Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-14 13:54:00.613 00:06:00.158 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-14 13:58:53.729 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:60866 10 6452 1 2025-11-14 13:59:54.109 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58528 10 6452 1 2025-11-14 14:00:54.513 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:33796 10 6452 1 2025-11-14 13:57:00.619 00:06:00.154 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-14 14:01:54.879 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:40136 10 6452 1 2025-11-14 14:02:25.327 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 14:02:25.607 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 14:02:25.265 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 14:02:25.556 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 14:02:25.638 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 14:02:55.258 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44064 10 6452 1 2025-11-14 14:03:55.662 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:39352 10 6452 1 2025-11-14 14:04:56.114 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:39696 10 6452 1 2025-11-14 14:01:00.618 00:06:00.158 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-14 14:05:56.474 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:48886 10 6452 1 2025-11-14 14:06:56.830 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:60418 10 6452 1 2025-11-14 14:07:25.673 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 14:07:25.600 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 14:07:25.422 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 14:07:25.307 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 14:07:25.591 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 14:07:57.230 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54288 10 6452 1 2025-11-14 14:04:00.620 00:06:00.154 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-14 14:08:57.630 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:41812 10 6452 1 2025-11-14 14:09:58.038 00:00:10.633 TCP 1.101.0.1:3000 -> 23.104.0.1:35782 10 6452 1 2025-11-14 14:10:58.714 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58868 10 6452 1 2025-11-14 14:11:59.117 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43882 10 6452 1 2025-11-14 14:12:25.641 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 14:12:25.640 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 14:12:25.577 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 14:12:25.846 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 14:12:25.929 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 14:08:00.619 00:06:00.160 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-14 14:12:59.513 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43092 10 6452 1 2025-11-14 14:13:59.916 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:35126 10 6452 1 2025-11-14 14:15:00.275 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:59404 10 6452 1 2025-11-14 14:11:00.623 00:06:00.154 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-14 14:16:00.693 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:36038 10 6452 1 2025-11-14 14:17:01.117 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48402 10 6452 1 2025-11-14 14:17:25.735 00:00:00.032 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 14:17:25.816 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 14:17:25.547 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 14:17:25.813 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 14:17:25.897 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 14:18:01.521 00:00:11.052 TCP 1.101.0.1:3000 -> 23.104.0.1:43176 10 6452 1 2025-11-14 14:19:02.614 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57904 10 6452 1 2025-11-14 14:15:00.620 00:06:00.160 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-14 14:20:03.018 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41218 10 6452 1 2025-11-14 14:21:03.421 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47658 10 6452 1 2025-11-14 14:22:03.824 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42194 10 6452 1 2025-11-14 14:22:25.947 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 14:22:25.935 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 14:22:26.091 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 14:22:25.734 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 14:22:25.817 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 14:18:00.626 00:06:00.154 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-14 14:23:04.228 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:60658 10 6452 1 2025-11-14 14:24:04.594 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43928 10 6452 1 2025-11-14 14:25:04.996 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53378 10 6452 1 2025-11-14 14:26:05.396 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:54234 10 6452 1 2025-11-14 14:22:00.622 00:06:00.164 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-14 14:27:05.764 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:45318 10 6452 1 2025-11-14 14:27:26.040 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 14:27:25.954 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 14:27:25.952 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 14:27:25.843 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 14:27:25.957 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 14:28:06.154 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:52130 10 6452 1 2025-11-14 14:29:06.525 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47434 10 6452 1 2025-11-14 14:25:00.626 00:06:00.159 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-14 