Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-13 08:54:59.949 00:05:00.256 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-13 08:59:34.247 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:46442 10 6452 1 2025-11-13 09:00:34.612 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:38454 10 6452 1 2025-11-13 09:01:35.020 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35102 10 6452 1 2025-11-13 09:01:50.476 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 09:01:50.402 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 09:01:50.625 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 09:01:50.630 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 09:01:50.709 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 09:02:35.423 00:00:10.420 TCP 1.101.0.1:3000 -> 23.104.0.1:43428 10 6452 1 2025-11-13 08:58:59.952 00:05:00.261 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-13 09:03:35.891 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:59384 10 6452 1 2025-11-13 09:04:36.308 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37600 10 6452 1 2025-11-13 09:00:59.954 00:05:00.264 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-13 09:05:36.711 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:49248 10 6452 1 2025-11-13 09:06:50.664 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 09:06:50.533 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 09:06:50.710 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 09:06:51.081 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 09:06:37.147 00:00:15.826 TCP 1.101.0.1:3000 -> 23.104.0.1:52370 10 6452 1 2025-11-13 09:06:51.164 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 09:07:43.027 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:44428 10 6452 1 2025-11-13 09:08:43.431 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:45418 10 6452 1 2025-11-13 09:04:59.952 00:05:00.269 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-13 09:09:43.831 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56414 10 6452 1 2025-11-13 09:10:44.240 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46322 10 6452 1 2025-11-13 09:06:59.956 00:05:00.263 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-13 09:11:50.986 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 09:11:50.910 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 09:11:50.912 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 09:11:50.778 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 09:11:50.903 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 09:11:44.643 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:53100 10 6452 1 2025-11-13 09:12:45.039 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56136 10 6452 1 2025-11-13 09:13:45.442 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:43586 10 6452 1 2025-11-13 09:14:45.803 00:00:10.821 TCP 1.101.0.1:3000 -> 23.104.0.1:54384 10 6452 1 2025-11-13 09:10:59.957 00:05:00.266 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-13 09:15:46.666 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37682 10 6452 1 2025-11-13 09:16:50.903 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 09:16:50.796 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 09:16:51.084 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 09:16:50.742 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 09:16:50.820 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 09:16:47.095 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46356 10 6452 1 2025-11-13 09:12:59.960 00:05:00.262 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-13 09:17:47.495 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:43120 10 6452 1 2025-11-13 09:18:47.860 00:00:10.838 TCP 1.101.0.1:3000 -> 23.104.0.1:36486 10 6452 1 2025-11-13 09:19:48.737 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:40750 10 6452 1 2025-11-13 09:20:49.107 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56156 10 6452 1 2025-11-13 09:16:59.959 00:05:00.266 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-13 09:21:50.977 00:00:00.056 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 09:21:51.110 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 09:21:50.851 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 09:21:51.103 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 09:21:51.185 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 09:21:49.515 00:00:10.409 TCP 1.101.0.1:3000 -> 23.104.0.1:53670 10 6452 1 2025-11-13 09:18:59.964 00:05:00.259 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-13 09:22:49.966 00:00:10.401 TCP 1.101.0.1:3000 -> 23.104.0.1:35688 10 6452 1 2025-11-13 09:23:50.422 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45998 10 6452 1 2025-11-13 09:24:50.823 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:37292 10 6452 1 2025-11-13 09:25:51.192 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41678 10 6452 1 2025-11-13 09:26:51.207 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 09:26:51.251 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 09:26:51.253 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 09:26:50.960 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 09:26:51.126 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 09:22:59.962 00:05:00.263 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-13 09:26:51.591 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:50862 10 6452 1 2025-11-13 09:27:51.996 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37808 10 6452 1 2025-11-13 09:24:59.967 00:05:00.258 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-13 09:28:52.405 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:44036 10 6452 1 2025-11-13 09:29:52.814 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:56364 10 6452 1 2025-11-13 09:30:53.217 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:52524 10 6452 1 2025-11-13 09:31:51.128 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 09:31:51.126 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 09:31:51.274 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 09:31:51.042 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 09:31:51.357 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 09:31:53.621 00:00:11.819 TCP 1.101.0.1:3000 -> 23.104.0.1:46010 10 6452 1 2025-11-13 09:28:59.964 00:05:00.263 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-13 09:32:55.479 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50342 10 6452 1 2025-11-13 09:33:55.882 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59494 10 6452 1 2025-11-13 09:30:59.967 00:05:00.258 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-13 09:34:56.285 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:52750 10 6452 1 2025-11-13 09:35:56.689 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:32952 10 6452 1 2025-11-13 09:36:51.571 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 09:36:51.289 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 09:36:51.289 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 09:36:51.139 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 09:36:51.489 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 09:36:57.099 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:33578 10 6452 1 2025-11-13 09:37:57.501 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37738 10 6452 1 2025-11-13 09:34:59.966 00:05:00.263 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-13 09:38:57.901 00:00:10.768 TCP 1.101.0.1:3000 -> 23.104.0.1:58470 10 6452 1 2025-11-13 09:39:58.702 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:47070 10 6452 1 2025-11-13 09:36:59.968 00:05:00.258 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-13 09:40:59.109 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53654 10 6452 1 2025-11-13 09:41:51.613 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 09:41:51.429 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 09:41:51.686 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 09:41:51.424 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 09:41:51.529 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 09:41:59.509 00:00:17.999 TCP 1.101.0.1:3000 -> 23.104.0.1:50826 10 6452 1 2025-11-13 09:43:07.556 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:57164 10 6452 1 2025-11-13 09:44:07.964 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:54146 10 6452 1 2025-11-13 09:40:59.967 00:05:00.263 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-13 09:45:08.377 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:43572 10 6452 1 2025-11-13 09:46:08.776 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:59844 10 6452 1 2025-11-13 09:46:51.692 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 09:46:51.695 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 09:46:51.421 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 09:46:51.421 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 09:46:51.610 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 09:42:59.970 00:05:00.257 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-13 09:47:09.185 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:55126 10 6452 1 2025-11-13 09:48:09.586 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:40274 10 6452 1 2025-11-13 09:49:09.947 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:34096 10 6452 1 2025-11-13 09:50:10.359 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:52184 10 6452 1 2025-11-13 09:46:59.971 00:05:00.266 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-13 09:51:10.763 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:35860 10 6452 1 2025-11-13 09:51:51.493 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 09:51:51.600 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 09:51:51.703 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 09:51:51.737 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 09:51:51.819 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 09:52:11.143 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:34298 10 6452 1 2025-11-13 09:48:59.976 00:05:00.259 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-13 09:53:11.572 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57860 10 6452 1 2025-11-13 09:54:11.988 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:50320 10 6452 1 2025-11-13 09:55:12.361 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:48504 10 6452 1 2025-11-13 09:56:12.730 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:58978 10 6452 1 2025-11-13 09:56:51.733 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 09:56:51.801 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 09:56:51.819 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 09:56:51.660 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 09:56:51.743 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 09:52:59.974 00:05:00.263 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-13 09:57:13.141 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:43294 10 6452 1 2025-11-13 09:58:13.538 00:00:10.569 TCP 1.101.0.1:3000 -> 23.104.0.1:44816 10 6452 1 Summary: total flows: 139, total bytes: 410548, total packets: 1010, avg bps: 863, avg pps: 0, avg bpp: 406 Time window: 2025-11-13 08:54:59 - 2025-11-13 09:58:24 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0040s User: 0.0010s Wall: 0.0018s flows/second: 76671.3 Runtime: 0.0018s