Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-09 19:54:57.972 00:05:00.112 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-09 19:59:01.918 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:47632 10 6452 1 2025-11-09 20:00:08.480 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 20:00:08.331 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 20:00:08.347 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 20:00:08.399 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 20:00:08.147 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 20:00:02.322 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:59230 10 6452 1 2025-11-09 20:01:02.687 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40604 10 6452 1 2025-11-09 20:02:03.108 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:46784 10 6452 1 2025-11-09 20:03:03.516 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:50812 10 6452 1 2025-11-09 19:59:57.978 00:05:00.106 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-09 20:04:03.930 00:00:10.356 TCP 1.101.0.1:3000 -> 23.104.0.1:50218 10 6452 1 2025-11-09 20:00:57.975 00:05:00.111 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-09 20:05:08.566 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 20:05:08.416 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 20:05:08.446 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 20:05:08.483 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 20:05:08.699 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 20:05:04.326 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:41880 10 6452 1 2025-11-09 20:06:04.691 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:60320 10 6452 1 2025-11-09 20:07:05.109 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:40812 10 6452 1 2025-11-09 20:08:05.515 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34130 10 6452 1 2025-11-09 20:09:05.923 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:51886 10 6452 1 2025-11-09 20:05:57.980 00:05:00.105 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-09 20:10:08.533 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 20:10:08.554 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 20:10:08.371 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 20:10:08.375 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 20:10:08.453 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 20:10:06.330 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54386 10 6452 1 2025-11-09 20:06:57.979 00:05:00.109 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-09 20:11:06.729 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:51890 10 6452 1 2025-11-09 20:12:07.140 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:48448 10 6452 1 2025-11-09 20:13:07.508 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54424 10 6452 1 2025-11-09 20:14:07.911 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:60852 10 6452 1 2025-11-09 20:15:08.630 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 20:15:08.627 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 20:15:08.636 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 20:15:08.626 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 20:15:08.718 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 20:15:08.317 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45096 10 6452 1 2025-11-09 20:11:57.982 00:05:00.104 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-09 20:16:08.719 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:53026 10 6452 1 2025-11-09 20:12:57.980 00:05:00.109 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-09 20:17:09.131 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:46712 10 6452 1 2025-11-09 20:18:09.539 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:36172 10 6452 1 2025-11-09 20:19:09.908 00:00:10.743 TCP 1.101.0.1:3000 -> 23.104.0.1:47188 12 6556 1 2025-11-09 20:20:08.825 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 20:20:08.803 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 20:20:08.820 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 20:20:08.766 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 20:20:08.903 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 20:20:10.688 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42874 10 6452 1 2025-11-09 20:21:11.113 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39794 10 6452 1 2025-11-09 20:17:57.987 00:05:00.101 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-09 20:22:11.520 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:45442 10 6452 1 2025-11-09 20:18:57.984 00:05:00.107 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-09 20:23:11.933 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:39112 10 6452 1 2025-11-09 20:24:12.360 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:57770 10 6452 1 2025-11-09 20:25:09.006 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 20:25:08.744 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 20:25:08.653 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 20:25:08.922 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 20:25:08.920 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 20:25:12.762 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:36406 10 6452 1 2025-11-09 20:26:13.170 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58298 10 6452 1 2025-11-09 20:27:13.572 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43616 10 6452 1 2025-11-09 20:23:57.988 00:05:00.101 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-09 20:28:13.976 00:00:10.438 TCP 1.101.0.1:3000 -> 23.104.0.1:49226 12 10369 1 2025-11-09 20:24:57.985 00:05:00.107 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-09 20:29:14.455 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:54356 10 6452 1 2025-11-09 20:30:09.033 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 20:30:08.946 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 20:30:08.592 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 20:30:08.950 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 20:30:08.738 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 20:30:14.821 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40384 10 6452 1 2025-11-09 20:31:15.220 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36756 10 6452 1 2025-11-09 20:32:15.625 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:41572 10 6452 1 2025-11-09 20:33:16.046 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:42850 10 6452 1 2025-11-09 20:29:57.987 00:05:00.102 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-09 20:34:16.451 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50674 10 6452 1 2025-11-09 20:30:57.986 00:05:00.108 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-09 20:35:09.217 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 20:35:09.150 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 20:35:09.279 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 20:35:09.284 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 20:35:09.361 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 20:35:16.853 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:47272 10 6452 1 2025-11-09 20:36:17.274 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:48624 10 6452 1 2025-11-09 20:37:17.693 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53726 10 6452 1 2025-11-09 20:38:18.110 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:41428 10 6452 1 2025-11-09 20:39:18.471 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:41876 10 6452 1 2025-11-09 20:35:57.991 00:05:00.099 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-09 20:40:09.179 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 20:40:08.793 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 20:40:09.266 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 20:40:09.234 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 20:40:09.349 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 20:40:18.877 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:42668 10 6452 1 2025-11-09 20:36:57.988 00:05:00.105 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-09 20:41:19.239 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:42926 10 6452 1 2025-11-09 20:42:19.648 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:40910 10 6452 1 2025-11-09 20:43:20.052 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:44174 10 6452 1 2025-11-09 20:44:20.463 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:49820 10 6452 1 2025-11-09 20:45:09.296 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 20:45:09.214 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 20:45:09.161 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 20:45:09.303 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 20:45:09.096 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 20:45:20.830 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:51864 10 6452 1 2025-11-09 20:41:57.993 00:05:00.100 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-09 20:46:21.234 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:43478 10 6452 1 2025-11-09 20:42:57.989 00:05:00.105 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-09 20:47:21.638 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51124 10 6452 1 2025-11-09 20:48:22.057 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36138 10 6452 1 2025-11-09 20:49:22.460 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55124 10 6452 1 2025-11-09 20:50:09.390 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 20:50:09.214 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 20:50:09.237 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 20:50:09.308 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 20:50:09.372 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 20:50:22.863 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:38958 10 6452 1 2025-11-09 20:51:23.275 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:59004 10 6452 1 2025-11-09 20:47:57.995 00:05:00.107 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-09 20:52:23.639 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40478 10 6452 1 2025-11-09 20:48:57.991 00:05:00.112 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-09 20:53:24.041 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:50136 10 6452 1 2025-11-09 20:54:24.450 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:60956 10 6452 1 2025-11-09 20:55:09.405 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 20:55:09.206 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 20:55:09.408 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 20:55:09.322 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 20:55:09.534 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 20:55:24.807 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:39282 10 6452 1 2025-11-09 20:56:25.216 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:33228 10 6452 1 2025-11-09 20:57:25.612 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:48812 10 6452 1 2025-11-09 20:53:57.996 00:05:00.109 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-09 20:58:26.029 00:00:10.445 TCP 1.101.0.1:3000 -> 23.104.0.1:42510 12 10375 1 Summary: total flows: 140, total bytes: 424944, total packets: 1026, avg bps: 885, avg pps: 0, avg bpp: 414 Time window: 2025-11-09 19:54:57 - 2025-11-09 20:58:58 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0041s User: 0.0010s Wall: 0.0012s flows/second: 116577.8 Runtime: 0.0012s