Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-13 03:54:59.846 00:05:00.261 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-13 03:59:28.803 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54916 10 6452 1 2025-11-13 04:00:29.207 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:32820 10 6452 1 2025-11-13 04:01:29.610 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:34878 10 6452 1 2025-11-13 04:01:44.688 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 04:01:44.717 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 04:01:44.692 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 04:01:44.552 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 04:01:44.606 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 04:02:30.008 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58020 10 6452 1 2025-11-13 03:58:59.843 00:05:00.266 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-13 04:03:30.415 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:40250 10 6452 1 2025-11-13 04:04:30.779 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:42986 10 6452 1 2025-11-13 04:00:59.847 00:05:00.261 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-13 04:05:31.185 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38422 10 6452 1 2025-11-13 04:06:44.879 00:00:00.020 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 04:06:31.583 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:51760 10 6452 1 2025-11-13 04:06:44.739 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 04:06:44.613 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 04:06:44.879 00:00:00.020 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 04:06:44.963 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 04:07:31.990 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:39946 10 6452 1 2025-11-13 04:08:32.403 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:37380 10 6452 1 2025-11-13 04:04:59.847 00:05:00.264 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-13 04:09:32.804 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:38896 10 6452 1 2025-11-13 04:10:33.212 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:47712 10 6452 1 2025-11-13 04:06:59.852 00:05:00.256 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-13 04:11:44.944 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 04:11:44.744 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 04:11:44.816 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 04:11:44.686 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 04:11:44.860 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 04:11:33.621 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:42346 10 6452 1 2025-11-13 04:12:34.022 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45706 10 6452 1 2025-11-13 04:13:34.425 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:35248 10 6452 1 2025-11-13 04:14:34.837 00:00:10.350 TCP 1.101.0.1:3000 -> 23.104.0.1:36350 10 6452 1 2025-11-13 04:10:59.860 00:05:00.253 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-13 04:15:35.226 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:48132 10 6452 1 2025-11-13 04:16:44.930 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 04:16:44.936 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 04:16:44.872 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 04:16:44.968 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 04:16:35.624 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46588 10 6452 1 2025-11-13 04:16:45.049 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 04:12:59.866 00:05:00.246 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-13 04:17:36.026 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53498 10 6452 1 2025-11-13 04:18:36.425 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33830 10 6452 1 2025-11-13 04:19:36.832 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37076 10 6452 1 2025-11-13 04:20:37.240 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34152 10 6452 1 2025-11-13 04:16:59.863 00:05:00.250 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-13 04:21:44.884 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 04:21:44.882 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 04:21:44.572 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 04:21:37.646 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:60978 10 6452 1 2025-11-13 04:21:45.010 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 04:21:45.092 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 04:22:38.119 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:45218 10 6452 1 2025-11-13 04:18:59.867 00:05:00.244 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-13 04:23:38.531 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56466 10 6452 1 2025-11-13 04:24:38.942 00:00:10.456 TCP 1.101.0.1:3000 -> 23.104.0.1:58256 12 10369 1 2025-11-13 04:25:39.441 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:48458 10 6452 1 2025-11-13 04:26:44.974 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 04:26:44.889 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 04:26:45.193 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 04:26:45.112 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 04:26:45.111 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 04:26:39.856 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:37626 10 6452 1 2025-11-13 04:22:59.866 00:05:00.248 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-13 04:27:40.279 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:55488 10 6452 1 2025-11-13 04:28:40.689 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48978 10 6452 1 2025-11-13 04:24:59.868 00:05:00.244 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-13 04:29:41.108 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:50454 10 6452 1 2025-11-13 04:30:41.513 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:57230 10 6452 1 2025-11-13 04:31:45.394 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 04:31:44.924 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 04:31:45.316 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 04:31:45.244 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 04:31:45.311 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 04:31:41.914 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:51840 10 6452 1 2025-11-13 04:32:42.280 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57220 10 6452 1 2025-11-13 04:28:59.865 00:05:00.249 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-13 04:33:42.682 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:46556 10 6452 1 2025-11-13 04:34:43.063 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:54390 10 6452 1 2025-11-13 04:30:59.869 00:05:00.244 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-13 04:35:43.424 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38930 10 6452 1 2025-11-13 04:36:45.564 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 04:36:45.247 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 04:36:45.440 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 04:36:45.131 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 04:36:45.482 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 04:36:43.827 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:58540 10 6452 1 2025-11-13 04:37:44.228 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60168 10 6452 1 2025-11-13 04:38:44.630 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:36094 10 6452 1 2025-11-13 04:34:59.868 00:05:00.248 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-13 04:39:45.035 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:50404 10 6452 1 2025-11-13 04:40:45.455 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:53270 10 6452 1 2025-11-13 04:36:59.872 00:05:00.243 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-13 04:41:45.154 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 04:41:45.600 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 04:41:45.388 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 04:41:45.238 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 04:41:45.237 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 04:41:45.867 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:46954 10 6452 1 2025-11-13 04:42:46.231 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38920 10 6452 1 2025-11-13 04:43:46.631 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:38198 10 6452 1 2025-11-13 04:44:46.995 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:58888 10 6452 1 2025-11-13 04:40:59.871 00:05:00.248 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-13 04:45:47.356 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53566 10 6452 1 2025-11-13 04:46:45.624 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 04:46:45.547 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 04:46:45.454 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 04:46:45.469 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 04:46:45.541 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 04:46:47.763 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:42014 10 6452 1 2025-11-13 04:42:59.873 00:05:00.243 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-13 04:47:48.185 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:42218 10 6452 1 2025-11-13 04:48:48.547 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:56050 10 6452 1 2025-11-13 04:49:48.950 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:53578 10 6452 1 2025-11-13 04:50:49.365 00:00:10.442 TCP 1.101.0.1:3000 -> 23.104.0.1:46024 10 6452 1 2025-11-13 04:46:59.871 00:05:00.257 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-13 04:51:45.741 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 04:51:45.659 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 04:51:45.659 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 04:51:45.585 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 04:51:45.529 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 04:51:49.848 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:57976 10 6452 1 2025-11-13 04:48:59.873 00:05:00.253 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-13 04:52:50.275 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58128 10 6452 1 2025-11-13 04:53:50.686 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:38918 10 6452 1 2025-11-13 04:54:51.109 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:44918 10 6452 1 2025-11-13 04:55:51.515 00:00:10.575 TCP 1.101.0.1:3000 -> 23.104.0.1:55946 10 6452 1 2025-11-13 04:56:45.605 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 04:56:45.624 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 04:56:45.734 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 04:56:45.789 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 04:56:45.873 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 04:56:52.137 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:33414 10 6452 1 2025-11-13 04:52:59.872 00:05:00.260 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-13 04:57:52.563 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:42438 10 6452 1 Summary: total flows: 139, total bytes: 414465, total packets: 1012, avg bps: 876, avg pps: 0, avg bpp: 409 Time window: 2025-11-13 03:54:59 - 2025-11-13 04:58:02 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0043s User: 0.0011s Wall: 0.0020s flows/second: 71029.3 Runtime: 0.0020s