Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-07-24 13:59:21.884 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:47442 12 6542 1 2025-07-24 14:00:22.310 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33376 10 6438 1 2025-07-24 13:57:01.790 00:05:00.459 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-24 14:01:22.713 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:60410 10 6438 1 2025-07-24 13:58:01.794 00:05:00.452 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-24 14:02:23.125 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:42428 10 6438 1 2025-07-24 14:02:54.047 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-24 14:02:54.047 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-24 14:02:54.172 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-24 14:02:54.188 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-24 14:02:54.131 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-24 14:03:23.486 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49394 10 6438 1 2025-07-24 14:04:23.886 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:33194 12 6542 1 2025-07-24 14:05:24.298 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44280 10 6438 1 2025-07-24 14:06:24.698 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55866 10 6438 1 2025-07-24 14:03:01.794 00:05:00.456 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-24 14:07:25.109 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:37416 10 6438 1 2025-07-24 14:07:54.039 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-24 14:07:54.289 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-24 14:07:54.088 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-24 14:07:54.401 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-24 14:07:54.483 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-24 14:04:01.797 00:05:00.450 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-24 14:08:25.513 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33668 10 6438 1 2025-07-24 14:09:25.919 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39280 10 6438 1 2025-07-24 14:10:26.322 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:36578 10 6438 1 2025-07-24 14:11:26.733 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:52228 10 6438 1 2025-07-24 14:12:27.142 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55808 10 6438 1 2025-07-24 14:12:54.349 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-24 14:12:54.355 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-24 14:12:54.432 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-24 14:12:54.199 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-24 14:12:54.266 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-24 14:09:01.796 00:05:00.454 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-24 14:13:27.546 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:45756 10 6438 1 2025-07-24 14:10:01.800 00:05:00.448 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-24 14:14:27.949 00:00:10.348 TCP 1.101.0.1:3000 -> 23.104.0.1:40902 10 6438 1 2025-07-24 14:15:28.347 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58786 10 6438 1 2025-07-24 14:16:28.745 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57604 10 6438 1 2025-07-24 14:17:29.153 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:59846 12 6542 1 2025-07-24 14:17:54.608 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-24 14:17:54.392 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-24 14:17:54.272 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-24 14:17:54.204 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-24 14:17:54.523 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-24 14:18:29.566 00:00:10.437 TCP 1.101.0.1:3000 -> 23.104.0.1:48130 12 10352 1 2025-07-24 14:15:01.799 00:05:00.455 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-24 14:19:30.041 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:56994 10 6438 1 2025-07-24 14:16:01.802 00:05:00.451 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-24 14:20:30.440 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:59580 10 6438 1 2025-07-24 14:21:30.841 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:35484 10 6438 1 2025-07-24 14:22:31.271 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:40876 10 6438 1 2025-07-24 14:22:54.457 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-24 14:22:54.237 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-24 14:22:54.619 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-24 14:22:54.543 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-24 14:22:54.540 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-24 14:23:31.640 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:44528 10 6438 1 2025-07-24 14:24:32.013 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55010 10 6438 1 2025-07-24 14:21:01.801 00:05:00.458 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-24 14:25:32.416 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:49668 10 6438 1 2025-07-24 14:22:01.802 00:05:00.453 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-24 14:26:32.782 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:41280 10 6438 1 2025-07-24 14:27:33.191 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:37910 10 6438 1 2025-07-24 14:27:54.593 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-24 14:27:54.664 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-24 14:27:54.507 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-24 14:27:54.579 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-24 14:27:54.663 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-24 14:28:33.596 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:38542 10 6438 1 2025-07-24 14:29:34.007 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:60998 10 6438 1 2025-07-24 14:30:34.412 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:38180 10 6438 1 2025-07-24 14:27:01.802 00:05:00.457 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-24 14:31:34.775 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:54580 10 6438 1 2025-07-24 14:28:01.805 00:05:00.452 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-24 14:32:35.182 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:42152 10 6438 1 2025-07-24 14:32:54.880 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-24 14:32:54.775 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-24 14:32:54.788 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-24 14:32:54.778 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-24 14:32:54.862 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-24 14:33:35.545 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55018 10 6438 1 2025-07-24 14:34:35.951 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:55592 10 6438 1 2025-07-24 14:35:36.325 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:57600 10 6438 1 2025-07-24 14:36:36.728 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:44650 10 6438 1 2025-07-24 14:33:01.805 00:05:00.457 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-24 14:37:37.135 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:50452 10 6438 1 2025-07-24 14:37:54.739 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-24 14:37:54.750 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-24 14:37:54.819 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-24 14:37:54.649 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-24 14:37:54.732 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-24 14:34:01.808 00:05:00.449 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-24 14:38:37.535 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:34536 10 6438 1 2025-07-24 14:39:37.933 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:54610 10 6438 1 2025-07-24 14:40:38.356 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:58054 10 6438 1 2025-07-24 14:41:38.770 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:36612 10 6438 1 2025-07-24 14:42:39.188 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:37356 12 6542 1 2025-07-24 14:42:54.916 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-24 14:42:54.898 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-24 14:42:54.665 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-24 14:42:54.961 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-24 14:42:55.043 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-24 14:39:01.806 00:05:00.454 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-24 14:43:39.591 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:35186 10 6438 1 2025-07-24 14:40:01.810 00:05:00.450 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-24 14:44:39.994 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54390 10 6438 1 2025-07-24 14:45:40.400 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:53568 10 6438 1 2025-07-24 14:46:40.806 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48942 10 6438 1 2025-07-24 14:47:41.222 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39440 10 6438 1 2025-07-24 14:47:54.837 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-24 14:47:55.073 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-24 14:47:55.076 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-24 14:47:55.073 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-24 14:47:55.157 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-24 14:48:41.622 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:47756 10 6438 1 2025-07-24 14:45:01.807 00:05:00.456 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-24 14:49:41.980 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:49516 10 6438 1 2025-07-24 14:46:01.811 00:05:00.451 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-24 14:50:42.349 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58254 10 6438 1 2025-07-24 14:51:42.749 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:51466 10 6438 1 2025-07-24 14:52:54.902 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-24 14:52:43.150 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:48086 10 6438 1 2025-07-24 14:52:55.094 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-24 14:52:55.136 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-24 14:52:54.987 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-24 14:52:55.069 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-24 14:53:43.555 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59614 10 6438 1 2025-07-24 14:54:43.964 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:49682 10 6438 1 2025-07-24 14:51:01.810 00:05:00.456 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-24 14:55:44.328 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45920 10 6438 1 2025-07-24 14:52:01.812 00:05:00.452 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-24 14:56:44.731 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:53556 10 6438 1 2025-07-24 14:57:55.060 00:00:00.035 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-24 14:57:55.322 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-24 14:57:55.275 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-24 14:57:45.113 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:45204 10 6438 1 2025-07-24 14:57:55.062 00:00:00.033 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-24 14:57:55.143 00:00:00.034 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 Summary: total flows: 139, total bytes: 414052, total packets: 1020, avg bps: 906, avg pps: 0, avg bpp: 405 Time window: 2025-07-24 13:57:01 - 2025-07-24 14:57:55 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0052s User: 0.0009s Wall: 0.0054s flows/second: 25817.4 Runtime: 0.0054s