Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-07-16 15:59:05.385 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-16 15:58:54.711 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:49504 10 6438 1 2025-07-16 15:59:05.404 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-16 15:59:05.256 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-16 15:59:05.303 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-16 15:59:05.213 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-16 15:54:57.406 00:06:00.589 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-07-16 15:59:55.102 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:46306 10 6438 1 2025-07-16 15:55:57.408 00:06:00.584 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-07-16 16:00:55.480 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:45454 10 6438 1 2025-07-16 16:01:55.908 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:56280 10 6438 1 2025-07-16 16:02:56.317 00:00:10.440 TCP 1.101.0.1:3000 -> 23.104.0.1:53384 12 10350 1 2025-07-16 16:04:05.617 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-16 16:04:05.429 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-16 16:04:05.188 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-16 16:04:05.460 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-16 16:04:05.270 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-16 16:03:56.792 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50332 10 6438 1 2025-07-16 16:04:57.198 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:50362 10 6438 1 2025-07-16 16:05:57.618 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:45818 10 6438 1 2025-07-16 16:01:57.413 00:06:00.587 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-07-16 16:06:58.031 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:58124 10 6438 1 2025-07-16 16:02:57.412 00:06:00.585 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-07-16 16:07:58.431 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46676 10 6438 1 2025-07-16 16:09:05.568 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-16 16:09:05.521 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-16 16:09:05.622 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-16 16:09:05.489 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-16 16:09:05.706 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-16 16:08:58.838 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:43776 10 6438 1 2025-07-16 16:09:59.266 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:39366 10 6438 1 2025-07-16 16:10:59.631 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44610 10 6438 1 2025-07-16 16:12:00.035 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:54474 10 6438 1 2025-07-16 16:08:57.412 00:05:00.590 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-16 16:13:00.432 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:33558 10 6438 1 2025-07-16 16:14:05.703 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-16 16:14:05.685 00:00:00.036 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-16 16:14:05.679 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-16 16:14:05.574 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-16 16:14:05.621 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-16 16:14:00.792 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:53642 10 6438 1 2025-07-16 16:09:57.414 00:06:00.583 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-07-16 16:15:01.193 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:46512 10 6438 1 2025-07-16 16:16:01.590 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:36950 10 6438 1 2025-07-16 16:17:01.995 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:50608 10 6438 1 2025-07-16 16:18:02.405 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35630 10 6438 1 2025-07-16 16:19:06.201 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-16 16:14:57.412 00:05:00.593 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-16 16:19:05.953 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-16 16:19:05.932 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-16 16:19:06.126 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-16 16:19:06.118 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-16 16:19:02.807 00:00:10.424 TCP 1.101.0.1:3000 -> 23.104.0.1:34432 11 6490 1 2025-07-16 16:20:03.270 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34400 10 6438 1 2025-07-16 16:16:57.416 00:05:00.604 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-16 16:21:03.674 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54232 10 6438 1 2025-07-16 16:22:04.105 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:42510 10 6438 1 2025-07-16 16:23:04.465 00:00:10.401 TCP 1.101.0.1:3000 -> 23.104.0.1:49800 12 10352 1 2025-07-16 16:24:05.856 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-16 16:24:05.902 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-16 16:24:05.933 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-16 16:24:05.772 00:00:00.020 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-16 16:24:05.907 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-16 16:24:04.906 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51562 10 6438 1 2025-07-16 16:20:57.415 00:05:00.622 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-16 16:25:05.311 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:46848 10 6438 1 2025-07-16 16:26:05.708 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59098 10 6438 1 2025-07-16 16:22:57.418 00:05:00.615 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-16 16:27:06.114 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:46432 10 6438 1 2025-07-16 16:28:06.517 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52146 10 6438 1 2025-07-16 16:29:06.278 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-16 16:29:06.166 