Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-07-21 07:59:00.881 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:51096 10 6438 1 2025-07-21 08:00:01.286 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:38492 10 6438 1 2025-07-21 08:01:01.686 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34092 10 6438 1 2025-07-21 08:01:20.230 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-21 08:01:20.201 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-21 08:01:20.226 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-21 08:01:20.146 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-21 08:01:20.253 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-21 07:57:00.580 00:05:00.001 TCP 179.21.23.23:179 -> 179.21.23.21:38570 11 686 1 2025-07-21 08:02:02.108 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59142 10 6438 1 2025-07-21 07:59:00.132 00:04:00.452 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-07-21 08:03:02.507 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:36504 10 6438 1 2025-07-21 08:04:02.915 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40012 10 6438 1 2025-07-21 08:05:03.318 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:55630 10 6438 1 2025-07-21 08:06:03.731 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:52162 10 6438 1 2025-07-21 08:06:20.730 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-21 08:06:20.651 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-21 08:06:20.773 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-21 08:06:20.647 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-21 08:06:20.718 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-21 08:03:00.138 00:04:00.444 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-07-21 08:07:04.142 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:38870 10 6438 1 2025-07-21 08:04:00.136 00:04:00.450 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-07-21 08:08:04.547 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:37670 10 6438 1 2025-07-21 08:09:04.954 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:45866 10 6438 1 2025-07-21 08:10:05.361 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50268 10 6438 1 2025-07-21 08:11:05.766 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:37674 10 6438 1 2025-07-21 08:11:20.529 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-21 08:11:20.189 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-21 08:11:20.390 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-21 08:11:20.472 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-21 08:11:20.471 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-21 08:08:00.140 00:04:00.443 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-07-21 08:12:06.179 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58782 10 6438 1 2025-07-21 08:09:00.138 00:04:00.447 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-07-21 08:13:06.582 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50050 10 6438 1 2025-07-21 08:14:06.984 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:44310 10 6438 1 2025-07-21 08:15:07.383 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:59386 10 6438 1 2025-07-21 08:16:20.704 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-21 08:16:20.537 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-21 08:16:20.283 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-21 08:16:20.622 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-21 08:16:20.474 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-21 08:16:07.745 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51032 10 6438 1 2025-07-21 08:13:00.142 00:04:00.445 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-07-21 08:17:08.147 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:47554 10 6438 1 2025-07-21 08:18:08.545 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:34580 10 6438 1 2025-07-21 08:14:00.141 00:06:00.005 TCP 179.21.23.21:38570 -> 179.21.23.23:179 13 809 1 2025-07-21 08:19:08.908 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:33250 12 6542 1 2025-07-21 08:20:00.589 00:00:00.000 TCP 179.21.23.21:38570 -> 179.21.23.23:179 1 52 1 2025-07-21 08:20:09.315 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:33310 10 6438 1 2025-07-21 08:21:20.823 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-21 08:21:20.742 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-21 08:21:20.568 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-21 08:21:09.696 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:51504 10 6438 1 2025-07-21 08:21:20.563 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-21 08:21:20.491 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-21 08:18:00.148 00:04:00.439 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-07-21 08:22:10.115 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:52426 10 6438 1 2025-07-21 08:23:10.487 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:35462 10 6438 1 2025-07-21 08:24:10.889 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:46708 10 6438 1 2025-07-21 08:21:00.146 00:04:00.444 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-07-21 08:25:11.318 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35304 10 6438 1 2025-07-21 08:26:20.833 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-21 08:26:20.750 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-21 08:26:20.564 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-21 08:26:20.746 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-21 08:26:20.578 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-21 08:26:11.726 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:49966 10 6438 1 2025-07-21 08:23:00.148 00:04:00.439 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-07-21 08:27:12.138 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34020 10 6438 1 2025-07-21 08:28:12.542 00:00:10.434 TCP 1.101.0.1:3000 -> 23.104.0.1:44564 12 10352 1 2025-07-21 08:29:13.019 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44584 10 6438 1 2025-07-21 08:26:00.147 00:04:00.450 