Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-09 12:53:57.760 00:06:00.095 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-09 12:59:05.146 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:35440 10 6452 1 2025-11-09 12:54:57.757 00:06:00.102 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-09 13:00:00.344 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 12:59:59.965 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 12:59:59.957 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 13:00:00.261 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 13:00:00.269 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 13:00:05.552 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:33730 10 6452 1 2025-11-09 13:01:05.913 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:58038 10 6452 1 2025-11-09 13:02:06.280 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33132 10 6452 1 2025-11-09 13:03:06.682 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47346 10 6452 1 2025-11-09 13:04:07.108 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48608 10 6452 1 2025-11-09 13:05:00.162 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 13:04:59.845 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 13:04:59.627 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 13:05:00.079 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 13:05:00.284 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 13:05:07.523 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:53676 10 6452 1 2025-11-09 13:00:57.762 00:06:00.100 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-09 13:06:07.889 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:36464 12 6556 1 2025-11-09 13:01:57.760 00:06:00.105 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-09 13:07:08.312 00:00:10.511 TCP 1.101.0.1:3000 -> 23.104.0.1:55024 10 6452 1 2025-11-09 13:08:08.859 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:51864 10 6452 1 2025-11-09 13:09:09.275 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:41450 10 6452 1 2025-11-09 13:10:00.219 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 13:10:00.001 00:00:00.036 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 13:10:00.094 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 13:09:59.960 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 13:10:00.178 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 13:10:09.676 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:42568 10 6452 1 2025-11-09 13:11:10.034 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55638 10 6452 1 2025-11-09 13:12:10.438 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:45072 10 6452 1 2025-11-09 13:07:57.778 00:06:00.086 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-09 13:13:10.816 00:00:10.423 TCP 1.101.0.1:3000 -> 23.104.0.1:36640 10 6452 1 2025-11-09 13:08:57.777 00:06:00.091 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-09 13:14:11.298 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:37640 10 6452 1 2025-11-09 13:15:00.278 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 13:15:00.085 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 13:15:00.122 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 13:15:00.195 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 13:15:00.156 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 13:15:11.700 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49998 10 6452 1 2025-11-09 13:16:12.110 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49452 10 6452 1 2025-11-09 13:17:12.513 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:58634 10 6452 1 2025-11-09 13:18:12.921 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:43454 10 6452 1 2025-11-09 13:19:13.340 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:58582 10 6452 1 2025-11-09 13:20:00.408 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 13:20:00.380 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 13:20:00.359 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 13:20:00.407 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 13:14:57.786 00:06:00.081 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-09 13:20:00.441 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 13:20:13.755 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:60754 10 6452 1 2025-11-09 13:15:57.786 00:06:00.084 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-09 13:21:14.167 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:33916 10 6452 1 2025-11-09 13:22:14.523 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:37748 10 6452 1 2025-11-09 13:23:14.924 00:00:10.344 TCP 1.101.0.1:3000 -> 23.104.0.1:42716 10 6452 1 2025-11-09 13:24:15.304 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:57602 10 6452 1 2025-11-09 13:25:01.178 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 13:25:01.120 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 13:25:01.251 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 13:25:01.364 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 13:25:01.334 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 13:25:15.706 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:38298 10 6452 1 2025-11-09 13:26:16.094 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45468 10 6452 1 2025-11-09 13:21:57.790 00:06:00.082 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-09 13:27:16.492 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:44802 10 6452 1 2025-11-09 13:22:57.789 00:06:00.086 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-09 13:28:16.897 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:46346 10 6452 1 2025-11-09 13:29:17.264 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:60258 10 6452 1 2025-11-09 13:30:00.537 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 13:30:00.454 00:00:00.026 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 13:30:00.699 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 13:30:00.454 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 13:30:00.456 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 13:30:17.682 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53308 10 6452 1 2025-11-09 13:31:18.106 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:58982 10 6452 1 2025-11-09 13:32:18.501 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59560 10 6452 1 2025-11-09 13:33:18.904 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43676 10 6452 1 2025-11-09 13:28:57.794 00:06:00.080 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-09 13:34:19.308 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38742 10 6452 1 2025-11-09 13:35:00.625 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 13:35:00.528 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 13:35:00.555 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 13:35:00.412 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 13:29:57.793 00:06:00.084 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-09 13:35:00.638 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 13:35:19.714 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:51296 10 6452 1 2025-11-09 13:36:20.116 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:48562 10 6452 1 2025-11-09 13:37:20.522 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:49046 10 6452 1 2025-11-09 13:38:20.883 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:58008 10 6452 1 2025-11-09 13:39:21.259 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:33268 10 6452 1 2025-11-09 13:40:00.763 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 13:40:00.668 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 13:40:00.748 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 13:40:00.679 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 13:40:00.681 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 13:40:21.622 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60722 10 6452 1 2025-11-09 13:35:57.797 00:06:00.078 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-09 13:41:22.042 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:53662 10 6452 1 2025-11-09 13:36:57.795 00:06:00.083 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-09 13:42:22.414 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48726 10 6452 1 2025-11-09 13:43:22.815 00:00:11.785 TCP 1.101.0.1:3000 -> 23.104.0.1:35422 10 6452 1 2025-11-09 13:44:24.648 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:60826 10 6452 1 2025-11-09 13:45:00.863 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 13:45:00.949 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 13:45:00.707 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 13:45:00.781 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 13:45:00.948 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 13:45:25.060 00:00:11.002 TCP 1.101.0.1:3000 -> 23.104.0.1:60134 10 6452 1 2025-11-09 13:46:26.115 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44018 10 6452 1 2025-11-09 13:47:26.525 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54090 10 6452 1 2025-11-09 13:42:57.798 00:06:00.082 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-09 13:48:26.926 00:00:10.539 TCP 1.101.0.1:3000 -> 23.104.0.1:46906 14 14298 1 2025-11-09 13:43:57.800 00:06:00.082 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-09 13:49:27.509 00:00:10.683 TCP 1.101.0.1:3000 -> 23.104.0.1:45588 10 6452 1 2025-11-09 13:50:00.810 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 13:50:00.736 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 13:50:00.820 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 13:50:00.825 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 13:50:00.904 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 13:50:28.222 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:40494 10 6452 1 2025-11-09 13:51:28.622 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48458 10 6452 1 2025-11-09 13:52:29.028 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:40964 10 6452 1 2025-11-09 13:53:29.431 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48688 10 6452 1 2025-11-09 13:54:29.840 00:00:10.350 TCP 1.101.0.1:3000 -> 23.104.0.1:56712 10 6452 1 2025-11-09 13:55:00.761 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 13:55:00.678 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 13:55:00.954 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 13:49:57.806 00:06:00.079 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-09 13:55:00.954 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 13:55:00.846 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 13:55:30.218 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36756 10 6452 1 2025-11-09 13:50:57.804 00:06:00.085 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-09 13:56:30.624 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:49572 10 6452 1 2025-11-09 13:57:30.982 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:42660 10 6452 1 2025-11-09 13:58:31.386 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:60588 10 6452 1 Summary: total flows: 138, total bytes: 425688, total packets: 1038, avg bps: 876, avg pps: 0, avg bpp: 410 Time window: 2025-11-09 12:53:57 - 2025-11-09 13:58:41 Total flows processed: 138, passed: 138, Blocks skipped: 0, Bytes read: 14416 Sys: 0.0050s User: 0.0010s Wall: 0.0025s flows/second: 56283.0 Runtime: 0.0025s