Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-01 15:59:19.667 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:55014 10 6452 1 2025-08-01 16:00:20.117 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39936 10 6452 1 2025-08-01 16:01:20.518 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54586 10 6452 1 2025-08-01 16:01:47.697 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-01 16:01:47.909 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-01 16:01:47.325 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-01 16:01:47.687 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-01 16:01:47.615 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-01 15:58:05.980 00:05:00.264 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-01 16:02:20.920 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43642 10 6452 1 2025-08-01 15:59:05.975 00:05:00.272 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-01 16:03:21.330 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:38792 10 6452 1 2025-08-01 16:04:21.730 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:37792 10 6452 1 2025-08-01 16:05:22.112 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:42510 10 6452 1 2025-08-01 16:06:22.479 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:39756 10 6452 1 2025-08-01 16:06:47.937 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-01 16:06:48.098 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-01 16:06:47.773 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-01 16:06:48.096 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-01 16:06:48.178 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-01 16:07:22.875 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:52326 10 6452 1 2025-08-01 16:04:05.979 00:05:00.266 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-01 16:08:23.283 00:00:10.432 TCP 1.101.0.1:3000 -> 23.104.0.1:37230 12 10367 1 2025-08-01 16:05:05.978 00:05:00.271 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-01 16:09:23.761 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:48004 10 6452 1 2025-08-01 16:10:24.175 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:48392 10 6452 1 2025-08-01 16:11:24.580 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37892 10 6452 1 2025-08-01 16:11:47.824 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-01 16:11:47.493 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-01 16:11:47.920 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-01 16:11:47.748 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-01 16:11:47.742 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-01 16:12:24.987 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46244 10 6452 1 2025-08-01 16:13:25.395 00:00:10.436 TCP 1.101.0.1:3000 -> 23.104.0.1:51744 12 10367 1 2025-08-01 16:10:05.985 00:05:00.268 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-01 16:14:25.869 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:52884 10 6452 1 2025-08-01 16:11:05.982 00:05:00.272 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-01 16:15:26.288 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44782 10 6452 1 2025-08-01 16:16:26.687 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:32806 10 6452 1 2025-08-01 16:16:47.954 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-01 16:16:47.876 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-01 16:16:47.955 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-01 16:16:47.839 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-01 16:16:47.872 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-01 16:17:27.108 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59364 10 6452 1 2025-08-01 16:18:27.509 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53900 10 6452 1 2025-08-01 16:19:27.912 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:41450 10 6452 1 2025-08-01 16:16:05.986 00:05:00.268 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-01 16:20:28.273 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:57430 10 6452 1 2025-08-01 16:17:05.984 00:05:00.273 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-01 16:21:28.643 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51906 10 6452 1 2025-08-01 16:21:47.963 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-01 16:21:47.968 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-01 16:21:47.968 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-01 16:21:47.796 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-01 16:21:47.880 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-01 16:22:29.041 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48418 10 6452 1 2025-08-01 16:23:29.444 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:49390 12 6556 1 2025-08-01 16:24:29.852 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:51688 10 6452 1 2025-08-01 16:25:30.270 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35104 10 6452 1 2025-08-01 16:22:05.988 00:05:00.268 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-01 16:26:30.672 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:45886 10 6452 1 2025-08-01 16:26:48.019 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-01 16:26:48.084 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-01 16:26:47.817 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-01 16:26:48.004 00:00:00.028 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-01 16:26:47.935 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-01 16:23:05.985 00:05:00.274 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-01 16:27:31.104 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48102 10 6452 1 2025-08-01 16:28:31.521 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:46860 10 6452 1 2025-08-01 16:29:31.886 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:49818 10 6452 1 2025-08-01 16:30:32.307 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:46682 10 6452 1 2025-08-01 16:31:48.189 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-01 16:31:32.707 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:37694 10 6452 1 2025-08-01 16:31:48.107 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-01 16:31:48.103 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-01 16:31:48.116 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-01 16:31:48.105 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-01 16:28:05.989 00:05:00.268 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-01 16:32:33.103 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:53978 10 6452 1 2025-08-01 16:29:05.986 00:05:00.273 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-01 16:33:33.531 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:50972 10 6452 1 2025-08-01 16:34:33.949 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:41134 10 6452 1 2025-08-01 16:35:34.360 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:48332 10 6452 1 2025-08-01 16:36:48.391 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-01 16:36:48.242 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-01 16:36:48.361 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-01 16:36:48.180 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-01 16:36:48.308 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-01 16:36:34.723 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:42814 10 6452 1 2025-08-01 16:37:35.144 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:51630 10 6452 1 2025-08-01 16:34:05.989 00:05:00.269 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-01 16:38:35.561 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:53412 10 6452 1 2025-08-01 16:35:05.987 00:05:00.273 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-01 16:39:35.925 00:00:10.394 TCP 1.101.0.1:3000 -> 23.104.0.1:54252 10 6452 1 2025-08-01 16:40:36.362 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:56330 10 6452 1 2025-08-01 16:41:48.672 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-01 16:41:48.555 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-01 16:41:48.558 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-01 16:41:48.350 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-01 16:41:36.773 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:44084 10 6452 1 2025-08-01 16:41:48.588 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-01 16:42:37.180 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52718 10 6452 1 2025-08-01 16:43:37.582 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:51864 10 6452 1 2025-08-01 16:40:05.990 00:05:00.269 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-01 16:44:37.992 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:43014 10 6452 1 2025-08-01 16:41:05.988 00:05:00.274 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-01 16:45:38.351 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:35220 10 6452 1 2025-08-01 16:46:48.540 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-01 16:46:48.530 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-01 16:46:48.459 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-01 16:46:48.129 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-01 16:46:38.762 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:40280 10 6452 1 2025-08-01 16:46:48.459 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-01 16:47:39.127 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44462 10 6452 1 2025-08-01 16:48:39.532 00:00:10.455 TCP 1.101.0.1:3000 -> 23.104.0.1:58324 12 10365 1 2025-08-01 16:49:40.024 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:45460 10 6452 1 2025-08-01 16:46:05.992 00:05:00.269 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-01 16:50:40.435 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51254 10 6452 1 2025-08-01 16:47:05.989 00:05:00.274 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-01 16:51:48.664 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-01 16:51:48.569 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-01 16:51:48.687 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-01 16:51:48.448 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-01 16:51:48.579 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-01 16:51:40.836 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:34604 10 6452 1 2025-08-01 16:52:41.265 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:41218 10 6452 1 2025-08-01 16:53:41.669 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:33448 10 6452 1 2025-08-01 16:54:42.104 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55918 10 6452 1 2025-08-01 16:55:42.511 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49136 10 6452 1 2025-08-01 16:52:05.993 00:05:00.268 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-01 16:56:48.644 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-01 16:56:48.644 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-01 16:56:48.603 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-01 16:56:48.721 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-01 16:56:48.805 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-01 16:56:42.920 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:54072 10 6452 1 2025-08-01 16:53:05.993 00:05:00.272 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-01 16:57:43.297 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33288 10 6452 1 Summary: total flows: 139, total bytes: 422395, total packets: 1018, avg bps: 938, avg pps: 0, avg bpp: 414 Time window: 2025-08-01 15:58:05 - 2025-08-01 16:58:06 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0027s User: 0.0018s Wall: 0.0026s flows/second: 52471.3 Runtime: 0.0027s