Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-13 08:55:12.401 00:05:00.787 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-13 08:59:11.324 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47582 10 6452 1 2025-08-13 09:00:11.729 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:36120 10 6452 1 2025-08-13 09:01:12.141 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:32792 10 6452 1 2025-08-13 09:02:25.779 00:00:00.016 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 09:02:25.596 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 09:02:25.467 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 09:02:25.694 00:00:00.019 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 09:02:25.596 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 09:02:12.560 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:39152 10 6452 1 2025-08-13 09:03:12.958 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:33326 10 6452 1 2025-08-13 09:00:12.407 00:05:00.783 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-13 09:04:13.331 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59190 10 6452 1 2025-08-13 09:01:12.404 00:05:00.788 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-13 09:05:13.735 00:00:10.448 TCP 1.101.0.1:3000 -> 23.104.0.1:54014 12 10365 1 2025-08-13 09:06:14.221 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:46770 10 6452 1 2025-08-13 09:07:14.627 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:42368 10 6452 1 2025-08-13 09:07:25.861 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 09:07:25.848 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 09:07:25.951 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 09:07:25.574 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 09:07:26.034 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 09:08:15.036 00:00:10.422 TCP 1.101.0.1:3000 -> 23.104.0.1:52932 11 6504 1 2025-08-13 09:09:15.499 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46456 10 6452 1 2025-08-13 09:06:12.408 00:05:00.783 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-13 09:10:15.912 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:56498 12 6556 1 2025-08-13 09:07:12.407 00:05:00.787 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-13 09:11:16.318 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:54050 10 6452 1 2025-08-13 09:12:16.721 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:47736 10 6452 1 2025-08-13 09:12:26.106 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 09:12:26.107 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 09:12:26.109 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 09:12:26.102 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 09:12:26.192 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 09:13:17.113 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:41932 10 6452 1 2025-08-13 09:14:17.517 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:59954 10 6452 1 2025-08-13 09:15:17.925 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:57592 10 6452 1 2025-08-13 09:12:12.410 00:05:00.795 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-13 09:16:18.287 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45692 10 6452 1 2025-08-13 09:13:12.408 00:05:00.800 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-13 09:17:25.670 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 09:17:25.863 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 09:17:25.945 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 09:17:25.946 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 09:17:26.082 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 09:17:18.690 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:40336 10 6452 1 2025-08-13 09:18:19.105 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:51626 10 6452 1 2025-08-13 09:19:19.508 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:54886 10 6452 1 2025-08-13 09:20:19.872 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:53924 10 6452 1 2025-08-13 09:21:20.280 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48626 10 6452 1 2025-08-13 09:18:12.412 00:05:00.796 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-13 09:22:25.774 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 09:22:26.090 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 09:22:26.150 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 09:22:26.153 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 09:22:26.233 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 09:22:20.685 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40362 10 6452 1 2025-08-13 09:19:12.408 00:05:00.801 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-13 09:23:21.113 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53826 10 6452 1 2025-08-13 09:24:21.516 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:33604 10 6452 1 2025-08-13 09:25:21.876 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55694 10 6452 1 2025-08-13 09:26:22.283 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:59594 10 6452 1 2025-08-13 09:27:26.328 00:00:00.028 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 09:27:26.145 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 09:27:26.082 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 09:27:26.145 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 09:27:26.164 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 09:27:22.687 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:33386 10 6452 1 2025-08-13 09:24:12.413 00:05:00.795 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-13 09:28:23.110 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51026 10 6452 1 2025-08-13 09:25:12.410 00:05:00.801 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-13 09:29:23.512 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:33116 10 6452 1 2025-08-13 09:30:23.873 00:00:10.426 TCP 1.101.0.1:3000 -> 23.104.0.1:54954 10 6452 1 2025-08-13 09:31:24.339 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33116 10 6452 1 2025-08-13 09:32:26.219 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 09:32:26.158 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 09:32:26.274 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 09:32:26.136 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 09:32:26.239 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 09:32:24.739 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60500 10 6452 1 2025-08-13 09:33:25.148 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41228 10 6452 1 2025-08-13 09:30:12.414 00:05:00.796 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-13 09:34:25.549 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:37090 10 6452 1 2025-08-13 09:31:12.410 00:05:00.802 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-13 09:35:25.962 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:43178 10 6452 1 2025-08-13 09:36:26.331 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60420 10 6452 1 2025-08-13 09:37:26.282 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 09:37:26.319 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 09:37:26.364 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 09:37:26.286 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 09:37:26.447 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 09:37:26.740 00:00:10.719 TCP 1.101.0.1:3000 -> 23.104.0.1:50292 10 6452 1 2025-08-13 09:38:27.500 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:43762 10 6452 1 2025-08-13 09:39:27.863 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:34156 10 6452 1 2025-08-13 09:36:12.416 00:05:00.798 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-13 09:40:28.279 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56016 10 6452 1 2025-08-13 09:37:12.412 00:05:00.803 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-13 09:41:28.687 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:55120 10 6452 1 2025-08-13 09:42:26.475 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 09:42:26.344 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 09:42:26.468 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 09:42:26.401 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 09:42:26.550 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 09:42:29.110 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:55920 10 6452 1 2025-08-13 09:43:29.516 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:33746 10 6452 1 2025-08-13 09:44:29.884 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:39886 10 6452 1 2025-08-13 09:45:30.308 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:42980 10 6452 1 2025-08-13 09:42:12.416 00:05:00.797 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-13 09:46:30.713 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43238 10 6452 1 2025-08-13 09:43:12.415 00:05:00.802 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-13 09:47:26.584 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 09:47:26.524 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 09:47:26.770 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 09:47:26.687 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 09:47:26.853 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 09:47:31.125 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:57506 10 6452 1 2025-08-13 09:48:31.492 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37248 10 6452 1 2025-08-13 09:49:31.897 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:50872 12 6556 1 2025-08-13 09:50:32.314 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:43420 10 6452 1 2025-08-13 09:51:32.679 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:58894 10 6452 1 2025-08-13 09:48:12.417 00:05:00.797 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-13 09:52:26.595 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 09:52:26.543 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 09:52:26.597 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 09:52:26.668 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 09:52:26.680 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 09:52:33.059 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:39090 10 6452 1 2025-08-13 09:49:12.415 00:05:00.802 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-13 09:53:33.462 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:40736 10 6452 1 2025-08-13 09:54:33.877 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56484 10 6452 1 2025-08-13 09:55:34.283 00:00:10.443 TCP 1.101.0.1:3000 -> 23.104.0.1:41932 12 10367 1 2025-08-13 09:56:34.764 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:50956 10 6452 1 2025-08-13 09:57:26.801 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 09:57:26.599 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 09:57:26.638 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 09:57:26.718 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 09:57:26.596 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 09:57:35.190 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49238 10 6452 1 2025-08-13 09:54:12.418 00:05:00.797 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-13 09:58:35.594 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:47518 10 6452 1 Summary: total flows: 140, total bytes: 425088, total packets: 1029, avg bps: 885, avg pps: 0, avg bpp: 413 Time window: 2025-08-13 08:55:12 - 2025-08-13 09:59:13 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0007s User: 0.0022s Wall: 0.0026s flows/second: 53931.2 Runtime: 0.0026s