Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-07-23 19:59:05.918 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:37556 10 6438 1 2025-07-23 20:00:06.280 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60966 10 6438 1 2025-07-23 20:01:06.686 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:35860 10 6438 1 2025-07-23 19:57:01.439 00:06:00.450 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-07-23 20:02:07.104 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:50146 10 6438 1 2025-07-23 20:02:32.214 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-23 20:02:32.216 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-23 20:02:32.328 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-23 20:02:32.507 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-23 20:02:32.589 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-23 20:03:07.513 00:00:10.448 TCP 1.101.0.1:3000 -> 23.104.0.1:41750 12 10352 1 2025-07-23 19:59:01.439 00:06:00.455 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-07-23 20:04:08.003 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:37032 10 6438 1 2025-07-23 20:05:08.407 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:33084 10 6438 1 2025-07-23 20:06:08.808 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52948 10 6438 1 2025-07-23 20:07:09.217 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:35012 10 6438 1 2025-07-23 20:07:32.517 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-23 20:07:32.835 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-23 20:07:32.539 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-23 20:07:32.960 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-23 20:07:33.043 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-23 20:08:09.619 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:50938 10 6438 1 2025-07-23 20:04:01.440 00:06:00.451 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-07-23 20:09:09.983 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:54806 10 6438 1 2025-07-23 20:10:10.405 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49958 10 6438 1 2025-07-23 20:06:01.439 00:06:00.455 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-07-23 20:11:10.804 00:00:10.349 TCP 1.101.0.1:3000 -> 23.104.0.1:41096 10 6438 1 2025-07-23 20:12:11.182 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40552 10 6438 1 2025-07-23 20:12:32.681 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-23 20:12:32.788 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-23 20:12:32.752 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-23 20:12:32.681 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-23 20:12:32.764 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-23 20:13:11.587 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:34772 10 6438 1 2025-07-23 20:14:11.989 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:47902 10 6438 1 2025-07-23 20:15:12.412 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:58240 10 6438 1 2025-07-23 20:11:01.442 00:06:00.450 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-07-23 20:16:12.834 00:00:10.344 TCP 1.101.0.1:3000 -> 23.104.0.1:46818 10 6438 1 2025-07-23 20:17:13.218 00:00:10.356 TCP 1.101.0.1:3000 -> 23.104.0.1:55508 10 6438 1 2025-07-23 20:17:32.876 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-23 20:17:32.765 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-23 20:17:32.406 00:00:00.027 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-23 20:17:32.919 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-23 20:17:33.003 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-23 20:13:01.440 00:06:00.455 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-07-23 20:18:13.617 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:35586 10 6438 1 2025-07-23 20:19:13.980 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:51568 10 6438 1 2025-07-23 20:20:14.390 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34104 10 6438 1 2025-07-23 20:21:14.791 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:32882 10 6438 1 2025-07-23 20:22:15.149 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38212 10 6438 1 2025-07-23 20:22:32.947 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-23 20:22:32.910 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-23 20:22:32.785 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-23 20:22:32.865 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-23 20:22:32.783 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-23 20:18:01.445 00:06:00.448 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-07-23 20:23:15.550 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:36696 10 6438 1 2025-07-23 20:24:15.913 00:00:12.464 TCP 1.101.0.1:3000 -> 23.104.0.1:42616 10 6438 1 2025-07-23 20:20:01.443 00:06:00.457 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-07-23 20:25:18.417 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35594 10 6438 1 2025-07-23 20:26:18.826 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:58142 10 6438 1 2025-07-23 20:27:19.193 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38510 10 6438 1 2025-07-23 20:27:32.894 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-23 20:27:33.003 00:00:00.040 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-23 20:27:33.115 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-23 20:27:33.021 00:00:00.028 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-23 20:27:33.197 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-23 20:28:19.592 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:46644 10 6438 1 2025-07-23 20:29:19.992 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45070 10 6438 1 2025-07-23 20:25:01.445 00:06:00.452 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-07-23 