14:30:06.929 00:00:10.660 TCP 1.101.0.1:3000 -> 23.104.0.1:48256 10 6452 1 2025-11-14 14:31:07.654 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:47432 10 6452 1 2025-11-14 14:32:08.017 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40258 10 6452 1 2025-11-14 14:32:26.145 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 14:32:25.983 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 14:32:25.662 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 14:32:26.181 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 14:32:26.265 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 14:33:08.425 00:00:10.436 TCP 1.101.0.1:3000 -> 23.104.0.1:51314 10 6452 1 2025-11-14 14:29:00.626 00:06:00.163 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-14 14:34:08.905 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42900 10 6452 1 2025-11-14 14:35:09.307 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:41608 10 6452 1 2025-11-14 14:36:09.717 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:35712 10 6452 1 2025-11-14 14:32:00.630 00:06:00.158 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-14 14:37:26.296 00:00:00.017 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 14:37:10.133 00:00:10.418 TCP 1.101.0.1:3000 -> 23.104.0.1:56482 11 6504 1 2025-11-14 14:37:26.158 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 14:37:26.205 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 14:37:25.972 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 14:37:26.206 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 14:38:10.589 00:00:10.945 TCP 1.101.0.1:3000 -> 23.104.0.1:52804 10 6452 1 2025-11-14 14:39:11.572 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:45886 10 6452 1 2025-11-14 14:40:11.931 00:00:10.467 TCP 1.101.0.1:3000 -> 23.104.0.1:51370 10 6452 1 2025-11-14 14:36:00.628 00:06:00.165 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-14 14:41:12.455 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37260 10 6452 1 2025-11-14 14:42:26.383 00:00:00.028 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 14:42:12.855 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:42500 10 6452 1 2025-11-14 14:42:26.293 00:00:00.035 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 14:42:26.251 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 14:42:26.033 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 14:42:26.298 00:00:00.030 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 14:43:13.271 00:00:10.410 TCP 1.101.0.1:3000 -> 23.104.0.1:46036 10 6452 1 2025-11-14 14:39:00.631 00:06:00.159 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-14 14:44:13.698 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:52338 10 6452 1 2025-11-14 14:45:14.109 00:00:10.439 TCP 1.101.0.1:3000 -> 23.104.0.1:47058 12 10375 1 2025-11-14 14:46:14.589 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42594 10 6452 1 2025-11-14 14:47:26.474 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 14:47:26.347 00:00:00.035 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 14:47:26.410 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 14:47:14.992 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:46260 10 6452 1 2025-11-14 14:47:26.350 00:00:00.032 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 14:47:26.441 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 14:43:00.630 00:06:00.165 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-14 14:48:15.390 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:54516 10 6452 1 2025-11-14 14:49:15.800 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:35532 10 6452 1 2025-11-14 14:50:16.203 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48948 10 6452 1 2025-11-14 14:46:00.632 00:06:00.160 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-14 14:51:16.602 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:45684 10 6452 1 2025-11-14 14:52:26.700 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 14:52:26.558 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 14:52:26.608 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 14:52:26.374 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 14:52:26.616 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 14:52:17.011 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:41952 10 6452 1 2025-11-14 14:53:17.411 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55580 10 6452 1 2025-11-14 14:54:17.813 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58396 10 6452 1 2025-11-14 14:50:00.631 00:06:00.164 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-14 14:55:18.219 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53558 10 6452 1 2025-11-14 14:56:18.620 00:00:10.573 TCP 1.101.0.1:3000 -> 23.104.0.1:48518 10 6452 1 2025-11-14 14:57:26.675 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 14:57:19.235 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39912 10 6452 1 2025-11-14 14:57:26.422 00:00:00.030 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 14:57:26.442 00:00:00.031 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 14:57:26.623 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 14:57:26.706 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 14:53:00.634 00:06:00.160 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-14 14:58:19.639 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42428 10 6452 1 Summary: total flows: 138, total bytes: 421713, total packets: 1035, avg bps: 865, avg pps: 0, avg bpp: 407 Time window: 2025-11-14 13:54:00 - 2025-11-14 14:59:00 Total flows processed: 138, passed: 138, Blocks skipped: 0, Bytes read: 14416 Sys: 0.0024s User: 0.0024s Wall: 0.0025s flows/second: 54610.2 Runtime: 0.0026s