Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-25 10:59:13.555 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40866 10 6452 1 2025-08-25 11:00:13.964 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50614 10 6452 1 2025-08-25 11:01:14.367 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:35898 10 6452 1 2025-08-25 11:02:14.732 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:50024 10 6452 1 2025-08-25 11:03:14.671 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-25 11:03:14.682 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-25 11:03:14.799 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-25 11:03:14.573 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 11:03:14.589 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 10:59:18.985 00:05:00.114 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-25 11:03:15.148 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60900 10 6452 1 2025-08-25 11:00:18.988 00:05:00.109 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-25 11:04:15.546 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:53448 10 6452 1 2025-08-25 11:05:15.905 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:38642 12 6556 1 2025-08-25 11:06:16.313 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:36516 10 6452 1 2025-08-25 11:07:16.723 00:00:10.317 TCP 1.101.0.1:3000 -> 23.104.0.1:54228 10 6452 1 2025-08-25 11:08:14.878 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-25 11:08:14.839 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 11:08:14.876 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 11:08:14.813 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-25 11:08:14.960 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-25 11:08:17.112 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:40174 10 6452 1 2025-08-25 11:05:18.986 00:05:00.114 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-25 11:09:17.520 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:45186 10 6452 1 2025-08-25 11:06:18.990 00:05:00.110 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-25 11:10:17.930 00:00:10.349 TCP 1.101.0.1:3000 -> 23.104.0.1:37502 10 6452 1 2025-08-25 11:11:18.320 00:00:10.397 TCP 1.101.0.1:3000 -> 23.104.0.1:47796 12 10367 1 2025-08-25 11:12:18.754 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:42142 10 6452 1 2025-08-25 11:13:15.259 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-25 11:13:15.306 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-25 11:13:15.110 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-25 11:13:15.240 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 11:13:15.177 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 11:13:19.168 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47788 10 6452 1 2025-08-25 11:14:19.568 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:57236 10 6452 1 2025-08-25 11:11:18.987 00:05:00.115 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-25 11:15:19.980 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:38596 10 6452 1 2025-08-25 11:12:18.991 00:05:00.109 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-25 11:16:20.384 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55026 10 6452 1 2025-08-25 11:17:20.785 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54316 10 6452 1 2025-08-25 11:18:15.286 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-25 11:18:15.284 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-25 11:18:15.230 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 11:18:15.218 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 11:18:15.300 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-25 11:18:21.189 00:00:10.346 TCP 1.101.0.1:3000 -> 23.104.0.1:55152 10 6452 1 2025-08-25 11:19:21.572 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:33512 10 6452 1 2025-08-25 11:20:21.972 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:41548 10 6452 1 2025-08-25 11:17:18.992 00:05:00.113 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-25 11:21:22.338 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:45936 10 6452 1 2025-08-25 11:18:18.994 00:05:00.108 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-25 11:22:22.743 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:35882 10 6452 1 2025-08-25 11:23:14.951 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-25 11:23:14.751 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 11:23:15.128 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 11:23:15.067 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-25 11:23:15.212 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-25 11:23:23.147 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:33624 10 6452 1 2025-08-25 11:24:23.556 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:55794 10 6452 1 2025-08-25 11:25:23.972 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35022 10 6452 1 2025-08-25 11:26:24.375 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44510 10 6452 1 2025-08-25 11:23:18.991 00:05:00.115 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-25 11:27:24.771 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:60986 10 6452 1 2025-08-25 11:28:15.164 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-25 11:24:18.995 00:05:00.109 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-25 11:28:15.352 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-25 11:28:15.291 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 11:28:15.081 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 11:28:15.078 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-25 11:28:25.182 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:54902 10 6452 1 2025-08-25 11:29:25.553 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41122 10 6452 1 2025-08-25 11:29:18.994 00:01:00.113 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-08-25 11:30:25.957 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:47752 10 6452 1 2025-08-25 11:31:26.317 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:40410 10 6452 1 2025-08-25 11:32:26.719 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:43278 10 6452 1 2025-08-25 11:33:15.272 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-25 11:33:14.960 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 11:33:15.349 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-25 11:33:15.359 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-25 11:33:15.189 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 11:33:27.138 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:35104 10 6452 1 2025-08-25 11:30:18.996 00:05:00.108 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-25 11:34:27.504 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:33284 10 6452 1 2025-08-25 11:31:18.994 00:05:00.113 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-25 11:35:27.915 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:60706 10 6452 1 2025-08-25 11:36:28.314 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:33536 10 6452 1 2025-08-25 11:37:28.727 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:40456 10 6452 1 2025-08-25 11:38:15.465 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-25 11:38:15.668 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-25 11:38:15.454 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-25 11:38:15.272 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 11:38:15.382 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 11:38:29.150 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53232 10 6452 1 2025-08-25 11:39:29.557 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:40564 10 6452 1 2025-08-25 11:36:18.999 00:05:00.108 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-25 11:40:29.916 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:55078 10 6452 1 2025-08-25 11:37:18.995 00:05:00.114 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-25 11:41:30.322 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:35474 10 6452 1 2025-08-25 11:42:30.683 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42764 10 6452 1 2025-08-25 11:43:15.589 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 11:43:15.768 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 11:43:15.686 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-25 11:43:15.350 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-25 11:43:15.849 00:00:00.026 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-25 11:43:31.112 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:35062 10 6452 1 2025-08-25 11:44:31.512 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54908 10 6452 1 2025-08-25 11:45:31.914 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:52072 10 6452 1 2025-08-25 11:46:32.324 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:52994 10 6452 1 2025-08-25 11:42:19.001 00:06:00.107 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-25 11:47:32.721 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:51058 10 6452 1 2025-08-25 11:48:15.620 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-25 11:48:15.665 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-25 11:48:15.491 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 11:48:15.609 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 11:48:15.692 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-25 11:43:19.030 00:06:00.081 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-25 11:48:33.139 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:43796 10 6452 1 2025-08-25 11:49:33.504 00:00:10.949 TCP 1.101.0.1:3000 -> 23.104.0.1:59020 10 6452 1 2025-08-25 11:50:34.494 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58370 10 6452 1 2025-08-25 11:51:34.895 00:00:10.433 TCP 1.101.0.1:3000 -> 23.104.0.1:41404 12 6556 1 2025-08-25 11:52:35.364 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35448 10 6452 1 2025-08-25 11:53:15.791 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-25 11:53:15.675 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-25 11:53:15.710 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 11:53:15.743 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 11:53:15.827 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-25 11:53:35.771 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:59844 10 6452 1 2025-08-25 11:49:19.035 00:06:00.073 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-25 11:54:36.191 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:50524 10 6452 1 2025-08-25 11:50:19.035 00:06:00.077 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-25 11:55:36.603 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:53336 10 6452 1 2025-08-25 11:56:37.014 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:32920 10 6452 1 2025-08-25 11:57:37.424 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35700 10 6452 1 2025-08-25 11:58:15.905 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-25 11:58:15.856 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-25 11:58:15.941 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-25 11:58:15.851 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 11:58:15.822 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 11:58:37.831 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:40582 10 6452 1 Summary: total flows: 139, total bytes: 420385, total packets: 1014, avg bps: 940, avg pps: 0, avg bpp: 414 Time window: 2025-08-25 10:59:13 - 2025-08-25 11:58:48 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0022s User: 0.0022s Wall: 0.0016s flows/second: 88589.6 Runtime: 0.0016s