Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-14 19:54:00.740 00:06:00.141 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-14 19:59:20.448 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:32842 10 6452 1 2025-11-14 20:00:20.849 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:60320 10 6452 1 2025-11-14 20:01:21.272 00:00:19.308 TCP 1.101.0.1:3000 -> 23.104.0.1:37132 10 6452 1 2025-11-14 20:02:32.837 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 20:02:32.754 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 20:02:32.555 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 20:02:32.813 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 20:02:32.753 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 20:02:30.627 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48660 10 6452 1 2025-11-14 19:58:00.739 00:06:00.146 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-14 20:03:31.028 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48632 10 6452 1 2025-11-14 20:04:31.429 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42342 10 6452 1 2025-11-14 20:05:31.839 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:48350 10 6452 1 2025-11-14 20:01:00.742 00:06:00.141 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-14 20:06:32.258 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:54486 10 6452 1 2025-11-14 20:07:32.893 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 20:07:32.506 00:00:00.020 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 20:07:32.816 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 20:07:32.657 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 20:07:32.811 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 20:07:32.620 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:57186 10 6452 1 2025-11-14 20:08:33.021 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:58534 10 6452 1 2025-11-14 20:09:33.388 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48780 10 6452 1 2025-11-14 20:05:00.741 00:06:00.146 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-14 20:10:33.788 00:00:10.443 TCP 1.101.0.1:3000 -> 23.104.0.1:40308 12 10375 1 2025-11-14 20:11:34.267 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:54010 10 6452 1 2025-11-14 20:12:32.744 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 20:12:32.760 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 20:12:32.559 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 20:12:32.877 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 20:12:32.662 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 20:12:34.627 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:33714 10 6452 1 2025-11-14 20:08:00.743 00:06:00.141 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-14 20:13:34.987 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:55378 10 6452 1 2025-11-14 20:14:35.393 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:60884 10 6452 1 2025-11-14 20:15:35.793 00:00:10.344 TCP 1.101.0.1:3000 -> 23.104.0.1:40892 10 6452 1 2025-11-14 20:16:36.174 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:36296 10 6452 1 2025-11-14 20:12:00.741 00:06:00.146 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-14 20:17:32.872 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 20:17:32.770 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 20:17:32.895 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 20:17:32.966 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 20:17:33.048 00:00:00.028 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 20:17:36.540 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:51534 10 6452 1 2025-11-14 20:18:36.942 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:48550 10 6452 1 2025-11-14 20:19:37.330 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57154 10 6452 1 2025-11-14 20:15:00.745 00:06:00.141 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-14 20:20:37.732 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:57492 10 6452 1 2025-11-14 20:21:38.149 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:33204 10 6452 1 2025-11-14 20:22:32.912 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 20:22:32.910 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 20:22:33.048 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 20:22:32.901 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 20:22:32.984 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 20:22:38.554 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:57308 10 6452 1 2025-11-14 20:23:38.923 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:57730 10 6452 1 2025-11-14 20:19:00.745 00:06:00.146 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-14 20:24:39.345 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:38540 10 6452 1 2025-11-14 20:25:39.706 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44214 10 6452 1 2025-11-14 20:26:40.114 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:59308 10 6452 1 2025-11-14 20:22:00.747 00:06:00.140 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-14 20:27:33.301 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 20:27:33.018 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 20:27:32.804 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 20:27:33.143 00:00:00.045 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 20:27:33.225 00:00:00.045 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 20:27:40.555 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54566 10 6452 1 2025-11-14 20:28:40.950 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:55834 10 6452 1 2025-11-14 20:29:41.352 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41170 10 6452 1 2025-11-14 20:30:41.753 00:00:10.420 TCP 1.101.0.1:3000 -> 23.104.0.1:48720 11 6504 1 2025-11-14 20:26:00.746 00:06:00.145 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-14 20:31:42.217 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:41398 10 6452 1 2025-11-14 20:32:33.313 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 20:32:33.146 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 20:32:33.278 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 20:32:33.246 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 20:32:33.330 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 20:32:42.616 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:54806 10 6452 1 2025-11-14 20:33:43.060 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52218 10 6452 1 2025-11-14 20:29:00.749 00:06:00.139 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-14 20:34:43.463 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:39454 10 6452 1 2025-11-14 20:35:43.826 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55736 10 6452 1 2025-11-14 20:36:44.231 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54022 10 6452 1 2025-11-14 20:37:33.503 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 20:37:33.380 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 20:37:33.396 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 20:37:33.457 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 20:37:33.541 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 20:37:44.633 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35998 10 6452 1 2025-11-14 20:33:00.748 00:06:00.144 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-14 20:38:45.036 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:35340 10 6452 1 2025-11-14 20:39:45.437 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:48272 10 6452 1 2025-11-14 20:40:45.799 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55834 10 6452 1 2025-11-14 20:36:00.752 00:06:00.139 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-14 20:41:46.201 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38516 10 6452 1 2025-11-14 20:42:33.827 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 20:42:33.684 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 20:42:33.618 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 20:42:33.255 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 20:42:33.744 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 20:42:46.600 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33528 10 6452 1 2025-11-14 20:43:47.008 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:45476 10 6452 1 2025-11-14 20:44:47.414 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57888 10 6452 1 2025-11-14 20:40:00.749 00:06:00.145 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-14 20:45:47.812 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:49394 10 6452 1 2025-11-14 20:46:48.221 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:35354 10 6452 1 2025-11-14 20:47:33.603 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 20:47:33.300 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 20:47:33.307 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 20:47:33.664 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 20:47:33.522 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 20:47:48.582 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:40018 10 6452 1 2025-11-14 20:43:00.754 00:06:00.138 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-14 20:48:48.992 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:39212 10 6452 1 2025-11-14 20:49:49.353 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33316 10 6452 1 2025-11-14 20:50:49.753 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:50150 10 6452 1 2025-11-14 20:51:50.118 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43082 10 6452 1 2025-11-14 20:47:00.752 00:06:00.144 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-14 20:52:33.794 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 20:52:33.712 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 20:52:33.521 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 20:52:33.663 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 20:52:33.711 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 20:52:50.525 00:00:10.417 TCP 1.101.0.1:3000 -> 23.104.0.1:53360 11 6504 1 2025-11-14 20:53:50.978 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:47374 10 6452 1 2025-11-14 20:50:00.755 00:06:00.138 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-14 20:54:51.348 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:53574 10 6452 1 2025-11-14 20:55:51.761 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:44670 10 6452 1 2025-11-14 20:56:52.172 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:36696 10 6452 1 2025-11-14 20:57:33.829 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 20:57:33.728 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 20:57:33.801 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 20:57:33.907 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 20:57:33.810 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 20:57:52.580 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:38984 10 6452 1 Summary: total flows: 136, total bytes: 414452, total packets: 1012, avg bps: 862, avg pps: 0, avg bpp: 409 Time window: 2025-11-14 19:54:00 - 2025-11-14 20:58:02 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0024s User: 0.0024s Wall: 0.0016s flows/second: 82574.6 Runtime: 0.0017s