Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-20 19:59:05.227 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:34238 10 6452 1 2025-08-20 19:54:16.480 00:06:00.250 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-20 20:00:05.634 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55396 10 6452 1 2025-08-20 20:01:01.209 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-20 20:01:01.133 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-20 20:01:00.988 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 20:01:01.125 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 20:01:00.982 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-20 20:01:06.034 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:55606 10 6452 1 2025-08-20 20:02:06.399 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56338 10 6452 1 2025-08-20 20:03:06.799 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:49752 10 6452 1 2025-08-20 19:59:16.485 00:06:00.244 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-20 20:04:07.199 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57536 10 6452 1 2025-08-20 20:05:07.618 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35902 10 6452 1 2025-08-20 20:06:01.229 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-20 20:06:01.146 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-20 20:06:01.122 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 20:06:01.149 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 20:06:01.246 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-20 20:06:08.037 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:46100 10 6452 1 2025-08-20 20:01:16.482 00:06:00.250 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-20 20:07:08.406 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:55400 10 6452 1 2025-08-20 20:08:08.772 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:37816 10 6452 1 2025-08-20 20:09:09.140 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:36118 10 6452 1 2025-08-20 20:10:09.496 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:51036 10 6452 1 2025-08-20 20:11:01.333 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-20 20:11:01.250 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-20 20:11:01.280 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 20:11:01.249 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 20:11:01.515 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-20 20:11:09.854 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:57864 10 6452 1 2025-08-20 20:06:16.486 00:06:00.245 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-20 20:12:10.276 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:52038 10 6452 1 2025-08-20 20:08:16.483 00:06:00.251 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-20 20:13:10.637 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:49334 10 6452 1 2025-08-20 20:14:11.063 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39644 10 6452 1 2025-08-20 20:15:11.467 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:40850 10 6452 1 2025-08-20 20:16:01.445 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-20 20:16:01.213 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 20:16:01.490 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 20:16:01.266 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-20 20:16:01.572 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-20 20:16:11.861 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:60378 10 6452 1 2025-08-20 20:17:12.236 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:34942 10 6452 1 2025-08-20 20:13:16.488 00:06:00.245 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-20 20:18:12.603 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52196 10 6452 1 2025-08-20 20:19:13.012 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:51414 10 6452 1 2025-08-20 20:15:16.486 00:06:00.250 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-20 20:20:13.371 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60514 10 6452 1 2025-08-20 20:21:01.512 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-20 20:21:01.339 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-20 20:21:01.202 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 20:21:01.428 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 20:21:01.644 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-20 20:21:13.777 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:39616 10 6452 1 2025-08-20 20:22:14.205 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55392 10 6452 1 2025-08-20 20:23:14.610 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:42518 10 6452 1 2025-08-20 20:24:14.974 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:53478 10 6452 1 2025-08-20 20:20:16.492 00:06:00.243 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-20 20:25:15.419 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:42896 10 6452 1 2025-08-20 20:26:01.678 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-20 20:26:01.613 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-20 20:26:01.432 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 20:26:01.597 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 20:26:01.627 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-20 20:26:15.820 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36462 10 6452 1 2025-08-20 20:22:16.490 00:06:00.248 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-20 20:27:16.227 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54304 10 6452 1 2025-08-20 20:28:16.627 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56178 10 6452 1 2025-08-20 20:29:17.030 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:56208 10 6452 1 2025-08-20 20:30:17.444 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:44036 10 6452 1 2025-08-20 20:31:01.784 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-20 20:31:01.703 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 20:31:01.790 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-20 20:31:01.852 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-20 20:31:01.842 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 20:31:17.839 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:59828 10 6452 1 2025-08-20 20:27:16.494 00:06:00.241 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-20 20:32:18.269 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59134 10 6452 1 2025-08-20 20:33:18.673 00:00:10.316 TCP 1.101.0.1:3000 -> 23.104.0.1:43598 10 6452 1 2025-08-20 20:29:16.493 00:06:00.246 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-20 20:34:19.031 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:57746 10 6452 1 2025-08-20 20:35:19.397 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:53832 10 6452 1 2025-08-20 20:36:01.728 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-20 20:36:01.645 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 20:36:01.745 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 20:36:01.726 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-20 20:36:01.828 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-20 20:36:19.797 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54252 10 6452 1 2025-08-20 20:37:20.203 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:32992 10 6452 1 2025-08-20 20:38:20.605 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:60282 10 6452 1 2025-08-20 20:34:16.498 00:06:00.242 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-20 20:39:20.964 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41952 10 6452 1 2025-08-20 20:40:21.371 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:45424 10 6452 1 2025-08-20 20:41:01.910 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-20 20:41:01.996 00:00:00.047 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 20:41:02.074 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 20:41:01.976 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-20 20:41:02.156 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-20 20:36:16.498 00:06:00.245 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-20 20:41:21.767 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:59378 10 6452 1 2025-08-20 20:42:22.184 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47914 10 6452 1 2025-08-20 20:43:22.586 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:60166 10 6452 1 2025-08-20 20:44:22.990 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:55200 10 6452 1 2025-08-20 20:45:23.391 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:60046 10 6452 1 2025-08-20 20:46:01.832 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-20 20:46:01.844 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-20 20:46:01.860 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 20:46:01.750 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 20:46:01.993 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-20 20:41:16.501 00:06:00.244 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-20 20:46:23.800 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52760 10 6452 1 2025-08-20 20:47:24.207 00:00:10.973 TCP 1.101.0.1:3000 -> 23.104.0.1:37794 10 6452 1 2025-08-20 20:43:16.499 00:06:00.247 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-20 20:48:25.220 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:38492 10 6452 1 2025-08-20 20:49:25.620 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59806 10 6452 1 2025-08-20 20:50:26.026 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:36680 10 6452 1 2025-08-20 20:51:02.152 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-20 20:51:01.897 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 20:51:02.074 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 20:51:02.068 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-20 20:51:02.164 00:00:00.019 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-20 20:51:26.447 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:44792 10 6452 1 2025-08-20 20:52:26.809 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:42958 10 6452 1 2025-08-20 20:48:16.506 00:06:00.239 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-20 20:53:27.225 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:42382 10 6452 1 2025-08-20 20:54:27.583 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44906 10 6452 1 2025-08-20 20:50:16.505 00:06:00.244 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-20 20:55:27.989 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:59386 10 6452 1 2025-08-20 20:56:02.312 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-20 20:56:02.222 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-20 20:56:02.072 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 20:56:02.229 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 20:56:02.329 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-20 20:56:28.405 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:40156 10 6452 1 2025-08-20 20:57:28.819 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:38406 10 6452 1 2025-08-20 20:58:29.197 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:38244 10 6452 1 Summary: total flows: 137, total bytes: 416877, total packets: 1018, avg bps: 863, avg pps: 0, avg bpp: 409 Time window: 2025-08-20 19:54:16 - 2025-08-20 20:58:39 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0038s User: 0.0000s Wall: 0.0015s flows/second: 91325.4 Runtime: 0.0015s