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-07-21 08:30:13.425 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43888 10 6438 1 2025-07-21 08:31:20.799 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-21 08:31:20.767 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-21 08:31:20.871 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-21 08:31:20.879 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-21 08:31:20.954 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-21 08:31:13.828 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:54314 10 6438 1 2025-07-21 08:32:14.195 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:57010 10 6438 1 2025-07-21 08:28:00.149 00:06:00.003 TCP 179.21.23.23:179 -> 179.21.23.21:38570 13 790 1 2025-07-21 08:33:14.595 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36656 10 6438 1 2025-07-21 08:34:14.998 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:40646 10 6438 1 2025-07-21 08:31:00.148 00:04:00.445 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-07-21 08:35:15.396 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:45784 10 6438 1 2025-07-21 08:36:20.963 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-21 08:36:20.863 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-21 08:36:20.736 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-21 08:36:20.882 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-21 08:36:20.869 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-21 08:36:15.761 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:58224 10 6438 1 2025-07-21 08:37:16.177 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:54986 10 6438 1 2025-07-21 08:38:16.579 00:00:10.445 TCP 1.101.0.1:3000 -> 23.104.0.1:35726 12 10352 1 2025-07-21 08:34:00.590 00:05:00.002 TCP 179.21.23.23:179 -> 179.21.23.21:38570 11 686 1 2025-07-21 08:39:17.067 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:35976 10 6438 1 2025-07-21 08:36:00.151 00:04:00.444 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-07-21 08:40:17.466 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:57020 10 6438 1 2025-07-21 08:41:20.751 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-21 08:41:21.318 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-21 08:41:20.986 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-21 08:41:21.236 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-21 08:41:21.240 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-21 08:41:17.865 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:48704 10 6438 1 2025-07-21 08:42:18.234 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:43090 10 6438 1 2025-07-21 08:43:18.641 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:57292 10 6438 1 2025-07-21 08:40:00.153 00:04:00.438 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-07-21 08:44:19.009 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39154 10 6438 1 2025-07-21 08:41:00.149 00:04:00.445 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-07-21 08:45:19.412 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:59446 10 6438 1 2025-07-21 08:46:21.067 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-21 08:46:21.086 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-21 08:46:21.077 00:00:00.035 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-21 08:46:21.073 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-21 08:46:21.159 00:00:00.036 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-21 08:46:19.776 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:50638 10 6438 1 2025-07-21 08:47:20.190 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47990 10 6438 1 2025-07-21 08:48:20.592 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:36004 10 6438 1 2025-07-21 08:45:00.154 00:04:00.447 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-07-21 08:49:20.955 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:33440 10 6438 1 2025-07-21 08:50:21.356 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47896 10 6438 1 2025-07-21 08:46:00.151 00:06:00.001 TCP 179.21.23.21:38570 -> 179.21.23.23:179 13 809 1 2025-07-21 08:51:21.885 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-21 08:51:21.874 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-21 08:51:21.286 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-21 08:51:21.804 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-21 08:51:21.722 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-21 08:51:21.758 00:00:10.316 TCP 1.101.0.1:3000 -> 23.104.0.1:41778 10 6438 1 2025-07-21 08:52:00.604 00:00:00.000 TCP 179.21.23.21:38570 -> 179.21.23.23:179 1 52 1 2025-07-21 08:52:22.116 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:60206 10 6438 1 2025-07-21 08:53:22.534 00:00:10.447 TCP 1.101.0.1:3000 -> 23.104.0.1:42164 12 10350 1 2025-07-21 08:50:00.154 00:04:00.448 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-07-21 08:54:23.029 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:33504 10 6438 1 2025-07-21 08:55:23.451 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:35524 10 6438 1 2025-07-21 08:56:20.878 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-21 08:56:21.420 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-21 08:56:21.233 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-21 08:56:21.339 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-21 08:56:21.352 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-21 08:56:23.809 00:00:10.345 TCP 1.101.0.1:3000 -> 23.104.0.1:53428 10 6438 1 2025-07-21 08:53:00.152 00:04:00.452 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-07-21 08:57:24.191 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:57094 10 6438 1 2025-07-21 08:58:24.596 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42436 10 6438 1 Summary: total flows: 144, total bytes: 427583, total packets: 1021, avg bps: 925, avg pps: 0, avg bpp: 418 Time window: 2025-07-21 07:57:00 - 2025-07-21 08:58:34 Total flows processed: 144, passed: 144, Blocks skipped: 0, Bytes read: 15040 Sys: 0.0033s User: 0.0008s Wall: 0.0019s flows/second: 77672.3 Runtime: 0.0019s