Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-07-25 03:58:57.927 00:00:10.403 TCP 1.101.0.1:3000 -> 23.104.0.1:49258 10 6438 1 2025-07-25 03:55:02.095 00:06:00.427 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-07-25 03:59:58.368 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47278 10 6438 1 2025-07-25 04:00:58.778 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:45642 10 6438 1 2025-07-25 04:01:59.184 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:56722 10 6438 1 2025-07-25 04:02:59.585 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48638 10 6438 1 2025-07-25 04:03:11.012 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-25 04:03:10.834 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-25 04:03:11.093 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-25 04:03:10.749 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-25 04:03:10.930 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-25 04:03:59.991 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56678 10 6438 1 2025-07-25 04:00:02.093 00:06:00.432 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-07-25 04:05:00.398 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:54090 10 6438 1 2025-07-25 04:06:00.811 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36694 10 6438 1 2025-07-25 04:02:02.096 00:06:00.426 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-07-25 04:07:01.212 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52528 10 6438 1 2025-07-25 04:08:11.025 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-25 04:08:11.096 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-25 04:08:11.207 00:00:00.031 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-25 04:08:10.964 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-25 04:08:10.942 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-25 04:08:01.617 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:46828 10 6438 1 2025-07-25 04:09:01.978 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:46320 10 6438 1 2025-07-25 04:10:02.380 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:33624 10 6438 1 2025-07-25 04:11:02.775 00:00:10.418 TCP 1.101.0.1:3000 -> 23.104.0.1:35876 11 6490 1 2025-07-25 04:07:02.094 00:06:00.430 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-07-25 04:12:03.238 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:43900 10 6438 1 2025-07-25 04:13:11.265 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-25 04:13:11.184 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-25 04:13:11.282 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-25 04:13:03.597 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:47988 10 6438 1 2025-07-25 04:13:11.190 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-25 04:13:11.099 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-25 04:09:02.098 00:06:00.424 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-07-25 04:14:03.998 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42692 10 6438 1 2025-07-25 04:15:04.399 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47974 10 6438 1 2025-07-25 04:16:04.806 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:32962 12 6542 1 2025-07-25 04:17:05.215 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51626 10 6438 1 2025-07-25 04:18:11.227 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-25 04:18:11.144 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-25 04:18:11.249 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-25 04:18:11.252 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-25 04:18:11.383 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-25 04:18:05.619 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:44710 10 6438 1 2025-07-25 04:14:02.098 00:06:00.428 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-07-25 04:19:05.979 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:41482 10 6438 1 2025-07-25 04:20:06.406 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:58276 10 6438 1 2025-07-25 04:16:02.101 00:06:00.424 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-07-25 04:21:06.809 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:41728 10 6438 1 2025-07-25 04:22:07.227 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39626 10 6438 1 2025-07-25 04:23:11.674 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-25 04:23:11.463 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-25 04:23:11.468 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-25 04:23:11.164 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-25 04:23:11.591 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-25 04:23:07.633 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:37170 10 6438 1 2025-07-25 04:24:08.000 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:37862 10 6438 1 2025-07-25 04:25:08.399 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34962 10 6438 1 2025-07-25 04:21:02.100 00:06:00.428 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-07-25 04:26:08.801 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59470 10 6438 1 2025-07-25 04:27:09.207 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:49826 10 6438 1 2025-07-25 04:23:02.103 00:06:00.423 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-07-25 04:28:11.475 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-25 04:28:11.503 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-25 04:28:11.544 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-25 04:28:11.110 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-25 04:28:11.393 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-25 04:28:09.564 00:00:10.437 TCP 1.101.0.1:3000 -> 23.104.0.1:49028 12 10352 1 2025-07-25 04:29:10.038 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:46440 10 6438 1 2025-07-25 04:30:10.403 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43156 10 6438 1 2025-07-25 04:31:10.808 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58528 10 6438 1 2025-07-25 04:32:11.215 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33954 10 6438 1 2025-07-25 04:28:02.101 00:06:00.430 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-07-25 04:33:11.746 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-25 04:33:11.720 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-25 04:33:11.658 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-25 04:33:11.683 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-25 04:33:11.664 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-25 04:33:11.616 00:00:10.439 TCP 1.101.0.1:3000 -> 23.104.0.1:57384 12 10350 1 2025-07-25 04:34:12.121 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:50146 10 6438 1 2025-07-25 04:30:02.103 00:06:00.425 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-07-25 04:35:12.527 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:50808 10 6438 1 2025-07-25 04:36:12.928 00:00:10.396 TCP 1.101.0.1:3000 -> 23.104.0.1:35162 10 6438 1 2025-07-25 04:37:13.355 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55374 10 6438 1 2025-07-25 04:38:11.734 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-25 04:38:11.657 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-25 04:38:11.792 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-25 04:38:11.472 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-25 04:38:11.651 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-25 04:38:13.759 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:41912 10 6438 1 2025-07-25 04:39:14.185 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:38484 10 6438 1 2025-07-25 04:35:02.103 00:06:00.429 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-07-25 04:40:14.584 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43200 10 6438 1 2025-07-25 04:41:14.985 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:49878 10 6438 1 2025-07-25 04:37:02.106 00:06:00.424 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-07-25 04:42:15.363 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:38774 10 6438 1 2025-07-25 04:43:11.950 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-25 04:43:11.962 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-25 04:43:11.858 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-25 04:43:12.142 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-25 04:43:12.224 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-25 04:43:15.760 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:43706 10 6438 1 2025-07-25 04:44:16.192 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:49080 10 6438 1 2025-07-25 04:45:16.603 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:32952 10 6438 1 2025-07-25 04:46:17.007 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:46494 10 6438 1 2025-07-25 04:42:02.106 00:06:00.435 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-07-25 04:47:17.411 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:54686 10 6438 1 2025-07-25 04:48:11.898 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-25 04:48:11.819 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-25 04:48:11.765 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-25 04:48:11.998 00:00:00.043 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-25 04:48:12.081 00:00:00.042 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-25 04:48:17.780 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:51190 10 6438 1 2025-07-25 04:44:02.110 00:06:00.429 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-07-25 04:49:18.199 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:59156 10 6438 1 2025-07-25 04:50:18.566 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:42654 10 6438 1 2025-07-25 04:51:18.973 00:00:10.401 TCP 1.101.0.1:3000 -> 23.104.0.1:58884 10 6438 1 2025-07-25 04:52:19.415 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54650 10 6438 1 2025-07-25 04:53:12.056 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-25 04:53:12.057 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-25 04:53:11.737 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-25 04:53:11.790 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-25 04:53:11.873 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-25 04:53:19.819 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:41278 10 6438 1 2025-07-25 04:49:02.106 00:06:00.436 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-07-25 04:54:20.223 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58050 10 6438 1 2025-07-25 04:55:20.628 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42686 10 6438 1 2025-07-25 04:51:02.109 00:06:00.432 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-07-25 04:56:21.033 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55704 10 6438 1 2025-07-25 04:57:21.436 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:58706 10 6438 1 2025-07-25 04:58:12.151 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-25 04:58:12.272 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-25 04:58:11.941 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-25 04:58:12.272 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-25 04:58:12.356 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-25 04:58:21.799 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:40146 10 6438 1 Summary: total flows: 137, total bytes: 424019, total packets: 1025, avg bps: 890, avg pps: 0, avg bpp: 413 Time window: 2025-07-25 03:55:02 - 2025-07-25 04:58:32 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0029s User: 0.0012s Wall: 0.0027s flows/second: 50405.2 Runtime: 0.0027s