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-16 16:29:06.282 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-16 16:29:06.102 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-16 16:29:06.364 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-16 16:29:06.922 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:39684 10 6438 1 2025-07-16 16:30:07.338 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:49458 10 6438 1 2025-07-16 16:26:57.416 00:05:00.620 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-16 16:31:07.740 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:40944 10 6438 1 2025-07-16 16:32:08.176 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:54784 10 6438 1 2025-07-16 16:28:57.419 00:05:00.616 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-16 16:33:08.549 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43896 10 6438 1 2025-07-16 16:34:06.178 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-16 16:34:06.122 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-16 16:34:06.180 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-16 16:34:06.439 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-16 16:34:06.263 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-16 16:34:08.954 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:59592 10 6438 1 2025-07-16 16:35:09.359 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52610 10 6438 1 2025-07-16 16:36:09.758 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:53650 10 6438 1 2025-07-16 16:32:57.418 00:05:00.622 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-16 16:37:10.155 00:00:10.399 TCP 1.101.0.1:3000 -> 23.104.0.1:51662 10 6438 1 2025-07-16 16:38:10.566 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36240 10 6438 1 2025-07-16 16:34:57.422 00:05:00.615 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-16 16:39:06.203 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-16 16:39:06.262 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-16 16:39:06.231 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-16 16:39:06.119 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-16 16:39:06.189 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-16 16:39:10.967 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:53866 10 6438 1 2025-07-16 16:40:11.372 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:52268 10 6438 1 2025-07-16 16:41:11.746 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:39938 10 6438 1 2025-07-16 16:42:12.146 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33066 10 6438 1 2025-07-16 16:38:57.422 00:05:00.619 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-16 16:43:12.548 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45374 10 6438 1 2025-07-16 16:44:06.459 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-16 16:44:06.465 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-16 16:44:06.276 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-16 16:44:06.378 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-16 16:44:06.368 00:00:00.026 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-16 16:44:12.946 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:33060 10 6438 1 2025-07-16 16:40:57.425 00:05:00.615 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-16 16:45:13.316 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47546 10 6438 1 2025-07-16 16:46:13.719 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:57946 10 6438 1 2025-07-16 16:47:14.144 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:40752 10 6438 1 2025-07-16 16:48:14.558 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:51598 10 6438 1 2025-07-16 16:44:57.426 00:05:00.616 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-16 16:49:06.311 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-16 16:49:06.399 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-16 16:49:06.382 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-16 16:49:06.229 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-16 16:49:06.390 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-16 16:49:14.955 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33098 10 6438 1 2025-07-16 16:50:15.362 00:00:10.394 TCP 1.101.0.1:3000 -> 23.104.0.1:42680 10 6438 1 2025-07-16 16:46:57.429 00:05:00.611 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-16 16:51:15.794 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34250 10 6438 1 2025-07-16 16:52:16.203 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:55114 10 6438 1 2025-07-16 16:53:16.610 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:44790 10 6438 1 2025-07-16 16:54:06.717 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-16 16:54:06.456 00:00:00.029 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-16 16:54:06.149 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-16 16:54:06.634 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-16 16:54:06.457 00:00:00.028 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-16 16:54:16.974 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:54228 10 6438 1 2025-07-16 16:50:57.427 00:05:00.617 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-16 16:55:17.381 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:39312 10 6438 1 2025-07-16 16:56:17.781 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:60234 10 6438 1 2025-07-16 16:52:57.432 00:05:00.611 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-16 16:57:18.195 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:47032 10 6438 1 2025-07-16 16:58:18.553 00:00:10.434 TCP 1.101.0.1:3000 -> 23.104.0.1:44346 12 10352 1 Summary: total flows: 140, total bytes: 428567, total packets: 1037, avg bps: 899, avg pps: 0, avg bpp: 413 Time window: 2025-07-16 15:54:57 - 2025-07-16 16:58:28 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0020s User: 0.0010s Wall: 0.0013s flows/second: 106300.2 Runtime: 0.0013s