Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-10 13:53:58.500 00:06:00.058 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-10 13:53:58.499 00:06:00.063 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-10 13:58:59.472 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46822 10 6452 1 2025-11-10 13:59:59.876 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:48960 10 6452 1 2025-11-10 14:00:29.993 00:00:00.038 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-10 14:00:29.759 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-10 14:00:29.862 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-10 14:00:29.742 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-10 14:00:29.944 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-10 14:01:00.242 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:48942 10 6452 1 2025-11-10 14:02:00.603 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39946 10 6452 1 2025-11-10 14:03:01.004 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47308 10 6452 1 2025-11-10 14:04:01.405 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:51760 10 6452 1 2025-11-10 14:05:01.774 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:52568 10 6452 1 2025-11-10 14:05:30.181 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-10 14:05:29.981 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-10 14:05:29.866 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-10 14:05:30.100 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-10 14:05:30.099 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-10 14:00:58.500 00:06:00.065 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-10 14:00:58.504 00:06:00.059 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-10 14:06:02.189 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60082 10 6452 1 2025-11-10 14:07:02.593 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:60492 10 6452 1 2025-11-10 14:08:02.997 00:00:10.399 TCP 1.101.0.1:3000 -> 23.104.0.1:54042 12 10369 1 2025-11-10 14:09:03.444 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:51146 10 6452 1 2025-11-10 14:10:03.853 00:00:10.350 TCP 1.101.0.1:3000 -> 23.104.0.1:58598 10 6452 1 2025-11-10 14:10:30.348 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-10 14:10:30.189 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-10 14:10:30.172 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-10 14:10:30.239 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-10 14:10:30.256 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-10 14:11:04.240 00:00:10.596 TCP 1.101.0.1:3000 -> 23.104.0.1:52788 10 6452 1 2025-11-10 14:12:04.876 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:52028 10 6452 1 2025-11-10 14:07:58.505 00:06:00.057 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-10 14:07:58.502 00:06:00.063 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-10 14:13:05.283 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:36788 10 6452 1 2025-11-10 14:14:05.689 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:58206 10 6452 1 2025-11-10 14:15:06.112 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:53162 10 6452 1 2025-11-10 14:15:30.245 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-10 14:15:30.208 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-10 14:15:30.299 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-10 14:15:30.250 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-10 14:15:30.382 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-10 14:16:06.525 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51380 10 6452 1 2025-11-10 14:17:06.927 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:54680 10 6452 1 2025-11-10 14:18:07.346 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:60252 10 6452 1 2025-11-10 14:19:07.764 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:33126 10 6452 1 2025-11-10 14:14:58.510 00:06:00.055 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-10 14:14:58.506 00:06:00.060 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-10 14:20:08.128 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43880 10 6452 1 2025-11-10 14:20:30.305 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-10 14:20:30.365 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-10 14:20:30.379 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-10 14:20:30.438 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-10 14:20:30.461 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-10 14:21:08.528 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:40676 10 6452 1 2025-11-10 14:22:08.930 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:34182 10 6452 1 2025-11-10 14:23:09.346 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53468 10 6452 1 2025-11-10 14:24:09.746 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:55300 10 6452 1 2025-11-10 14:25:10.114 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:32904 10 6452 1 2025-11-10 14:25:30.532 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-10 14:25:30.343 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-10 14:25:30.484 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-10 14:25:30.397 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-10 14:25:30.566 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-10 14:26:10.479 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:48382 10 6452 1 2025-11-10 14:21:58.509 00:06:00.055 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-10 14:21:58.508 00:06:00.060 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-10 14:27:10.841 00:00:10.393 TCP 1.101.0.1:3000 -> 23.104.0.1:51764 10 6452 1 2025-11-10 14:28:11.268 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:33524 10 6452 1 2025-11-10 14:29:11.629 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:37972 