Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-13 16:54:00.138 00:06:00.238 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-13 16:58:57.394 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:49818 10 6452 1 2025-11-13 16:59:57.815 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37916 10 6452 1 2025-11-13 17:00:58.213 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:60784 10 6452 1 2025-11-13 17:02:00.407 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 16:57:00.142 00:06:00.232 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-13 17:02:00.553 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 17:02:00.329 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 17:02:00.397 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 17:02:00.480 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 17:01:58.634 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:40962 10 6452 1 2025-11-13 17:02:59.085 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:55708 10 6452 1 2025-11-13 17:03:59.449 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:48178 10 6452 1 2025-11-13 17:04:59.858 00:00:10.449 TCP 1.101.0.1:3000 -> 23.104.0.1:40348 12 10375 1 2025-11-13 17:01:00.143 00:06:00.236 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-13 17:06:00.346 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:51304 10 6452 1 2025-11-13 17:07:00.166 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 17:07:00.089 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 17:07:00.196 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 17:07:00.372 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 17:07:00.083 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 17:07:00.756 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:46988 10 6452 1 2025-11-13 17:08:01.171 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:40798 10 6452 1 2025-11-13 17:04:00.145 00:06:00.232 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-13 17:09:01.580 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51934 10 6452 1 2025-11-13 17:10:01.983 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:59908 10 6452 1 2025-11-13 17:11:02.388 00:00:10.394 TCP 1.101.0.1:3000 -> 23.104.0.1:37240 10 6452 1 2025-11-13 17:12:00.386 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 17:12:00.352 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 17:12:00.480 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 17:12:00.158 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 17:12:00.434 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 17:12:02.819 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:50026 10 6452 1 2025-11-13 17:08:00.143 00:06:00.235 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-13 17:13:03.181 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57446 10 6452 1 2025-11-13 17:14:03.583 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53484 10 6452 1 2025-11-13 17:15:03.983 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:56722 10 6452 1 2025-11-13 17:11:00.146 00:06:00.230 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-13 17:16:04.394 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36288 10 6452 1 2025-11-13 17:17:00.274 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 17:17:00.271 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 17:17:00.565 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 17:17:00.481 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 17:17:00.191 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 17:17:04.797 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:54164 10 6452 1 2025-11-13 17:18:05.190 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:45534 10 6452 1 2025-11-13 17:19:05.560 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52588 10 6452 1 2025-11-13 17:15:00.154 00:06:00.229 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-13 17:20:05.964 00:00:18.322 TCP 1.101.0.1:3000 -> 23.104.0.1:33446 10 6452 1 2025-11-13 17:21:14.325 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:35222 10 6452 1 2025-11-13 17:22:00.902 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 17:22:00.949 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 17:22:01.003 00:00:00.050 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 17:22:00.547 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 17:22:00.631 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 17:22:14.737 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:60414 10 6452 1 2025-11-13 17:18:00.156 00:06:00.224 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-13 17:23:15.144 00:00:11.090 TCP 1.101.0.1:3000 -> 23.104.0.1:60050 10 6452 1 2025-11-13 17:24:16.262 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46880 10 6452 1 2025-11-13 17:25:16.669 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39604 10 6452 1 2025-11-13 17:26:17.105 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:49766 10 6452 1 2025-11-13 17:27:00.752 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 17:27:00.628 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 17:27:00.361 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 17:27:00.752 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 17:22:00.155 00:06:00.230 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-13 17:27:00.834 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 17:27:17.464 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:40602 10 6452 1 2025-11-13 17:28:17.866 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:34664 10 6452 1 2025-11-13 17:29:18.231 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:43958 10 6452 1 2025-11-13 17:25:00.158 00:06:00.226 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-13 17:30:18.645 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34278 10 6452 1 2025-11-13 17:31:19.063 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:51286 10 6452 1 2025-11-13 17:32:00.727 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 17:32:00.905 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 17:32:00.877 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 17:32:00.725 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 17:32:00.807 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 17:32:19.425 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:40708 10 6452 1 2025-11-13 17:33:19.827 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:32910 10 6452 1 2025-11-13 17:29:00.155 00:06:00.231 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-13 17:34:20.229 00:00:10.884 TCP 1.101.0.1:3000 -> 23.104.0.1:52206 10 6452 1 2025-11-13 17:35:21.152 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:52376 10 6452 1 2025-11-13 17:36:21.514 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:40910 10 6452 1 2025-11-13 17:37:01.387 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 17:32:00.159 00:06:00.225 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-13 17:37:01.526 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 17:37:01.404 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 17:37:01.450 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 17:37:01.534 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 17:37:21.895 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:57874 10 6452 1 2025-11-13 17:38:22.320 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:56390 10 6452 1 2025-11-13 17:39:22.707 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:35020 10 6452 1 2025-11-13 17:40:23.100 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60686 10 6452 1 2025-11-13 17:36:00.158 00:06:00.232 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-13 17:41:23.502 00:00:10.419 TCP 1.101.0.1:3000 -> 23.104.0.1:58182 11 6504 1 2025-11-13 17:42:01.283 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 17:42:01.197 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 17:42:01.203 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 17:42:01.084 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 17:42:01.202 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 17:42:23.965 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41268 10 6452 1 2025-11-13 17:43:24.369 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:47830 10 6452 1 2025-11-13 17:39:00.160 00:06:00.230 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-13 17:44:24.765 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:37264 10 6452 1 2025-11-13 17:45:25.187 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40988 10 6452 1 2025-11-13 17:46:25.593 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:36834 10 6452 1 2025-11-13 17:47:01.297 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 17:47:01.096 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 17:47:01.231 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 17:47:01.183 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 17:47:01.265 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 17:47:26.005 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41906 10 6452 1 2025-11-13 17:43:00.161 00:06:00.232 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-13 17:48:26.408 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37092 10 6452 1 2025-11-13 17:49:26.814 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:57754 10 6452 1 2025-11-13 17:50:27.228 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54222 10 6452 1 2025-11-13 17:46:00.164 00:06:00.227 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-13 17:51:27.630 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55592 10 6452 1 2025-11-13 17:52:01.205 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 17:52:01.193 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 17:52:01.145 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 17:52:00.926 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 17:52:01.289 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 17:52:28.031 00:00:10.841 TCP 1.101.0.1:3000 -> 23.104.0.1:34886 10 6452 1 2025-11-13 17:53:28.912 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:40910 10 6452 1 2025-11-13 17:54:29.314 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58002 10 6452 1 2025-11-13 17:50:00.163 00:06:00.234 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-13 17:55:29.721 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:55594 10 6452 1 2025-11-13 17:56:30.140 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:44828 10 6452 1 2025-11-13 17:57:01.814 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 17:57:01.830 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 17:57:01.888 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 17:57:01.749 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 17:57:01.831 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 17:57:30.569 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49878 10 6452 1 2025-11-13 17:53:00.165 00:06:00.229 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-13 17:58:30.971 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:56666 10 6452 1 Summary: total flows: 138, total bytes: 421713, total packets: 1035, avg bps: 864, avg pps: 0, avg bpp: 407 Time window: 2025-11-13 16:54:00 - 2025-11-13 17:59:00 Total flows processed: 138, passed: 138, Blocks skipped: 0, Bytes read: 14416 Sys: 0.0042s User: 0.0011s Wall: 0.0025s flows/second: 54287.6 Runtime: 0.0026s