Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-07-23 18:58:42.109 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:45426 10 6438 1 2025-07-23 18:54:01.427 00:06:00.443 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-07-23 18:59:42.510 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35108 10 6438 1 2025-07-23 19:00:42.913 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:39726 10 6438 1 2025-07-23 18:56:01.426 00:06:00.448 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-07-23 19:01:43.325 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:52700 10 6438 1 2025-07-23 19:02:31.335 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-23 19:02:31.180 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-23 19:02:31.315 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-23 19:02:31.296 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-23 19:02:31.379 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-23 19:02:43.732 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:34280 10 6438 1 2025-07-23 19:03:44.141 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:50398 10 6438 1 2025-07-23 19:04:44.560 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51142 12 6542 1 2025-07-23 19:05:44.964 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:39916 10 6438 1 2025-07-23 19:01:01.431 00:06:00.445 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-07-23 19:06:45.327 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:55812 10 6438 1 2025-07-23 19:07:31.183 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-23 19:07:31.295 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-23 19:07:31.325 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-23 19:07:31.393 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-23 19:07:31.476 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-23 19:07:45.725 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:53474 10 6438 1 2025-07-23 19:03:01.427 00:06:00.450 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-07-23 19:08:46.108 00:00:10.437 TCP 1.101.0.1:3000 -> 23.104.0.1:41118 12 10350 1 2025-07-23 19:09:46.583 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50512 10 6438 1 2025-07-23 19:10:46.987 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:51494 10 6438 1 2025-07-23 19:11:47.363 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:33802 10 6438 1 2025-07-23 19:12:31.323 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-23 19:12:31.552 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-23 19:12:31.447 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-23 19:12:31.505 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-23 19:12:31.588 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-23 19:12:47.728 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:36044 10 6438 1 2025-07-23 19:08:01.431 00:06:00.448 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-07-23 19:13:48.149 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:51944 10 6438 1 2025-07-23 19:14:48.557 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55766 10 6438 1 2025-07-23 19:10:01.428 00:06:00.453 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-07-23 19:15:48.958 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56916 10 6438 1 2025-07-23 19:16:49.360 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:36046 10 6438 1 2025-07-23 19:17:31.380 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-23 19:17:31.468 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-23 19:17:31.475 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-23 19:17:31.564 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-23 19:17:31.646 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-23 19:17:49.727 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59210 10 6438 1 2025-07-23 19:18:50.139 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55850 10 6438 1 2025-07-23 19:19:50.539 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:37802 10 6438 1 2025-07-23 19:15:01.431 00:06:00.449 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-07-23 19:20:50.902 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:37442 12 6542 1 2025-07-23 19:17:01.429 00:06:00.455 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-07-23 19:21:51.317 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:49408 10 6438 1 2025-07-23 19:22:31.782 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-23 19:22:31.670 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-23 19:22:31.792 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-23 19:22:31.843 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-23 19:22:31.926 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-23 19:22:51.680 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:41864 10 6438 1 2025-07-23 19:23:52.104 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:59476 10 6438 1 2025-07-23 19:24:52.468 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:33642 10 6438 1 2025-07-23 19:25:52.876 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:55506 10 6438 1 2025-07-23 19:22:01.433 00:06:00.449 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-07-23 19:26:53.239 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:39664 10 6438 1 2025-07-23 19:27:31.952 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-23 19:27:31.864 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-23 19:27:31.964 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-23 19:27:31.883 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-23 19:27:31.870 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-23 19:27:53.613 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49140 10 6438 1 2025-07-23 19:24:01.432 00:06:00.453 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-07-23 19:28:54.020 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33218 10 6438 1 2025-07-23 19:29:54.431 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45358 10 6438 1 2025-07-23 19:30:54.837 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:50370 10 6438 1 2025-07-23 19:31:55.259 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48488 10 6438 1 2025-07-23 19:32:32.176 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-23 19:32:31.879 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-23 19:32:32.135 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-23 19:32:31.906 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-23 19:32:32.094 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-23 19:32:55.663 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:57484 10 6438 1 2025-07-23 19:29:01.435 00:06:00.448 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-07-23 19:33:56.038 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57644 10 6438 1 2025-07-23 19:34:56.443 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41580 10 6438 1 2025-07-23 19:31:01.433 00:06:00.454 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-07-23 19:35:56.848 00:00:10.344 TCP 1.101.0.1:3000 -> 23.104.0.1:39730 10 6438 1 2025-07-23 19:36:57.229 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59174 10 6438 1 2025-07-23 19:37:32.239 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-23 19:37:32.081 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-23 19:37:31.978 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-23 19:37:32.240 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-23 19:37:32.322 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-23 19:37:57.629 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52000 10 6438 1 2025-07-23 19:38:58.033 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49728 10 6438 1 2025-07-23 19:39:58.435 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56934 10 6438 1 2025-07-23 19:36:01.434 00:06:00.451 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-07-23 19:40:58.836 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:58150 10 6438 1 2025-07-23 19:41:59.246 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47464 10 6438 1 2025-07-23 19:42:32.054 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-23 19:42:32.099 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-23 19:42:32.042 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-23 19:42:31.906 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-23 19:42:32.137 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-23 19:38:01.433 00:06:00.457 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-07-23 19:42:59.652 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48560 10 6438 1 2025-07-23 19:44:00.065 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:48186 10 6438 1 2025-07-23 19:45:00.475 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42594 10 6438 1 2025-07-23 19:46:00.876 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:57678 10 6438 1 2025-07-23 19:47:01.280 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:57968 10 6438 1 2025-07-23 19:47:32.162 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-23 19:47:31.991 00:00:00.044 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-23 19:47:32.112 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-23 19:47:32.104 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-23 19:47:32.187 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-23 19:43:01.437 00:06:00.452 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-07-23 19:48:01.642 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:38682 10 6438 1 2025-07-23 19:49:02.003 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:45432 10 6438 1 2025-07-23 19:45:01.434 00:06:00.461 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-07-23 19:50:02.363 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:56386 10 6438 1 2025-07-23 19:51:02.718 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:57230 10 6438 1 2025-07-23 19:52:03.132 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:40014 10 6438 1 2025-07-23 19:52:32.402 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-23 19:52:32.425 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-23 19:52:32.412 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-23 19:52:32.137 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-23 19:52:32.495 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-23 19:53:03.558 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:33768 10 6438 1 2025-07-23 19:54:03.920 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55160 10 6438 1 2025-07-23 19:50:01.440 00:06:00.450 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-07-23 19:55:04.328 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50474 10 6438 1 2025-07-23 19:56:04.730 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:57180 10 6438 1 2025-07-23 19:52:01.437 00:06:00.456 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-07-23 19:57:05.144 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:39546 10 6438 1 2025-07-23 19:57:32.452 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-23 19:57:32.367 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-23 19:57:32.530 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-23 19:57:32.537 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-23 19:57:32.309 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-23 19:58:05.513 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54302 10 6438 1 Summary: total flows: 138, total bytes: 421018, total packets: 1038, avg bps: 873, avg pps: 0, avg bpp: 405 Time window: 2025-07-23 18:54:01 - 2025-07-23 19:58:15 Total flows processed: 138, passed: 138, Blocks skipped: 0, Bytes read: 14416 Sys: 0.0027s User: 0.0018s Wall: 0.0024s flows/second: 58448.3 Runtime: 0.0024s