20:30:20.397 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:47518 10 6438 1 2025-07-23 20:31:20.801 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:38266 10 6438 1 2025-07-23 20:27:01.444 00:06:00.457 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-07-23 20:32:33.265 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-23 20:32:33.322 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-23 20:32:32.948 00:00:00.027 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-23 20:32:33.251 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-23 20:32:21.165 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48094 10 6438 1 2025-07-23 20:32:33.333 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-23 20:33:21.570 00:00:10.441 TCP 1.101.0.1:3000 -> 23.104.0.1:33846 12 10352 1 2025-07-23 20:34:22.058 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:46024 10 6438 1 2025-07-23 20:35:22.458 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:39518 10 6438 1 2025-07-23 20:36:22.827 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:46712 10 6438 1 2025-07-23 20:32:01.447 00:06:00.453 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-07-23 20:37:33.399 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-23 20:37:33.281 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-23 20:37:32.956 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-23 20:37:33.218 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-23 20:37:33.317 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-23 20:37:23.229 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43942 10 6438 1 2025-07-23 20:38:23.629 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:43294 10 6438 1 2025-07-23 20:34:01.446 00:06:00.458 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-07-23 20:39:24.041 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:43730 10 6438 1 2025-07-23 20:40:24.445 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55272 10 6438 1 2025-07-23 20:41:24.850 00:00:10.393 TCP 1.101.0.1:3000 -> 23.104.0.1:39026 10 6438 1 2025-07-23 20:42:33.269 00:00:00.034 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-23 20:42:33.268 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-23 20:42:33.249 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-23 20:42:33.206 00:00:00.035 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-23 20:42:33.186 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-23 20:42:25.273 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54482 10 6438 1 2025-07-23 20:43:25.675 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:51500 10 6438 1 2025-07-23 20:39:01.449 00:06:00.452 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-07-23 20:44:26.104 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50252 10 6438 1 2025-07-23 20:45:26.508 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:33688 10 6438 1 2025-07-23 20:41:01.448 00:06:00.458 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-07-23 20:46:26.910 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57632 10 6438 1 2025-07-23 20:47:33.363 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-23 20:47:33.365 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-23 20:47:33.291 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-23 20:47:33.291 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-23 20:47:33.373 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-23 20:47:27.314 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:37404 10 6438 1 2025-07-23 20:48:27.715 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53364 10 6438 1 2025-07-23 20:49:28.125 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50990 10 6438 1 2025-07-23 20:50:28.522 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:51434 10 6438 1 2025-07-23 20:46:01.453 00:06:00.452 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-07-23 20:51:28.928 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:49124 10 6438 1 2025-07-23 20:52:33.644 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-23 20:52:33.461 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-23 20:52:33.620 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-23 20:52:33.627 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-23 20:52:33.560 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-23 20:52:29.365 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:51476 10 6438 1 2025-07-23 20:48:01.449 00:06:00.460 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-07-23 20:53:29.781 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:32968 10 6438 1 2025-07-23 20:54:30.191 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58160 10 6438 1 2025-07-23 20:55:30.593 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:33186 10 6438 1 2025-07-23 20:56:30.998 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39156 10 6438 1 2025-07-23 20:57:33.643 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-23 20:57:33.565 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-23 20:57:33.566 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-23 20:57:33.345 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-23 20:57:33.562 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-23 20:57:31.406 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:52854 10 6438 1 2025-07-23 20:53:01.454 00:06:00.455 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-07-23 20:58:31.808 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:52436 10 6438 1 Summary: total flows: 137, total bytes: 423865, total packets: 1022, avg bps: 911, avg pps: 0, avg bpp: 414 Time window: 2025-07-23 19:57:01 - 2025-07-23 20:59:01 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0016s User: 0.0024s Wall: 0.0020s flows/second: 70041.4 Runtime: 0.0020s