Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-13 06:59:21.383 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:45334 10 6452 1 2025-08-13 07:00:21.749 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33932 10 6452 1 2025-08-13 07:01:22.153 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44378 10 6452 1 2025-08-13 06:58:12.367 00:05:00.757 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-13 06:58:12.365 00:05:00.762 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-13 07:02:23.256 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 07:02:23.206 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 07:02:23.081 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 07:02:23.257 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 07:02:23.340 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 07:02:22.555 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36868 10 6452 1 2025-08-13 07:03:22.956 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:52110 10 6452 1 2025-08-13 07:04:23.364 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:33886 10 6452 1 2025-08-13 07:05:23.775 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:47158 10 6452 1 2025-08-13 07:06:24.181 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:34352 10 6452 1 2025-08-13 07:07:23.399 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 07:07:23.438 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 07:07:23.322 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 07:07:23.247 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 07:07:23.316 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 07:07:24.592 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:45608 10 6452 1 2025-08-13 07:04:12.372 00:05:00.755 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-13 07:04:12.369 00:05:00.761 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-13 07:08:25.030 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:33290 10 6452 1 2025-08-13 07:09:25.430 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:45328 10 6452 1 2025-08-13 07:10:25.784 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39170 10 6452 1 2025-08-13 07:11:26.189 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44152 10 6452 1 2025-08-13 07:12:23.616 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 07:12:23.533 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 07:12:23.470 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 07:12:23.429 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 07:12:23.533 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 07:12:26.595 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57684 10 6452 1 2025-08-13 07:13:26.996 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48852 10 6452 1 2025-08-13 07:10:12.371 00:05:00.760 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-13 07:10:12.374 00:05:00.755 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-13 07:14:27.402 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46544 10 6452 1 2025-08-13 07:15:27.806 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36776 10 6452 1 2025-08-13 07:16:28.211 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:43104 10 6452 1 2025-08-13 07:17:23.644 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 07:17:23.639 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 07:17:23.568 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 07:17:23.689 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 07:17:23.771 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 07:17:28.588 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60738 10 6452 1 2025-08-13 07:18:28.986 00:00:10.950 TCP 1.101.0.1:3000 -> 23.104.0.1:56572 10 6452 1 2025-08-13 07:19:29.973 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:33800 10 6452 1 2025-08-13 07:16:12.374 00:05:00.759 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-13 07:16:12.372 00:05:00.763 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-13 07:20:30.382 00:00:10.689 TCP 1.101.0.1:3000 -> 23.104.0.1:58142 10 6452 1 2025-08-13 07:21:31.115 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:52136 10 6452 1 2025-08-13 07:22:23.857 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 07:22:23.810 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 07:22:23.855 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 07:22:23.717 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 07:22:23.939 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 07:22:31.523 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:40940 10 6452 1 2025-08-13 07:23:31.926 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:42428 10 6452 1 2025-08-13 07:24:32.348 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34378 10 6452 1 2025-08-13 07:25:32.756 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:49856 10 6452 1 2025-08-13 07:22:12.376 00:05:00.768 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-13 07:22:12.373 00:05:00.773 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-13 07:26:33.151 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:56222 10 6452 1 2025-08-13 07:27:24.037 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 07:27:23.707 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 07:27:23.605 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 07:27:23.597 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 07:27:23.954 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 07:27:33.514 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:56066 10 6452 1 2025-08-13 07:28:33.929 00:00:10.831 TCP 1.101.0.1:3000 -> 23.104.0.1:46976 10 6452 1 2025-08-13 07:29:34.812 00:00:10.647 TCP 1.101.0.1:3000 -> 23.104.0.1:42102 10 6452 1 2025-08-13 07:30:35.496 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:32840 10 6452 1 2025-08-13 07:31:35.910 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53260 10 6452 1 2025-08-13 07:28:12.375 00:05:00.774 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-13 07:28:12.377 00:05:00.768 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-13 07:32:23.973 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 07:32:23.977 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 07:32:23.978 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 07:32:23.732 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 07:32:23.891 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 07:32:36.316 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:46280 10 6452 1 2025-08-13 07:33:36.676 00:00:10.423 TCP 1.101.0.1:3000 -> 23.104.0.1:43430 10 6452 1 2025-08-13 07:34:37.151 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:48598 10 6452 1 2025-08-13 07:35:37.514 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:47896 10 6452 1 2025-08-13 07:36:37.876 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:45940 10 6452 1 2025-08-13 07:37:24.080 00:00:00.044 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 07:37:23.936 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 07:37:23.684 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 07:37:23.998 00:00:00.044 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 07:37:23.736 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 07:37:38.238 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:36486 10 6452 1 2025-08-13 07:34:12.378 00:05:00.774 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-13 07:34:12.381 00:05:00.769 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-13 07:38:38.600 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:37122 10 6452 1 2025-08-13 07:39:39.009 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:51248 10 6452 1 2025-08-13 07:40:39.414 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:48414 10 6452 1 2025-08-13 07:41:39.817 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:56674 10 6452 1 2025-08-13 07:42:24.186 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 07:42:23.953 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 07:42:23.954 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 07:42:23.998 00:00:00.037 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 07:42:24.103 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 07:42:40.183 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:56600 10 6452 1 2025-08-13 07:43:40.599 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:47274 10 6452 1 2025-08-13 07:40:12.380 00:05:00.770 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-13 07:40:12.379 00:05:00.775 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-13 07:44:41.011 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:38770 10 6452 1 2025-08-13 07:45:41.371 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:37020 10 6452 1 2025-08-13 07:46:41.735 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:39998 10 6452 1 2025-08-13 07:47:24.060 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 07:47:24.060 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 07:47:24.100 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 07:47:24.175 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 07:47:24.258 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 07:47:42.107 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52814 10 6452 1 2025-08-13 07:48:42.509 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:49446 10 6452 1 2025-08-13 07:49:42.905 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:53094 10 6452 1 2025-08-13 07:46:12.384 00:05:00.771 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-13 07:46:12.380 00:05:00.777 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-13 07:50:43.284 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:57194 10 6452 1 2025-08-13 07:51:43.684 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55072 10 6452 1 2025-08-13 07:52:24.345 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 07:52:24.510 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 07:52:24.337 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 07:52:24.216 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 07:52:24.262 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 07:52:44.112 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:58692 10 6452 1 2025-08-13 07:53:44.517 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:38696 10 6452 1 2025-08-13 07:54:44.925 00:00:10.526 TCP 1.101.0.1:3000 -> 23.104.0.1:52452 14 14282 1 2025-08-13 07:55:45.493 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:33048 10 6452 1 2025-08-13 07:52:12.384 00:05:00.771 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-13 07:52:12.382 00:05:00.776 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-13 07:56:45.895 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:47884 10 6452 1 2025-08-13 07:57:24.415 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 07:57:24.237 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 07:57:24.331 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 07:57:24.333 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 07:57:24.333 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 07:57:46.303 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:32880 10 6452 1 Summary: total flows: 139, total bytes: 418378, total packets: 1014, avg bps: 933, avg pps: 0, avg bpp: 412 Time window: 2025-08-13 06:58:12 - 2025-08-13 07:57:56 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0010s User: 0.0031s Wall: 0.0027s flows/second: 50560.1 Runtime: 0.0028s