Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-15 04:55:00.913 00:05:00.171 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-15 04:59:05.794 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36620 10 6452 1 2025-11-15 05:00:06.201 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:41978 10 6452 1 2025-11-15 04:57:00.910 00:05:00.174 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-15 05:01:06.604 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52790 10 6452 1 2025-11-15 05:02:07.014 00:00:10.853 TCP 1.101.0.1:3000 -> 23.104.0.1:33500 10 6452 1 2025-11-15 05:02:43.686 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 05:02:43.377 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 05:02:43.714 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 05:02:43.436 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 05:02:43.796 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 05:03:07.902 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:47634 10 6452 1 2025-11-15 05:04:08.279 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:56678 10 6452 1 2025-11-15 05:01:00.913 00:05:00.169 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-15 05:05:08.685 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:50586 10 6452 1 2025-11-15 05:06:09.061 00:00:10.651 TCP 1.101.0.1:3000 -> 23.104.0.1:46630 14 14292 1 2025-11-15 05:03:00.913 00:05:00.172 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-15 05:07:09.751 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:53204 10 6452 1 2025-11-15 05:07:43.673 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 05:07:43.466 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 05:07:43.550 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 05:07:43.674 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 05:07:43.757 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 05:08:10.151 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43024 10 6452 1 2025-11-15 05:09:10.551 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42156 10 6452 1 2025-11-15 05:10:10.952 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:45374 10 6452 1 2025-11-15 05:07:00.916 00:05:00.168 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-15 05:11:11.356 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:41698 10 6452 1 2025-11-15 05:12:11.726 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:47036 10 6452 1 2025-11-15 05:12:43.726 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 05:12:43.898 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 05:12:43.790 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 05:12:43.790 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 05:12:43.981 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 05:09:00.914 00:05:00.172 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-15 05:13:12.138 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44024 10 6452 1 2025-11-15 05:14:12.542 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42746 10 6452 1 2025-11-15 05:15:12.947 00:00:10.400 TCP 1.101.0.1:3000 -> 23.104.0.1:51008 10 6452 1 2025-11-15 05:16:13.385 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:57628 10 6452 1 2025-11-15 05:13:00.920 00:05:00.164 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-15 05:17:13.751 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:36322 10 6452 1 2025-11-15 05:17:43.936 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 05:17:43.850 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 05:17:43.727 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 05:17:43.669 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 05:17:43.853 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 05:18:14.125 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:41876 10 6452 1 2025-11-15 05:15:00.918 00:05:00.169 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-15 05:19:14.490 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:37360 10 6452 1 2025-11-15 05:20:14.889 00:00:10.396 TCP 1.101.0.1:3000 -> 23.104.0.1:56028 10 6452 1 2025-11-15 05:21:15.323 00:00:10.395 TCP 1.101.0.1:3000 -> 23.104.0.1:59282 10 6452 1 2025-11-15 05:22:15.764 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:46906 10 6452 1 2025-11-15 05:22:44.031 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 05:22:43.813 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 05:22:43.947 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 05:22:43.773 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 05:22:43.949 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 05:19:00.922 00:05:00.163 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-15 05:23:16.174 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:58780 10 6452 1 2025-11-15 05:24:16.584 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60594 10 6452 1 2025-11-15 05:21:00.923 00:05:00.165 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-15 05:25:16.982 00:00:21.519 TCP 1.101.0.1:3000 -> 23.104.0.1:52070 10 6452 1 2025-11-15 05:26:28.539 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40698 10 6452 1 2025-11-15 05:27:28.939 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:48802 10 6452 1 2025-11-15 05:27:44.679 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 05:27:44.834 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 05:27:44.606 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 05:27:44.737 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 05:27:44.596 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 05:28:29.360 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:39612 10 6452 1 2025-11-15 05:25:00.926 00:05:00.170 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-15 05:29:29.721 00:00:41.122 TCP 1.101.0.1:3000 -> 23.104.0.1:36866 10 6452 1 2025-11-15 05:27:00.924 00:05:00.175 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-15 05:31:00.896 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:35004 10 6452 1 2025-11-15 05:32:01.254 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:57792 10 6452 1 2025-11-15 05:32:44.236 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 05:32:44.162 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 05:32:44.111 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 05:32:44.122 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 05:32:44.154 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 05:33:01.653 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49414 10 6452 1 2025-11-15 05:34:02.067 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:55360 10 6452 1 2025-11-15 05:31:00.942 00:05:00.155 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-15 05:35:02.470 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:47720 10 6452 1 2025-11-15 05:36:02.880 00:00:10.350 TCP 1.101.0.1:3000 -> 23.104.0.1:52144 10 6452 1 2025-11-15 05:33:00.941 00:05:00.159 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-15 05:37:03.242 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:41666 10 6452 1 2025-11-15 05:37:44.464 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 05:37:44.175 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 05:37:44.482 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 05:37:44.003 00:00:00.043 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 05:37:44.381 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 05:38:03.639 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:35612 10 6452 1 2025-11-15 05:39:04.059 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51720 10 6452 1 2025-11-15 05:40:04.465 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58818 10 6452 1 2025-11-15 05:37:00.946 00:05:00.154 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-15 05:41:04.868 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:52948 10 6452 1 2025-11-15 05:42:05.277 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43286 10 6452 1 2025-11-15 05:42:44.276 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 05:42:44.359 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 05:42:44.348 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 05:42:44.286 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 05:42:44.368 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 05:39:00.942 00:05:00.160 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-15 05:43:05.683 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:36212 10 6452 1 2025-11-15 05:44:06.122 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:53816 10 6452 1 2025-11-15 05:45:06.488 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:39196 10 6452 1 2025-11-15 05:46:06.892 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:43908 10 6452 1 2025-11-15 05:43:00.947 00:05:00.155 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-15 05:47:07.310 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:33358 10 6452 1 2025-11-15 05:47:44.549 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 05:47:44.508 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 05:47:44.467 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 05:47:44.466 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 05:47:44.454 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 05:48:07.709 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:43430 10 6452 1 2025-11-15 05:45:00.944 00:05:00.168 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-15 05:49:08.112 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50116 10 6452 1 2025-11-15 05:50:08.512 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:37816 10 6452 1 2025-11-15 05:51:08.915 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:60074 10 6452 1 2025-11-15 05:52:09.311 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:46506 10 6452 1 2025-11-15 05:52:44.715 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 05:52:44.572 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 05:52:44.672 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 05:52:44.583 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 05:52:44.633 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 05:49:00.947 00:05:00.159 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-15 05:53:09.715 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:51228 10 6452 1 2025-11-15 05:54:10.119 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57120 10 6452 1 2025-11-15 05:51:00.944 00:05:00.164 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-15 05:55:10.526 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:45180 10 6452 1 2025-11-15 05:56:10.935 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:51838 10 6452 1 2025-11-15 05:57:11.356 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:49128 10 6452 1 2025-11-15 05:57:44.648 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 05:57:44.579 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 05:57:44.676 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 05:57:44.583 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 05:57:44.666 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 05:58:11.756 00:00:22.628 TCP 1.101.0.1:3000 -> 23.104.0.1:33056 10 6452 1 Summary: total flows: 139, total bytes: 418388, total packets: 1014, avg bps: 877, avg pps: 0, avg bpp: 412 Time window: 2025-11-15 04:55:00 - 2025-11-15 05:58:34 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0030s User: 0.0020s Wall: 0.0019s flows/second: 72658.1 Runtime: 0.0019s