10 6452 1 2025-11-10 14:30:12.031 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51268 10 6452 1 2025-11-10 14:30:31.326 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-10 14:30:31.088 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-10 14:30:31.038 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-10 14:30:31.262 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-10 14:30:31.121 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-10 14:31:12.438 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38676 10 6452 1 2025-11-10 14:32:12.844 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:51264 10 6452 1 2025-11-10 14:33:13.261 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56654 10 6452 1 2025-11-10 14:28:58.509 00:06:00.060 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-10 14:28:58.512 00:06:00.055 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-10 14:34:13.668 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:47132 10 6452 1 2025-11-10 14:35:14.123 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44234 10 6452 1 2025-11-10 14:35:30.696 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-10 14:35:30.583 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-10 14:35:30.709 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-10 14:35:30.531 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-10 14:35:30.792 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-10 14:36:14.526 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:56950 10 6452 1 2025-11-10 14:37:14.928 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:56974 10 6452 1 2025-11-10 14:38:15.357 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51408 10 6452 1 2025-11-10 14:39:15.760 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:48000 10 6452 1 2025-11-10 14:40:30.783 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-10 14:40:30.702 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-10 14:40:16.189 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34784 10 6452 1 2025-11-10 14:40:30.512 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-10 14:40:30.701 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-10 14:40:30.778 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-10 14:35:58.525 00:06:00.043 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-10 14:35:58.522 00:06:00.048 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-10 14:41:16.601 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:42638 10 6452 1 2025-11-10 14:42:17.022 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36474 10 6452 1 2025-11-10 14:43:17.424 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:45302 10 6452 1 2025-11-10 14:44:17.794 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57992 10 6452 1 2025-11-10 14:45:30.905 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-10 14:45:30.799 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-10 14:45:30.774 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-10 14:45:18.195 00:00:10.405 TCP 1.101.0.1:3000 -> 23.104.0.1:42668 10 6452 1 2025-11-10 14:45:30.611 00:00:00.028 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-10 14:45:30.987 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-10 14:46:18.629 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:49636 10 6452 1 2025-11-10 14:47:19.056 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:37426 10 6452 1 2025-11-10 14:42:58.525 00:06:00.044 TCP 179.21.23.21:38570 -> 179.21.23.23:179 13 809 1 2025-11-10 14:42:58.522 00:06:00.049 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-10 14:48:19.457 00:00:11.523 TCP 1.101.0.1:3000 -> 23.104.0.1:52818 10 6452 1 2025-11-10 14:49:21.025 00:00:10.355 TCP 1.101.0.1:3000 -> 23.104.0.1:41470 10 6452 1 2025-11-10 14:50:30.858 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-10 14:50:30.865 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-10 14:50:30.955 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-10 14:50:30.775 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-10 14:50:21.419 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58096 10 6452 1 2025-11-10 14:50:31.013 00:00:00.045 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-10 14:51:21.818 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36430 10 6452 1 2025-11-10 14:52:22.222 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57786 10 6452 1 2025-11-10 14:53:22.622 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48460 10 6452 1 2025-11-10 14:54:23.029 00:00:10.405 TCP 1.101.0.1:3000 -> 23.104.0.1:58956 10 6452 1 2025-11-10 14:49:58.535 00:06:00.039 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-10 14:49:58.570 00:06:00.002 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 497 1 2025-11-10 14:55:30.936 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-10 14:55:30.946 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-10 14:55:31.259 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-10 14:55:31.108 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-10 14:55:23.475 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:56014 10 6452 1 2025-11-10 14:55:31.342 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-10 14:56:23.890 00:00:10.346 TCP 1.101.0.1:3000 -> 23.104.0.1:43088 10 6452 1 2025-11-10 14:57:24.276 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38768 10 6452 1 2025-11-10 14:58:24.675 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:49224 10 6452 1 Summary: total flows: 138, total bytes: 421239, total packets: 1026, avg bps: 869, avg pps: 0, avg bpp: 410 Time window: 2025-11-10 13:53:58 - 2025-11-10 14:58:35 Total flows processed: 138, passed: 138, Blocks skipped: 0, Bytes read: 14416 Sys: 0.0044s User: 0.0009s Wall: 0.0027s flows/second: 50511.7 Runtime: 0.0028s