Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-07-18 14:58:48.313 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42362 10 6438 1 2025-07-18 14:54:58.479 00:05:00.681 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-18 14:59:48.718 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:58704 10 6438 1 2025-07-18 15:00:02.226 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-18 15:00:01.873 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-18 15:00:01.902 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 15:00:02.143 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 15:00:01.796 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-18 15:00:49.130 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:57014 12 6542 1 2025-07-18 14:57:58.481 00:05:00.678 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-18 15:01:49.550 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:42302 10 6438 1 2025-07-18 15:02:49.958 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50888 10 6438 1 2025-07-18 15:03:50.364 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:34024 10 6438 1 2025-07-18 15:00:58.481 00:05:00.680 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-18 15:05:01.980 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-18 15:05:02.096 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-18 15:05:01.859 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 15:05:01.897 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 15:05:02.167 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-18 15:04:50.767 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:36476 10 6438 1 2025-07-18 15:05:51.177 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46230 10 6438 1 2025-07-18 15:06:51.577 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:44008 10 6438 1 2025-07-18 15:03:58.484 00:05:00.674 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-18 15:07:51.974 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:52266 10 6438 1 2025-07-18 15:08:52.389 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:48414 10 6438 1 2025-07-18 15:10:02.284 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-18 15:10:02.056 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-18 15:10:02.241 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 15:10:02.202 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 15:10:02.058 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-18 15:09:52.756 00:00:10.411 TCP 1.101.0.1:3000 -> 23.104.0.1:36482 10 6438 1 2025-07-18 15:06:58.483 00:05:00.679 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-18 15:10:53.183 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:55532 10 6438 1 2025-07-18 15:11:53.592 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:47126 10 6438 1 2025-07-18 15:12:53.994 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:60980 10 6438 1 2025-07-18 15:09:58.486 00:05:00.674 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-18 15:13:54.404 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:40084 10 6438 1 2025-07-18 15:15:02.287 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-18 15:15:02.250 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 15:15:02.223 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 15:15:02.218 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-18 15:14:54.811 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:38238 10 6438 1 2025-07-18 15:15:02.306 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-18 15:15:55.220 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55156 10 6438 1 2025-07-18 15:12:58.485 00:05:00.678 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-18 15:16:55.625 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53944 10 6438 1 2025-07-18 15:17:56.026 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56022 10 6438 1 2025-07-18 15:18:56.430 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:51548 10 6438 1 2025-07-18 15:15:58.508 00:05:00.655 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-18 15:20:02.390 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-18 15:20:02.291 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 15:20:02.160 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 15:20:02.388 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-18 15:20:02.243 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-18 15:19:56.851 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:44252 10 6438 1 2025-07-18 15:20:57.282 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:57604 10 6438 1 2025-07-18 15:21:57.684 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43136 10 6438 1 2025-07-18 15:18:58.506 00:05:00.660 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-18 15:22:58.109 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:60130 10 6438 1 2025-07-18 15:23:58.540 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:38448 10 6438 1 2025-07-18 15:25:02.610 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-18 15:25:02.374 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-18 15:25:02.338 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 15:25:02.528 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 15:25:02.467 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-18 15:24:58.946 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:41222 10 6438 1 2025-07-18 15:21:58.517 00:05:00.648 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-18 15:25:59.361 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44368 10 6438 1 2025-07-18 15:26:59.762 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:35516 10 6438 1 2025-07-18 15:28:00.187 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48068 10 6438 1 2025-07-18 15:24:58.515 00:05:00.655 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-18 15:29:00.596 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:36662 10 6438 1 2025-07-18 15:30:02.982 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-18 15:30:02.830 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-18 15:30:02.699 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 15:30:02.895 00:00:00.026 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 15:30:02.886 00:00:00.033 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-18 15:30:01.003 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:39506 10 6438 1 2025-07-18 15:31:01.368 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:41816 10 6438 1 2025-07-18 15:27:58.518 00:05:00.650 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-18 15:32:01.774 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:46366 10 6438 1 2025-07-18 15:33:02.182 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57824 10 6438 1 2025-07-18 15:34:02.586 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:54852 10 6438 1 2025-07-18 15:30:58.518 00:05:00.653 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-18 15:35:02.913 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-18 15:35:02.588 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 15:35:02.913 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 15:35:02.866 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-18 15:35:02.997 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-18 15:35:02.952 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59356 10 6438 1 2025-07-18 15:36:03.357 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:46318 10 6438 1 2025-07-18 15:37:03.720 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59140 10 6438 1 2025-07-18 15:33:58.522 00:05:00.646 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-18 15:38:04.128 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:58408 10 6438 1 2025-07-18 15:39:04.533 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41800 10 6438 1 2025-07-18 15:40:02.686 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-18 15:40:02.821 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-18 15:40:02.706 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 15:40:02.603 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 15:40:02.708 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-18 15:40:04.934 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:36488 10 6438 1 2025-07-18 15:36:58.519 00:05:00.652 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-18 15:41:05.346 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49902 10 6438 1 2025-07-18 15:42:05.747 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:39908 10 6438 1 2025-07-18 15:43:06.150 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:39544 10 6438 1 2025-07-18 15:39:58.528 00:05:00.641 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-18 15:44:06.517 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:52020 10 6438 1 2025-07-18 15:45:02.957 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-18 15:45:02.820 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 15:45:02.864 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 15:45:02.990 00:00:00.034 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-18 15:45:02.947 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-18 15:45:06.921 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:34232 10 6438 1 2025-07-18 15:46:07.334 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45966 10 6438 1 2025-07-18 15:42:58.520 00:05:00.652 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-18 15:47:07.745 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:45722 10 6438 1 2025-07-18 15:48:08.146 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60484 10 6438 1 2025-07-18 15:49:08.551 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:50328 10 6438 1 2025-07-18 15:45:58.524 00:05:00.647 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-18 15:50:03.263 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-18 15:50:03.057 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-18 15:50:03.119 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 15:50:03.181 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 15:50:02.912 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-18 15:50:08.915 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:58016 10 6438 1 2025-07-18 15:51:09.323 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:57810 10 6438 1 2025-07-18 15:52:09.726 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:60006 10 6438 1 2025-07-18 15:48:58.521 00:05:00.652 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-18 15:53:10.141 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:40094 10 6438 1 2025-07-18 15:54:10.501 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46112 10 6438 1 2025-07-18 15:55:03.043 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-18 15:55:02.762 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 15:55:03.045 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 15:55:03.124 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-18 15:55:03.129 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-18 15:55:10.899 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:54520 10 6438 1 2025-07-18 15:51:58.525 00:05:00.647 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-18 15:56:11.273 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51192 10 6438 1 2025-07-18 15:57:11.677 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:51714 10 6438 1 2025-07-18 15:58:12.104 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:51532 10 6438 1 Summary: total flows: 140, total bytes: 416264, total packets: 1022, avg bps: 875, avg pps: 0, avg bpp: 407 Time window: 2025-07-18 14:54:58 - 2025-07-18 15:58:22 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0009s User: 0.0028s Wall: 0.0018s flows/second: 78304.1 Runtime: 0.0018s