Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-09 13:54:10.312 00:06:00.199 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-09 13:59:18.770 00:00:10.398 TCP 1.101.0.1:3000 -> 23.104.0.1:47994 12 10367 1 2025-08-09 13:55:10.311 00:06:00.203 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-09 14:00:19.212 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:44952 10 6452 1 2025-08-09 14:00:36.342 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 14:00:36.129 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 14:00:36.260 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 14:00:35.926 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 14:00:36.259 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 14:01:19.622 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48002 10 6452 1 2025-08-09 14:02:20.028 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46866 10 6452 1 2025-08-09 14:03:20.431 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:58858 10 6452 1 2025-08-09 14:04:20.836 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:39294 10 6452 1 2025-08-09 14:05:21.266 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:40030 10 6452 1 2025-08-09 14:05:36.589 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 14:05:36.267 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 14:05:36.507 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 14:05:36.054 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 14:05:36.050 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 14:01:10.315 00:06:00.202 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-09 14:06:21.671 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:38386 10 6452 1 2025-08-09 14:02:10.312 00:06:00.207 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-09 14:07:22.092 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:40874 10 6452 1 2025-08-09 14:08:22.455 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:43582 10 6452 1 2025-08-09 14:09:22.864 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:55280 10 6452 1 2025-08-09 14:10:23.281 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:52170 10 6452 1 2025-08-09 14:10:36.847 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 14:10:36.916 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 14:10:36.859 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 14:10:36.700 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 14:10:36.782 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 14:11:23.653 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:50488 10 6452 1 2025-08-09 14:12:24.071 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34662 10 6452 1 2025-08-09 14:08:10.316 00:06:00.203 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-09 14:13:24.477 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:42258 10 6452 1 2025-08-09 14:09:10.313 00:06:00.209 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-09 14:14:24.839 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:45510 10 6452 1 2025-08-09 14:15:36.656 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 14:15:36.708 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 14:15:36.528 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 14:15:25.259 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35262 10 6452 1 2025-08-09 14:15:36.756 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 14:15:36.838 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 14:16:25.665 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:56456 10 6452 1 2025-08-09 14:17:26.034 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:57650 10 6452 1 2025-08-09 14:18:26.448 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:43622 10 6452 1 2025-08-09 14:19:26.807 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:42692 10 6452 1 2025-08-09 14:15:10.316 00:06:00.225 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-09 14:20:36.796 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 14:20:36.650 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 14:20:27.179 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:60662 10 6452 1 2025-08-09 14:20:36.648 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 14:20:36.675 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 14:20:36.714 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 14:16:10.315 00:06:00.229 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-09 14:21:27.579 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:58416 10 6452 1 2025-08-09 14:22:27.953 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:49548 10 6452 1 2025-08-09 14:23:28.317 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36740 10 6452 1 2025-08-09 14:24:28.719 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:33430 10 6452 1 2025-08-09 14:25:36.707 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 14:25:36.703 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 14:25:36.665 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 14:25:29.110 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:50012 10 6452 1 2025-08-09 14:25:36.843 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 14:25:36.926 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 14:26:29.527 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:33162 10 6452 1 2025-08-09 14:22:10.327 00:06:00.215 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-09 14:27:29.928 00:00:10.355 TCP 1.101.0.1:3000 -> 23.104.0.1:54062 10 6452 1 2025-08-09 14:23:10.324 00:06:00.220 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-09 14:28:30.332 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49712 10 6452 1 2025-08-09 14:29:30.736 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38564 10 6452 1 2025-08-09 14:30:37.045 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 14:30:37.057 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 14:30:36.738 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 14:30:37.050 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 14:30:37.133 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 14:30:31.151 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:36328 10 6452 1 2025-08-09 14:31:31.556 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:45378 10 6452 1 2025-08-09 14:32:31.958 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53582 10 6452 1 2025-08-09 14:33:32.361 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40658 10 6452 1 2025-08-09 14:29:10.330 00:06:00.213 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-09 14:34:32.763 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:42126 10 6452 1 2025-08-09 14:30:10.328 00:06:00.227 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-09 14:35:36.981 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 14:35:36.729 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 14:35:36.961 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 14:35:36.907 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 14:35:36.898 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 14:35:33.187 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41614 10 6452 1 2025-08-09 14:36:33.591 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47322 10 6452 1 2025-08-09 14:37:33.993 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35030 10 6452 1 2025-08-09 14:38:34.398 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:45072 10 6452 1 2025-08-09 14:39:34.775 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:59802 10 6452 1 2025-08-09 14:40:37.234 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 14:40:37.169 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 14:40:37.187 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 14:40:37.305 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 14:40:37.389 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 14:40:35.154 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51876 10 6452 1 2025-08-09 14:36:10.331 00:06:00.221 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-09 14:41:35.555 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60318 10 6452 1 2025-08-09 14:37:10.330 00:06:00.226 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-09 14:42:35.961 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:46900 10 6452 1 2025-08-09 14:43:36.372 00:00:10.436 TCP 1.101.0.1:3000 -> 23.104.0.1:55220 12 10365 1 2025-08-09 14:44:36.851 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:57908 10 6452 1 2025-08-09 14:45:37.326 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 14:45:37.187 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 14:45:36.933 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 14:45:37.244 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 14:45:36.991 00:00:00.053 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 14:45:37.272 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:47390 10 6452 1 2025-08-09 14:46:37.676 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:44256 10 6452 1 2025-08-09 14:47:38.113 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:52792 10 6452 1 2025-08-09 14:43:10.332 00:06:00.223 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-09 14:48:38.485 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:54122 10 6452 1 2025-08-09 14:44:10.332 00:06:00.227 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-09 14:49:38.883 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:57676 10 6452 1 2025-08-09 14:50:37.645 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 14:50:37.349 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 14:50:37.480 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 14:50:36.918 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 14:50:37.564 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 14:50:39.314 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:51948 10 6452 1 2025-08-09 14:51:39.714 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:60726 10 6452 1 2025-08-09 14:52:40.101 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57358 10 6452 1 2025-08-09 14:53:40.508 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:57454 10 6452 1 2025-08-09 14:54:40.933 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:47668 10 6452 1 2025-08-09 14:50:10.338 00:06:00.221 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-09 14:55:37.649 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 14:55:37.762 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 14:55:37.287 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 14:55:36.969 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 14:55:37.567 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 14:55:41.315 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59272 10 6452 1 2025-08-09 14:51:10.336 00:06:00.225 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-09 14:56:41.718 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:38184 10 6452 1 2025-08-09 14:57:42.149 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:54790 10 6452 1 Summary: total flows: 137, total bytes: 419114, total packets: 1026, avg bps: 877, avg pps: 0, avg bpp: 408 Time window: 2025-08-09 13:54:10 - 2025-08-09 14:57:52 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0037s User: 0.0009s Wall: 0.0022s flows/second: 62985.8 Runtime: 0.0022s