Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-13 09:59:35.996 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:37900 10 6452 1 2025-08-13 10:00:36.356 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:58224 10 6452 1 2025-08-13 10:01:36.760 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:53734 10 6452 1 2025-08-13 09:58:12.421 00:05:00.796 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-13 09:58:12.418 00:05:00.801 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-13 10:02:27.003 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 10:02:26.865 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 10:02:26.859 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 10:02:26.880 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 10:02:26.919 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 10:02:37.191 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43780 10 6452 1 2025-08-13 10:03:37.592 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:33732 10 6452 1 2025-08-13 10:04:38.003 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:47506 10 6452 1 2025-08-13 10:05:38.382 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:37328 10 6452 1 2025-08-13 10:06:38.785 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39738 10 6452 1 2025-08-13 10:07:26.936 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 10:07:26.839 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 10:07:26.856 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 10:07:26.733 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 10:07:26.854 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 10:07:39.194 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:42686 12 6556 1 2025-08-13 10:04:12.420 00:05:00.800 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-13 10:04:12.423 00:05:00.794 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-13 10:08:39.598 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50858 10 6452 1 2025-08-13 10:09:39.996 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:45016 10 6452 1 2025-08-13 10:10:40.361 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39420 10 6452 1 2025-08-13 10:11:40.766 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:34428 10 6452 1 2025-08-13 10:12:27.004 00:00:00.048 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 10:12:27.096 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 10:12:26.946 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 10:12:27.157 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 10:12:27.238 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 10:12:41.142 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47310 10 6452 1 2025-08-13 10:13:41.541 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:56192 10 6452 1 2025-08-13 10:10:12.422 00:05:00.799 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-13 10:10:12.426 00:05:00.794 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-13 10:14:41.899 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:53894 10 6452 1 2025-08-13 10:15:42.310 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:44242 10 6452 1 2025-08-13 10:16:42.717 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:36422 10 6452 1 2025-08-13 10:17:27.437 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 10:17:27.405 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 10:17:27.352 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 10:17:27.337 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 10:17:27.354 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 10:17:43.115 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42198 10 6452 1 2025-08-13 10:18:43.519 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43196 11 6492 1 2025-08-13 10:19:43.934 00:00:10.343 TCP 1.101.0.1:3000 -> 23.104.0.1:45732 10 6452 1 2025-08-13 10:16:12.428 00:05:00.792 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-13 10:16:12.423 00:05:00.799 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-13 10:20:44.318 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44916 10 6452 1 2025-08-13 10:21:44.720 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:43924 10 6452 1 2025-08-13 10:22:27.412 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 10:22:27.176 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 10:22:27.105 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 10:22:26.996 00:00:00.046 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 10:22:27.330 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 10:22:45.139 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45698 10 6452 1 2025-08-13 10:23:45.542 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59194 10 6452 1 2025-08-13 10:24:45.947 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35134 10 6452 1 2025-08-13 10:25:46.351 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:44224 10 6452 1 2025-08-13 10:22:12.424 00:05:00.800 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-13 10:22:12.426 00:05:00.794 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-13 10:26:46.757 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:51882 10 6452 1 2025-08-13 10:27:27.547 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 10:27:27.322 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 10:27:27.445 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 10:27:27.489 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 10:27:27.572 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 10:27:47.184 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:46676 10 6452 1 2025-08-13 10:28:47.587 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:50078 10 6452 1 2025-08-13 10:29:47.952 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:50130 10 6452 1 2025-08-13 10:30:48.319 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:38204 10 6452 1 2025-08-13 10:31:48.742 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:52512 10 6452 1 2025-08-13 10:28:12.426 00:05:00.799 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-13 10:28:12.430 00:05:00.794 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-13 10:32:27.564 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 10:32:27.530 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 10:32:27.472 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 10:32:27.415 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 10:32:27.480 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 10:32:49.149 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:36922 10 6452 1 2025-08-13 10:33:49.555 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:47866 10 6452 1 2025-08-13 10:34:49.929 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:34524 10 6452 1 2025-08-13 10:35:50.352 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:37666 12 6556 1 2025-08-13 10:36:50.763 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:43752 10 6452 1 2025-08-13 10:37:27.626 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 10:37:27.688 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 10:37:27.430 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 10:37:27.469 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 10:37:27.544 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 10:37:51.187 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:47916 10 6452 1 2025-08-13 10:34:12.428 00:05:00.799 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-13 10:34:12.430 00:05:00.794 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-13 10:38:51.596 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33736 10 6452 1 2025-08-13 10:39:52.015 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54354 10 6452 1 2025-08-13 10:40:52.413 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:48834 10 6452 1 2025-08-13 10:41:52.833 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36062 10 6452 1 2025-08-13 10:42:27.655 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 10:42:27.859 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 10:42:27.571 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 10:42:27.487 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 10:42:27.572 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 10:42:53.230 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:51396 10 6452 1 2025-08-13 10:43:53.631 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:53662 10 6452 1 2025-08-13 10:40:12.431 00:05:00.794 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-13 10:40:12.430 00:05:00.799 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-13 10:44:54.001 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57416 10 6452 1 2025-08-13 10:45:54.404 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:36348 10 6452 1 2025-08-13 10:46:54.810 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:44860 10 6452 1 2025-08-13 10:47:27.930 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 10:47:27.657 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 10:47:27.731 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 10:47:27.575 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 10:47:27.848 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 10:47:55.213 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:59332 10 6452 1 2025-08-13 10:48:55.574 00:00:14.493 TCP 1.101.0.1:3000 -> 23.104.0.1:49058 10 6452 1 2025-08-13 10:46:12.433 00:05:00.793 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-13 10:46:12.431 00:05:00.798 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-13 10:50:00.131 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56488 10 6452 1 2025-08-13 10:51:00.533 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51990 10 6452 1 2025-08-13 10:52:00.939 00:00:10.563 TCP 1.101.0.1:3000 -> 23.104.0.1:56874 10 6452 1 2025-08-13 10:52:27.945 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 10:52:27.863 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 10:52:27.920 00:00:00.028 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 10:52:27.973 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 10:52:27.787 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 10:53:01.540 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35512 10 6452 1 2025-08-13 10:54:01.946 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:42374 10 6452 1 2025-08-13 10:55:02.352 00:00:10.399 TCP 1.101.0.1:3000 -> 23.104.0.1:43568 12 10365 1 2025-08-13 10:52:12.432 00:05:00.798 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-13 10:56:02.792 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:57858 10 6452 1 2025-08-13 10:52:12.435 00:05:00.793 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-13 10:57:03.156 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:49022 10 6452 1 2025-08-13 10:57:27.901 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 10:57:27.719 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 10:57:27.739 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 10:57:27.843 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 10:57:27.926 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 10:58:03.556 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:56252 10 6452 1 Summary: total flows: 139, total bytes: 414709, total packets: 1017, avg bps: 921, avg pps: 0, avg bpp: 407 Time window: 2025-08-13 09:58:12 - 2025-08-13 10:58:13 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0020s User: 0.0020s Wall: 0.0013s flows/second: 105293.2 Runtime: 0.0013s