Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-14 12:54:00.595 00:06:00.158 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-14 12:59:27.870 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:48150 10 6452 1 2025-11-14 13:00:28.269 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:41566 10 6452 1 2025-11-14 13:01:28.674 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44614 10 6452 1 2025-11-14 13:02:24.354 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 13:02:24.206 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 13:02:24.353 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 13:02:24.149 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 13:02:24.271 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 13:02:29.100 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:33248 10 6452 1 2025-11-14 12:58:00.593 00:06:00.163 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-14 13:03:29.504 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:33454 10 6452 1 2025-11-14 13:04:29.866 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:53606 10 6452 1 2025-11-14 13:05:30.267 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37108 10 6452 1 2025-11-14 13:01:00.597 00:06:00.158 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-14 13:06:30.668 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38446 10 6452 1 2025-11-14 13:07:24.391 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 13:07:24.398 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 13:07:24.101 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 13:07:24.076 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 13:07:24.158 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 13:07:31.090 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:34924 10 6452 1 2025-11-14 13:08:31.506 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:56976 10 6452 1 2025-11-14 13:09:31.867 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58954 10 6452 1 2025-11-14 13:05:00.594 00:06:00.167 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-14 13:10:32.273 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:40384 10 6452 1 2025-11-14 13:11:32.677 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46302 10 6452 1 2025-11-14 13:12:24.625 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 13:12:24.499 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 13:12:24.594 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 13:12:24.232 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 13:12:24.542 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 13:12:33.103 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47388 10 6452 1 2025-11-14 13:08:00.598 00:06:00.160 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-14 13:13:33.507 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49110 10 6452 1 2025-11-14 13:14:33.909 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:60478 10 6452 1 2025-11-14 13:15:34.270 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:54174 10 6452 1 2025-11-14 13:16:34.674 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48652 10 6452 1 2025-11-14 13:12:00.597 00:06:00.164 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-14 13:17:24.685 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 13:17:24.420 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 13:17:24.650 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 13:17:24.447 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 13:17:24.602 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 13:17:35.108 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:52704 10 6452 1 2025-11-14 13:18:35.463 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42356 10 6452 1 2025-11-14 13:19:35.863 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:40176 10 6452 1 2025-11-14 13:15:00.599 00:06:00.160 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-14 13:20:36.283 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45384 10 6452 1 2025-11-14 13:21:36.684 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:51408 10 6452 1 2025-11-14 13:22:24.579 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 13:22:24.660 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 13:22:24.410 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 13:22:24.584 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 13:22:24.665 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 13:22:37.105 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:49830 11 6492 1 2025-11-14 13:23:37.512 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:35478 10 6452 1 2025-11-14 13:19:00.604 00:06:00.159 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-14 13:24:37.916 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:50442 10 6452 1 2025-11-14 13:25:38.280 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:54158 10 6452 1 2025-11-14 13:26:38.704 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:58616 10 6452 1 2025-11-14 13:22:00.608 00:06:00.153 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-14 13:27:24.776 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 13:27:24.770 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 13:27:24.500 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 13:27:24.822 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 13:27:24.857 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 13:27:39.095 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47650 10 6452 1 2025-11-14 13:28:39.495 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:51302 10 6452 1 2025-11-14 13:29:39.902 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:49370 12 6556 1 2025-11-14 13:30:40.312 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37938 10 6452 1 2025-11-14 13:26:00.605 00:06:00.158 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-14 13:31:40.715 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50540 10 6452 1 2025-11-14 13:32:24.861 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 13:32:24.935 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 13:32:24.461 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 13:32:24.795 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 13:32:24.877 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 13:32:41.115 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:37548 10 6452 1 2025-11-14 13:33:41.480 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:45478 10 6452 1 2025-11-14 13:29:00.611 00:06:00.154 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-14 13:34:41.849 00:00:10.349 TCP 1.101.0.1:3000 -> 23.104.0.1:41120 10 6452 1 2025-11-14 13:35:42.250 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:52476 10 6452 1 2025-11-14 13:36:42.611 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51632 10 6452 1 2025-11-14 13:37:24.867 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 13:37:24.771 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 13:37:24.893 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 13:37:24.763 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 13:37:24.846 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 13:37:43.020 00:00:11.016 TCP 1.101.0.1:3000 -> 23.104.0.1:58810 10 6452 1 2025-11-14 13:33:00.610 00:06:00.155 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-14 13:38:44.098 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:33324 10 6452 1 2025-11-14 13:39:44.498 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:40050 10 6452 1 2025-11-14 13:40:44.897 00:00:10.460 TCP 1.101.0.1:3000 -> 23.104.0.1:50014 14 10479 1 2025-11-14 13:36:00.614 00:06:00.150 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-14 13:41:45.380 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:42374 10 6452 1 2025-11-14 13:42:24.955 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 13:42:25.235 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 13:42:25.155 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 13:42:25.151 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 13:42:25.153 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 13:42:45.783 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:60896 10 6452 1 2025-11-14 13:43:46.142 00:00:11.650 TCP 1.101.0.1:3000 -> 23.104.0.1:47772 10 6452 1 2025-11-14 13:44:47.831 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:44152 10 6452 1 2025-11-14 13:40:00.612 00:06:00.155 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-14 13:45:48.238 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:49584 10 6452 1 2025-11-14 13:46:48.636 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34914 10 6452 1 2025-11-14 13:47:24.905 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 13:47:24.822 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 13:47:24.847 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 13:47:24.848 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 13:47:24.803 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 13:47:49.071 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56730 10 6452 1 2025-11-14 13:43:00.614 00:06:00.151 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-14 13:48:49.484 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38306 10 6452 1 2025-11-14 13:49:49.884 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:56264 12 6556 1 2025-11-14 13:50:50.301 00:00:10.444 TCP 1.101.0.1:3000 -> 23.104.0.1:35646 12 10375 1 2025-11-14 13:47:00.613 00:06:00.157 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-14 13:51:50.780 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:50978 10 6452 1 2025-11-14 13:52:25.406 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 13:52:25.341 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 13:52:25.222 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 13:52:25.351 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 13:52:25.434 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 13:52:51.186 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:49838 10 6452 1 2025-11-14 13:53:51.586 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:40122 10 6452 1 2025-11-14 13:54:51.993 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37536 10 6452 1 2025-11-14 13:50:00.615 00:06:00.152 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-14 13:55:52.398 00:00:10.456 TCP 1.101.0.1:3000 -> 23.104.0.1:35564 10 6452 1 2025-11-14 13:56:52.909 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:33972 10 6452 1 2025-11-14 13:57:25.300 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 13:57:25.417 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 13:57:25.541 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 13:57:25.421 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 13:57:25.503 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 13:57:53.317 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:42806 10 6452 1 Summary: total flows: 136, total bytes: 418623, total packets: 1019, avg bps: 871, avg pps: 0, avg bpp: 410 Time window: 2025-11-14 12:54:00 - 2025-11-14 13:58:03 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0054s User: 0.0009s Wall: 0.0020s flows/second: 67593.9 Runtime: 0.0020s