Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-12 23:54:59.769 00:05:00.232 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-12 23:59:10.870 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52694 10 6452 1 2025-11-13 00:00:11.276 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:35360 10 6452 1 2025-11-13 00:01:11.676 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51504 10 6452 1 2025-11-13 00:01:39.859 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 00:01:39.851 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 00:01:39.916 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 00:01:39.814 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 00:01:39.777 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 00:02:12.105 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:49430 10 6452 1 2025-11-12 23:58:59.770 00:05:00.235 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-13 00:03:12.467 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57548 10 6452 1 2025-11-13 00:04:12.874 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:50878 10 6452 1 2025-11-13 00:00:59.773 00:05:00.255 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-13 00:05:13.238 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43668 10 6452 1 2025-11-13 00:06:39.933 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 00:06:39.784 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 00:06:39.848 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 00:06:39.734 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 00:06:39.850 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 00:06:13.644 00:00:21.924 TCP 1.101.0.1:3000 -> 23.104.0.1:59806 10 6452 1 2025-11-13 00:07:25.603 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:50608 10 6452 1 2025-11-13 00:08:25.961 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58382 10 6452 1 2025-11-13 00:04:59.771 00:05:00.265 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-13 00:09:26.367 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:50032 10 6452 1 2025-11-13 00:10:26.766 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:53262 10 6452 1 2025-11-13 00:06:59.773 00:05:00.261 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-13 00:11:27.181 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33504 10 6452 1 2025-11-13 00:11:40.281 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 00:11:40.281 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 00:11:40.222 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 00:11:40.200 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 00:11:40.133 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 00:12:27.583 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:53566 10 6452 1 2025-11-13 00:13:27.985 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:59986 10 6452 1 2025-11-13 00:14:28.393 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:35866 10 6452 1 2025-11-13 00:10:59.773 00:05:00.264 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-13 00:15:28.802 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54376 10 6452 1 2025-11-13 00:16:29.216 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:59368 10 6452 1 2025-11-13 00:16:40.335 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 00:16:40.100 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 00:16:40.305 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 00:16:40.330 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 00:16:40.411 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 00:12:59.777 00:05:00.258 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-13 00:17:29.622 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45136 10 6452 1 2025-11-13 00:18:30.028 00:00:11.036 TCP 1.101.0.1:3000 -> 23.104.0.1:59046 10 6452 1 2025-11-13 00:19:31.112 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48452 10 6452 1 2025-11-13 00:20:31.513 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:45296 10 6452 1 2025-11-13 00:16:59.774 00:05:00.264 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-13 00:21:40.154 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 00:21:40.380 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 00:21:40.322 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 00:21:40.105 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 00:21:31.918 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37050 10 6452 1 2025-11-13 00:21:40.070 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 00:22:32.319 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60034 10 6452 1 2025-11-13 00:18:59.777 00:05:00.259 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-13 00:23:32.721 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:37794 10 6452 1 2025-11-13 00:24:33.155 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:59534 10 6452 1 2025-11-13 00:25:33.555 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:48044 10 6452 1 2025-11-13 00:26:40.457 00:00:00.029 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 00:26:40.372 00:00:00.028 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 00:26:40.377 00:00:00.026 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 00:26:40.346 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 00:26:40.375 00:00:00.028 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 00:26:33.915 00:00:11.969 TCP 1.101.0.1:3000 -> 23.104.0.1:49372 10 6452 1 2025-11-13 00:22:59.776 00:05:00.266 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-13 00:27:35.921 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42294 10 6452 1 2025-11-13 00:28:36.330 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35812 10 6452 1 2025-11-13 00:24:59.780 00:05:00.258 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-13 00:29:36.731 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:39468 10 6452 1 2025-11-13 00:30:37.139 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48232 10 6452 1 2025-11-13 00:31:40.435 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 00:31:40.510 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 00:31:40.436 00:00:00.031 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 00:31:40.108 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 00:31:40.353 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 00:31:37.547 00:00:10.347 TCP 1.101.0.1:3000 -> 23.104.0.1:37394 10 6452 1 2025-11-13 00:32:37.933 00:00:10.353 TCP 1.101.0.1:3000 -> 23.104.0.1:41354 10 6452 1 2025-11-13 00:28:59.778 00:05:00.262 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-13 00:33:38.332 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33868 10 6452 1 2025-11-13 00:34:38.738 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40958 10 6452 1 2025-11-13 00:30:59.780 00:05:00.257 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-13 00:35:39.146 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33752 10 6452 1 2025-11-13 00:36:40.750 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 00:36:40.579 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 00:36:40.677 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 00:36:40.344 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 00:36:40.668 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 00:36:39.552 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:53190 10 6452 1 2025-11-13 00:37:39.927 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:60558 10 6452 1 2025-11-13 00:38:40.355 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52130 10 6452 1 2025-11-13 00:34:59.779 00:05:00.263 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-13 00:39:40.755 00:00:10.393 TCP 1.101.0.1:3000 -> 23.104.0.1:41340 10 6452 1 2025-11-13 00:40:41.189 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:58314 10 6452 1 2025-11-13 00:36:59.783 00:05:00.258 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-13 00:41:40.716 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 00:41:40.577 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 00:41:40.575 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 00:41:40.508 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 00:41:40.634 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 00:41:41.551 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33050 10 6452 1 2025-11-13 00:42:41.955 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:53100 10 6452 1 2025-11-13 00:43:42.364 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:58690 10 6452 1 2025-11-13 00:44:42.772 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:54050 10 6452 1 2025-11-13 00:40:59.780 00:05:00.265 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-13 00:45:43.139 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59812 10 6452 1 2025-11-13 00:46:40.553 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 00:46:40.859 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 00:46:40.761 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 00:46:40.728 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 00:46:40.472 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 00:46:43.545 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58866 10 6452 1 2025-11-13 00:42:59.785 00:05:00.257 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-13 00:47:43.948 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:53716 10 6452 1 2025-11-13 00:48:44.360 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:56650 10 6452 1 2025-11-13 00:49:44.723 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:58890 10 6452 1 2025-11-13 00:50:45.112 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:35530 10 6452 1 2025-11-13 00:46:59.785 00:05:00.261 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-13 00:51:40.830 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 00:51:40.952 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 00:51:40.825 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 00:51:40.879 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 00:51:40.912 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 00:51:45.486 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35186 10 6452 1 2025-11-13 00:52:45.888 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:33374 12 6556 1 2025-11-13 00:48:59.790 00:05:00.255 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-13 00:53:46.317 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:45096 10 6452 1 2025-11-13 00:54:46.680 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:58964 10 6452 1 2025-11-13 00:55:47.109 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:42142 10 6452 1 2025-11-13 00:56:40.996 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 00:56:40.913 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 00:56:40.959 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 00:56:40.914 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 00:56:40.784 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 00:56:47.471 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:42662 10 6452 1 2025-11-13 00:52:59.785 00:05:00.262 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-13 00:57:47.883 00:00:10.403 TCP 1.101.0.1:3000 -> 23.104.0.1:51870 12 6556 1 Summary: total flows: 139, total bytes: 410756, total packets: 1014, avg bps: 869, avg pps: 0, avg bpp: 405 Time window: 2025-11-12 23:54:59 - 2025-11-13 00:58:00 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0039s User: 0.0008s Wall: 0.0019s flows/second: 71464.6 Runtime: 0.0020s