Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-11 23:53:59.296 00:06:00.138 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-11 23:58:45.982 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40566 10 6452 1 2025-11-11 23:54:59.300 00:06:00.134 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-11 23:59:46.386 00:00:10.399 TCP 1.101.0.1:3000 -> 23.104.0.1:51438 10 6452 1 2025-11-12 00:00:46.794 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:49016 10 6452 1 2025-11-12 00:01:10.845 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 00:01:11.001 00:00:00.040 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 00:01:11.085 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 00:01:11.038 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 00:01:11.083 00:00:00.041 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 00:01:47.192 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:44736 10 6452 1 2025-11-12 00:02:47.593 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49536 10 6452 1 2025-11-12 00:03:47.997 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56266 10 6452 1 2025-11-12 00:04:48.400 00:00:10.836 TCP 1.101.0.1:3000 -> 23.104.0.1:58564 10 6452 1 2025-11-12 00:05:49.272 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:40740 10 6452 1 2025-11-12 00:00:59.302 00:06:00.134 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-12 00:06:10.679 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 00:06:10.651 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 00:06:10.870 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 00:06:11.081 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 00:06:10.998 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 00:06:49.696 00:00:10.401 TCP 1.101.0.1:3000 -> 23.104.0.1:43808 10 6452 1 2025-11-12 00:01:59.305 00:06:00.129 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-12 00:07:50.223 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:34144 10 6452 1 2025-11-12 00:08:50.637 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:44338 10 6452 1 2025-11-12 00:09:51.037 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60550 10 6452 1 2025-11-12 00:11:10.894 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 00:10:51.439 00:00:15.053 TCP 1.101.0.1:3000 -> 23.104.0.1:58806 10 6452 1 2025-11-12 00:11:11.006 00:00:00.047 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 00:11:11.113 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 00:11:11.110 00:00:00.027 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 00:11:11.196 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 00:11:56.549 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48702 10 6452 1 2025-11-12 00:07:59.304 00:06:00.135 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-12 00:12:56.950 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:53970 10 6452 1 2025-11-12 00:08:59.306 00:06:00.130 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-12 00:13:57.359 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34128 10 6452 1 2025-11-12 00:14:57.770 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:36900 10 6452 1 2025-11-12 00:15:58.186 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:44518 10 6452 1 2025-11-12 00:16:11.245 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 00:16:11.299 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 00:16:11.096 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 00:16:11.162 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 00:16:11.296 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 00:16:58.586 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45844 10 6452 1 2025-11-12 00:17:58.988 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:50066 10 6452 1 2025-11-12 00:18:59.360 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:37238 10 6452 1 2025-11-12 00:14:59.307 00:06:00.136 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-12 00:19:59.758 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:57630 10 6452 1 2025-11-12 00:15:59.308 00:06:00.131 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-12 00:21:00.182 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:40166 10 6452 1 2025-11-12 00:21:11.588 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 00:21:11.566 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 00:21:11.275 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 00:21:11.505 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 00:21:11.656 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 00:22:00.589 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56442 10 6452 1 2025-11-12 00:23:00.987 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:35652 10 6452 1 2025-11-12 00:24:01.397 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:52976 10 6452 1 2025-11-12 00:25:01.767 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:34592 10 6452 1 2025-11-12 00:26:11.537 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 00:26:11.550 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 00:26:02.179 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57228 10 6452 1 2025-11-12 00:26:11.401 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 00:26:11.455 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 00:26:11.519 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 00:21:59.315 00:06:00.129 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-12 00:27:02.584 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35204 10 6452 1 2025-11-12 00:22:59.309 00:06:00.132 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-12 00:28:02.985 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:38396 10 6452 1 2025-11-12 00:29:03.384 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:42394 