Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-16 11:54:01.602 00:06:00.097 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 11:59:38.103 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:55314 10 6452 1 2025-11-16 12:00:38.510 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:46838 10 6452 1 2025-11-16 12:01:38.918 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:41742 10 6452 1 2025-11-16 12:02:39.318 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:35050 10 6452 1 2025-11-16 12:03:21.041 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 12:03:21.004 00:00:00.049 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 12:03:20.904 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 12:03:20.917 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 12:03:20.959 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 12:03:39.679 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43802 10 6452 1 2025-11-16 11:59:01.606 00:06:00.092 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 12:04:40.108 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60472 10 6452 1 2025-11-16 12:05:40.516 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59594 10 6452 1 2025-11-16 12:01:01.602 00:06:00.097 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 12:06:40.922 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:50810 10 6452 1 2025-11-16 12:07:41.338 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:51536 10 6452 1 2025-11-16 12:08:21.360 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 12:08:21.439 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 12:08:21.133 00:00:00.026 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 12:08:21.276 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 12:08:21.332 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 12:08:41.699 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52048 10 6452 1 2025-11-16 12:09:42.113 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:54278 10 6452 1 2025-11-16 12:10:42.514 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39250 10 6452 1 2025-11-16 12:06:01.606 00:06:00.094 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 12:11:42.923 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:43910 11 6492 1 2025-11-16 12:12:43.341 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:53828 10 6452 1 2025-11-16 12:08:01.604 00:06:00.099 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 12:13:20.988 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 12:13:20.991 00:00:00.049 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 12:13:21.094 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 12:13:20.645 00:00:00.032 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 12:13:21.072 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 12:13:43.717 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:59498 10 6452 1 2025-11-16 12:14:44.121 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47330 10 6452 1 2025-11-16 12:15:44.523 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:47478 10 6452 1 2025-11-16 12:16:44.923 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:33754 10 6452 1 2025-11-16 12:17:45.306 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54984 10 6452 1 2025-11-16 12:13:01.609 00:06:00.089 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 12:18:21.606 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 12:18:21.567 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 12:18:21.509 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 12:18:21.471 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 12:18:21.688 00:00:00.028 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 12:18:45.705 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:46246 10 6452 1 2025-11-16 12:19:46.080 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:33222 10 6452 1 2025-11-16 12:15:01.608 00:06:00.095 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 12:20:46.441 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:47526 10 6452 1 2025-11-16 12:21:46.855 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:49562 10 6452 1 2025-11-16 12:22:47.277 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:54080 10 6452 1 2025-11-16 12:23:21.187 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 12:23:21.116 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 12:23:20.866 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 12:23:21.255 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 12:23:21.337 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 12:23:47.675 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:47790 10 6452 1 2025-11-16 12:24:48.041 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55940 10 6452 1 2025-11-16 12:20:01.613 00:06:00.088 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 12:25:48.439 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:36816 10 6452 1 2025-11-16 12:26:48.845 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:60180 10 6452 1 2025-11-16 12:22:01.611 00:06:00.093 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 12:27:49.221 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:49290 10 6452 1 2025-11-16 12:28:21.326 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 12:28:21.231 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 12:28:21.193 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 12:28:21.129 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 12:28:21.213 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 12:28:49.621 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:47706 10 6452 1 2025-11-16 12:29:49.985 00:00:11.163 TCP 1.101.0.1:3000 -> 23.104.0.1:54848 10 6452 1 2025-11-16 12:30:51.181 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:53292 10 6452 1 2025-11-16 12:27:01.614 00:06:00.089 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 12:31:51.544 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:44366 10 6452 1 2025-11-16 12:32:51.951 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41290 10 6452 1 2025-11-16 12:33:21.849 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 12:33:21.994 00:00:00.029 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 12:33:22.102 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 12:33:21.802 00:00:00.028 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 12:33:21.767 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 12:33:52.359 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:32998 10 6452 1 2025-11-16 12:29:01.613 00:06:00.093 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 12:34:52.732 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:42372 10 6452 1 2025-11-16 12:35:53.120 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:57450 10 6452 1 2025-11-16 12:36:53.520 00:00:10.444 TCP 1.101.0.1:3000 -> 23.104.0.1:52622 12 10375 1 2025-11-16 12:37:54.004 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:45896 10 6452 1 2025-11-16 12:38:21.679 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 12:38:21.420 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 12:38:21.494 00:00:00.026 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 12:38:21.363 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 12:38:21.597 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 12:34:01.618 00:06:00.089 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 12:38:54.416 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33534 10 6452 1 2025-11-16 12:39:54.821 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53348 10 6452 1 2025-11-16 12:36:01.616 00:06:00.094 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 12:40:55.223 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:45582 10 6452 1 2025-11-16 12:41:55.641 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:41934 10 6452 1 2025-11-16 12:42:56.053 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54660 10 6452 1 2025-11-16 12:43:21.502 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 12:43:21.389 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 12:43:21.325 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 12:43:21.571 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 12:43:21.654 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 12:43:56.452 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:43290 10 6452 1 2025-11-16 12:44:56.850 00:00:10.351 TCP 1.101.0.1:3000 -> 23.104.0.1:39908 10 6452 1 2025-11-16 12:41:01.619 00:06:00.089 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 12:45:57.233 00:00:10.400 TCP 1.101.0.1:3000 -> 23.104.0.1:40772 10 6452 1 2025-11-16 12:46:57.666 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:51130 10 6452 1 2025-11-16 12:43:01.618 00:06:00.093 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 12:47:58.102 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:57130 10 6452 1 2025-11-16 12:48:21.797 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 12:48:21.799 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 12:48:21.759 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 12:48:21.744 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 12:48:21.827 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 12:48:58.516 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:60396 10 6452 1 2025-11-16 12:49:58.924 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:57406 10 6452 1 2025-11-16 12:50:59.290 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:33286 10 6452 1 2025-11-16 12:51:59.695 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:47940 10 6452 1 2025-11-16 12:48:01.622 00:06:00.094 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 12:53:00.118 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:60538 10 6452 1 2025-11-16 12:53:21.796 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 12:53:21.738 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 12:53:21.764 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 12:53:21.731 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 12:53:21.814 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 12:54:00.483 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:34348 10 6452 1 2025-11-16 12:50:01.622 00:06:00.099 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 12:55:00.882 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:39860 12 6556 1 2025-11-16 12:56:01.306 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:53428 10 6452 1 2025-11-16 12:57:01.670 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41216 10 6452 1 2025-11-16 12:58:02.102 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:56698 10 6452 1 2025-11-16 12:58:22.276 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 12:58:22.115 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 12:58:22.206 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 12:58:21.970 00:00:00.036 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 12:58:22.193 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 Summary: total flows: 136, total bytes: 414492, total packets: 1013, avg bps: 858, avg pps: 0, avg bpp: 409 Time window: 2025-11-16 11:54:01 - 2025-11-16 12:58:22 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0046s User: 0.0009s Wall: 0.0016s flows/second: 85636.6 Runtime: 0.0016s