Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-09 12:53:57.760 00:06:00.096 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-09 12:59:05.146 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:35440 10 6452 1 2025-11-09 12:54:57.758 00:06:00.102 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-09 12:59:59.966 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 12:59:59.958 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 13:00:00.269 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 13:00:00.262 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 13:00:00.344 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 13:00:05.551 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:33730 10 6452 1 2025-11-09 13:01:05.913 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:58038 10 6452 1 2025-11-09 13:02:06.280 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33132 10 6452 1 2025-11-09 13:03:06.683 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47346 10 6452 1 2025-11-09 13:04:07.107 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48608 10 6452 1 2025-11-09 13:04:59.844 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 13:04:59.627 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 13:05:00.285 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 13:05:00.081 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 13:05:00.164 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 13:05:07.524 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:53676 10 6452 1 2025-11-09 13:00:57.762 00:06:00.100 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-09 13:06:07.889 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:36464 12 6556 1 2025-11-09 13:01:57.760 00:06:00.105 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-09 13:07:08.312 00:00:10.511 TCP 1.101.0.1:3000 -> 23.104.0.1:55024 10 6452 1 2025-11-09 13:08:08.860 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:51864 10 6452 1 2025-11-09 13:09:09.275 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41450 10 6452 1 2025-11-09 13:09:59.961 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 13:10:00.219 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 13:10:00.002 00:00:00.035 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 13:10:00.095 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 13:10:00.177 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 13:10:09.675 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:42568 10 6452 1 2025-11-09 13:11:10.034 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55638 10 6452 1 2025-11-09 13:12:10.438 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:45072 10 6452 1 2025-11-09 13:07:57.777 00:06:00.086 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-09 13:13:10.817 00:00:10.423 TCP 1.101.0.1:3000 -> 23.104.0.1:36640 10 6452 1 2025-11-09 13:08:57.775 00:06:00.090 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-09 13:14:11.297 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:37640 10 6452 1 2025-11-09 13:15:00.276 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 13:15:00.195 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 13:15:00.085 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 13:15:00.156 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 13:15:00.122 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 13:15:11.700 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49998 10 6452 1 2025-11-09 13:16:12.109 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49452 10 6452 1 2025-11-09 13:17:12.512 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:58634 10 6452 1 2025-11-09 13:18:12.921 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:43454 10 6452 1 2025-11-09 13:19:13.341 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:58582 10 6452 1 2025-11-09 13:14:57.786 00:06:00.081 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-09 13:20:00.408 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 13:20:00.407 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 13:20:00.380 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 13:20:00.359 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 13:20:00.443 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 13:20:13.755 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:60754 10 6452 1 2025-11-09 13:15:57.785 00:06:00.085 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-09 13:21:14.167 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:33916 10 6452 1 2025-11-09 13:22:14.524 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:37748 10 6452 1 2025-11-09 13:23:14.923 00:00:10.345 TCP 1.101.0.1:3000 -> 23.104.0.1:42716 10 6452 1 2025-11-09 13:24:15.306 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:57602 10 6452 1 2025-11-09 13:25:01.178 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 13:25:01.364 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 13:25:01.120 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 13:25:01.250 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 13:25:01.333 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 13:25:15.705 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:38298 10 6452 1 2025-11-09 13:26:16.094 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45468 10 6452 1 2025-11-09 13:21:57.790 00:06:00.082 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-09 13:27:16.491 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:44802 10 6452 1 2025-11-09 13:22:57.788 00:06:00.087 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-09 13:28:16.896 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:46346 10 6452 1 2025-11-09 13:29:17.263 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:60258 10 6452 1 2025-11-09 13:30:00.538 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 13:30:00.455 00:00:00.027 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 13:30:00.458 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 13:30:00.700 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 13:30:00.456 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 13:30:17.682 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53308 10 6452 1 2025-11-09 13:31:18.106 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:58982 10 6452 1 2025-11-09 13:32:18.502 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59560 10 6452 1 2025-11-09 13:33:18.905 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43676 10 6452 1 2025-11-09 13:28:57.794 00:06:00.080 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-09 13:34:19.309 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38742 10 6452 1 2025-11-09 13:29:57.794 00:06:00.083 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-09 13:35:00.638 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 13:35:00.626 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 13:35:00.413 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 13:35:00.528 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 13:35:00.555 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 13:35:19.714 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:51296 10 6452 1 2025-11-09 13:36:20.115 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:48562 10 6452 1 2025-11-09 13:37:20.521 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:49046 10 6452 1 2025-11-09 13:38:20.885 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:58008 10 6452 1 2025-11-09 13:39:21.258 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:33268 10 6452 1 2025-11-09 13:40:00.668 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 13:40:00.681 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 13:40:00.748 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 13:40:00.680 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 13:40:00.764 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 13:40:21.621 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:60722 10 6452 1 2025-11-09 13:35:57.798 00:06:00.078 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-09 13:41:22.042 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:53662 10 6452 1 2025-11-09 13:36:57.796 00:06:00.082 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-09 13:42:22.413 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48726 10 6452 1 2025-11-09 13:43:22.816 00:00:11.784 TCP 1.101.0.1:3000 -> 23.104.0.1:35422 10 6452 1 2025-11-09 13:44:24.647 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:60826 10 6452 1 2025-11-09 13:45:00.948 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 13:45:00.947 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 13:45:00.706 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 13:45:00.781 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 13:45:00.864 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 13:45:25.061 00:00:11.002 TCP 1.101.0.1:3000 -> 23.104.0.1:60134 10 6452 1 2025-11-09 13:46:26.116 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44018 10 6452 1 2025-11-09 13:47:26.523 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54090 10 6452 1 2025-11-09 13:42:57.798 00:06:00.082 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-09 13:48:26.926 00:00:10.539 TCP 1.101.0.1:3000 -> 23.104.0.1:46906 14 14298 1 2025-11-09 13:43:57.800 00:06:00.083 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-09 13:49:27.508 00:00:10.683 TCP 1.101.0.1:3000 -> 23.104.0.1:45588 10 6452 1 2025-11-09 13:50:00.810 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 13:50:00.825 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 13:50:00.737 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 13:50:00.820 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 13:50:00.903 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 13:50:28.222 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:40494 10 6452 1 2025-11-09 13:51:28.621 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48458 10 6452 1 2025-11-09 13:52:29.026 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:40964 10 6452 1 2025-11-09 13:53:29.430 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48688 10 6452 1 2025-11-09 13:54:29.839 00:00:10.350 TCP 1.101.0.1:3000 -> 23.104.0.1:56712 10 6452 1 2025-11-09 13:49:57.805 00:06:00.078 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-09 13:55:00.953 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 13:55:00.845 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 13:55:00.677 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 13:55:00.953 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 13:55:00.760 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 13:55:30.217 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36756 10 6452 1 2025-11-09 13:50:57.804 00:06:00.084 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-09 13:56:30.623 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:49572 10 6452 1 2025-11-09 13:57:30.983 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:42660 10 6452 1 2025-11-09 13:58:31.386 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:60588 10 6452 1 Summary: total flows: 138, total bytes: 425688, total packets: 1038, avg bps: 876, avg pps: 0, avg bpp: 410 Time window: 2025-11-09 12:53:57 - 2025-11-09 13:58:41 Total flows processed: 138, passed: 138, Blocks skipped: 0, Bytes read: 14416 Sys: 0.0045s User: 0.0000s Wall: 0.0016s flows/second: 88911.5 Runtime: 0.0016s