Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-07-22 02:59:37.998 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:52554 10 6438 1 2025-07-22 03:00:38.412 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49746 10 6438 1 2025-07-22 02:57:00.501 00:05:00.583 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-22 03:01:43.081 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-22 03:01:43.005 00:00:00.049 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 03:01:42.973 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 03:01:42.876 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-22 03:01:43.058 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-22 03:01:38.814 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:58222 10 6438 1 2025-07-22 03:02:39.219 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51568 10 6438 1 2025-07-22 03:03:39.622 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:47616 10 6438 1 2025-07-22 03:00:00.505 00:05:00.578 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-22 03:04:39.985 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:34440 10 6438 1 2025-07-22 03:05:40.365 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:35446 10 6438 1 2025-07-22 03:06:43.244 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-22 03:06:43.370 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-22 03:06:43.195 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 03:06:43.248 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 03:06:43.333 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-22 03:06:40.763 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:60112 10 6438 1 2025-07-22 03:03:00.504 00:05:00.582 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-22 03:07:41.139 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46546 10 6438 1 2025-07-22 03:08:41.552 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:40896 10 6438 1 2025-07-22 03:09:41.921 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:58782 10 6438 1 2025-07-22 03:06:00.506 00:05:00.576 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-22 03:10:42.354 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51788 10 6438 1 2025-07-22 03:11:43.310 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-22 03:11:43.218 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-22 03:11:43.217 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 03:11:43.363 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 03:11:43.446 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-22 03:11:42.763 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:37074 10 6438 1 2025-07-22 03:12:43.171 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:55084 10 6438 1 2025-07-22 03:09:00.505 00:05:00.581 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-22 03:13:43.567 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:51834 10 6438 1 2025-07-22 03:14:43.982 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:60726 10 6438 1 2025-07-22 03:15:44.394 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33516 10 6438 1 2025-07-22 03:12:00.511 00:05:00.574 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-22 03:16:43.365 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-22 03:16:43.498 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-22 03:16:42.989 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 03:16:43.424 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 03:16:43.507 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-22 03:16:44.802 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:49620 10 6438 1 2025-07-22 03:17:45.202 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:53560 10 6438 1 2025-07-22 03:18:45.602 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:50654 10 6438 1 2025-07-22 03:15:00.509 00:05:00.578 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-22 03:19:46.017 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:42826 10 6438 1 2025-07-22 03:20:46.417 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:40062 10 6438 1 2025-07-22 03:21:43.690 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-22 03:21:43.693 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-22 03:21:43.768 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 03:21:43.695 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 03:21:43.779 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-22 03:21:46.822 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:35922 10 6438 1 2025-07-22 03:18:00.512 00:05:00.573 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-22 03:22:47.187 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:34574 10 6438 1 2025-07-22 03:23:47.595 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:42788 10 6438 1 2025-07-22 03:24:48.003 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:39760 10 6438 1 2025-07-22 03:21:00.508 00:05:00.578 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-22 03:25:48.403 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:56490 10 6438 1 2025-07-22 03:26:43.677 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-22 03:26:43.593 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-22 03:26:43.384 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 03:26:43.676 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 03:26:43.758 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-22 03:26:48.821 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50848 10 6438 1 2025-07-22 03:27:49.228 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38350 10 6438 1 2025-07-22 03:24:00.515 00:05:00.571 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-22 03:28:49.630 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:52756 10 6438 1 2025-07-22 03:29:50.038 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:58214 10 6438 1 2025-07-22 03:27:00.512 00:05:00.575 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-22 03:30:50.457 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:34790 12 6542 1 2025-07-22 03:31:43.638 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 03:31:43.638 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-22 03:31:43.776 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-22 03:31:43.276 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 03:31:43.721 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-22 03:31:50.875 00:00:10.420 TCP 1.101.0.1:3000 -> 23.104.0.1:54140 11 6490 1 2025-07-22 03:32:51.333 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:52652 10 6438 1 2025-07-22 03:33:51.737 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:39310 10 6438 1 2025-07-22 03:30:00.514 00:05:00.571 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-22 03:34:52.146 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:33974 10 6438 1 2025-07-22 03:35:52.509 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:54120 10 6438 1 2025-07-22 03:36:43.737 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-22 03:36:43.723 00:00:00.027 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-22 03:36:43.471 00:00:00.027 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 03:36:43.705 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 03:36:43.787 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-22 03:33:00.513 00:05:00.575 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-22 03:36:52.915 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:38150 10 6438 1 2025-07-22 03:37:53.282 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58170 10 6438 1 2025-07-22 03:38:53.688 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:58420 10 6438 1 2025-07-22 03:39:54.056 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:33174 10 6438 1 2025-07-22 03:36:00.519 00:05:00.569 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-22 03:40:54.471 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:45502 10 6438 1 2025-07-22 03:41:43.865 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-22 03:41:43.782 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-22 03:41:43.868 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-22 03:41:43.618 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 03:41:43.782 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 03:41:54.833 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:58926 10 6438 1 2025-07-22 03:39:00.517 00:05:00.575 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-22 03:42:55.259 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34022 10 6438 1 2025-07-22 03:43:55.664 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:48176 10 6438 1 2025-07-22 03:44:56.107 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40648 10 6438 1 2025-07-22 03:42:00.520 00:05:00.569 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-22 03:45:56.513 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:49212 10 6438 1 2025-07-22 03:46:44.176 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-22 03:46:43.916 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-22 03:46:43.916 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-22 03:46:43.996 00:00:00.039 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 03:46:44.092 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 03:46:56.923 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49744 10 6438 1 2025-07-22 03:47:57.327 00:00:10.399 TCP 1.101.0.1:3000 -> 23.104.0.1:54142 12 10350 1 2025-07-22 03:45:00.522 00:05:00.571 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-22 03:48:57.779 00:00:10.401 TCP 1.101.0.1:3000 -> 23.104.0.1:40830 10 6438 1 2025-07-22 03:49:58.196 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50808 10 6438 1 2025-07-22 03:50:58.599 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:58078 10 6438 1 2025-07-22 03:51:44.357 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-22 03:51:44.418 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-22 03:51:44.214 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 03:51:44.277 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 03:51:44.359 00:00:00.026 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-22 03:48:00.523 00:05:00.567 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-22 03:51:59.021 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:42640 10 6438 1 2025-07-22 03:52:59.418 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:55248 10 6438 1 2025-07-22 03:53:59.846 00:00:10.393 TCP 1.101.0.1:3000 -> 23.104.0.1:50510 10 6438 1 2025-07-22 03:51:00.522 00:05:00.572 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-22 03:55:00.280 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:41198 10 6438 1 2025-07-22 03:56:00.645 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41272 10 6438 1 2025-07-22 03:56:45.208 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-22 03:56:45.272 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-22 03:56:45.096 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 03:56:45.103 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 03:56:45.186 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-22 03:57:01.054 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40174 10 6438 1 2025-07-22 03:54:00.524 00:05:00.568 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-22 03:58:01.460 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49866 10 6438 1 Summary: total flows: 139, total bytes: 413790, total packets: 1015, avg bps: 889, avg pps: 0, avg bpp: 407 Time window: 2025-07-22 02:57:00 - 2025-07-22 03:59:01 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0028s User: 0.0019s Wall: 0.0021s flows/second: 67244.3 Runtime: 0.0021s