Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-07-22 20:58:51.138 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:48922 10 6438 1 2025-07-22 20:59:51.494 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:41788 10 6438 1 2025-07-22 20:57:00.934 00:05:00.506 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-22 21:00:51.910 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:48420 10 6438 1 2025-07-22 21:02:04.701 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-22 21:02:04.872 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-22 21:02:04.618 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-22 21:01:52.272 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:40090 10 6438 1 2025-07-22 21:02:04.809 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 21:02:04.619 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 21:02:52.676 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:54054 10 6438 1 2025-07-22 21:00:00.935 00:05:00.505 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-22 21:03:53.051 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57944 10 6438 1 2025-07-22 21:04:53.455 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47900 10 6438 1 2025-07-22 21:05:53.863 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:42094 10 6438 1 2025-07-22 21:03:00.933 00:05:00.510 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-22 21:06:54.287 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:49156 10 6438 1 2025-07-22 21:07:05.524 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-22 21:07:05.468 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-22 21:07:05.238 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 21:07:05.452 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 21:07:05.535 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-22 21:07:54.686 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:49342 10 6438 1 2025-07-22 21:08:55.114 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:55486 10 6438 1 2025-07-22 21:06:00.936 00:05:00.505 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-22 21:09:55.509 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:41006 10 6438 1 2025-07-22 21:10:55.921 00:00:10.344 TCP 1.101.0.1:3000 -> 23.104.0.1:42492 10 6438 1 2025-07-22 21:12:04.888 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-22 21:12:04.547 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 21:12:05.011 00:00:00.033 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-22 21:11:56.301 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:39302 10 6438 1 2025-07-22 21:12:05.006 00:00:00.031 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 21:12:05.088 00:00:00.032 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-22 21:09:00.935 00:05:00.510 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-22 21:12:56.663 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:39736 10 6438 1 2025-07-22 21:13:57.095 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:34118 10 6438 1 2025-07-22 21:14:57.456 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:34872 10 6438 1 2025-07-22 21:12:00.937 00:05:00.510 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-22 21:15:57.855 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:44304 10 6438 1 2025-07-22 21:17:04.922 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 21:17:04.887 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 21:17:04.970 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-22 21:17:05.081 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-22 21:16:58.267 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47112 10 6438 1 2025-07-22 21:17:05.082 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-22 21:17:58.673 00:00:10.437 TCP 1.101.0.1:3000 -> 23.104.0.1:53368 12 10350 1 2025-07-22 21:15:00.935 00:05:00.511 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-22 21:18:59.158 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58900 10 6438 1 2025-07-22 21:19:59.565 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45856 10 6438 1 2025-07-22 21:20:59.972 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:60040 10 6438 1 2025-07-22 21:18:00.938 00:05:00.505 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-22 21:22:05.181 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-22 21:22:05.150 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-22 21:22:05.092 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-22 21:22:04.994 00:00:00.050 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 21:22:05.099 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 21:22:00.376 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:38786 10 6438 1 2025-07-22 21:23:00.745 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:50280 10 6438 1 2025-07-22 21:24:01.146 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56614 10 6438 1 2025-07-22 21:21:00.936 00:05:00.512 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-22 21:25:01.554 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42530 10 6438 1 2025-07-22 21:26:01.959 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:54198 10 6438 1 2025-07-22 21:27:05.288 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-22 21:27:05.399 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-22 21:27:05.329 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-22 21:27:05.364 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 21:27:05.205 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 21:27:02.327 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:34110 10 6438 1 2025-07-22 21:24:00.939 00:05:00.507 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-22 21:28:02.726 00:00:10.443 TCP 1.101.0.1:3000 -> 23.104.0.1:60692 12 10352 1 2025-07-22 21:29:03.206 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:36408 10 6438 1 2025-07-22 21:30:03.580 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57794 10 6438 1 2025-07-22 21:27:00.937 00:05:00.512 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-22 21:31:03.985 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:58414 10 6438 1 2025-07-22 21:32:05.222 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-22 21:32:05.417 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-22 21:32:05.484 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 21:32:05.508 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 21:32:05.590 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-22 21:32:04.393 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50230 10 6438 1 2025-07-22 21:33:04.796 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:54178 10 6438 1 2025-07-22 21:30:00.942 00:05:00.507 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-22 21:34:05.206 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:39590 11 6490 1 2025-07-22 21:35:05.620 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53178 10 6438 1 2025-07-22 21:36:06.026 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:51082 10 6438 1 2025-07-22 21:33:00.940 00:05:00.512 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-22 21:37:05.531 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-22 21:37:05.431 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-22 21:37:05.381 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-22 21:37:05.395 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 21:37:05.448 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 21:37:06.422 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55154 10 6438 1 2025-07-22 21:38:06.829 00:00:10.439 TCP 1.101.0.1:3000 -> 23.104.0.1:54418 12 10350 1 2025-07-22 21:39:07.313 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:58900 10 6438 1 2025-07-22 21:36:00.945 00:05:00.505 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-22 21:40:07.727 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:54178 10 6438 1 2025-07-22 21:41:08.140 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47226 10 6438 1 2025-07-22 21:42:05.628 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-22 21:42:05.565 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-22 21:42:05.581 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 21:42:05.470 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 21:42:05.552 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-22 21:42:08.543 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:48456 10 6438 1 2025-07-22 21:39:00.943 00:05:00.510 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-22 21:43:08.954 00:00:10.439 TCP 1.101.0.1:3000 -> 23.104.0.1:38934 12 10352 1 2025-07-22 21:44:09.430 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:49050 10 6438 1 2025-07-22 21:45:09.794 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49774 10 6438 1 2025-07-22 21:42:00.947 00:05:00.506 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-22 21:46:10.201 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:55488 10 6438 1 2025-07-22 21:47:05.872 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-22 21:47:05.462 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-22 21:47:05.577 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-22 21:47:05.733 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 21:47:05.790 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 21:47:10.607 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44266 10 6438 1 2025-07-22 21:48:11.015 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:50972 10 6438 1 2025-07-22 21:45:00.945 00:05:00.509 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-22 21:49:11.418 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58068 10 6438 1 2025-07-22 21:50:11.821 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:58206 10 6438 1 2025-07-22 21:51:12.234 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:33900 10 6438 1 2025-07-22 21:48:00.949 00:05:00.504 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-22 21:52:05.832 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-22 21:52:05.831 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-22 21:52:05.775 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 21:52:05.737 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 21:52:05.820 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-22 21:52:12.608 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:38784 10 6438 1 2025-07-22 21:53:13.013 00:00:10.355 TCP 1.101.0.1:3000 -> 23.104.0.1:46080 10 6438 1 2025-07-22 21:54:13.411 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:57930 10 6438 1 2025-07-22 21:51:00.946 00:05:00.510 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-22 21:55:13.813 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:57362 10 6438 1 2025-07-22 21:56:14.222 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41380 10 6438 1 2025-07-22 21:57:05.779 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-22 21:57:05.713 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-22 21:57:05.898 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 21:57:05.718 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 21:57:05.802 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-22 21:57:14.626 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:51758 10 6438 1 2025-07-22 21:54:00.949 00:05:00.505 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-22 21:58:15.026 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:35778 10 6438 1 Summary: total flows: 140, total bytes: 431864, total packets: 1029, avg bps: 928, avg pps: 0, avg bpp: 419 Time window: 2025-07-22 20:57:00 - 2025-07-22 21:59:01 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0010s User: 0.0031s Wall: 0.0025s flows/second: 56679.8 Runtime: 0.0025s