Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-21 17:55:04.185 00:04:00.286 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-21 17:59:05.967 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47328 10 6452 1 2025-11-21 18:00:06.374 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:45596 10 6452 1 2025-11-21 18:00:54.214 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 18:00:54.128 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 18:00:54.072 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 18:00:54.169 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 18:00:54.131 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 18:00:04.190 00:01:00.282 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-11-21 18:01:06.783 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38768 10 6452 1 2025-11-21 18:02:07.188 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36336 10 6452 1 2025-11-21 17:59:04.191 00:04:00.278 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-21 18:03:07.598 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:34770 10 6452 1 2025-11-21 18:04:07.965 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:43936 10 6452 1 2025-11-21 18:05:08.368 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59908 10 6452 1 2025-11-21 18:05:54.139 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 18:05:54.197 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 18:05:54.226 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 18:05:54.202 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 18:05:54.287 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 18:02:04.189 00:04:00.282 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-21 18:06:08.772 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:53760 10 6452 1 2025-11-21 18:07:09.187 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54580 10 6452 1 2025-11-21 18:08:09.590 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58252 10 6452 1 2025-11-21 18:04:04.191 00:06:00.278 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-21 18:09:10.002 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57026 10 6452 1 2025-11-21 18:10:10.405 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:37434 10 6452 1 2025-11-21 18:10:55.082 00:00:00.040 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 18:10:55.166 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 18:10:55.000 00:00:00.039 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 18:10:55.198 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 18:10:54.991 00:00:00.030 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 18:07:04.189 00:04:00.283 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-21 18:11:10.809 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:33072 10 6452 1 2025-11-21 18:12:11.216 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:50056 10 6452 1 2025-11-21 18:13:11.583 00:00:10.401 TCP 1.101.0.1:3000 -> 23.104.0.1:33382 12 10375 1 2025-11-21 18:14:12.028 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:37840 10 6452 1 2025-11-21 18:11:04.193 00:04:00.279 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-21 18:15:12.394 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39080 10 6452 1 2025-11-21 18:15:54.372 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 18:15:54.327 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 18:15:54.434 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 18:15:54.430 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 18:15:54.518 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 18:12:04.190 00:04:00.284 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-21 18:16:12.801 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:57104 10 6452 1 2025-11-21 18:17:13.182 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:47188 10 6452 1 2025-11-21 18:18:13.588 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:50386 10 6452 1 2025-11-21 18:19:13.988 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:36614 10 6452 1 2025-11-21 18:16:04.196 00:04:00.279 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-21 18:20:14.407 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:42922 10 6452 1 2025-11-21 18:20:54.446 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 18:20:54.444 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 18:20:54.555 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 18:20:54.444 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 18:20:54.528 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 18:17:04.192 00:04:00.284 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-21 18:21:14.820 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:38106 10 6452 1 2025-11-21 18:22:15.240 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:37528 10 6452 1 2025-11-21 18:23:15.649 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43382 10 6452 1 2025-11-21 18:24:16.060 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:35956 10 6452 1 2025-11-21 18:21:04.195 00:04:00.282 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-21 18:25:16.466 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:46532 10 6452 1 2025-11-21 18:25:55.588 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 18:25:55.453 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 18:25:55.383 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 18:25:55.452 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 18:25:55.535 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 18:22:04.193 00:04:00.287 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-21 18:26:16.866 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:60750 10 6452 1 2025-11-21 18:27:17.286 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46088 10 6452 1 2025-11-21 18:28:17.689 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:58408 10 6452 1 2025-11-21 18:29:18.061 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:47042 10 6452 1 2025-11-21 18:26:04.197 00:04:00.282 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-21 18:30:18.478 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36464 10 6452 1 2025-11-21 18:30:54.970 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 18:30:54.882 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 18:30:54.887 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 18:30:54.902 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 18:30:54.887 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 18:27:04.194 00:04:00.287 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-21 18:31:18.883 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:57494 10 6452 1 2025-11-21 18:32:19.248 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38762 10 6452 1 2025-11-21 18:33:19.653 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:44510 10 6452 1 2025-11-21 18:34:20.071 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55960 10 6452 1 2025-11-21 18:31:04.197 00:04:00.283 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-21 18:35:20.480 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:42938 10 6452 1 2025-11-21 18:35:54.769 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 18:35:54.605 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 18:35:54.662 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 18:35:54.763 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 18:35:54.846 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 18:36:20.877 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:46986 10 6452 1 2025-11-21 18:36:04.197 00:01:00.282 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-11-21 18:32:04.194 00:06:00.289 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-21 18:37:21.246 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43102 10 6452 1 2025-11-21 18:38:21.651 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57462 10 6452 1 2025-11-21 18:39:22.067 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55864 10 6452 1 2025-11-21 18:40:22.467 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:37460 10 6452 1 2025-11-21 18:40:54.908 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 18:40:54.967 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 18:40:54.921 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 18:40:54.907 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 18:40:54.991 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 18:41:22.828 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:49700 10 6452 1 2025-11-21 18:38:04.198 00:04:00.284 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-21 18:42:23.224 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:57534 10 6452 1 2025-11-21 18:39:04.195 00:04:00.289 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-21 18:43:23.630 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:46230 10 6452 1 2025-11-21 18:44:23.993 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:38344 10 6452 1 2025-11-21 18:45:24.395 00:00:23.937 TCP 1.101.0.1:3000 -> 23.104.0.1:60474 10 6452 1 2025-11-21 18:45:54.902 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 18:45:54.937 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 18:45:55.010 00:00:00.038 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 18:45:55.126 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 18:45:55.020 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 18:46:38.376 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:34150 10 6452 1 2025-11-21 18:43:04.199 00:04:00.285 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-21 18:47:38.775 00:00:10.397 TCP 1.101.0.1:3000 -> 23.104.0.1:48810 12 10375 1 2025-11-21 18:44:04.196 00:04:00.290 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-21 18:48:39.213 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:33696 10 6452 1 2025-11-21 18:49:39.616 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:60380 10 6452 1 2025-11-21 18:50:40.011 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56542 10 6452 1 2025-11-21 18:50:55.119 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 18:50:55.185 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 18:50:55.047 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 18:50:55.050 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 18:50:55.036 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 18:51:40.418 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:57050 10 6452 1 2025-11-21 18:48:04.201 00:04:00.284 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-21 18:52:40.830 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37812 10 6452 1 2025-11-21 18:49:04.200 00:04:00.289 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-21 18:53:41.231 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33924 10 6452 1 2025-11-21 18:54:41.635 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50040 10 6452 1 2025-11-21 18:55:42.041 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:42236 10 6452 1 2025-11-21 18:55:54.987 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 18:55:55.219 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 18:55:55.031 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 18:55:55.099 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 18:55:55.182 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 18:56:42.450 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:59996 10 6452 1 2025-11-21 18:53:04.204 00:04:00.285 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-21 18:57:42.817 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:43188 10 6452 1 2025-11-21 18:54:04.203 00:04:00.290 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 Summary: total flows: 144, total bytes: 418763, total packets: 1020, avg bps: 886, avg pps: 0, avg bpp: 410 Time window: 2025-11-21 17:55:04 - 2025-11-21 18:58:04 Total flows processed: 144, passed: 144, Blocks skipped: 0, Bytes read: 15040 Sys: 0.0042s User: 0.0008s Wall: 0.0018s flows/second: 80039.7 Runtime: 0.0018s