Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-07-26 05:58:41.586 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:58698 10 6438 1 2025-07-26 05:55:02.645 00:05:00.417 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-26 05:59:41.993 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43234 10 6438 1 2025-07-26 06:00:42.395 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35774 10 6438 1 2025-07-26 05:57:02.648 00:05:00.415 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-26 06:01:42.801 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35650 10 6438 1 2025-07-26 06:02:43.207 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41698 10 6438 1 2025-07-26 06:03:42.456 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-26 06:03:42.240 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-26 06:03:42.426 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-26 06:03:42.197 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-26 06:03:42.374 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-26 06:03:43.613 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:55022 10 6438 1 2025-07-26 06:04:44.014 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:43052 10 6438 1 2025-07-26 06:01:02.647 00:05:00.420 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-26 06:05:44.420 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:43244 10 6438 1 2025-07-26 06:06:44.782 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:33426 10 6438 1 2025-07-26 06:03:02.649 00:05:00.415 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-26 06:07:45.202 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:54134 10 6438 1 2025-07-26 06:08:42.762 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-26 06:08:42.446 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-26 06:08:42.627 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-26 06:08:42.635 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-26 06:08:42.678 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-26 06:08:45.610 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52338 10 6438 1 2025-07-26 06:09:46.021 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:45222 10 6438 1 2025-07-26 06:10:46.437 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:45996 10 6438 1 2025-07-26 06:07:02.646 00:05:00.421 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-26 06:11:46.854 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:42900 10 6438 1 2025-07-26 06:12:47.229 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:54988 10 6438 1 2025-07-26 06:09:02.649 00:05:00.415 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-26 06:13:42.611 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-26 06:13:42.650 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-26 06:13:42.526 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-26 06:13:42.615 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-26 06:13:42.529 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-26 06:13:47.633 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:57728 10 6438 1 2025-07-26 06:14:48.052 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40838 10 6438 1 2025-07-26 06:15:48.457 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55674 10 6438 1 2025-07-26 06:16:48.855 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:33878 10 6438 1 2025-07-26 06:13:02.650 00:05:00.417 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-26 06:17:49.273 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:50668 10 6438 1 2025-07-26 06:18:42.772 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-26 06:18:42.690 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-26 06:18:42.645 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-26 06:18:42.465 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-26 06:18:42.632 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-26 06:15:02.653 00:05:00.413 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-26 06:18:49.678 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:54970 10 6438 1 2025-07-26 06:19:50.104 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40258 10 6438 1 2025-07-26 06:20:50.504 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60620 10 6438 1 2025-07-26 06:21:50.911 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57916 12 6542 1 2025-07-26 06:19:02.651 00:05:00.419 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-26 06:22:51.312 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:38604 10 6438 1 2025-07-26 06:23:42.742 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-26 06:23:42.658 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-26 06:23:42.747 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-26 06:23:42.751 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-26 06:23:42.586 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-26 06:23:51.672 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35712 10 6438 1 2025-07-26 06:24:52.100 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:56986 10 6438 1 2025-07-26 06:21:02.654 00:05:00.415 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-26 06:25:52.462 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51158 10 6438 1 2025-07-26 06:26:52.863 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:35150 10 6438 1 2025-07-26 06:27:53.274 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:50496 10 6438 1 2025-07-26 06:28:42.962 00:00:00.026 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-26 06:28:42.981 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-26 06:28:43.085 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-26 06:28:42.693 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-26 06:28:43.046 00:00:00.026 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-26 06:28:53.692 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:54194 10 6438 1 2025-07-26 06:25:02.653 00:05:00.419 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-26 06:29:54.106 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:56982 10 6438 1 2025-07-26 06:27:02.656 00:05:00.415 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-26 06:30:54.505 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57794 10 6438 1 2025-07-26 06:31:54.908 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:52860 10 6438 1 2025-07-26 06:32:55.273 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:53594 10 6438 1 2025-07-26 06:33:43.178 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-26 06:33:42.912 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-26 06:33:42.998 00:00:00.045 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-26 06:33:42.873 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-26 06:33:43.095 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-26 06:33:55.672 00:00:10.439 TCP 1.101.0.1:3000 -> 23.104.0.1:37962 12 10352 1 2025-07-26 06:31:02.654 00:05:00.420 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-26 06:34:56.149 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:53976 10 6438 1 2025-07-26 06:35:56.548 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46282 10 6438 1 2025-07-26 06:33:02.656 00:05:00.415 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-26 06:36:56.948 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:49010 10 6438 1 2025-07-26 06:37:57.355 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38468 10 6438 1 2025-07-26 06:38:43.193 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-26 06:38:42.921 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-26 06:38:42.997 00:00:00.048 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-26 06:38:42.959 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-26 06:38:43.112 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-26 06:38:57.758 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:57456 10 6438 1 2025-07-26 06:39:58.165 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:55520 10 6438 1 2025-07-26 06:37:02.655 00:05:00.422 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-26 06:40:58.570 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:44322 10 6438 1 2025-07-26 06:41:58.936 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:47020 10 6438 1 2025-07-26 06:39:02.657 00:05:00.416 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-26 06:42:59.360 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:38626 10 6438 1 2025-07-26 06:43:43.142 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-26 06:43:43.147 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-26 06:43:43.105 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-26 06:43:43.145 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-26 06:43:43.228 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-26 06:43:59.782 00:00:10.467 TCP 1.101.0.1:3000 -> 23.104.0.1:38206 12 10352 1 2025-07-26 06:45:00.291 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49018 10 6438 1 2025-07-26 06:46:00.698 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:43922 10 6438 1 2025-07-26 06:43:02.656 00:05:00.423 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-26 06:47:01.114 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:49234 10 6438 1 2025-07-26 06:48:01.512 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43070 10 6438 1 2025-07-26 06:48:43.270 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-26 06:48:43.344 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-26 06:48:43.146 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-26 06:48:43.199 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-26 06:48:43.282 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-26 06:45:02.659 00:05:00.417 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-26 06:49:01.915 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:35468 10 6438 1 2025-07-26 06:50:02.279 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38646 10 6438 1 2025-07-26 06:51:02.682 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:39972 10 6438 1 2025-07-26 06:52:03.052 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:38806 10 6438 1 2025-07-26 06:49:02.661 00:05:00.421 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-26 06:53:03.445 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:41668 10 6438 1 2025-07-26 06:53:43.596 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-26 06:53:43.635 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-26 06:53:43.137 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-26 06:53:43.342 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-26 06:53:43.423 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-26 06:54:03.854 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:53278 10 6438 1 2025-07-26 06:51:02.664 00:05:00.415 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-26 06:55:04.291 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:43900 10 6438 1 2025-07-26 06:56:04.655 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:51914 10 6438 1 2025-07-26 06:57:05.015 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41842 10 6438 1 2025-07-26 06:58:05.419 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:42294 10 6438 1 2025-07-26 06:58:43.365 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-26 06:58:43.378 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-26 06:58:43.432 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-26 06:58:43.530 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-26 06:58:43.283 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 Summary: total flows: 140, total bytes: 424092, total packets: 1026, avg bps: 887, avg pps: 0, avg bpp: 413 Time window: 2025-07-26 05:55:02 - 2025-07-26 06:58:43 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0031s User: 0.0010s Wall: 0.0019s flows/second: 72315.6 Runtime: 0.0020s