Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-13 01:54:59.806 00:05:00.255 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-13 01:59:13.620 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:47494 10 6452 1 2025-11-13 02:00:14.028 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:44834 10 6452 1 2025-11-13 02:01:14.452 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47874 10 6452 1 2025-11-13 02:01:42.249 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 02:01:42.252 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 02:01:41.939 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 02:01:42.183 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 02:01:42.265 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 02:02:14.858 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:50762 10 6452 1 2025-11-13 01:58:59.805 00:05:00.261 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-13 02:03:15.282 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:33970 10 6452 1 2025-11-13 02:04:15.650 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47912 12 6556 1 2025-11-13 02:00:59.807 00:05:00.256 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-13 02:05:16.061 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59786 10 6452 1 2025-11-13 02:06:16.463 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:50956 10 6452 1 2025-11-13 02:06:42.483 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 02:06:42.458 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 02:06:42.346 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 02:06:42.419 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 02:06:42.398 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 02:07:16.828 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39518 10 6452 1 2025-11-13 02:08:17.232 00:00:11.047 TCP 1.101.0.1:3000 -> 23.104.0.1:33478 10 6452 1 2025-11-13 02:04:59.805 00:05:00.262 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-13 02:09:18.318 00:00:10.437 TCP 1.101.0.1:3000 -> 23.104.0.1:46772 12 10369 1 2025-11-13 02:10:18.791 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:46238 10 6452 1 2025-11-13 02:06:59.809 00:05:00.257 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-13 02:11:19.195 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:43646 10 6452 1 2025-11-13 02:11:42.902 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 02:11:42.917 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 02:11:42.985 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 02:11:43.012 00:00:00.045 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 02:11:42.820 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 02:12:19.602 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:34882 10 6452 1 2025-11-13 02:13:19.965 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:35066 10 6452 1 2025-11-13 02:14:20.372 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:48986 10 6452 1 2025-11-13 02:10:59.807 00:05:00.263 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-13 02:15:20.770 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:48760 10 6452 1 2025-11-13 02:16:21.191 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54952 10 6452 1 2025-11-13 02:16:43.044 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 02:16:42.929 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 02:16:42.616 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 02:16:43.240 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 02:16:43.324 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 02:12:59.810 00:05:00.258 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-13 02:17:21.595 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:40660 10 6452 1 2025-11-13 02:18:22.001 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:42456 10 6452 1 2025-11-13 02:19:22.368 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:57124 10 6452 1 2025-11-13 02:20:22.756 00:00:10.393 TCP 1.101.0.1:3000 -> 23.104.0.1:47392 10 6452 1 2025-11-13 02:16:59.808 00:05:00.263 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-13 02:21:23.189 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36242 10 6452 1 2025-11-13 02:21:42.462 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 02:21:42.559 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 02:21:42.380 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 02:21:42.397 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 02:21:42.380 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 02:22:23.599 00:00:10.623 TCP 1.101.0.1:3000 -> 23.104.0.1:37704 10 6452 1 2025-11-13 02:18:59.813 00:05:00.256 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-13 02:23:24.259 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59628 10 6452 1 2025-11-13 02:24:24.667 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:58150 10 6452 1 2025-11-13 02:25:25.105 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:54576 10 6452 1 2025-11-13 02:26:25.468 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56096 10 6452 1 2025-11-13 02:26:42.566 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 02:26:42.751 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 02:26:42.817 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 02:26:42.572 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 02:26:42.655 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 02:22:59.810 00:05:00.267 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-13 02:27:25.870 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:44198 10 6452 1 2025-11-13 02:28:26.282 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:42542 10 6452 1 2025-11-13 02:24:59.814 00:05:00.262 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-13 02:29:26.688 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:57104 10 6452 1 2025-11-13 02:30:27.111 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35630 10 6452 1 2025-11-13 02:31:27.514 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56234 10 6452 1 2025-11-13 02:31:42.827 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 02:31:42.769 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 02:31:42.532 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 02:31:42.700 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 02:31:42.783 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 02:32:27.921 00:00:11.007 TCP 1.101.0.1:3000 -> 23.104.0.1:52454 10 6452 1 2025-11-13 02:28:59.814 00:05:00.265 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-13 02:33:28.969 00:00:10.345 TCP 1.101.0.1:3000 -> 23.104.0.1:44918 10 6452 1 2025-11-13 02:34:29.348 00:00:10.443 TCP 1.101.0.1:3000 -> 23.104.0.1:45526 12 10375 1 2025-11-13 02:30:59.817 00:05:00.260 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-13 02:35:29.826 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58780 10 6452 1 2025-11-13 02:36:43.162 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 02:36:42.917 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 02:36:42.844 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 02:36:43.123 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 02:36:30.234 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46760 10 6452 1 2025-11-13 02:36:43.206 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 02:37:30.634 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39710 10 6452 1 2025-11-13 02:38:31.043 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:50198 10 6452 1 2025-11-13 02:34:59.817 00:05:00.263 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-13 02:39:31.453 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:45404 10 6452 1 2025-11-13 02:40:31.814 00:00:26.801 TCP 1.101.0.1:3000 -> 23.104.0.1:53722 10 6452 1 2025-11-13 02:36:59.820 00:05:00.259 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-13 02:41:42.981 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 02:41:42.898 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 02:41:42.896 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 02:41:43.000 00:00:00.047 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 02:41:42.841 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 02:41:48.660 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57750 10 6452 1 2025-11-13 02:42:49.063 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49386 10 6452 1 2025-11-13 02:43:49.470 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:55576 10 6452 1 2025-11-13 02:44:49.870 00:00:10.737 TCP 1.101.0.1:3000 -> 23.104.0.1:46384 10 6452 1 2025-11-13 02:40:59.819 00:05:00.266 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-13 02:45:50.651 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45910 10 6452 1 2025-11-13 02:46:42.898 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 02:46:43.101 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 02:46:42.931 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 02:46:43.139 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 02:46:43.222 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 02:46:51.067 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:41264 10 6452 1 2025-11-13 02:42:59.822 00:05:00.258 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-13 02:47:51.472 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60536 10 6452 1 2025-11-13 02:48:51.881 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35206 10 6452 1 2025-11-13 02:49:52.280 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33184 10 6452 1 2025-11-13 02:46:59.826 00:05:00.258 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-13 02:50:52.698 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:38778 10 6452 1 2025-11-13 02:51:43.072 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 02:51:43.075 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 02:51:43.106 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 02:51:43.077 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 02:51:43.159 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 02:51:53.114 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47496 10 6452 1 2025-11-13 02:48:59.827 00:05:00.261 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-13 02:52:53.517 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:55736 10 6452 1 2025-11-13 02:53:53.882 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54210 10 6452 1 2025-11-13 02:54:54.291 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55974 10 6452 1 2025-11-13 02:55:54.694 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:39832 10 6452 1 2025-11-13 02:56:43.550 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 02:56:43.555 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 02:56:43.389 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 02:56:43.742 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 02:56:43.826 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 02:52:59.827 00:05:00.265 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-13 02:56:55.109 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36910 10 6452 1 2025-11-13 02:57:55.517 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56540 10 6452 1 Summary: total flows: 139, total bytes: 418492, total packets: 1016, avg bps: 884, avg pps: 0, avg bpp: 411 Time window: 2025-11-13 01:54:59 - 2025-11-13 02:58:05 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0028s User: 0.0009s Wall: 0.0033s flows/second: 42302.2 Runtime: 0.0033s