Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-05 16:53:55.770 00:06:00.183 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-05 16:59:03.685 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:55110 10 6452 1 2025-11-05 17:00:04.106 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:44360 10 6452 1 2025-11-05 17:01:04.468 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:44478 10 6452 1 2025-11-05 17:02:04.872 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:35996 10 6452 1 2025-11-05 17:03:09.188 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-05 17:03:09.345 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-05 17:03:09.149 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-05 17:03:09.172 00:00:00.026 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-05 17:03:09.253 00:00:00.026 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-05 17:03:05.274 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35906 10 6452 1 2025-11-05 16:58:55.769 00:06:00.191 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-05 17:04:05.678 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:56088 10 6452 1 2025-11-05 17:05:06.107 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:35460 10 6452 1 2025-11-05 17:00:55.773 00:06:00.185 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-05 17:06:06.472 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:44022 10 6452 1 2025-11-05 17:07:06.870 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40072 10 6452 1 2025-11-05 17:08:09.376 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-05 17:08:09.374 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-05 17:08:09.147 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-05 17:08:09.303 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-05 17:08:09.386 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-05 17:08:07.283 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46286 10 6452 1 2025-11-05 17:09:07.692 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:43176 10 6452 1 2025-11-05 17:10:08.081 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:39370 10 6452 1 2025-11-05 17:05:55.778 00:06:00.184 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-05 17:11:08.482 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:58304 10 6452 1 2025-11-05 17:12:08.891 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:51280 10 6452 1 2025-11-05 17:07:55.780 00:06:00.179 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-05 17:13:09.623 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-05 17:13:09.535 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-05 17:13:09.441 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-05 17:13:09.452 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-05 17:13:09.540 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-05 17:13:09.318 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:47578 10 6452 1 2025-11-05 17:14:09.730 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:33320 10 6452 1 2025-11-05 17:15:10.134 00:00:10.684 TCP 1.101.0.1:3000 -> 23.104.0.1:60312 10 6452 1 2025-11-05 17:16:10.855 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:44606 10 6452 1 2025-11-05 17:17:11.276 00:00:10.442 TCP 1.101.0.1:3000 -> 23.104.0.1:56098 12 10375 1 2025-11-05 17:12:55.778 00:06:00.184 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-05 17:18:09.561 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-05 17:18:09.714 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-05 17:18:09.428 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-05 17:18:09.498 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-05 17:18:09.581 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-05 17:18:11.755 00:00:10.680 TCP 1.101.0.1:3000 -> 23.104.0.1:51958 10 6452 1 2025-11-05 17:19:12.479 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:53602 10 6452 1 2025-11-05 17:14:55.781 00:06:00.179 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-05 17:20:12.837 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:46646 10 6452 1 2025-11-05 17:21:13.250 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:42480 10 6452 1 2025-11-05 17:22:13.651 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:44922 10 6452 1 2025-11-05 17:23:09.571 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-05 17:23:09.686 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-05 17:23:09.548 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-05 17:23:09.475 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-05 17:23:09.557 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-05 17:23:14.063 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:41316 10 6452 1 2025-11-05 17:24:14.424 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:46136 10 6452 1 2025-11-05 17:19:55.783 00:06:00.181 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-05 17:25:14.836 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:53534 10 6452 1 2025-11-05 17:26:15.261 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50504 10 6452 1 2025-11-05 17:21:55.785 00:06:00.176 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-05 17:27:15.666 00:00:10.828 TCP 1.101.0.1:3000 -> 23.104.0.1:38358 10 6452 1 2025-11-05 17:28:09.664 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-05 17:28:09.554 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-05 17:28:09.727 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-05 17:28:09.557 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-05 17:28:09.640 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-05 17:28:16.533 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51912 10 6452 1 2025-11-05 17:29:16.940 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:59590 10 6452 1 2025-11-05 17:30:17.370 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42902 10 6452 1 2025-11-05 17:31:17.774 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:60322 10 6452 1 2025-11-05 17:26:55.784 00:06:00.181 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-05 17:32:18.190 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46848 10 6452 1 2025-11-05 17:33:09.771 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-05 17:33:09.522 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-05 17:33:09.880 00:00:00.027 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-05 17:33:09.961 00:00:00.028 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-05 17:33:10.051 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-05 17:33:18.590 00:00:10.469 TCP 1.101.0.1:3000 -> 23.104.0.1:60356 12 6556 1 2025-11-05 17:28:55.789 00:06:00.174 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-05 17:34:19.109 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:53838 10 6452 1 2025-11-05 17:35:19.508 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:56050 10 6452 1 2025-11-05 17:36:19.871 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:51950 10 6452 1 2025-11-05 17:37:20.232 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49836 10 6452 1 2025-11-05 17:38:09.898 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-05 17:38:09.944 00:00:00.016 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-05 17:38:09.742 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-05 17:38:09.825 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-05 17:38:09.977 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-05 17:38:20.633 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:42630 10 6452 1 2025-11-05 17:33:55.785 00:06:00.181 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-05 17:39:21.040 00:00:11.060 TCP 1.101.0.1:3000 -> 23.104.0.1:51568 10 6452 1 2025-11-05 17:40:22.138 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48304 10 6452 1 2025-11-05 17:35:55.788 00:06:00.176 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-05 17:41:22.542 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54574 10 6452 1 2025-11-05 17:42:22.946 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:36922 10 6452 1 2025-11-05 17:43:10.846 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-05 17:43:10.758 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-05 17:43:10.599 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-05 17:43:10.557 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-05 17:43:10.765 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-05 17:43:23.316 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:60018 10 6452 1 2025-11-05 17:44:23.721 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:36388 10 6452 1 2025-11-05 17:45:24.128 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56442 10 6452 1 2025-11-05 17:40:55.787 00:06:00.183 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-05 17:46:24.529 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60074 10 6452 1 2025-11-05 17:47:24.932 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:44618 10 6452 1 2025-11-05 17:42:55.790 00:06:00.178 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-05 17:48:10.085 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-05 17:48:10.258 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-05 17:48:10.098 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-05 17:48:10.159 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-05 17:48:10.243 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-05 17:48:25.368 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36194 10 6452 1 2025-11-05 17:49:25.771 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:34214 10 6452 1 2025-11-05 17:50:26.189 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:52310 10 6452 1 2025-11-05 17:51:26.596 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38728 10 6452 1 2025-11-05 17:52:27.002 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38604 10 6452 1 2025-11-05 17:47:55.790 00:06:00.184 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-05 17:53:10.129 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-05 17:53:10.289 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-05 17:53:10.237 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-05 17:53:10.285 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-05 17:53:10.045 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-05 17:53:27.414 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47230 10 6452 1 2025-11-05 17:54:27.815 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:39596 10 6452 1 2025-11-05 17:49:55.792 00:06:00.181 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-05 17:55:28.224 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56036 10 6452 1 2025-11-05 17:56:28.627 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:41928 10 6452 1 2025-11-05 17:57:29.028 00:00:10.442 TCP 1.101.0.1:3000 -> 23.104.0.1:44712 12 10369 1 2025-11-05 17:58:11.589 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-05 17:58:11.403 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-05 17:58:11.582 00:00:00.026 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-05 17:58:11.588 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-05 17:58:11.506 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-05 17:58:29.508 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:50936 10 6452 1 Summary: total flows: 137, total bytes: 424821, total packets: 1024, avg bps: 874, avg pps: 0, avg bpp: 414 Time window: 2025-11-05 16:53:55 - 2025-11-05 17:58:39 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0040s User: 0.0010s Wall: 0.0020s flows/second: 68228.4 Runtime: 0.0020s