Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-16 14:54:01.654 00:06:00.098 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 14:58:54.915 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38812 10 6452 1 2025-11-16 14:59:55.316 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57686 10 6452 1 2025-11-16 14:56:01.652 00:06:00.103 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 15:00:55.722 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:47788 10 6452 1 2025-11-16 15:01:56.129 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:60596 10 6452 1 2025-11-16 15:02:56.532 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49250 10 6452 1 2025-11-16 15:03:24.469 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 15:03:24.588 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 15:03:24.522 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 15:03:24.465 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 15:03:24.604 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 15:03:56.934 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:33238 10 6452 1 2025-11-16 15:04:57.356 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:52472 10 6452 1 2025-11-16 15:01:01.657 00:06:00.097 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 15:05:57.723 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:33604 10 6452 1 2025-11-16 15:06:58.139 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:58566 10 6452 1 2025-11-16 15:03:01.655 00:06:00.103 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 15:07:58.543 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:39060 10 6452 1 2025-11-16 15:08:24.621 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 15:08:24.530 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 15:08:24.622 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 15:08:24.469 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 15:08:24.703 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 15:08:58.907 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36596 12 6556 1 2025-11-16 15:09:59.316 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:53100 10 6452 1 2025-11-16 15:10:59.721 00:00:10.465 TCP 1.101.0.1:3000 -> 23.104.0.1:57006 10 6452 1 2025-11-16 15:12:00.224 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:52568 10 6452 1 2025-11-16 15:08:01.658 00:06:00.097 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 15:13:00.629 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:57386 10 6452 1 2025-11-16 15:13:24.851 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 15:13:24.913 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 15:13:24.736 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 15:13:24.789 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 15:13:24.871 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 15:14:00.990 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:59282 10 6452 1 2025-11-16 15:10:01.656 00:06:00.105 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 15:15:01.391 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:49868 10 6452 1 2025-11-16 15:16:01.792 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:41104 10 6452 1 2025-11-16 15:17:02.201 00:00:10.439 TCP 1.101.0.1:3000 -> 23.104.0.1:54322 12 10578 1 2025-11-16 15:18:02.681 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49546 10 6661 1 2025-11-16 15:18:24.659 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 15:18:24.736 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 15:18:24.679 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 15:18:24.855 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 15:18:24.939 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 15:19:03.111 00:00:11.177 TCP 1.101.0.1:3000 -> 23.104.0.1:45982 10 6661 1 2025-11-16 15:15:01.660 00:06:00.104 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 15:20:04.321 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:57084 10 6661 1 2025-11-16 15:21:04.730 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:43894 10 6661 1 2025-11-16 15:17:01.659 00:06:00.109 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 15:22:05.133 00:00:11.181 TCP 1.101.0.1:3000 -> 23.104.0.1:39640 10 6661 1 2025-11-16 15:23:06.370 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58492 10 6661 1 2025-11-16 15:23:24.921 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 15:23:25.085 00:00:00.045 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 15:23:25.141 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 15:23:25.133 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 15:23:25.004 00:00:00.044 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 15:24:06.776 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:56418 10 6661 1 2025-11-16 15:25:07.180 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53112 10 6661 1 2025-11-16 15:26:07.590 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:32982 10 6661 1 2025-11-16 15:22:01.661 00:06:00.104 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 15:27:07.998 00:00:10.473 TCP 1.101.0.1:3000 -> 23.104.0.1:53028 14 14925 1 2025-11-16 15:28:08.515 00:00:10.805 TCP 1.101.0.1:3000 -> 23.104.0.1:50776 10 7079 1 2025-11-16 15:28:24.874 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 15:28:24.653 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 15:28:24.930 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 15:28:24.792 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 15:28:25.069 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 15:24:01.658 00:06:00.110 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 15:29:09.358 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45740 10 7079 1 2025-11-16 15:30:09.769 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:45590 10 7079 1 2025-11-16 15:31:10.178 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46558 10 7079 1 2025-11-16 15:32:10.580 00:00:11.006 TCP 1.101.0.1:3000 -> 23.104.0.1:36836 10 7079 1 2025-11-16 15:33:11.621 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:52552 10 7079 1 2025-11-16 15:33:24.940 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 15:33:25.213 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 15:33:25.260 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 15:33:25.212 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 15:33:25.296 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 15:29:01.662 00:06:00.104 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 15:34:12.030 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51896 10 7079 1 2025-11-16 15:35:12.436 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:59938 10 7079 1 2025-11-16 15:31:01.659 00:06:00.110 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 15:36:12.803 00:00:11.101 TCP 1.101.0.1:3000 -> 23.104.0.1:39554 12 7183 1 2025-11-16 15:37:13.941 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:46488 10 7079 1 2025-11-16 15:38:14.354 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52688 10 7079 1 2025-11-16 15:38:25.054 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 15:38:25.150 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 15:38:25.095 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 15:38:25.143 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 15:38:25.226 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 15:39:14.758 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:34400 10 7079 1 2025-11-16 15:40:15.175 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53946 10 7079 1 2025-11-16 15:36:01.667 00:06:00.104 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 15:41:15.580 00:00:13.686 TCP 1.101.0.1:3000 -> 23.104.0.1:45754 10 7079 1 2025-11-16 15:42:19.315 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:50268 10 7079 1 2025-11-16 15:38:01.665 00:06:00.109 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 15:43:25.520 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 15:43:25.872 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 15:43:25.539 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 15:43:25.707 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 15:43:25.790 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 15:43:19.720 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58284 10 7079 1 2025-11-16 15:44:20.124 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:42506 10 7079 1 2025-11-16 15:45:20.496 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:53522 10 7079 1 2025-11-16 15:46:20.901 00:00:10.628 TCP 1.101.0.1:3000 -> 23.104.0.1:46440 12 7183 1 2025-11-16 15:47:21.567 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:39718 10 7079 1 2025-11-16 15:43:01.675 00:06:00.098 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 15:48:25.333 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 15:48:25.182 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 15:48:25.446 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 15:48:25.413 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 15:48:25.265 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 15:48:21.968 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:59498 10 7079 1 2025-11-16 15:49:22.377 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:53564 10 7079 1 2025-11-16 15:45:01.673 00:06:00.105 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 15:50:22.774 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:36700 10 7079 1 2025-11-16 15:51:23.191 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:51046 10 7079 1 2025-11-16 15:52:23.555 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46370 10 7079 1 2025-11-16 15:53:25.481 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 15:53:25.318 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 15:53:25.052 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 15:53:25.327 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 15:53:25.410 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 15:53:23.959 00:00:11.280 TCP 1.101.0.1:3000 -> 23.104.0.1:44792 10 7079 1 2025-11-16 15:54:25.272 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:60290 10 7079 1 2025-11-16 15:50:01.678 00:06:00.100 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 15:55:25.642 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50400 10 7079 1 2025-11-16 15:56:26.062 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33814 10 7079 1 2025-11-16 15:52:01.676 00:06:00.104 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 15:57:26.468 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:51116 10 7079 1 2025-11-16 15:58:25.692 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 15:58:25.564 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 15:58:25.294 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 15:58:25.609 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 15:58:25.407 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 15:58:26.869 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:50810 10 7079 1 Summary: total flows: 138, total bytes: 451967, total packets: 1044, avg bps: 932, avg pps: 0, avg bpp: 432 Time window: 2025-11-16 14:54:01 - 2025-11-16 15:58:37 Total flows processed: 138, passed: 138, Blocks skipped: 0, Bytes read: 14416 Sys: 0.0040s User: 0.0010s Wall: 0.0014s flows/second: 98504.8 Runtime: 0.0014s