Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-05 06:59:03.964 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53856 10 6452 1 2025-08-05 07:00:04.368 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:59228 10 6452 1 2025-08-05 06:56:07.843 00:06:00.114 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-05 07:01:04.776 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:55046 10 6452 1 2025-08-05 07:02:05.187 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:51910 10 6452 1 2025-08-05 06:58:07.839 00:06:00.121 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-05 07:03:05.584 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42986 10 6452 1 2025-08-05 07:03:32.447 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-05 07:03:32.363 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-05 07:03:32.301 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-05 07:03:32.245 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 07:03:32.365 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 07:04:05.986 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:42156 10 6452 1 2025-08-05 07:05:06.403 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54876 10 6452 1 2025-08-05 07:06:06.806 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:60482 10 6452 1 2025-08-05 07:07:07.238 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52332 10 6452 1 2025-08-05 07:03:07.844 00:06:00.117 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-05 07:08:07.643 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43920 10 6452 1 2025-08-05 07:08:32.412 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-05 07:08:32.134 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-05 07:08:32.401 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-05 07:08:32.187 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 07:08:32.329 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 07:09:08.069 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:52666 10 6452 1 2025-08-05 07:05:07.841 00:06:00.122 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-05 07:10:08.477 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44164 10 6452 1 2025-08-05 07:11:08.889 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:60948 10 6452 1 2025-08-05 07:12:09.258 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:59814 10 6452 1 2025-08-05 07:13:09.618 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:33284 10 6452 1 2025-08-05 07:13:32.576 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 07:13:32.570 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-05 07:13:32.637 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-05 07:13:32.330 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 07:13:32.660 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-05 07:14:10.025 00:00:10.429 TCP 1.101.0.1:3000 -> 23.104.0.1:53666 12 10365 1 2025-08-05 07:10:07.846 00:06:00.116 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-05 07:15:10.496 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53044 10 6452 1 2025-08-05 07:16:10.903 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:48300 10 6452 1 2025-08-05 07:12:07.845 00:06:00.121 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-05 07:17:11.312 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:45962 10 6452 1 2025-08-05 07:18:11.716 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47848 10 6452 1 2025-08-05 07:18:32.754 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-05 07:18:32.791 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-05 07:18:32.672 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-05 07:18:32.806 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 07:18:32.672 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 07:19:12.131 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59000 10 6452 1 2025-08-05 07:20:12.537 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:48894 10 6452 1 2025-08-05 07:21:12.945 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:55564 10 6452 1 2025-08-05 07:17:07.848 00:06:00.116 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-05 07:22:13.353 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49908 10 6452 1 2025-08-05 07:23:13.759 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:51516 10 6452 1 2025-08-05 07:23:32.757 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-05 07:23:32.675 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 07:23:32.581 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-05 07:23:32.837 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-05 07:23:32.796 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 07:19:07.845 00:06:00.121 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-05 07:24:14.176 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57520 10 6452 1 2025-08-05 07:25:14.580 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:49226 10 6452 1 2025-08-05 07:26:14.991 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:45940 10 6452 1 2025-08-05 07:27:15.400 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:41590 10 6452 1 2025-08-05 07:28:32.766 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-05 07:28:15.798 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55716 10 6452 1 2025-08-05 07:28:32.694 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-05 07:28:32.897 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-05 07:28:32.798 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 07:28:32.683 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 07:24:07.853 00:06:00.114 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-05 07:29:16.203 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35352 10 6452 1 2025-08-05 07:30:16.610 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53794 10 6452 1 2025-08-05 07:26:07.846 00:06:00.124 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-05 07:31:17.013 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50540 10 6452 1 2025-08-05 07:32:17.414 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:55538 10 6452 1 2025-08-05 07:33:17.831 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:54936 10 6452 1 2025-08-05 07:33:32.982 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-05 07:33:32.981 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-05 07:33:32.825 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 07:33:32.900 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 07:33:32.830 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-05 07:34:18.235 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:38708 10 6452 1 2025-08-05 07:35:18.642 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53286 12 6556 1 2025-08-05 07:31:07.850 00:06:00.121 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-05 07:36:19.056 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:52434 10 6452 1 2025-08-05 07:37:19.413 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:50732 10 6452 1 2025-08-05 07:33:07.847 00:06:00.126 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-05 07:38:33.134 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-05 07:38:32.951 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-05 07:38:19.775 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:51572 10 6452 1 2025-08-05 07:38:33.030 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-05 07:38:32.965 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 07:38:33.052 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 07:39:20.183 00:00:10.398 TCP 1.101.0.1:3000 -> 23.104.0.1:35628 12 10367 1 2025-08-05 07:40:20.618 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:47050 10 6452 1 2025-08-05 07:41:20.981 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:44774 10 6452 1 2025-08-05 07:42:21.405 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47814 10 6452 1 2025-08-05 07:38:07.854 00:06:00.118 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-05 07:43:33.478 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-05 07:43:33.230 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-05 07:43:33.390 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-05 07:43:33.349 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 07:43:33.395 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 07:43:21.810 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43606 10 6452 1 2025-08-05 07:44:22.213 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42014 10 6452 1 2025-08-05 07:40:07.851 00:06:00.122 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-05 07:45:22.619 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60460 10 6452 1 2025-08-05 07:46:23.018 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:39788 10 6452 1 2025-08-05 07:47:23.414 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:45486 10 6452 1 2025-08-05 07:48:33.292 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-05 07:48:23.819 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:54558 10 6452 1 2025-08-05 07:48:33.112 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-05 07:48:32.853 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 07:48:33.345 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 07:48:33.430 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-05 07:49:24.230 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56322 10 6452 1 2025-08-05 07:45:07.856 00:06:00.119 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-05 07:50:24.631 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48498 10 6452 1 2025-08-05 07:51:25.037 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38780 10 6452 1 2025-08-05 07:47:07.855 00:06:00.122 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-05 07:52:25.438 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46794 10 6452 1 2025-08-05 07:53:33.306 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-05 07:53:33.310 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-05 07:53:33.194 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 07:53:33.243 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 07:53:33.326 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-05 07:53:25.848 00:00:10.457 TCP 1.101.0.1:3000 -> 23.104.0.1:39026 12 10367 1 2025-08-05 07:54:26.345 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:46222 10 6452 1 2025-08-05 07:55:26.703 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:34334 12 6556 1 2025-08-05 07:56:27.115 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:34354 10 6452 1 2025-08-05 07:52:07.859 00:06:00.118 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-05 07:57:27.509 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39806 10 6452 1 2025-08-05 07:58:33.469 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 07:58:33.384 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-05 07:58:33.575 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-05 07:58:33.383 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 07:58:33.553 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-05 07:58:27.922 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:34506 10 6452 1 Summary: total flows: 137, total bytes: 428828, total packets: 1028, avg bps: 914, avg pps: 0, avg bpp: 417 Time window: 2025-08-05 06:56:07 - 2025-08-05 07:58:38 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0028s User: 0.0009s Wall: 0.0019s flows/second: 72215.6 Runtime: 0.0019s