Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-07-17 08:58:44.542 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57302 10 6438 1 2025-07-17 08:59:25.713 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-17 08:59:25.747 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 08:59:25.908 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 08:59:25.697 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-17 08:59:25.990 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-17 08:59:44.944 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:59838 10 6438 1 2025-07-17 09:00:45.359 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34454 10 6438 1 2025-07-17 08:56:57.790 00:05:00.679 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-17 09:01:45.767 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:33626 10 6438 1 2025-07-17 08:58:57.793 00:05:00.674 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-17 09:02:46.180 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38368 10 6438 1 2025-07-17 09:03:46.583 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:37252 10 6438 1 2025-07-17 09:04:25.947 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-17 09:04:25.574 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 09:04:25.853 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-17 09:04:26.072 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 09:04:26.153 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-17 09:04:46.988 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:52622 10 6438 1 2025-07-17 09:05:47.392 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50780 10 6438 1 2025-07-17 09:06:47.794 00:00:10.347 TCP 1.101.0.1:3000 -> 23.104.0.1:47962 10 6438 1 2025-07-17 09:02:57.791 00:05:00.680 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-17 09:07:48.181 00:00:10.399 TCP 1.101.0.1:3000 -> 23.104.0.1:50712 12 10352 1 2025-07-17 09:04:57.795 00:05:00.674 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-17 09:08:48.617 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:43086 10 6438 1 2025-07-17 09:09:25.769 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 09:09:26.191 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-17 09:09:26.110 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-17 09:09:26.109 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 09:09:26.113 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-17 09:09:48.979 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:47916 10 6438 1 2025-07-17 09:10:49.387 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53552 10 6438 1 2025-07-17 09:11:49.792 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:50354 10 6438 1 2025-07-17 09:08:57.794 00:05:00.683 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-17 09:12:50.200 00:00:10.393 TCP 1.101.0.1:3000 -> 23.104.0.1:50998 10 6438 1 2025-07-17 09:13:50.620 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:47620 10 6438 1 2025-07-17 09:14:26.278 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-17 09:14:26.046 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-17 09:14:26.148 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 09:14:26.196 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 09:14:26.052 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-17 09:10:57.796 00:05:00.678 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-17 09:14:51.033 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48230 10 6438 1 2025-07-17 09:15:51.434 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:38172 10 6438 1 2025-07-17 09:16:51.805 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54758 10 6438 1 2025-07-17 09:17:52.207 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55634 10 6438 1 2025-07-17 09:14:57.793 00:05:00.684 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-17 09:18:52.607 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:52676 10 6438 1 2025-07-17 09:19:26.225 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-17 09:19:26.042 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 09:19:26.220 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 09:19:26.287 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-17 09:19:26.304 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-17 09:19:53.031 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:48022 10 6438 1 2025-07-17 09:16:57.796 00:05:00.679 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-17 09:20:53.430 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59326 10 6438 1 2025-07-17 09:21:53.834 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:35350 10 6438 1 2025-07-17 09:22:54.258 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54592 10 6438 1 2025-07-17 09:23:54.660 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55564 10 6438 1 2025-07-17 09:24:26.437 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-17 09:24:26.423 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 09:24:26.536 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 09:24:26.426 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-17 09:24:26.619 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-17 09:20:57.797 00:05:00.681 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-17 09:24:55.068 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:48332 10 6438 1 2025-07-17 09:25:55.469 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:47172 10 6438 1 2025-07-17 09:22:57.800 00:05:00.678 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-17 09:26:55.832 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:43838 10 6438 1 2025-07-17 09:27:56.253 00:00:10.450 TCP 1.101.0.1:3000 -> 23.104.0.1:53754 12 10350 1 2025-07-17 09:28:56.739 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:37834 10 6438 1 2025-07-17 09:29:26.586 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-17 09:29:26.505 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-17 09:29:26.469 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 09:29:26.503 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 09:29:26.492 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-17 09:29:57.148 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60742 10 6438 1 2025-07-17 09:26:57.800 00:05:00.683 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-17 09:30:57.544 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56234 10 6438 1 2025-07-17 09:31:57.943 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:59272 10 6438 1 2025-07-17 09:28:57.801 00:05:00.687 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-17 09:32:58.365 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:44616 10 6438 1 2025-07-17 09:33:58.770 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:51738 10 6438 1 2025-07-17 09:34:26.647 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-17 09:34:26.563 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-17 09:34:26.439 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 09:34:26.565 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 09:34:26.565 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-17 09:34:59.175 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:32904 10 6438 1 2025-07-17 09:35:59.585 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50912 10 6438 1 2025-07-17 09:32:57.799 00:05:00.693 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-17 09:36:59.983 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:58750 10 6438 1 2025-07-17 09:38:00.392 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48888 10 6438 1 2025-07-17 09:34:57.804 00:05:00.688 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-17 09:39:00.791 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46466 10 6438 1 2025-07-17 09:39:26.935 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-17 09:39:26.493 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 09:39:27.136 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 09:39:26.936 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-17 09:39:27.219 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-17 09:40:01.199 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:50144 10 6438 1 2025-07-17 09:41:01.556 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59520 10 6438 1 2025-07-17 09:42:01.965 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37832 10 6438 1 2025-07-17 09:38:57.802 00:05:00.693 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-17 09:43:02.373 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:59410 10 6438 1 2025-07-17 09:44:02.785 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:43894 10 6438 1 2025-07-17 09:44:26.850 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 09:44:26.722 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 09:44:26.820 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-17 09:44:26.573 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-17 09:44:26.804 00:00:00.029 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-17 09:40:57.805 00:05:00.688 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-17 09:45:03.192 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51766 10 6438 1 2025-07-17 09:46:03.592 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:38318 10 6438 1 2025-07-17 09:47:03.950 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:59166 10 6438 1 2025-07-17 09:48:04.360 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:50970 10 6438 1 2025-07-17 09:44:57.803 00:05:00.693 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-17 09:49:04.796 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:47892 10 6438 1 2025-07-17 09:49:26.875 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-17 09:49:26.745 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 09:49:26.858 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 09:49:26.925 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-17 09:49:26.940 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-17 09:50:05.155 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45232 10 6438 1 2025-07-17 09:46:57.805 00:05:00.688 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-17 09:51:05.562 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36938 10 6438 1 2025-07-17 09:52:05.979 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:36442 10 6438 1 2025-07-17 09:53:06.355 00:00:10.438 TCP 1.101.0.1:3000 -> 23.104.0.1:54190 12 10352 1 2025-07-17 09:54:06.833 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:39562 10 6438 1 2025-07-17 09:54:27.224 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-17 09:54:27.142 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 09:54:26.856 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-17 09:54:26.938 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-17 09:54:26.792 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 09:50:57.806 00:05:00.692 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-17 09:55:07.245 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:43764 10 6438 1 2025-07-17 09:56:07.654 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53278 10 6438 1 2025-07-17 09:52:57.807 00:05:00.688 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-17 09:57:08.075 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:47348 10 6438 1 2025-07-17 09:58:08.475 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51400 10 6438 1 Summary: total flows: 140, total bytes: 427900, total packets: 1026, avg bps: 929, avg pps: 0, avg bpp: 417 Time window: 2025-07-17 08:56:57 - 2025-07-17 09:58:18 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0010s User: 0.0031s Wall: 0.0018s flows/second: 79545.2 Runtime: 0.0018s