Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-14 06:54:00.468 00:06:00.178 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-14 06:59:23.522 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:44112 10 6452 1 2025-11-14 07:00:23.924 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:60258 10 6452 1 2025-11-14 07:01:24.355 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:60902 10 6452 1 2025-11-14 06:57:00.472 00:06:00.171 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-14 07:02:17.238 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 07:02:16.949 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 07:02:16.969 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 07:02:17.147 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 07:02:16.947 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 07:02:24.714 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55588 10 6452 1 2025-11-14 07:03:25.119 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:56626 10 6452 1 2025-11-14 07:04:25.529 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:53560 10 6452 1 2025-11-14 07:05:25.895 00:00:10.444 TCP 1.101.0.1:3000 -> 23.104.0.1:45408 12 10369 1 2025-11-14 07:01:00.474 00:06:00.174 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-14 07:06:26.382 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:34590 10 6452 1 2025-11-14 07:07:17.141 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 07:07:17.065 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 07:07:16.904 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 07:07:17.240 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 07:07:17.322 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 07:07:26.777 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:58798 10 6452 1 2025-11-14 07:08:27.181 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:57596 10 6452 1 2025-11-14 07:04:00.477 00:06:00.169 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-14 07:09:27.545 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:42740 10 6452 1 2025-11-14 07:10:27.946 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:41322 10 6452 1 2025-11-14 07:11:28.361 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:56932 10 6452 1 2025-11-14 07:12:17.355 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 07:12:17.202 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 07:12:17.114 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 07:12:17.299 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 07:12:17.382 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 07:12:28.761 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:46092 10 6452 1 2025-11-14 07:08:00.479 00:06:00.171 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-14 07:13:29.176 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:54556 10 6452 1 2025-11-14 07:14:29.535 00:00:10.873 TCP 1.101.0.1:3000 -> 23.104.0.1:55668 10 6452 1 2025-11-14 07:15:30.438 00:00:10.439 TCP 1.101.0.1:3000 -> 23.104.0.1:38470 12 10369 1 2025-11-14 07:11:00.482 00:06:00.167 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-14 07:16:30.912 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:41182 10 6452 1 2025-11-14 07:17:17.197 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 07:17:17.375 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 07:17:17.192 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 07:17:17.265 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 07:17:17.347 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 07:17:31.280 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59224 10 6452 1 2025-11-14 07:18:31.679 00:00:10.343 TCP 1.101.0.1:3000 -> 23.104.0.1:52644 10 6452 1 2025-11-14 07:19:32.092 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48134 10 6452 1 2025-11-14 07:15:00.479 00:06:00.175 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-14 07:20:32.494 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59050 10 6452 1 2025-11-14 07:21:32.895 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:36094 10 6452 1 2025-11-14 07:22:17.390 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 07:22:17.480 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 07:22:17.484 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 07:22:17.532 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 07:22:17.615 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 07:22:33.268 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54702 10 6452 1 2025-11-14 07:18:00.483 00:06:00.170 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-14 07:23:33.669 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38898 10 6452 1 2025-11-14 07:24:34.099 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50276 10 6452 1 2025-11-14 07:25:34.510 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:44470 10 6452 1 2025-11-14 07:26:34.885 00:00:10.351 TCP 1.101.0.1:3000 -> 23.104.0.1:58784 10 6452 1 2025-11-14 07:22:00.479 00:06:00.176 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-14 07:27:17.586 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 07:27:17.530 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 07:27:17.555 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 07:27:17.634 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 07:27:17.717 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 07:27:35.282 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:49032 10 6452 1 2025-11-14 07:28:35.652 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:39292 10 6452 1 2025-11-14 07:29:36.060 00:00:10.398 TCP 1.101.0.1:3000 -> 23.104.0.1:59582 12 10578 1 2025-11-14 07:25:00.483 00:06:00.171 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-14 07:30:36.497 00:00:10.895 TCP 1.101.0.1:3000 -> 23.104.0.1:44002 10 6661 1 2025-11-14 07:31:37.428 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:46252 10 6661 1 2025-11-14 07:32:17.657 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 07:32:17.575 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 07:32:17.373 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 07:32:17.496 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 07:32:17.769 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 07:32:37.833 00:00:10.393 TCP 1.101.0.1:3000 -> 23.104.0.1:32842 10 6661 1 2025-11-14 07:33:38.265 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:36286 10 6661 1 2025-11-14 07:29:00.483 00:06:00.175 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-14 07:34:38.668 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:46538 10 6661 1 2025-11-14 07:35:39.094 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:45308 10 6661 1 2025-11-14 07:36:39.497 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41644 10 6661 1 2025-11-14 07:32:00.486 00:06:00.169 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-14 07:37:17.753 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 07:37:17.708 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 07:37:17.590 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 07:37:17.704 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 07:37:17.786 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 07:37:39.917 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:43570 10 6661 1 2025-11-14 07:38:40.336 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:52368 10 6661 1 2025-11-14 07:39:40.752 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:38638 10 6661 1 2025-11-14 07:40:41.111 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:46816 10 6661 1 2025-11-14 07:36:00.483 00:06:00.175 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-14 07:41:41.490 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:43896 10 6661 1 2025-11-14 07:42:18.195 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 07:42:18.166 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 07:42:18.117 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 07:42:17.998 00:00:00.062 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 07:42:18.113 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 07:42:41.856 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:59106 10 6661 1 2025-11-14 07:43:42.280 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:52170 10 6661 1 2025-11-14 07:39:00.488 00:06:00.169 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-14 07:44:42.687 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:37948 10 6661 1 2025-11-14 07:45:43.116 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:37122 10 6661 1 2025-11-14 07:46:43.517 00:00:11.629 TCP 1.101.0.1:3000 -> 23.104.0.1:48196 10 6661 1 2025-11-14 07:47:18.238 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 07:47:17.892 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 07:47:18.027 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 07:47:17.985 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 07:47:18.155 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 07:47:45.189 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:50758 10 6661 1 2025-11-14 07:43:00.486 00:06:00.173 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-14 07:48:45.602 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52762 10 6661 1 2025-11-14 07:49:46.007 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:45400 10 6661 1 2025-11-14 07:50:46.420 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:40326 10 6661 1 2025-11-14 07:46:00.490 00:06:00.168 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-14 07:51:46.775 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:40304 10 6661 1 2025-11-14 07:52:18.067 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 07:52:18.066 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 07:52:17.985 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 07:52:17.880 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 07:52:17.985 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 07:52:47.180 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:46088 10 6661 1 2025-11-14 07:53:47.587 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:35830 10 6661 1 2025-11-14 07:54:47.984 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:40884 10 6661 1 2025-11-14 07:50:00.487 00:06:00.174 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-14 07:55:48.387 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:34164 10 6661 1 2025-11-14 07:56:48.793 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34012 10 6661 1 2025-11-14 07:57:18.192 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 07:57:18.245 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 07:57:18.188 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 07:57:18.061 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 07:57:18.109 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 07:57:49.198 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:34844 10 6661 1 2025-11-14 07:53:00.492 00:06:00.168 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 Summary: total flows: 137, total bytes: 429098, total packets: 1028, avg bps: 880, avg pps: 0, avg bpp: 417 Time window: 2025-11-14 06:54:00 - 2025-11-14 07:59:00 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0034s User: 0.0017s Wall: 0.0025s flows/second: 55066.6 Runtime: 0.0025s