Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-07-22 19:55:00.917 00:05:00.502 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-22 19:59:26.949 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:40424 10 6438 1 2025-07-22 20:00:27.324 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49140 10 6438 1 2025-07-22 19:57:00.916 00:05:00.506 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-22 20:01:27.726 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:47972 10 6438 1 2025-07-22 20:02:03.648 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-22 20:02:03.571 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-22 20:02:03.532 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 20:02:03.566 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 20:02:03.400 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-22 20:02:28.141 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60928 10 6438 1 2025-07-22 20:03:28.543 00:00:10.432 TCP 1.101.0.1:3000 -> 23.104.0.1:45294 12 10352 1 2025-07-22 20:04:29.018 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57592 10 6438 1 2025-07-22 20:01:00.921 00:05:00.502 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-22 20:05:29.422 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:60224 10 6438 1 2025-07-22 20:06:29.820 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:34224 10 6438 1 2025-07-22 20:07:03.814 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-22 20:07:03.609 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 20:07:03.817 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 20:07:03.814 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-22 20:03:00.918 00:05:00.506 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-22 20:07:03.900 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-22 20:07:30.230 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:36068 10 6438 1 2025-07-22 20:08:30.631 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:58338 10 6438 1 2025-07-22 20:09:31.034 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:33840 10 6438 1 2025-07-22 20:10:31.463 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50012 10 6438 1 2025-07-22 20:07:00.921 00:05:00.501 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-22 20:11:31.872 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:50004 10 6438 1 2025-07-22 20:12:03.728 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-22 20:12:03.542 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 20:12:03.883 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 20:12:03.841 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-22 20:12:03.967 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-22 20:12:32.277 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43736 10 6438 1 2025-07-22 20:09:00.921 00:05:00.504 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-22 20:13:32.685 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44474 10 6438 1 2025-07-22 20:14:33.112 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45170 10 6438 1 2025-07-22 20:15:33.518 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:32798 10 6438 1 2025-07-22 20:16:33.931 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:46938 10 6438 1 2025-07-22 20:13:00.925 00:05:00.506 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-22 20:17:04.439 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-22 20:17:04.513 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-22 20:17:03.766 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 20:17:04.356 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 20:17:04.173 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-22 20:17:34.358 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:46490 10 6438 1 2025-07-22 20:18:34.772 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:56602 10 6438 1 2025-07-22 20:15:00.923 00:05:00.511 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-22 20:19:35.184 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:53048 10 6438 1 2025-07-22 20:20:35.591 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39404 10 6438 1 2025-07-22 20:21:36.000 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46064 10 6438 1 2025-07-22 20:22:03.856 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-22 20:22:03.702 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 20:22:04.051 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 20:22:03.922 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-22 20:22:04.136 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-22 20:22:36.405 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:43524 10 6438 1 2025-07-22 20:19:00.927 00:05:00.505 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-22 20:23:36.809 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55296 10 6438 1 2025-07-22 20:24:37.211 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:33090 10 6438 1 2025-07-22 20:21:00.923 00:05:00.511 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-22 20:25:37.617 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:41476 10 6438 1 2025-07-22 20:26:38.015 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:34914 10 6438 1 2025-07-22 20:27:04.252 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-22 20:27:03.807 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 20:27:04.155 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 20:27:04.152 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-22 20:27:04.237 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-22 20:27:38.438 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:37038 10 6438 1 2025-07-22 20:28:38.842 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:46014 10 6438 1 2025-07-22 20:25:00.927 00:05:00.505 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-22 20:29:39.265 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60366 10 6438 1 2025-07-22 20:30:39.674 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56622 10 6438 1 2025-07-22 20:27:00.925 00:05:00.511 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-22 20:31:40.105 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47012 10 6438 1 2025-07-22 20:32:04.590 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-22 20:32:04.508 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-22 20:32:04.770 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 20:32:04.508 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 20:32:04.833 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-22 20:32:40.516 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58732 10 6438 1 2025-07-22 20:33:40.920 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54786 10 6438 1 2025-07-22 20:34:41.329 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:44936 10 6438 1 2025-07-22 20:31:00.927 00:05:00.505 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-22 20:35:41.687 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:46958 10 6438 1 2025-07-22 20:36:42.114 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48170 10 6438 1 2025-07-22 20:37:04.209 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-22 20:37:04.063 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 20:37:04.207 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 20:37:04.214 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-22 20:33:00.925 00:05:00.511 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-22 20:37:04.290 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-22 20:37:42.520 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47758 10 6438 1 2025-07-22 20:38:42.925 00:00:10.458 TCP 1.101.0.1:3000 -> 23.104.0.1:44996 12 10352 1 2025-07-22 20:39:43.423 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:38842 10 6438 1 2025-07-22 20:40:43.822 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51714 10 6438 1 2025-07-22 20:37:00.929 00:05:00.505 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-22 20:41:44.226 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42242 10 6438 1 2025-07-22 20:42:04.593 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-22 20:42:04.423 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-22 20:42:04.137 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 20:42:04.510 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 20:42:04.621 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-22 20:42:44.629 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52192 10 6438 1 2025-07-22 20:39:00.927 00:05:00.510 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-22 20:43:45.032 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48306 10 6438 1 2025-07-22 20:44:45.432 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:51692 10 6438 1 2025-07-22 20:45:45.835 00:00:10.342 TCP 1.101.0.1:3000 -> 23.104.0.1:51720 10 6438 1 2025-07-22 20:46:46.216 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:45272 10 6438 1 2025-07-22 20:43:00.929 00:05:00.506 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-22 20:47:04.591 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-22 20:47:04.429 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-22 20:47:04.212 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 20:47:04.509 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 20:47:04.504 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-22 20:47:46.623 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:50542 10 6438 1 2025-07-22 20:48:47.032 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:43132 10 6438 1 2025-07-22 20:45:00.927 00:05:00.511 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-22 20:49:47.458 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55148 10 6438 1 2025-07-22 20:50:47.868 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:36944 10 6438 1 2025-07-22 20:51:48.284 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44240 10 6438 1 2025-07-22 20:52:04.514 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-22 20:52:04.655 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 20:52:04.650 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 20:52:04.651 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-22 20:52:04.733 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-22 20:52:48.688 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38702 10 6438 1 2025-07-22 20:49:00.931 00:05:00.505 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-22 20:53:49.110 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:33982 10 6438 1 2025-07-22 20:54:49.516 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:49366 10 6438 1 2025-07-22 20:51:00.931 00:05:00.509 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-22 20:55:49.924 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:52124 10 6438 1 2025-07-22 20:56:50.350 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:37020 11 6490 1 2025-07-22 20:57:04.554 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-22 20:57:04.657 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-22 20:57:04.419 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 20:57:04.472 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-22 20:57:04.738 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-22 20:57:50.769 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:34844 10 6438 1 Summary: total flows: 139, total bytes: 417602, total packets: 1015, avg bps: 883, avg pps: 0, avg bpp: 411 Time window: 2025-07-22 19:55:00 - 2025-07-22 20:58:01 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0035s User: 0.0009s Wall: 0.0027s flows/second: 51271.5 Runtime: 0.0027s