Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-13 07:54:59.936 00:05:00.255 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-13 07:59:08.921 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:42168 10 6452 1 2025-11-13 08:00:09.343 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53784 10 6452 1 2025-11-13 08:01:09.744 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33692 10 6452 1 2025-11-13 08:01:49.512 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 08:01:49.580 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 08:01:49.423 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 08:01:49.272 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 08:01:49.430 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 08:02:10.151 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58616 10 6452 1 2025-11-13 07:58:59.934 00:05:00.260 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-13 08:03:10.551 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34592 10 6452 1 2025-11-13 08:04:10.952 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:38964 10 6452 1 2025-11-13 08:00:59.936 00:05:00.257 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-13 08:05:11.369 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:56532 10 6452 1 2025-11-13 08:06:11.780 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:51020 10 6452 1 2025-11-13 08:06:49.533 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 08:06:49.484 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 08:06:49.402 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 08:06:49.479 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 08:06:49.563 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 08:07:12.145 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:46932 10 6452 1 2025-11-13 08:08:12.550 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:50414 10 6452 1 2025-11-13 08:04:59.934 00:05:00.262 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-13 08:09:12.914 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:40650 10 6452 1 2025-11-13 08:10:13.320 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:35844 10 6452 1 2025-11-13 08:06:59.937 00:05:00.256 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-13 08:11:13.800 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:33838 10 6452 1 2025-11-13 08:11:49.898 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 08:11:49.841 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 08:11:49.819 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 08:11:49.903 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 08:11:50.070 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 08:12:14.207 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:38154 10 6452 1 2025-11-13 08:13:14.567 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55268 10 6452 1 2025-11-13 08:14:14.970 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:55170 10 6452 1 2025-11-13 08:10:59.936 00:05:00.262 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-13 08:15:15.394 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49368 10 6452 1 2025-11-13 08:16:15.799 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:50084 10 6452 1 2025-11-13 08:16:49.814 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 08:16:49.668 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 08:16:49.581 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 08:16:49.583 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 08:16:49.731 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 08:12:59.939 00:05:00.256 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-13 08:17:16.188 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:58314 10 6452 1 2025-11-13 08:18:16.591 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:53846 10 6452 1 2025-11-13 08:19:16.993 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:33626 10 6452 1 2025-11-13 08:20:17.357 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:50110 10 6452 1 2025-11-13 08:16:59.938 00:05:00.260 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-13 08:21:17.719 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:40380 10 6452 1 2025-11-13 08:21:49.934 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 08:21:49.844 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 08:21:49.595 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 08:21:49.856 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 08:21:49.852 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 08:22:18.137 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60092 10 6452 1 2025-11-13 08:18:59.940 00:05:00.256 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-13 08:23:18.535 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55954 10 6452 1 2025-11-13 08:24:18.938 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:43590 10 6452 1 2025-11-13 08:25:19.366 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:45328 10 6452 1 2025-11-13 08:26:19.777 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:36320 10 6452 1 2025-11-13 08:26:49.969 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 08:26:49.635 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 08:26:49.964 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 08:26:50.108 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 08:26:50.048 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 08:22:59.938 00:05:00.261 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-13 08:27:20.184 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:42864 10 6452 1 2025-11-13 08:28:20.612 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:51384 10 6452 1 2025-11-13 08:24:59.941 00:05:00.256 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-13 08:29:20.969 00:00:10.438 TCP 1.101.0.1:3000 -> 23.104.0.1:50894 12 10369 1 2025-11-13 08:30:21.449 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54740 10 6452 1 2025-11-13 08:31:21.851 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:43690 10 6452 1 2025-11-13 08:31:49.926 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 08:31:49.945 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 08:31:49.727 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 08:31:49.842 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 08:31:50.000 00:00:00.030 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 08:32:22.272 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44108 10 6452 1 2025-11-13 08:28:59.940 00:05:00.262 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-13 08:33:22.675 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47986 10 6452 1 2025-11-13 08:34:23.106 00:00:10.438 TCP 1.101.0.1:3000 -> 23.104.0.1:43222 12 10375 1 2025-11-13 08:30:59.942 00:05:00.257 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-13 08:35:23.581 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:58438 11 6504 1 2025-11-13 08:36:24.008 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38274 10 6452 1 2025-11-13 08:36:50.374 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 08:36:50.285 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 08:36:50.055 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 08:36:50.030 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 08:36:50.291 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 08:37:24.407 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:53006 10 6452 1 2025-11-13 08:38:24.767 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:44114 10 6452 1 2025-11-13 08:34:59.941 00:05:00.261 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-13 08:39:25.186 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:47318 10 6452 1 2025-11-13 08:40:25.593 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52450 10 6452 1 2025-11-13 08:36:59.946 00:05:00.256 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-13 08:41:26.000 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43028 10 6452 1 2025-11-13 08:41:49.823 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 08:41:50.199 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 08:41:50.120 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 08:41:50.010 00:00:00.042 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 08:41:50.117 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 08:42:26.405 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50040 10 6452 1 2025-11-13 08:43:26.808 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:36114 10 6452 1 2025-11-13 08:44:27.209 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:52214 10 6452 1 2025-11-13 08:40:59.944 00:05:00.261 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-13 08:45:27.577 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43018 10 6452 1 2025-11-13 08:46:27.980 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49622 10 6452 1 2025-11-13 08:46:50.782 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 08:46:50.646 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 08:46:50.471 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 08:46:50.700 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 08:46:50.374 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 08:42:59.947 00:05:00.255 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-13 08:47:28.383 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:55546 10 6452 1 2025-11-13 08:48:28.783 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35500 10 6452 1 2025-11-13 08:49:29.192 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:41194 10 6452 1 2025-11-13 08:50:29.599 00:00:11.402 TCP 1.101.0.1:3000 -> 23.104.0.1:60462 10 6452 1 2025-11-13 08:46:59.946 00:05:00.262 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-13 08:51:31.040 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36404 10 6452 1 2025-11-13 08:51:50.606 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 08:51:50.483 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 08:51:50.474 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 08:51:50.357 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 08:51:50.525 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 08:52:31.446 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:42022 10 6452 1 2025-11-13 08:48:59.948 00:05:00.257 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-13 08:53:31.852 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:38192 10 6452 1 2025-11-13 08:54:32.276 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:48332 10 6452 1 2025-11-13 08:55:32.678 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:42330 10 6452 1 2025-11-13 08:56:33.064 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45544 10 6452 1 2025-11-13 08:56:50.531 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 08:56:50.448 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 08:56:50.589 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 08:56:50.477 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 08:56:50.448 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 08:52:59.946 00:05:00.262 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-13 08:57:33.472 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34428 10 6452 1 2025-11-13 08:58:33.875 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:60770 10 6452 1 Summary: total flows: 140, total bytes: 424892, total packets: 1025, avg bps: 888, avg pps: 0, avg bpp: 414 Time window: 2025-11-13 07:54:59 - 2025-11-13 08:58:44 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0053s User: 0.0009s Wall: 0.0027s flows/second: 51432.3 Runtime: 0.0027s