Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-10 13:53:58.498 00:06:00.063 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-10 13:53:58.500 00:06:00.058 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-10 13:58:59.472 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46822 10 6452 1 2025-11-10 13:59:59.876 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:48960 10 6452 1 2025-11-10 14:00:29.944 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-10 14:00:29.742 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-10 14:00:29.758 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-10 14:00:29.861 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-10 14:00:29.993 00:00:00.037 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-10 14:01:00.243 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:48942 10 6452 1 2025-11-10 14:02:00.603 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39946 10 6452 1 2025-11-10 14:03:01.004 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47308 10 6452 1 2025-11-10 14:04:01.405 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:51760 10 6452 1 2025-11-10 14:05:01.773 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:52568 10 6452 1 2025-11-10 14:05:29.865 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-10 14:05:29.981 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-10 14:05:30.099 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-10 14:05:30.100 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-10 14:05:30.184 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-10 14:00:58.501 00:06:00.064 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-10 14:00:58.502 00:06:00.060 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-10 14:06:02.190 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60082 10 6452 1 2025-11-10 14:07:02.593 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:60492 10 6452 1 2025-11-10 14:08:02.997 00:00:10.399 TCP 1.101.0.1:3000 -> 23.104.0.1:54042 12 10369 1 2025-11-10 14:09:03.444 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:51146 10 6452 1 2025-11-10 14:10:03.853 00:00:10.350 TCP 1.101.0.1:3000 -> 23.104.0.1:58598 10 6452 1 2025-11-10 14:10:30.255 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-10 14:10:30.349 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-10 14:10:30.239 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-10 14:10:30.190 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-10 14:10:30.172 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-10 14:11:04.239 00:00:10.596 TCP 1.101.0.1:3000 -> 23.104.0.1:52788 10 6452 1 2025-11-10 14:12:04.877 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:52028 10 6452 1 2025-11-10 14:07:58.505 00:06:00.057 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-10 14:07:58.503 00:06:00.062 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-10 14:13:05.282 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36788 10 6452 1 2025-11-10 14:14:05.690 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:58206 10 6452 1 2025-11-10 14:15:06.113 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:53162 10 6452 1 2025-11-10 14:15:30.245 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-10 14:15:30.250 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-10 14:15:30.208 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-10 14:15:30.299 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-10 14:15:30.382 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-10 14:16:06.524 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51380 10 6452 1 2025-11-10 14:17:06.926 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:54680 10 6452 1 2025-11-10 14:18:07.346 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:60252 10 6452 1 2025-11-10 14:19:07.764 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:33126 10 6452 1 2025-11-10 14:14:58.506 00:06:00.059 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-10 14:14:58.509 00:06:00.055 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-10 14:20:08.128 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43880 10 6452 1 2025-11-10 14:20:30.462 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-10 14:20:30.305 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-10 14:20:30.438 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-10 14:20:30.365 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-10 14:20:30.379 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-10 14:21:08.529 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:40676 10 6452 1 2025-11-10 14:22:08.930 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:34182 10 6452 1 2025-11-10 14:23:09.346 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53468 10 6452 1 2025-11-10 14:24:09.745 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:55300 10 6452 1 2025-11-10 14:25:10.114 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:32904 10 6452 1 2025-11-10 14:25:30.567 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-10 14:25:30.343 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-10 14:25:30.484 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-10 14:25:30.532 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-10 14:25:30.397 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-10 14:26:10.480 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:48382 10 6452 1 2025-11-10 14:21:58.510 00:06:00.055 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-10 14:21:58.508 00:06:00.060 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-10 14:27:10.841 00:00:10.394 TCP 1.101.0.1:3000 -> 23.104.0.1:51764 10 6452 1 2025-11-10 14:28:11.266 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:33524 10 6452 1 2025-11-10 14:29:11.629 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:37972 