Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-07-25 09:59:26.853 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:57768 10 6438 1 2025-07-25 10:00:27.283 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51332 10 6438 1 2025-07-25 10:01:27.691 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:50484 10 6438 1 2025-07-25 09:57:02.203 00:06:00.430 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-07-25 10:02:28.103 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:56432 10 6438 1 2025-07-25 10:03:18.240 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-25 10:03:18.255 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-25 10:03:18.199 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-25 10:03:18.325 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-25 10:03:18.408 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-25 10:03:28.510 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:41728 10 6438 1 2025-07-25 09:59:02.207 00:06:00.427 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-07-25 10:04:28.923 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:52384 10 6438 1 2025-07-25 10:05:29.346 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:49046 10 6438 1 2025-07-25 10:06:29.713 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:49948 10 6438 1 2025-07-25 10:07:30.109 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:47042 10 6438 1 2025-07-25 10:08:18.540 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-25 10:08:18.137 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-25 10:08:18.410 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-25 10:08:18.269 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-25 10:08:18.459 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-25 10:08:30.521 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39288 10 6438 1 2025-07-25 10:04:02.204 00:06:00.445 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-07-25 10:09:30.925 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:44386 10 6438 1 2025-07-25 10:10:31.303 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47944 10 6438 1 2025-07-25 10:06:02.207 00:06:00.440 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-07-25 10:11:31.706 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56774 10 6438 1 2025-07-25 10:12:32.112 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:58994 10 6438 1 2025-07-25 10:13:18.345 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-25 10:13:18.490 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-25 10:13:18.493 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-25 10:13:18.371 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-25 10:13:18.262 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-25 10:13:32.476 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:58682 10 6438 1 2025-07-25 10:14:32.875 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:57728 10 6438 1 2025-07-25 10:15:33.282 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:44154 10 6438 1 2025-07-25 10:11:02.207 00:06:00.445 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-07-25 10:16:33.648 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:57912 10 6438 1 2025-07-25 10:17:34.108 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50484 10 6438 1 2025-07-25 10:13:02.210 00:06:00.440 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-07-25 10:18:18.630 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-25 10:18:18.315 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-25 10:18:18.446 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-25 10:18:18.373 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-25 10:18:18.547 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-25 10:18:34.513 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:34868 10 6438 1 2025-07-25 10:19:34.922 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:42664 10 6438 1 2025-07-25 10:20:35.340 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:56544 10 6438 1 2025-07-25 10:21:35.703 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:38964 10 6438 1 2025-07-25 10:22:36.088 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43404 10 6438 1 2025-07-25 10:18:02.211 00:06:00.443 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-07-25 10:23:18.719 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-25 10:23:18.722 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-25 10:23:18.306 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-25 10:23:18.580 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-25 10:23:18.663 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-25 10:23:36.494 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45444 10 6438 1 2025-07-25 10:24:36.894 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:43010 10 6438 1 2025-07-25 10:20:02.213 00:06:00.439 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-07-25 10:25:37.305 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:60540 10 6438 1 2025-07-25 10:26:37.710 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:50020 10 6438 1 2025-07-25 10:27:38.113 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:43196 10 6438 1 2025-07-25 10:28:18.941 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-25 10:28:19.001 00:00:00.048 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-25 10:28:18.909 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-25 10:28:19.096 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-25 10:28:19.179 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-25 10:28:38.524 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58066 10 6438 1 2025-07-25 10:29:38.929 00:00:10.348 TCP 1.101.0.1:3000 -> 23.104.0.1:56654 10 6438 1 2025-07-25 10:25:02.212 00:06:00.442 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-07-25 10:30:39.319 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:49332 10 6438 1 2025-07-25 10:31:39.720 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:51660 10 6438 1 2025-07-25 10:27:02.216 00:06:00.439 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-07-25 10:32:40.150 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:50704 10 6438 1 2025-07-25 10:33:18.899 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-25 10:33:18.755 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-25 10:33:18.828 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-25 10:33:18.599 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-25 10:33:18.818 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-25 10:33:40.557 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52922 10 6438 1 2025-07-25 10:34:40.956 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:60940 10 6438 1 2025-07-25 10:35:41.358 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:34882 10 6438 1 2025-07-25 10:36:41.758 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:46948 10 6438 1 2025-07-25 10:32:02.214 00:06:00.442 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-07-25 10:37:42.173 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:57606 10 6438 1 2025-07-25 10:38:18.895 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-25 10:38:18.879 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-25 10:38:18.875 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-25 10:38:18.854 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-25 10:38:18.813 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-25 10:38:42.576 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:43546 10 6438 1 2025-07-25 10:34:02.218 00:06:00.436 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-07-25 10:39:42.938 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:54508 10 6438 1 2025-07-25 10:40:43.358 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:54934 10 6438 1 2025-07-25 10:41:43.778 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:42062 10 6438 1 2025-07-25 10:42:44.179 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58644 10 6438 1 2025-07-25 10:43:19.346 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-25 10:43:18.997 00:00:00.044 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-25 10:43:19.270 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-25 10:43:19.162 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-25 10:43:19.264 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-25 10:43:44.584 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:46418 10 6438 1 2025-07-25 10:39:02.215 00:06:00.442 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-07-25 10:44:44.984 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:54992 10 6438 1 2025-07-25 10:45:45.351 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45722 10 6438 1 2025-07-25 10:41:02.219 00:06:00.437 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-07-25 10:46:45.754 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:58110 10 6438 1 2025-07-25 10:47:46.130 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:48508 10 6438 1 2025-07-25 10:48:19.070 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-25 10:48:19.270 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-25 10:48:18.873 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-25 10:48:19.309 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-25 10:48:19.392 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-25 10:48:46.532 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:41568 10 6438 1 2025-07-25 10:49:46.897 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:52672 12 6542 1 2025-07-25 10:50:47.314 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:39330 10 6438 1 2025-07-25 10:46:02.217 00:06:00.442 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-07-25 10:51:47.721 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:35522 12 6542 1 2025-07-25 10:52:48.141 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:56308 10 6438 1 2025-07-25 10:48:02.221 00:06:00.437 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-07-25 10:53:19.252 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-25 10:53:19.047 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-25 10:53:19.029 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-25 10:53:19.220 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-25 10:53:19.169 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-25 10:53:48.551 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:34148 10 6438 1 2025-07-25 10:54:48.949 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:50502 10 6438 1 2025-07-25 10:55:49.362 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:44260 10 6438 1 2025-07-25 10:56:49.760 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:38452 10 6438 1 2025-07-25 10:53:02.225 00:06:00.436 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-07-25 10:57:50.181 00:00:10.419 TCP 1.101.0.1:3000 -> 23.104.0.1:46650 11 6490 1 2025-07-25 10:58:19.416 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-25 10:58:19.278 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-25 10:58:19.231 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-25 10:58:19.356 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-25 10:58:19.439 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 Summary: total flows: 136, total bytes: 409859, total packets: 1013, avg bps: 881, avg pps: 0, avg bpp: 404 Time window: 2025-07-25 09:57:02 - 2025-07-25 10:59:02 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0026s User: 0.0013s Wall: 0.0024s flows/second: 57433.1 Runtime: 0.0024s