Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-07-22 07:59:38.268 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:57098 10 6438 1 2025-07-22 08:00:38.682 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:51758 10 6438 1 2025-07-22 07:57:00.587 00:05:00.579 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-22 08:01:49.218 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-22 08:01:48.922 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-22 08:01:39.115 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56076 10 6438 1 2025-07-22 08:01:49.130 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-22 08:01:48.958 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 08:01:49.135 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 08:02:39.520 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:53078 10 6438 1 2025-07-22 08:03:39.935 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:51198 10 6438 1 2025-07-22 08:00:00.589 00:05:00.574 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-22 08:04:40.347 00:00:10.395 TCP 1.101.0.1:3000 -> 23.104.0.1:58124 10 6438 1 2025-07-22 08:05:40.754 00:00:10.316 TCP 1.101.0.1:3000 -> 23.104.0.1:33582 10 6438 1 2025-07-22 08:06:49.410 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-22 08:06:49.327 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 08:06:49.373 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-22 08:06:49.337 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-22 08:06:49.085 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 08:06:41.114 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39084 10 6438 1 2025-07-22 08:03:00.588 00:05:00.589 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-22 08:07:41.516 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:40452 10 6438 1 2025-07-22 08:08:41.951 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:43074 10 6438 1 2025-07-22 08:09:42.362 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:33382 10 6438 1 2025-07-22 08:06:00.592 00:05:00.572 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-22 08:10:42.760 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:37252 10 6438 1 2025-07-22 08:11:49.392 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-22 08:11:49.035 00:00:00.014 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 08:11:49.289 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 08:11:49.285 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-22 08:11:49.371 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-22 08:11:43.176 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38668 10 6438 1 2025-07-22 08:12:43.577 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:44542 10 6438 1 2025-07-22 08:09:00.589 00:05:00.578 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-22 08:13:43.985 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36586 10 6438 1 2025-07-22 08:14:44.392 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:39090 10 6438 1 2025-07-22 08:15:44.754 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:52418 10 6438 1 2025-07-22 08:12:00.592 00:05:00.575 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-22 08:16:50.448 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-22 08:16:50.240 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-22 08:16:50.248 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-22 08:16:50.134 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 08:16:50.365 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 08:16:45.152 00:00:10.418 TCP 1.101.0.1:3000 -> 23.104.0.1:52158 11 6490 1 2025-07-22 08:17:45.611 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:50610 10 6438 1 2025-07-22 08:18:46.016 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52642 10 6438 1 2025-07-22 08:15:00.596 00:05:00.574 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-22 08:19:46.417 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:60352 10 6438 1 2025-07-22 08:20:46.824 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:59320 10 6438 1 2025-07-22 08:21:49.505 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-22 08:21:49.571 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-22 08:21:49.498 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-22 08:21:49.511 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 08:21:49.421 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 08:21:47.228 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48884 10 6438 1 2025-07-22 08:18:00.599 00:05:00.568 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-22 08:22:47.632 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57872 10 6438 1 2025-07-22 08:23:48.040 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53526 10 6438 1 2025-07-22 08:24:48.441 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:42462 10 6438 1 2025-07-22 08:21:00.597 00:05:00.573 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-22 08:25:48.845 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:46074 10 6438 1 2025-07-22 08:26:49.584 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-22 08:26:49.584 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-22 08:26:49.647 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 08:26:49.589 00:00:00.028 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 08:26:49.672 00:00:00.028 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-22 08:26:49.272 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44338 12 6542 1 2025-07-22 08:27:49.677 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:44412 10 6438 1 2025-07-22 08:24:00.601 00:05:00.568 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-22 08:28:50.121 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:47466 10 6438 1 2025-07-22 08:29:50.556 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:56726 10 6438 1 2025-07-22 08:27:00.601 00:05:00.571 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-22 08:30:50.965 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35740 10 6438 1 2025-07-22 08:31:49.841 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-22 08:31:49.975 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-22 08:31:49.914 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 08:31:50.007 00:00:00.042 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 08:31:50.090 00:00:00.042 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-22 08:31:51.369 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41186 10 6438 1 2025-07-22 08:32:51.771 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:41662 10 6438 1 2025-07-22 08:30:00.603 00:05:00.567 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-22 08:33:52.191 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:38308 10 6438 1 2025-07-22 08:34:52.559 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:55732 10 6438 1 2025-07-22 08:35:52.975 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39022 10 6438 1 2025-07-22 08:36:49.925 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-22 08:36:49.922 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-22 08:36:49.837 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-22 08:36:49.823 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 08:36:49.842 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 08:33:00.602 00:05:00.579 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-22 08:36:53.376 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33754 10 6438 1 2025-07-22 08:37:53.776 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:50574 10 6438 1 2025-07-22 08:38:54.181 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:36464 10 6438 1 2025-07-22 08:36:00.604 00:05:00.581 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-22 08:39:54.589 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36786 10 6438 1 2025-07-22 08:40:54.995 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40796 10 6438 1 2025-07-22 08:41:49.935 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-22 08:41:49.683 00:00:00.026 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-22 08:41:49.800 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 08:41:49.935 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 08:41:50.019 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-22 08:41:55.397 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47050 10 6438 1 2025-07-22 08:39:00.607 00:05:00.582 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-22 08:42:55.801 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38480 10 6438 1 2025-07-22 08:43:56.208 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52136 10 6438 1 2025-07-22 08:44:56.612 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60390 10 6438 1 2025-07-22 08:42:00.609 00:05:00.578 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-22 08:45:57.013 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51536 10 6438 1 2025-07-22 08:46:49.780 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 08:46:49.948 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 08:46:50.031 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-22 08:46:50.061 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-22 08:46:50.058 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-22 08:46:57.417 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:55436 10 6438 1 2025-07-22 08:47:57.778 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:58342 10 6438 1 2025-07-22 08:45:00.608 00:05:00.581 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-22 08:48:58.144 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44924 10 6438 1 2025-07-22 08:49:58.547 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:33892 10 6438 1 2025-07-22 08:50:58.960 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:33574 10 6438 1 2025-07-22 08:51:50.751 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-22 08:51:50.619 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-22 08:51:50.412 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-22 08:51:50.359 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 08:51:50.670 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 08:48:00.612 00:05:00.576 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-22 08:51:59.360 00:00:10.349 TCP 1.101.0.1:3000 -> 23.104.0.1:57772 10 6438 1 2025-07-22 08:52:59.756 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:52212 10 6438 1 2025-07-22 08:54:00.157 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49274 10 6438 1 2025-07-22 08:51:00.610 00:05:00.581 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-22 08:55:00.560 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38440 10 6438 1 2025-07-22 08:56:00.956 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:32906 10 6438 1 2025-07-22 08:56:50.395 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-22 08:56:49.997 00:00:00.033 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-22 08:56:50.207 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-22 08:56:50.206 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 08:56:50.312 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 08:57:01.377 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39688 10 6438 1 2025-07-22 08:54:00.614 00:05:00.576 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-22 08:58:01.782 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:43230 10 6438 1 Summary: total flows: 139, total bytes: 409878, total packets: 1013, avg bps: 881, avg pps: 0, avg bpp: 404 Time window: 2025-07-22 07:57:00 - 2025-07-22 08:59:01 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0009s User: 0.0036s Wall: 0.0019s flows/second: 72243.9 Runtime: 0.0019s