00:06:00.479 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-07-21 18:52:23.505 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48906 10 6438 1 2025-07-21 18:53:23.908 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46918 10 6438 1 2025-07-21 18:54:24.316 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34244 10 6438 1 2025-07-21 18:55:24.723 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:43286 10 6438 1 2025-07-21 18:56:33.558 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-21 18:56:33.365 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-21 18:56:33.455 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-21 18:56:33.468 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-21 18:56:33.537 00:00:00.032 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-21 18:56:25.116 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:35454 10 6438 1 2025-07-21 18:52:00.347 00:06:00.484 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-07-21 18:57:25.480 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:51008 10 6438 1 2025-07-21 18:58:25.839 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:36938 10 6438 1 Summary: total flows: 137, total bytes: 420053, total packets: 1022, avg bps: 894, avg pps: 0, avg bpp: 411 Time window: 2025-07-21 17:56:00 - 2025-07-21 18:58:36 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0020s User: 0.0020s Wall: 0.0019s flows/second: 72986.1 Runtime: 0.0019s