Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-13 02:54:59.829 00:05:00.261 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-13 02:58:55.919 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:33768 10 6452 1 2025-11-13 02:59:56.323 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39510 10 6452 1 2025-11-13 03:00:56.728 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:33132 10 6452 1 2025-11-13 03:01:43.384 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 03:01:43.289 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 03:01:43.391 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 03:01:43.371 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 03:01:43.453 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 03:01:57.106 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:48814 10 6452 1 2025-11-13 02:58:59.825 00:05:00.267 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-13 03:02:57.511 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33512 11 6492 1 2025-11-13 03:03:57.912 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:59172 10 6452 1 2025-11-13 03:00:59.830 00:05:00.262 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-13 03:04:58.270 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:37098 10 6452 1 2025-11-13 03:05:58.631 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:42654 10 6452 1 2025-11-13 03:06:43.518 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 03:06:43.659 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 03:06:43.462 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 03:06:43.507 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 03:06:43.589 00:00:00.035 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 03:06:58.994 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39756 10 6452 1 2025-11-13 03:07:59.403 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59522 10 6452 1 2025-11-13 03:04:59.827 00:05:00.267 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-13 03:08:59.807 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:50852 10 6452 1 2025-11-13 03:10:00.172 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56356 10 6452 1 2025-11-13 03:06:59.829 00:05:00.262 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-13 03:11:00.580 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36768 10 6452 1 2025-11-13 03:11:43.736 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 03:11:43.847 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 03:11:43.526 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 03:11:43.563 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 03:11:43.652 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 03:12:00.988 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47584 10 6452 1 2025-11-13 03:13:01.392 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37050 10 6452 1 2025-11-13 03:14:01.788 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:51572 10 6452 1 2025-11-13 03:10:59.828 00:05:00.267 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-13 03:15:02.190 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:33416 10 6452 1 2025-11-13 03:16:02.594 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57342 10 6452 1 2025-11-13 03:16:43.755 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 03:16:43.925 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 03:16:43.667 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 03:16:43.651 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 03:16:43.733 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 03:12:59.830 00:05:00.263 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-13 03:17:03.001 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35606 10 6452 1 2025-11-13 03:18:03.413 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34876 10 6452 1 2025-11-13 03:19:03.819 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45850 10 6452 1 2025-11-13 03:20:04.222 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53150 10 6452 1 2025-11-13 03:16:59.830 00:05:00.267 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-13 03:21:04.617 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54164 10 6452 1 2025-11-13 03:21:43.989 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 03:21:43.907 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 03:21:43.907 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 03:21:43.878 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 03:21:43.907 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 03:22:05.025 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:59702 10 6452 1 2025-11-13 03:18:59.832 00:05:00.265 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-13 03:23:05.431 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:33796 10 6452 1 2025-11-13 03:24:05.794 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52230 10 6452 1 2025-11-13 03:25:06.201 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:32976 10 6452 1 2025-11-13 03:26:06.561 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:44654 10 6452 1 2025-11-13 03:26:43.962 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 03:26:43.958 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 03:26:43.614 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 03:26:44.093 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 03:26:44.176 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 03:22:59.830 00:05:00.270 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-13 03:27:06.959 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:42882 10 6452 1 2025-11-13 03:28:07.365 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:43986 10 6452 1 2025-11-13 03:24:59.834 00:05:00.265 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-13 03:29:07.762 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:48956 10 6452 1 2025-11-13 03:30:08.175 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52580 10 6452 1 2025-11-13 03:31:08.578 00:00:19.187 TCP 1.101.0.1:3000 -> 23.104.0.1:33220 10 6452 1 2025-11-13 03:31:43.914 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 03:31:44.002 00:00:00.037 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 03:31:44.099 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 03:31:43.927 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 03:31:44.011 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 03:32:17.804 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:42166 10 6452 1 2025-11-13 03:28:59.831 00:05:00.271 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-13 03:33:18.217 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:43922 10 6452 1 2025-11-13 03:34:18.626 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51496 10 6452 1 2025-11-13 03:30:59.833 00:05:00.267 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-13 03:35:19.033 00:00:10.356 TCP 1.101.0.1:3000 -> 23.104.0.1:57088 10 6452 1 2025-11-13 03:36:19.426 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33750 10 6452 1 2025-11-13 03:36:44.224 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 03:36:44.138 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 03:36:44.135 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 03:36:43.880 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 03:36:44.141 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 03:37:19.827 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:51538 10 6452 1 2025-11-13 03:38:20.242 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39668 10 6452 1 2025-11-13 03:34:59.835 00:05:00.270 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-13 03:39:20.652 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:42738 10 6452 1 2025-11-13 03:40:21.063 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:58586 10 6452 1 2025-11-13 03:36:59.838 00:05:00.265 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-13 03:41:21.472 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:35484 10 6452 1 2025-11-13 03:41:44.204 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 03:41:44.293 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 03:41:44.147 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 03:41:44.116 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 03:41:44.199 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 03:42:21.873 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:44558 10 6452 1 2025-11-13 03:43:22.279 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:45094 10 6452 1 2025-11-13 03:44:22.684 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41138 10 6452 1 2025-11-13 03:40:59.837 00:05:00.270 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-13 03:45:23.111 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:54280 10 6452 1 2025-11-13 03:46:23.513 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:36700 10 6452 1 2025-11-13 03:46:44.432 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 03:46:44.541 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 03:46:44.505 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 03:46:44.493 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 03:46:44.349 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 03:42:59.839 00:05:00.266 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-13 03:47:23.917 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47456 10 6452 1 2025-11-13 03:48:24.317 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:39002 10 6452 1 2025-11-13 03:49:24.677 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53272 10 6452 1 2025-11-13 03:50:25.113 00:00:10.355 TCP 1.101.0.1:3000 -> 23.104.0.1:53060 10 6452 1 2025-11-13 03:46:59.837 00:05:00.270 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-13 03:51:25.504 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:59864 10 6452 1 2025-11-13 03:51:44.360 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 03:51:44.507 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 03:51:44.288 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 03:51:44.353 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 03:51:44.436 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 03:52:25.916 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:47402 10 6452 1 2025-11-13 03:48:59.841 00:05:00.264 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-13 03:53:26.283 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46112 10 6452 1 2025-11-13 03:54:26.690 00:00:10.456 TCP 1.101.0.1:3000 -> 23.104.0.1:52980 12 10375 1 2025-11-13 03:55:27.191 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:51934 10 6452 1 2025-11-13 03:56:27.592 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56524 10 6452 1 2025-11-13 03:56:44.501 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 03:56:44.514 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 03:56:44.287 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 03:56:44.506 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 03:56:44.589 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 03:52:59.841 00:05:00.268 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-13 03:57:28.006 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:52364 10 6452 1 2025-11-13 03:58:28.406 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:59196 10 6452 1 Summary: total flows: 140, total bytes: 420963, total packets: 1023, avg bps: 881, avg pps: 0, avg bpp: 411 Time window: 2025-11-13 02:54:59 - 2025-11-13 03:58:38 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0036s User: 0.0009s Wall: 0.0021s flows/second: 66727.6 Runtime: 0.0021s