Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-02 00:58:58.005 00:00:10.719 TCP 1.101.0.1:3000 -> 23.104.0.1:49230 10 6452 1 2025-08-02 00:59:58.763 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:40756 10 6452 1 2025-08-02 01:00:59.174 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59394 10 6452 1 2025-08-02 01:01:58.619 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-02 01:01:58.485 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-02 01:01:58.531 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 01:01:58.487 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 01:01:58.569 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-02 01:01:59.580 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53680 10 6452 1 2025-08-02 00:58:06.186 00:06:00.219 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-02 01:02:59.983 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53138 10 6452 1 2025-08-02 00:59:06.184 00:06:00.224 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-02 01:04:00.388 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:42468 10 6452 1 2025-08-02 01:05:00.759 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:35074 10 6452 1 2025-08-02 01:06:01.143 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:54242 10 6452 1 2025-08-02 01:06:58.894 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 01:06:58.900 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-02 01:06:58.974 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-02 01:06:58.981 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 01:06:58.976 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-02 01:07:01.550 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36430 10 6452 1 2025-08-02 01:08:01.950 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:57046 10 6452 1 2025-08-02 01:09:02.361 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:42936 10 6452 1 2025-08-02 01:05:06.186 00:06:00.219 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-02 01:10:02.762 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:50716 10 6452 1 2025-08-02 01:06:06.185 00:06:00.224 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-02 01:11:03.190 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39304 10 6452 1 2025-08-02 01:11:59.210 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-02 01:11:58.951 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 01:11:59.221 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 01:11:59.223 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-02 01:11:59.303 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-02 01:12:03.601 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:54098 10 6452 1 2025-08-02 01:13:04.023 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:56136 10 6452 1 2025-08-02 01:14:04.440 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44990 10 6452 1 2025-08-02 01:15:04.849 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:47966 10 6452 1 2025-08-02 01:16:05.266 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:48714 10 6452 1 2025-08-02 01:16:58.801 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-02 01:16:58.737 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-02 01:16:58.421 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 01:16:58.835 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 01:16:58.920 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-02 01:12:06.187 00:06:00.221 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-02 01:17:05.627 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36638 10 6452 1 2025-08-02 01:13:06.186 00:06:00.225 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-02 01:18:06.031 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33780 10 6452 1 2025-08-02 01:19:06.432 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:33612 10 6452 1 2025-08-02 01:20:06.831 00:00:10.396 TCP 1.101.0.1:3000 -> 23.104.0.1:51682 10 6452 1 2025-08-02 01:21:07.266 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57424 10 6452 1 2025-08-02 01:21:58.866 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-02 01:21:58.716 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-02 01:21:58.785 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-02 01:21:58.568 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 01:21:58.783 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 01:22:07.666 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39424 10 6452 1 2025-08-02 01:23:08.085 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:39668 10 6452 1 2025-08-02 01:19:06.189 00:06:00.220 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-02 01:24:08.495 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:57696 10 6452 1 2025-08-02 01:20:06.188 00:06:00.224 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-02 01:25:08.898 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:42700 10 6452 1 2025-08-02 01:26:09.276 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33094 10 6452 1 2025-08-02 01:26:58.953 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-02 01:26:58.947 00:00:00.029 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-02 01:26:58.948 00:00:00.027 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-02 01:26:58.747 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 01:26:58.871 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 01:27:09.683 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:60262 10 6452 1 2025-08-02 01:28:10.106 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54968 10 6452 1 2025-08-02 01:29:10.510 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:59570 10 6452 1 2025-08-02 01:30:10.928 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:44314 10 6452 1 2025-08-02 01:26:06.190 00:06:00.228 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-02 01:31:11.353 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:58786 10 6452 1 2025-08-02 01:31:58.772 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-02 01:31:58.960 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-02 01:31:58.693 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 01:31:59.075 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 01:31:59.158 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-02 01:27:06.188 00:06:00.228 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-02 01:32:11.754 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:37860 10 6452 1 2025-08-02 01:33:12.179 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40256 10 6452 1 2025-08-02 01:34:12.587 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:53126 10 6452 1 2025-08-02 01:35:12.991 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54644 10 6452 1 2025-08-02 01:36:13.395 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:47966 10 6452 1 2025-08-02 01:36:59.330 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-02 01:36:58.980 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-02 01:36:58.981 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-02 01:36:58.914 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 01:36:59.249 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 01:37:13.756 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:51474 10 6452 1 2025-08-02 01:33:06.191 00:06:00.223 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-02 01:38:14.182 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56416 10 6452 1 2025-08-02 01:34:06.189 00:06:00.229 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-02 01:39:14.581 00:00:10.445 TCP 1.101.0.1:3000 -> 23.104.0.1:49988 12 10365 1 2025-08-02 01:40:15.067 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51186 10 6452 1 2025-08-02 01:41:15.478 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:59552 10 6452 1 2025-08-02 01:41:59.680 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-02 01:41:59.312 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-02 01:41:59.508 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-02 01:41:59.443 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 01:41:59.597 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 01:42:15.901 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:47142 10 6452 1 2025-08-02 01:43:16.323 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:37368 10 6452 1 2025-08-02 01:44:16.733 00:00:10.419 TCP 1.101.0.1:3000 -> 23.104.0.1:38602 10 6452 1 2025-08-02 01:40:06.195 00:06:00.223 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-02 01:45:17.193 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:36846 10 6452 1 2025-08-02 01:41:06.194 00:06:00.228 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-02 01:46:17.617 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:46332 10 6452 1 2025-08-02 01:46:59.182 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-02 01:46:59.189 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-02 01:46:59.327 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 01:46:59.199 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 01:46:59.282 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-02 01:47:17.979 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58828 10 6452 1 2025-08-02 01:48:18.382 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:59506 10 6452 1 2025-08-02 01:49:18.781 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:46682 10 6452 1 2025-08-02 01:50:19.148 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:56474 10 6452 1 2025-08-02 01:51:19.509 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46586 10 6452 1 2025-08-02 01:51:59.452 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-02 01:51:59.452 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-02 01:51:59.259 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 01:51:59.457 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 01:51:59.539 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-02 01:47:06.202 00:06:00.221 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-02 01:52:19.907 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:48108 10 6452 1 2025-08-02 01:48:06.202 00:06:00.224 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-02 01:53:20.318 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:47990 10 6452 1 2025-08-02 01:54:20.725 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:33226 10 6452 1 2025-08-02 01:55:21.141 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40262 10 6452 1 2025-08-02 01:56:21.542 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:52114 10 6452 1 2025-08-02 01:56:59.456 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 01:56:59.470 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-02 01:56:59.577 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-02 01:56:59.496 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 01:56:59.539 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-02 01:57:21.944 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:42270 10 6452 1 2025-08-02 01:58:22.322 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47964 10 6452 1 Summary: total flows: 136, total bytes: 419929, total packets: 1006, avg bps: 926, avg pps: 0, avg bpp: 417 Time window: 2025-08-02 00:58:06 - 2025-08-02 01:58:32 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0011s User: 0.0033s Wall: 0.0023s flows/second: 58070.4 Runtime: 0.0024s