10 6452 1 2025-11-12 00:30:03.791 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:58924 10 6452 1 2025-11-12 00:31:11.338 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 00:31:11.143 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 00:31:04.197 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:40738 10 6452 1 2025-11-12 00:31:11.534 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 00:31:11.238 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 00:31:11.617 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 00:32:04.598 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:33720 10 6452 1 2025-11-12 00:33:04.964 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:39704 10 6452 1 2025-11-12 00:28:59.308 00:06:00.137 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-12 00:34:05.375 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41312 10 6452 1 2025-11-12 00:29:59.310 00:06:00.132 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-12 00:35:05.774 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:37576 10 6452 1 2025-11-12 00:36:11.652 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 00:36:11.559 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 00:36:11.604 00:00:00.026 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 00:36:11.567 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 00:36:11.674 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 00:36:06.195 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44488 10 6452 1 2025-11-12 00:37:06.601 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50104 10 6452 1 2025-11-12 00:38:07.006 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55460 10 6452 1 2025-11-12 00:39:07.409 00:00:10.441 TCP 1.101.0.1:3000 -> 23.104.0.1:36642 12 10375 1 2025-11-12 00:40:07.897 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:35844 10 6452 1 2025-11-12 00:35:59.313 00:06:00.133 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-12 00:41:11.768 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 00:41:11.811 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 00:41:11.616 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 00:41:11.687 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 00:41:11.916 00:00:00.026 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 00:41:08.267 00:00:10.410 TCP 1.101.0.1:3000 -> 23.104.0.1:58688 10 6452 1 2025-11-12 00:36:59.318 00:06:00.127 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-12 00:42:08.730 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:39780 10 6452 1 2025-11-12 00:43:09.107 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:41710 10 6452 1 2025-11-12 00:44:09.509 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34710 10 6452 1 2025-11-12 00:45:09.915 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:48150 10 6452 1 2025-11-12 00:46:11.619 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 00:46:11.951 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 00:46:11.777 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 00:46:11.784 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 00:46:11.862 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 00:46:10.332 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42716 10 6452 1 2025-11-12 00:47:10.739 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41464 10 6452 1 2025-11-12 00:42:59.316 00:06:00.132 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-12 00:48:11.145 00:00:11.115 TCP 1.101.0.1:3000 -> 23.104.0.1:43974 10 6452 1 2025-11-12 00:43:59.318 00:06:00.129 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-12 00:49:12.301 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60854 10 6452 1 2025-11-12 00:50:12.702 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48514 10 6452 1 2025-11-12 00:51:12.068 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 00:51:11.884 00:00:00.029 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 00:51:11.767 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 00:51:11.985 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 00:51:11.885 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 00:51:13.112 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55686 10 6452 1 2025-11-12 00:52:13.512 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:53130 10 6452 1 2025-11-12 00:53:13.873 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:33804 10 6452 1 2025-11-12 00:54:14.279 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53318 10 6452 1 2025-11-12 00:49:59.315 00:06:00.135 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-12 00:55:14.683 00:00:14.114 TCP 1.101.0.1:3000 -> 23.104.0.1:56590 10 6452 1 2025-11-12 00:50:59.320 00:06:00.130 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-12 00:56:11.958 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 00:56:11.908 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 00:56:12.002 00:00:00.039 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 00:56:11.958 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 00:56:12.084 00:00:00.041 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 00:56:18.884 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:50004 10 6452 1 2025-11-12 00:57:19.282 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:59926 10 6452 1 2025-11-12 00:58:19.638 00:00:10.796 TCP 1.101.0.1:3000 -> 23.104.0.1:45446 10 6452 1 Summary: total flows: 138, total bytes: 421661, total packets: 1034, avg bps: 871, avg pps: 0, avg bpp: 407 Time window: 2025-11-11 23:53:59 - 2025-11-12 00:58:30 Total flows processed: 138, passed: 138, Blocks skipped: 0, Bytes read: 14416 Sys: 0.0047s User: 0.0016s Wall: 0.0024s flows/second: 57048.5 Runtime: 0.0024s