Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-09 14:53:57.822 00:06:00.079 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-09 14:58:57.310 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:56368 10 6452 1 2025-11-09 15:00:02.496 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 15:00:02.346 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 15:00:02.497 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 15:00:02.700 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 15:00:02.580 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 14:59:57.719 00:00:10.942 TCP 1.101.0.1:3000 -> 23.104.0.1:50028 10 6452 1 2025-11-09 15:00:58.706 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:55052 10 6452 1 2025-11-09 15:01:59.102 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:53456 10 6452 1 2025-11-09 15:02:59.519 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:45924 10 6452 1 2025-11-09 15:03:59.885 00:00:10.493 TCP 1.101.0.1:3000 -> 23.104.0.1:50708 12 6556 1 2025-11-09 14:59:57.828 00:06:00.080 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-09 15:05:02.330 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 15:05:02.334 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 15:05:02.244 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 15:05:02.247 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 15:05:02.330 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 15:05:00.419 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49884 10 6452 1 2025-11-09 15:00:57.827 00:06:00.084 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-09 15:06:00.827 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:33346 10 6452 1 2025-11-09 15:07:01.230 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:57154 10 6452 1 2025-11-09 15:08:01.597 00:00:10.984 TCP 1.101.0.1:3000 -> 23.104.0.1:57150 10 6452 1 2025-11-09 15:09:02.622 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:36786 10 6452 1 2025-11-09 15:10:02.574 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 15:10:02.492 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 15:10:02.345 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 15:10:02.491 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 15:10:02.227 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 15:10:03.035 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:45464 10 6452 1 2025-11-09 15:11:03.438 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53240 10 6452 1 2025-11-09 15:06:57.830 00:06:00.080 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-09 15:12:03.843 00:00:10.397 TCP 1.101.0.1:3000 -> 23.104.0.1:43012 10 6452 1 2025-11-09 15:07:57.829 00:06:00.084 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-09 15:13:04.273 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55726 10 6452 1 2025-11-09 15:14:04.674 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47766 10 6452 1 2025-11-09 15:15:02.379 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 15:15:02.427 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 15:15:02.470 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 15:15:02.467 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 15:15:02.553 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 15:15:05.105 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:55910 10 6452 1 2025-11-09 15:16:05.466 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:54828 10 6452 1 2025-11-09 15:17:05.827 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:48664 10 6452 1 2025-11-09 15:18:06.227 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:58278 10 6452 1 2025-11-09 15:13:57.831 00:06:00.081 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-09 15:19:06.627 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53736 10 6452 1 2025-11-09 15:14:57.829 00:06:00.086 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-09 15:20:02.754 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 15:20:02.670 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 15:20:02.710 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 15:20:02.670 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 15:20:02.820 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 15:20:07.030 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34102 10 6452 1 2025-11-09 15:21:07.437 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58656 10 6452 1 2025-11-09 15:22:07.842 00:00:10.344 TCP 1.101.0.1:3000 -> 23.104.0.1:37156 10 6452 1 2025-11-09 15:23:08.225 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:46194 10 6452 1 2025-11-09 15:24:08.587 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:54148 10 6452 1 2025-11-09 15:25:02.660 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 15:25:03.250 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 15:25:02.662 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 15:25:02.518 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 15:25:02.745 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 15:25:08.987 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47380 10 6452 1 2025-11-09 15:20:57.834 00:06:00.099 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-09 15:26:09.390 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:50262 10 6452 1 2025-11-09 15:21:57.831 00:06:00.105 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-09 15:27:09.790 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:36814 10 6452 1 2025-11-09 15:28:10.204 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37902 10 6452 1 2025-11-09 15:29:10.605 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:51604 10 6452 1 2025-11-09 15:30:02.778 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 15:30:02.836 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 15:30:02.709 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 15:30:02.778 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 15:30:02.792 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 15:30:11.006 00:00:10.537 TCP 1.101.0.1:3000 -> 23.104.0.1:42658 10 6452 1 2025-11-09 15:31:11.582 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39976 10 6452 1 2025-11-09 15:32:11.991 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:51870 10 6452 1 2025-11-09 15:27:57.863 00:06:00.071 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-09 15:33:12.354 00:00:10.865 TCP 1.101.0.1:3000 -> 23.104.0.1:40318 10 6452 1 2025-11-09 15:28:57.846 00:06:00.091 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-09 15:34:13.257 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46646 10 6452 1 2025-11-09 15:35:02.888 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 15:35:02.981 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 15:35:02.808 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 15:35:03.070 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 15:35:02.890 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 15:35:13.660 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55426 10 6452 1 2025-11-09 15:36:14.071 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:32768 10 6452 1 2025-11-09 15:37:14.482 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:44434 10 6452 1 2025-11-09 15:38:14.882 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:50526 10 6452 1 2025-11-09 15:39:15.290 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:40168 10 6452 1 2025-11-09 15:34:57.850 00:06:00.086 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-09 15:40:03.070 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 15:40:02.930 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 15:40:03.073 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 15:40:03.065 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 15:40:03.155 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 15:40:15.685 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33114 10 6452 1 2025-11-09 15:35:57.847 00:06:00.093 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-09 15:41:16.110 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:33998 10 6452 1 2025-11-09 15:42:16.529 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:55172 10 6452 1 2025-11-09 15:43:16.885 00:00:10.544 TCP 1.101.0.1:3000 -> 23.104.0.1:40944 14 14292 1 2025-11-09 15:44:17.470 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46706 10 6452 1 2025-11-09 15:45:03.350 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 15:45:03.154 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 15:45:03.191 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 15:45:03.409 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 15:45:03.274 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 15:45:17.869 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:37304 10 6452 1 2025-11-09 15:46:18.278 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44838 10 6452 1 2025-11-09 15:41:57.857 00:06:00.088 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-09 15:47:18.679 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:55630 10 6452 1 2025-11-09 15:42:57.854 00:06:00.092 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-09 15:48:19.115 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:47930 10 6452 1 2025-11-09 15:49:19.522 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:40000 10 6452 1 2025-11-09 15:50:03.567 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 15:50:03.318 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 15:50:03.535 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 15:50:03.306 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 15:50:03.619 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 15:50:19.883 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35336 12 6556 1 2025-11-09 15:51:20.288 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:36336 10 6452 1 2025-11-09 15:52:20.670 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42982 10 6452 1 2025-11-09 15:53:21.107 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:36186 10 6452 1 2025-11-09 15:48:57.891 00:06:00.058 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-09 15:54:21.507 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43990 10 6452 1 2025-11-09 15:55:03.199 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 15:55:03.252 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 15:55:03.412 00:00:00.052 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 15:55:03.412 00:00:00.052 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 15:49:57.892 00:06:00.061 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-09 15:55:03.496 00:00:00.052 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 15:55:21.916 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:48916 10 6452 1 2025-11-09 15:56:22.312 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:58634 10 6452 1 2025-11-09 15:57:22.720 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:41976 10 6452 1 2025-11-09 15:58:23.132 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55006 10 6452 1 Summary: total flows: 137, total bytes: 424925, total packets: 1026, avg bps: 877, avg pps: 0, avg bpp: 414 Time window: 2025-11-09 14:53:57 - 2025-11-09 15:58:33 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0045s User: 0.0018s Wall: 0.0019s flows/second: 73452.6 Runtime: 0.0019s