Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-17 09:54:02.044 00:06:00.127 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-17 09:58:50.647 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47850 10 6661 1 2025-11-17 09:59:51.066 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:42646 10 6661 1 2025-11-17 10:00:51.468 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33790 10 6661 1 2025-11-17 09:56:02.042 00:06:00.132 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-17 10:01:51.873 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51726 10 6661 1 2025-11-17 10:02:52.279 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55110 10 6661 1 2025-11-17 10:03:47.426 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 10:03:47.221 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 10:03:47.349 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 10:03:47.071 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 10:03:47.343 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 10:03:52.691 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:48122 10 6661 1 2025-11-17 10:04:53.053 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:41470 10 6661 1 2025-11-17 10:05:53.482 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:37186 10 6661 1 2025-11-17 10:01:02.051 00:06:00.123 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-17 10:06:53.887 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:49842 10 6661 1 2025-11-17 10:07:54.266 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52114 10 6661 1 2025-11-17 10:03:02.050 00:06:00.128 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-17 10:08:47.552 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 10:08:47.425 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 10:08:47.312 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 10:08:47.400 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 10:08:47.467 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 10:08:54.666 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43220 10 6661 1 2025-11-17 10:09:55.096 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:42180 10 6661 1 2025-11-17 10:10:55.493 00:00:10.504 TCP 1.101.0.1:3000 -> 23.104.0.1:40438 10 6661 1 2025-11-17 10:11:56.037 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:41424 10 6661 1 2025-11-17 10:08:02.054 00:06:00.126 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-17 10:12:56.433 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44634 10 6661 1 2025-11-17 10:13:47.634 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 10:13:47.550 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 10:13:47.481 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 10:13:47.245 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 10:13:47.551 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 10:13:56.839 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:41576 10 6661 1 2025-11-17 10:10:02.052 00:06:00.132 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-17 10:14:57.247 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:54276 10 6661 1 2025-11-17 10:15:57.650 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49534 10 6661 1 2025-11-17 10:16:58.056 00:00:10.442 TCP 1.101.0.1:3000 -> 23.104.0.1:56240 12 10369 1 2025-11-17 10:17:58.537 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:49010 10 6452 1 2025-11-17 10:18:47.537 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 10:18:47.680 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 10:18:47.734 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 10:18:47.569 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 10:18:47.763 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 10:18:58.942 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:35384 10 6452 1 2025-11-17 10:15:02.056 00:06:00.125 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-17 10:19:59.305 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:43910 10 6452 1 2025-11-17 10:20:59.710 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:56296 10 6452 1 2025-11-17 10:17:02.056 00:06:00.131 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-17 10:22:00.137 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:42380 10 6452 1 2025-11-17 10:23:00.548 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:53668 10 6452 1 2025-11-17 10:23:47.535 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 10:23:47.543 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 10:23:47.852 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 10:23:47.692 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 10:23:47.937 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 10:24:00.963 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49082 10 6452 1 2025-11-17 10:25:01.366 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:45108 10 6452 1 2025-11-17 10:26:01.767 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:48228 10 6452 1 2025-11-17 10:22:02.058 00:06:00.126 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-17 10:27:02.174 00:00:10.442 TCP 1.101.0.1:3000 -> 23.104.0.1:52750 12 10369 1 2025-11-17 10:28:02.656 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:48648 10 6452 1 2025-11-17 10:28:47.706 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 10:28:47.768 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 10:28:47.737 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 10:28:47.769 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 10:28:47.852 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 10:24:02.056 00:06:00.132 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-17 10:29:03.066 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37986 10 6452 1 2025-11-17 10:30:03.476 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55514 10 6452 1 2025-11-17 10:31:03.878 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:35210 10 6452 1 2025-11-17 10:32:04.281 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:41886 10 6452 1 2025-11-17 10:33:04.705 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:60254 10 6452 1 2025-11-17 10:33:47.850 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 10:33:47.536 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 10:33:47.767 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 10:33:47.847 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 10:33:47.669 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 10:29:02.060 00:06:00.127 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-17 10:34:05.118 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36646 10 6452 1 2025-11-17 10:35:05.520 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51424 10 6452 1 2025-11-17 10:31:02.057 00:06:00.132 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-17 10:36:05.922 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60150 10 6452 1 2025-11-17 10:37:06.324 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33816 10 6452 1 2025-11-17 10:38:06.724 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:46566 10 6452 1 2025-11-17 10:38:48.488 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 10:38:48.338 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 10:38:48.256 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 10:38:48.065 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 10:38:48.146 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 10:39:07.138 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54410 10 6452 1 2025-11-17 10:40:07.542 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:37988 10 6452 1 2025-11-17 10:36:02.061 00:06:00.130 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-17 10:41:07.952 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:50686 10 6452 1 2025-11-17 10:42:08.356 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35722 10 6452 1 2025-11-17 10:38:02.058 00:06:00.136 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-17 10:43:08.757 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:38238 10 6452 1 2025-11-17 10:43:47.969 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 10:43:47.904 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 10:43:48.182 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 10:43:48.144 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 10:43:48.265 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 10:44:09.188 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45654 10 6452 1 2025-11-17 10:45:09.591 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:53644 10 6452 1 2025-11-17 10:46:09.987 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:33452 10 6452 1 2025-11-17 10:47:10.401 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44338 10 6452 1 2025-11-17 10:43:02.065 00:06:00.128 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-17 10:48:10.801 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47712 10 6452 1 2025-11-17 10:48:48.324 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 10:48:48.323 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 10:48:48.059 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 10:48:48.131 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 10:48:48.214 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 10:49:11.206 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:55484 10 6452 1 2025-11-17 10:45:02.062 00:06:00.133 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-17 10:50:11.622 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:53902 10 6452 1 2025-11-17 10:51:12.035 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52448 10 6452 1 2025-11-17 10:52:12.437 00:00:10.604 TCP 1.101.0.1:3000 -> 23.104.0.1:37096 10 6452 1 2025-11-17 10:53:13.118 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58744 10 6452 1 2025-11-17 10:53:48.490 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 10:53:48.466 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 10:53:48.273 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 10:53:48.366 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 10:53:48.356 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 10:54:13.526 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:37550 10 6452 1 2025-11-17 10:50:02.065 00:06:00.128 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-17 10:55:13.928 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:35360 10 6452 1 2025-11-17 10:56:14.356 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:37756 10 6452 1 2025-11-17 10:52:02.063 00:06:00.133 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-17 10:57:14.749 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49386 10 6452 1 2025-11-17 10:58:15.152 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:49218 10 6452 1 2025-11-17 10:58:48.387 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 10:58:48.449 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 10:58:48.230 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 10:58:48.577 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 10:58:48.532 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 Summary: total flows: 138, total bytes: 429334, total packets: 1036, avg bps: 883, avg pps: 0, avg bpp: 414 Time window: 2025-11-17 09:54:02 - 2025-11-17 10:58:48 Total flows processed: 138, passed: 138, Blocks skipped: 0, Bytes read: 14416 Sys: 0.0055s User: 0.0000s Wall: 0.0014s flows/second: 97394.2 Runtime: 0.0014s