Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-07-21 22:59:01.918 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43686 10 6438 1 2025-07-21 23:00:02.321 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37866 10 6438 1 2025-07-21 23:01:02.723 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46450 10 6438 1 2025-07-21 23:01:38.199 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-21 23:01:38.263 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-21 23:01:38.250 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-21 23:01:38.271 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-21 23:01:38.379 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-21 22:57:00.435 00:06:00.517 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-07-21 23:02:03.128 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:55590 10 6438 1 2025-07-21 23:03:03.490 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33144 10 6438 1 2025-07-21 22:59:00.437 00:06:00.512 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-07-21 23:04:03.893 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:42270 10 6438 1 2025-07-21 23:05:04.310 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57878 10 6438 1 2025-07-21 23:06:04.711 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:33566 10 6438 1 2025-07-21 23:06:38.445 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-21 23:06:38.448 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-21 23:06:38.548 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-21 23:06:38.581 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-21 23:06:38.663 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-21 23:07:05.109 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:32910 10 6438 1 2025-07-21 23:08:05.511 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:36168 10 6438 1 2025-07-21 23:04:00.437 00:06:00.519 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-07-21 23:09:05.909 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44034 10 6438 1 2025-07-21 23:10:06.311 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56166 10 6438 1 2025-07-21 23:06:00.439 00:06:00.516 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-07-21 23:11:06.714 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:51048 10 6438 1 2025-07-21 23:11:38.493 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-21 23:11:38.540 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-21 23:11:38.490 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-21 23:11:38.538 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-21 23:11:38.620 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-21 23:12:07.113 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51602 10 6438 1 2025-07-21 23:13:07.516 00:00:10.444 TCP 1.101.0.1:3000 -> 23.104.0.1:54258 12 10352 1 2025-07-21 23:14:08.000 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:34650 10 6438 1 2025-07-21 23:15:08.362 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:51984 10 6438 1 2025-07-21 23:11:00.439 00:06:00.520 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-07-21 23:16:08.762 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:58798 10 6438 1 2025-07-21 23:16:38.648 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-21 23:16:38.570 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-21 23:16:38.649 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-21 23:16:38.648 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-21 23:16:38.731 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-21 23:17:09.173 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38852 10 6438 1 2025-07-21 23:13:00.442 00:06:00.515 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-07-21 23:18:09.579 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52008 10 6438 1 2025-07-21 23:19:09.989 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40254 10 6438 1 2025-07-21 23:20:10.392 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34562 10 6438 1 2025-07-21 23:21:10.793 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:46802 10 6438 1 2025-07-21 23:21:39.142 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-21 23:21:38.962 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-21 23:21:38.418 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-21 23:21:39.060 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-21 23:21:38.835 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-21 23:22:11.152 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:56358 10 6438 1 2025-07-21 23:18:00.440 00:06:00.521 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-07-21 23:23:11.554 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46480 10 6438 1 2025-07-21 23:24:11.957 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:51268 10 6438 1 2025-07-21 23:20:00.443 00:06:00.516 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-07-21 23:25:12.371 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:45350 10 6438 1 2025-07-21 23:26:12.769 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:34256 10 6438 1 2025-07-21 23:26:38.777 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-21 23:26:38.775 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-21 23:26:38.642 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-21 23:26:38.860 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-21 23:26:38.943 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-21 23:27:13.133 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:49284 10 6438 1 2025-07-21 23:28:13.493 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55338 10 6438 1 2025-07-21 23:29:13.898 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34480 10 6438 1 2025-07-21 23:25:00.441 00:06:00.522 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-07-21 23:30:14.307 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:42318 10 6438 1 2025-07-21 23:31:14.722 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:44818 10 6438 1 2025-07-21 23:31:38.951 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-21 23:31:38.645 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-21 23:31:38.722 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-21 23:31:38.747 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-21 23:31:38.869 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-21 23:27:00.445 00:06:00.517 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-07-21 23:32:15.135 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34058 10 6438 1 2025-07-21 23:33:15.543 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:54586 10 6438 1 2025-07-21 23:34:15.946 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:37832 10 6438 1 2025-07-21 23:35:16.359 00:00:10.571 TCP 1.101.0.1:3000 -> 23.104.0.1:48332 10 6438 1 2025-07-21 23:36:16.972 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:45522 10 6438 1 2025-07-21 23:36:39.108 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-21 23:36:39.333 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-21 23:36:38.752 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-21 23:36:39.108 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-21 23:36:39.190 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-21 23:32:00.442 00:06:00.525 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-07-21 23:37:17.336 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:52364 10 6438 1 2025-07-21 23:38:17.739 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:38432 10 6438 1 2025-07-21 23:34:00.445 00:06:00.520 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-07-21 23:39:18.150 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:49806 10 6438 1 2025-07-21 23:40:18.554 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:54834 10 6438 1 2025-07-21 23:41:18.953 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:35596 10 6438 1 2025-07-21 23:41:38.992 00:00:00.051 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-21 23:41:38.997 00:00:00.034 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-21 23:41:39.105 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-21 23:41:39.102 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-21 23:41:39.184 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-21 23:42:19.361 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:33816 10 6438 1 2025-07-21 23:43:19.757 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:50958 10 6438 1 2025-07-21 23:39:00.442 00:06:00.526 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-07-21 23:44:20.184 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:51472 10 6438 1 2025-07-21 23:45:20.558 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:43358 10 6438 1 2025-07-21 23:41:00.447 00:06:00.519 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-07-21 23:46:20.958 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39496 10 6438 1 2025-07-21 23:46:39.076 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-21 23:46:39.271 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-21 23:46:39.274 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-21 23:46:39.204 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-21 23:46:39.287 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-21 23:47:21.366 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:52546 10 6438 1 2025-07-21 23:48:21.769 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:41838 10 6438 1 2025-07-21 23:49:22.183 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52384 10 6438 1 2025-07-21 23:50:22.585 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:40036 10 6438 1 2025-07-21 23:46:00.444 00:06:00.526 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-07-21 23:51:39.552 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-21 23:51:22.986 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:46198 10 6438 1 2025-07-21 23:51:39.584 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-21 23:51:39.590 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-21 23:51:39.362 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-21 23:51:39.469 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-21 23:52:23.394 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51706 10 6438 1 2025-07-21 23:48:00.447 00:06:00.521 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-07-21 23:53:23.795 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:57286 10 6438 1 2025-07-21 23:54:24.201 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59588 10 6438 1 2025-07-21 23:55:24.603 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:53150 10 6438 1 2025-07-21 23:56:25.018 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38324 10 6438 1 2025-07-21 23:56:39.423 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-21 23:56:39.352 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-21 23:56:39.430 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-21 23:56:39.473 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-21 23:56:39.557 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-21 23:57:25.423 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:44072 10 6438 1 2025-07-21 23:53:00.446 00:06:00.528 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-07-21 23:58:25.779 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59024 10 6438 1 Summary: total flows: 137, total bytes: 419951, total packets: 1020, avg bps: 902, avg pps: 0, avg bpp: 411 Time window: 2025-07-21 22:57:00 - 2025-07-21 23:59:00 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0030s User: 0.0015s Wall: 0.0019s flows/second: 73697.5 Runtime: 0.0019s