Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-07-24 20:59:09.918 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:57210 10 6438 1 2025-07-24 21:00:10.329 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:43356 10 6438 1 2025-07-24 20:57:01.925 00:05:00.464 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-24 21:01:10.688 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:36378 10 6438 1 2025-07-24 20:58:01.929 00:05:00.458 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-24 21:02:11.108 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59164 10 6438 1 2025-07-24 21:03:02.566 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-24 21:03:02.702 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-24 21:03:02.517 00:00:00.026 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-24 21:03:02.554 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-24 21:03:02.638 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-24 21:03:11.516 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:54760 10 6438 1 2025-07-24 21:04:11.914 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:33188 10 6438 1 2025-07-24 21:05:12.324 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:47534 10 6438 1 2025-07-24 21:06:12.703 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:37208 10 6438 1 2025-07-24 21:03:01.928 00:05:00.463 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-24 21:07:13.107 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53424 10 6438 1 2025-07-24 21:08:02.487 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-24 21:08:02.476 00:00:00.032 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-24 21:08:02.674 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-24 21:08:02.634 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-24 21:08:02.718 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-24 21:04:01.932 00:05:00.458 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-24 21:08:13.510 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:54564 10 6438 1 2025-07-24 21:09:13.916 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:41538 10 6438 1 2025-07-24 21:10:14.323 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:50884 10 6438 1 2025-07-24 21:11:14.729 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:51218 10 6438 1 2025-07-24 21:12:15.100 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56748 10 6438 1 2025-07-24 21:09:01.930 00:05:00.468 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-24 21:13:02.709 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-24 21:13:02.467 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-24 21:13:02.844 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-24 21:13:03.105 00:00:00.030 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-24 21:13:02.926 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-24 21:13:15.504 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:47480 10 6438 1 2025-07-24 21:10:01.933 00:05:00.462 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-24 21:14:15.857 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:46362 10 6438 1 2025-07-24 21:15:16.279 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46500 10 6438 1 2025-07-24 21:16:16.683 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:53338 10 6438 1 2025-07-24 21:17:17.108 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46356 10 6438 1 2025-07-24 21:18:03.225 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-24 21:18:02.967 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-24 21:18:02.995 00:00:00.053 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-24 21:18:03.138 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-24 21:18:02.857 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-24 21:18:17.508 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:55230 10 6438 1 2025-07-24 21:15:01.930 00:05:00.472 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-24 21:19:17.871 00:00:10.342 TCP 1.101.0.1:3000 -> 23.104.0.1:37954 10 6438 1 2025-07-24 21:16:01.935 00:05:00.466 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-24 21:20:18.237 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:48288 10 6438 1 2025-07-24 21:21:18.632 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:45732 10 6438 1 2025-07-24 21:22:19.033 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52554 10 6438 1 2025-07-24 21:23:03.194 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-24 21:23:02.687 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-24 21:23:02.881 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-24 21:23:02.971 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-24 21:23:03.103 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-24 21:23:19.436 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:51492 10 6438 1 2025-07-24 21:24:19.835 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:43852 10 6438 1 2025-07-24 21:21:01.932 00:05:00.470 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-24 21:25:20.269 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:36184 10 6438 1 2025-07-24 21:22:01.935 00:05:00.465 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-24 21:26:20.628 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:56854 10 6438 1 2025-07-24 21:27:21.060 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:37210 10 6438 1 2025-07-24 21:28:03.390 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-24 21:28:03.278 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-24 21:28:02.871 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-24 21:28:03.333 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-24 21:28:03.417 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-24 21:28:21.460 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:34382 10 6438 1 2025-07-24 21:29:21.864 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:37998 10 6438 1 2025-07-24 21:30:22.274 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:50004 10 6438 1 2025-07-24 21:27:01.933 00:05:00.469 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-24 21:31:22.675 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:44466 10 6438 1 2025-07-24 21:28:01.936 00:05:00.465 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-24 21:32:23.115 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:51720 10 6438 1 2025-07-24 21:33:03.177 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-24 21:33:03.091 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-24 21:33:03.312 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-24 21:33:03.198 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-24 21:33:03.095 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-24 21:33:23.525 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:40688 10 6438 1 2025-07-24 21:34:23.929 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:49860 10 6438 1 2025-07-24 21:35:24.355 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:51914 10 6438 1 2025-07-24 21:36:24.772 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:54886 10 6438 1 2025-07-24 21:33:01.935 00:05:00.470 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-24 21:37:25.180 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:51272 10 6438 1 2025-07-24 21:38:03.167 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-24 21:38:03.278 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-24 21:38:03.347 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-24 21:38:03.387 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-24 21:38:03.430 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-24 21:34:01.937 00:05:00.465 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-24 21:38:25.589 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:39502 10 6438 1 2025-07-24 21:39:25.987 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:46176 10 6438 1 2025-07-24 21:40:26.406 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:41164 10 6438 1 2025-07-24 21:41:26.824 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37622 10 6438 1 2025-07-24 21:42:27.226 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45382 10 6438 1 2025-07-24 21:43:03.403 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-24 21:43:03.450 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-24 21:39:01.941 00:05:00.467 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-24 21:43:03.534 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-24 21:43:03.535 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-24 21:43:03.321 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-24 21:43:27.631 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:43720 10 6438 1 2025-07-24 21:40:01.942 00:05:00.462 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-24 21:44:28.034 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:45894 10 6438 1 2025-07-24 21:45:28.422 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46588 10 6438 1 2025-07-24 21:46:28.830 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:42584 10 6438 1 2025-07-24 21:47:29.235 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:54990 10 6438 1 2025-07-24 21:48:03.515 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-24 21:48:03.552 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-24 21:48:03.436 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-24 21:48:03.416 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-24 21:48:03.432 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-24 21:48:29.594 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:60186 10 6438 1 2025-07-24 21:45:01.941 00:05:00.469 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-24 21:49:30.034 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44142 10 6438 1 2025-07-24 21:46:01.945 00:05:00.463 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-24 21:50:30.440 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55190 10 6438 1 2025-07-24 21:51:30.838 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:36122 10 6438 1 2025-07-24 21:52:31.217 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36862 10 6438 1 2025-07-24 21:53:03.567 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-24 21:53:03.493 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-24 21:53:03.509 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-24 21:53:03.625 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-24 21:53:03.590 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-24 21:53:31.627 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:46862 10 6438 1 2025-07-24 21:54:32.031 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37472 10 6438 1 2025-07-24 21:51:01.943 00:05:00.472 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-24 21:55:32.439 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41702 10 6438 1 2025-07-24 21:52:01.946 00:05:00.467 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-24 21:56:32.850 00:00:10.355 TCP 1.101.0.1:3000 -> 23.104.0.1:38140 10 6438 1 2025-07-24 21:57:33.243 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40134 10 6438 1 2025-07-24 21:58:03.704 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-24 21:58:03.499 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-24 21:58:03.704 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-24 21:58:03.475 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-24 21:58:03.787 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-24 21:58:33.667 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43902 10 6438 1 Summary: total flows: 140, total bytes: 416160, total packets: 1020, avg bps: 899, avg pps: 0, avg bpp: 408 Time window: 2025-07-24 20:57:01 - 2025-07-24 21:58:44 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0021s User: 0.0021s Wall: 0.0018s flows/second: 76838.9 Runtime: 0.0018s