Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-15 05:55:00.949 00:05:00.158 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-15 05:59:24.439 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:43030 10 6452 1 2025-11-15 06:00:24.845 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:50818 10 6452 1 2025-11-15 05:57:00.948 00:05:00.162 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-15 06:01:25.275 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38818 10 6452 1 2025-11-15 06:02:25.677 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:51988 10 6452 1 2025-11-15 06:02:44.849 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 06:02:44.707 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 06:02:44.850 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 06:02:45.105 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 06:02:45.189 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 06:03:26.035 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45846 10 6452 1 2025-11-15 06:04:26.438 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56658 10 6452 1 2025-11-15 06:01:00.950 00:05:00.158 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-15 06:05:26.843 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:35174 10 6452 1 2025-11-15 06:06:27.263 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:56902 10 6452 1 2025-11-15 06:03:00.949 00:05:00.163 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-15 06:07:44.882 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 06:07:27.625 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46780 10 6452 1 2025-11-15 06:07:44.799 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 06:07:44.911 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 06:07:44.826 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 06:07:44.799 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 06:08:28.033 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:52116 12 6556 1 2025-11-15 06:09:28.465 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:52280 10 6452 1 2025-11-15 06:10:28.861 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:49124 10 6452 1 2025-11-15 06:07:00.952 00:05:00.159 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-15 06:11:29.279 00:00:10.438 TCP 1.101.0.1:3000 -> 23.104.0.1:34914 12 10375 1 2025-11-15 06:12:44.950 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 06:12:44.865 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 06:12:44.957 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 06:12:44.502 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 06:12:29.754 00:00:10.755 TCP 1.101.0.1:3000 -> 23.104.0.1:55902 10 6452 1 2025-11-15 06:12:45.032 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 06:09:00.950 00:05:00.164 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-15 06:13:30.545 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:38316 10 6452 1 2025-11-15 06:14:30.951 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49130 10 6452 1 2025-11-15 06:15:31.356 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:40882 10 6452 1 2025-11-15 06:16:31.765 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:51468 10 6452 1 2025-11-15 06:13:00.958 00:05:00.154 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-15 06:17:44.929 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 06:17:44.917 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 06:17:32.186 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:54774 10 6452 1 2025-11-15 06:17:45.021 00:00:00.026 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 06:17:44.986 00:00:00.026 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 06:17:45.001 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 06:18:32.587 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:42762 10 6452 1 2025-11-15 06:15:00.959 00:05:00.156 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-15 06:19:32.999 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:33348 12 6556 1 2025-11-15 06:20:33.401 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:47878 10 6452 1 2025-11-15 06:21:33.806 00:00:10.412 TCP 1.101.0.1:3000 -> 23.104.0.1:34784 12 10369 1 2025-11-15 06:22:45.151 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 06:22:45.088 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 06:22:45.197 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 06:22:45.143 00:00:00.031 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 06:22:45.280 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 06:22:34.256 00:00:17.296 TCP 1.101.0.1:3000 -> 23.104.0.1:54484 10 6452 1 2025-11-15 06:19:00.962 00:05:00.152 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-15 06:23:41.599 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47462 10 6452 1 2025-11-15 06:24:42.002 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41952 10 6452 1 2025-11-15 06:21:00.960 00:05:00.156 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-15 06:25:42.401 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:35998 10 6452 1 2025-11-15 06:26:42.765 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:50114 10 6452 1 2025-11-15 06:27:44.967 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 06:27:44.884 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 06:27:45.096 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 06:27:45.193 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 06:27:45.156 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 06:27:43.129 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41120 10 6452 1 2025-11-15 06:28:43.543 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:46764 10 6452 1 2025-11-15 06:25:00.965 00:05:00.150 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-15 06:29:43.961 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34312 10 6452 1 2025-11-15 06:30:44.370 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:53558 10 6452 1 2025-11-15 06:27:00.964 00:05:00.155 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-15 06:31:44.787 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:44096 10 6452 1 2025-11-15 06:32:45.521 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 06:32:45.440 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 06:32:45.439 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 06:32:45.440 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 06:32:45.440 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 06:32:45.194 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51214 10 6452 1 2025-11-15 06:33:45.593 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:35362 10 6452 1 2025-11-15 06:34:45.951 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:60392 10 6452 1 2025-11-15 06:31:00.966 00:05:00.156 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-15 06:35:46.333 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:40126 10 6452 1 2025-11-15 06:36:46.750 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38562 10 6452 1 2025-11-15 06:33:00.964 00:05:00.163 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-15 06:37:45.509 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 06:37:45.194 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 06:37:45.372 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 06:37:45.549 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 06:37:45.632 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 06:37:47.151 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:52148 10 6452 1 2025-11-15 06:38:47.552 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47852 10 6452 1 2025-11-15 06:39:47.968 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:58976 10 6452 1 2025-11-15 06:40:48.396 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:41952 10 6452 1 2025-11-15 06:37:00.969 00:05:00.155 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-15 06:41:48.798 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:34422 10 6452 1 2025-11-15 06:42:45.601 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 06:42:45.362 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 06:42:45.400 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 06:42:45.568 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 06:42:45.651 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 06:42:49.194 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52570 10 6452 1 2025-11-15 06:39:00.969 00:05:00.158 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-15 06:43:49.597 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53674 10 6452 1 2025-11-15 06:44:49.998 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:40308 10 6452 1 2025-11-15 06:45:50.362 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57776 10 6452 1 2025-11-15 06:46:50.766 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:42654 10 6452 1 2025-11-15 06:43:00.971 00:05:00.155 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-15 06:47:45.727 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 06:47:45.742 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 06:47:45.646 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 06:47:45.725 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 06:47:45.808 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 06:47:51.186 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49508 10 6452 1 2025-11-15 06:45:00.977 00:05:00.153 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-15 06:48:51.590 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58790 10 6452 1 2025-11-15 06:49:51.992 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58306 10 6452 1 2025-11-15 06:50:52.392 00:00:10.424 TCP 1.101.0.1:3000 -> 23.104.0.1:49874 11 6504 1 2025-11-15 06:51:52.858 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:40436 10 6452 1 2025-11-15 06:52:45.797 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 06:52:45.590 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 06:52:45.531 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 06:52:45.683 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 06:52:45.768 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 06:49:00.978 00:05:00.150 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-15 06:52:53.235 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:44474 10 6452 1 2025-11-15 06:53:53.656 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:39402 10 6452 1 2025-11-15 06:51:00.982 00:05:00.150 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-15 06:54:54.107 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34954 10 6452 1 2025-11-15 06:55:54.514 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:55524 10 6452 1 2025-11-15 06:56:54.921 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:54432 10 6452 1 2025-11-15 06:57:45.857 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 06:57:45.838 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 06:57:45.769 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 06:57:45.794 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 06:57:45.774 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 06:57:55.333 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:43932 10 6452 1 Summary: total flows: 139, total bytes: 418648, total packets: 1019, avg bps: 884, avg pps: 0, avg bpp: 410 Time window: 2025-11-15 05:55:00 - 2025-11-15 06:58:05 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0024s User: 0.0024s Wall: 0.0023s flows/second: 60334.1 Runtime: 0.0023s