10 6452 1 2025-11-10 14:30:12.033 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51268 10 6452 1 2025-11-10 14:30:31.121 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-10 14:30:31.326 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-10 14:30:31.262 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-10 14:30:31.087 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-10 14:30:31.038 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-10 14:31:12.438 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38676 10 6452 1 2025-11-10 14:32:12.844 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:51264 10 6452 1 2025-11-10 14:33:13.262 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56654 10 6452 1 2025-11-10 14:28:58.512 00:06:00.055 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-10 14:28:58.509 00:06:00.060 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-10 14:34:13.667 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:47132 10 6452 1 2025-11-10 14:35:14.123 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44234 10 6452 1 2025-11-10 14:35:30.791 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-10 14:35:30.697 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-10 14:35:30.532 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-10 14:35:30.584 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-10 14:35:30.709 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-10 14:36:14.526 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:56950 10 6452 1 2025-11-10 14:37:14.929 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:56974 10 6452 1 2025-11-10 14:38:15.356 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51408 10 6452 1 2025-11-10 14:39:15.761 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:48000 10 6452 1 2025-11-10 14:40:16.189 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34784 10 6452 1 2025-11-10 14:40:30.701 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-10 14:40:30.777 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-10 14:40:30.511 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-10 14:40:30.700 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-10 14:40:30.783 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-10 14:35:58.524 00:06:00.044 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-10 14:35:58.522 00:06:00.049 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-10 14:41:16.600 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:42638 10 6452 1 2025-11-10 14:42:17.022 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36474 10 6452 1 2025-11-10 14:43:17.423 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:45302 10 6452 1 2025-11-10 14:44:17.793 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57992 10 6452 1 2025-11-10 14:45:18.196 00:00:10.405 TCP 1.101.0.1:3000 -> 23.104.0.1:42668 10 6452 1 2025-11-10 14:45:30.799 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-10 14:45:30.612 00:00:00.027 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-10 14:45:30.906 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-10 14:45:30.774 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-10 14:45:30.988 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-10 14:46:18.629 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:49636 10 6452 1 2025-11-10 14:47:19.056 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:37426 10 6452 1 2025-11-10 14:42:58.523 00:06:00.049 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-10 14:42:58.525 00:06:00.043 TCP 179.21.23.21:38570 -> 179.21.23.23:179 13 809 1 2025-11-10 14:48:19.457 00:00:11.524 TCP 1.101.0.1:3000 -> 23.104.0.1:52818 10 6452 1 2025-11-10 14:49:21.026 00:00:10.355 TCP 1.101.0.1:3000 -> 23.104.0.1:41470 10 6452 1 2025-11-10 14:50:30.857 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-10 14:50:31.012 00:00:00.045 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-10 14:50:30.955 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-10 14:50:21.418 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58096 10 6452 1 2025-11-10 14:50:30.776 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-10 14:50:30.866 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-10 14:51:21.819 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36430 10 6452 1 2025-11-10 14:52:22.222 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57786 10 6452 1 2025-11-10 14:53:22.622 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48460 10 6452 1 2025-11-10 14:54:23.029 00:00:10.405 TCP 1.101.0.1:3000 -> 23.104.0.1:58956 10 6452 1 2025-11-10 14:49:58.535 00:06:00.039 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-10 14:49:58.570 00:06:00.001 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 497 1 2025-11-10 14:55:30.947 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-10 14:55:31.109 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-10 14:55:30.937 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-10 14:55:23.476 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:56014 10 6452 1 2025-11-10 14:55:31.260 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-10 14:55:31.343 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-10 14:56:23.890 00:00:10.346 TCP 1.101.0.1:3000 -> 23.104.0.1:43088 10 6452 1 2025-11-10 14:57:24.275 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38768 10 6452 1 2025-11-10 14:58:24.676 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:49224 10 6452 1 Summary: total flows: 138, total bytes: 421239, total packets: 1026, avg bps: 869, avg pps: 0, avg bpp: 410 Time window: 2025-11-10 13:53:58 - 2025-11-10 14:58:35 Total flows processed: 138, passed: 138, Blocks skipped: 0, Bytes read: 14416 Sys: 0.0023s User: 0.0023s Wall: 0.0018s flows/second: 77661.9 Runtime: 0.0018s