Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-07-28 16:55:03.953 00:05:00.297 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-28 16:59:31.599 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60142 10 6452 1 2025-07-28 16:59:54.215 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-28 16:59:53.924 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-28 16:59:53.835 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-28 16:59:53.878 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-28 16:59:54.132 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-28 17:00:32.007 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:37202 10 6452 1 2025-07-28 17:01:32.375 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:36306 10 6452 1 2025-07-28 17:02:32.783 00:00:10.540 TCP 1.101.0.1:3000 -> 23.104.0.1:57392 10 6452 1 2025-07-28 17:03:33.362 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54202 10 6452 1 2025-07-28 17:00:03.956 00:05:00.299 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-28 17:04:33.763 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:47280 10 6452 1 2025-07-28 17:04:53.404 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-28 17:04:53.275 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-28 17:04:53.327 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-28 17:04:53.150 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-28 17:04:53.322 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-28 17:01:03.956 00:05:00.294 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-28 17:05:34.185 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38774 10 6452 1 2025-07-28 17:06:34.591 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:47332 10 6452 1 2025-07-28 17:07:34.993 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:37664 10 6452 1 2025-07-28 17:08:35.404 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42880 10 6452 1 2025-07-28 17:09:35.807 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50534 10 6452 1 2025-07-28 17:09:53.808 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-28 17:09:53.805 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-28 17:09:53.758 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-28 17:09:54.087 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-28 17:09:54.170 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-28 17:06:03.956 00:05:00.298 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-28 17:10:36.216 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56100 10 6452 1 2025-07-28 17:07:03.960 00:05:00.294 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-28 17:11:36.615 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:35150 10 6452 1 2025-07-28 17:12:37.034 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:57342 10 6452 1 2025-07-28 17:13:37.446 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55464 10 6452 1 2025-07-28 17:14:37.849 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:33238 10 6452 1 2025-07-28 17:14:53.630 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-28 17:14:53.409 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-28 17:14:53.571 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-28 17:14:53.411 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-28 17:14:53.664 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-28 17:15:38.274 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49900 10 6452 1 2025-07-28 17:12:03.957 00:05:00.302 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-28 17:16:38.693 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:50318 10 6452 1 2025-07-28 17:13:03.960 00:05:00.294 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-28 17:17:39.107 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51002 10 6452 1 2025-07-28 17:18:39.508 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:57590 10 6452 1 2025-07-28 17:19:53.671 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-28 17:19:53.601 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-28 17:19:53.600 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-28 17:19:53.668 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-28 17:19:39.869 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39520 10 6452 1 2025-07-28 17:19:53.751 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-28 17:20:40.272 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:33578 10 6452 1 2025-07-28 17:21:40.631 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:58412 10 6452 1 2025-07-28 17:18:03.959 00:05:00.298 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-28 17:22:41.054 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:33400 10 6452 1 2025-07-28 17:19:03.962 00:05:00.293 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-28 17:23:41.416 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:57092 10 6452 1 2025-07-28 17:24:53.683 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-28 17:24:53.821 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-28 17:24:53.815 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-28 17:24:53.445 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-28 17:24:41.830 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:35544 10 6452 1 2025-07-28 17:24:53.600 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-28 17:25:42.264 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:40700 10 6452 1 2025-07-28 17:26:42.660 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:36196 10 6452 1 2025-07-28 17:27:43.065 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50432 10 6452 1 2025-07-28 17:24:03.961 00:05:00.298 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-28 17:28:43.474 00:00:10.397 TCP 1.101.0.1:3000 -> 23.104.0.1:51934 12 10367 1 2025-07-28 17:25:03.963 00:05:00.293 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-28 17:29:53.924 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-28 17:29:53.844 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-28 17:29:53.712 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-28 17:29:53.730 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-28 17:29:53.841 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-28 17:29:43.912 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47106 10 6452 1 2025-07-28 17:30:44.317 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:60848 10 6452 1 2025-07-28 17:31:44.713 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:46306 10 6452 1 2025-07-28 17:32:45.139 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59724 10 6452 1 2025-07-28 17:33:45.543 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:38092 10 6452 1 2025-07-28 17:30:03.961 00:05:00.297 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-28 17:34:54.171 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-28 17:34:54.096 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-28 17:34:54.098 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-28 17:34:54.089 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-28 17:34:53.860 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-28 17:34:45.937 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:45698 10 6452 1 2025-07-28 17:31:03.964 00:05:00.292 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-28 17:35:46.354 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60118 10 6452 1 2025-07-28 17:36:46.754 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:47034 10 6452 1 2025-07-28 17:37:47.180 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:44196 10 6452 1 2025-07-28 17:38:47.577 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:57882 10 6452 1 2025-07-28 17:39:53.997 00:00:00.038 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-28 17:39:54.109 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-28 17:39:53.951 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-28 17:39:53.998 00:00:00.042 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-28 17:39:54.080 00:00:00.042 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-28 17:39:47.971 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:56326 10 6452 1 2025-07-28 17:36:03.966 00:05:00.294 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-28 17:40:48.380 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:45770 10 6452 1 2025-07-28 17:37:03.969 00:05:00.289 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-28 17:41:48.780 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56950 10 6452 1 2025-07-28 17:42:49.184 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:36144 10 6452 1 2025-07-28 17:43:49.587 00:00:10.420 TCP 1.101.0.1:3000 -> 23.104.0.1:45536 11 6504 1 2025-07-28 17:44:53.909 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-28 17:44:53.997 00:00:00.043 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-28 17:44:54.015 00:00:00.042 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-28 17:44:54.109 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-28 17:44:54.191 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-28 17:44:50.059 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:59740 10 6452 1 2025-07-28 17:42:03.974 00:05:00.288 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-28 17:45:50.428 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:34556 10 6452 1 2025-07-28 17:46:50.788 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60194 10 6452 1 2025-07-28 17:43:03.977 00:05:00.282 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-28 17:47:51.195 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60180 10 6452 1 2025-07-28 17:48:51.596 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47564 10 6452 1 2025-07-28 17:49:54.085 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-28 17:49:54.238 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-28 17:49:54.249 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-28 17:49:53.947 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-28 17:49:54.030 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-28 17:49:51.993 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43544 10 6452 1 2025-07-28 17:50:52.397 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:49608 10 6452 1 2025-07-28 17:48:03.975 00:05:00.286 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-28 17:51:52.797 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:50800 10 6452 1 2025-07-28 17:52:53.208 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60424 10 6452 1 2025-07-28 17:49:03.979 00:05:00.281 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-28 17:53:53.612 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:50230 10 6452 1 2025-07-28 17:54:54.492 00:00:00.030 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-28 17:54:54.569 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-28 17:54:54.489 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-28 17:54:54.090 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-28 17:54:54.574 00:00:00.030 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-28 17:54:53.986 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59978 10 6452 1 2025-07-28 17:55:54.387 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47288 10 6452 1 2025-07-28 17:56:54.793 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:36360 10 6452 1 2025-07-28 17:54:03.977 00:05:00.286 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-28 17:57:55.190 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:35606 10 6452 1 Summary: total flows: 139, total bytes: 414515, total packets: 1013, avg bps: 863, avg pps: 0, avg bpp: 409 Time window: 2025-07-28 16:55:03 - 2025-07-28 17:59:04 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0029s User: 0.0010s Wall: 0.0030s flows/second: 46333.0 Runtime: 0.0030s