Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-12 06:53:59.438 00:06:00.152 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-12 06:59:31.809 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48986 10 6452 1 2025-11-12 06:54:59.442 00:06:00.146 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-12 07:00:32.217 00:00:10.467 TCP 1.101.0.1:3000 -> 23.104.0.1:40558 10 6452 1 2025-11-12 07:01:19.374 00:00:00.029 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 07:01:19.077 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 07:01:19.239 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 07:01:19.320 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 07:01:19.321 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 07:01:32.722 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:45830 10 6452 1 2025-11-12 07:02:33.135 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48970 10 6452 1 2025-11-12 07:03:33.540 00:00:10.401 TCP 1.101.0.1:3000 -> 23.104.0.1:36722 12 10369 1 2025-11-12 07:04:33.977 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57984 10 6452 1 2025-11-12 07:05:34.377 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:55992 10 6452 1 2025-11-12 07:00:59.442 00:06:00.149 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-12 07:06:19.350 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 07:06:19.249 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 07:06:19.035 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 07:06:19.267 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 07:06:19.506 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 07:06:34.742 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:46828 10 6452 1 2025-11-12 07:01:59.445 00:06:00.146 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-12 07:07:35.113 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:57456 10 6452 1 2025-11-12 07:08:35.521 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:60224 10 6452 1 2025-11-12 07:09:35.929 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:55268 10 6452 1 2025-11-12 07:10:36.357 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55242 10 6452 1 2025-11-12 07:11:20.320 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 07:11:20.229 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 07:11:20.375 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 07:11:20.477 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 07:11:20.458 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 07:11:36.762 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:43902 10 6452 1 2025-11-12 07:12:37.133 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:35422 10 6452 1 2025-11-12 07:07:59.445 00:06:00.148 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-12 07:13:37.496 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:38116 10 6452 1 2025-11-12 07:08:59.450 00:06:00.143 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-12 07:14:37.897 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55528 10 6452 1 2025-11-12 07:15:38.299 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:49346 10 6452 1 2025-11-12 07:16:19.661 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 07:16:19.834 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 07:16:19.623 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 07:16:19.578 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 07:16:19.794 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 07:16:38.663 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57280 10 6452 1 2025-11-12 07:17:39.070 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:44926 10 6452 1 2025-11-12 07:18:39.478 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51734 10 6452 1 2025-11-12 07:19:39.878 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39862 10 6452 1 2025-11-12 07:14:59.446 00:06:00.149 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-12 07:20:40.287 00:00:10.414 TCP 1.101.0.1:3000 -> 23.104.0.1:52018 11 6504 1 2025-11-12 07:15:59.448 00:06:00.144 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-12 07:21:19.854 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 07:21:19.520 00:00:00.038 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 07:21:19.748 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 07:21:19.616 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 07:21:19.831 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 07:21:40.740 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:46028 10 6452 1 2025-11-12 07:22:41.146 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:44570 10 6452 1 2025-11-12 07:23:41.544 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55642 10 6452 1 2025-11-12 07:24:41.946 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:56674 10 6452 1 2025-11-12 07:25:42.322 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:41214 10 6452 1 2025-11-12 07:26:19.865 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 07:26:19.860 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 07:26:19.725 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 07:26:19.782 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 07:26:19.793 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 07:26:42.682 00:00:11.001 TCP 1.101.0.1:3000 -> 23.104.0.1:51062 10 6452 1 2025-11-12 07:21:59.447 00:06:00.150 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-12 07:27:43.721 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44546 10 6452 1 2025-11-12 07:22:59.450 00:06:00.145 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-12 07:28:44.127 00:00:10.441 TCP 1.101.0.1:3000 -> 23.104.0.1:36486 12 10375 1 2025-11-12 07:29:44.609 00:00:10.841 TCP 1.101.0.1:3000 -> 23.104.0.1:59954 10 6452 1 2025-11-12 07:30:45.489 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59488 10 6452 1 2025-11-12 07:31:20.072 00:00:00.040 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 07:31:19.928 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 07:31:19.882 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 07:31:19.990 00:00:00.041 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 07:31:20.061 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 07:31:45.900 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:44066 12 6556 1 2025-11-12 07:32:46.310 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:55154 10 6452 1 2025-11-12 07:28:59.448 00:06:00.150 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-12 07:33:46.722 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:57590 10 6452 1 2025-11-12 07:29:59.450 00:06:00.145 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-12 07:34:47.105 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:44598 10 6452 1 2025-11-12 07:35:47.507 00:00:10.853 TCP 1.101.0.1:3000 -> 23.104.0.1:44850 10 6452 1 2025-11-12 07:36:20.147 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 07:36:19.669 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 07:36:20.002 00:00:00.043 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 07:36:19.837 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 07:36:20.086 00:00:00.044 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 07:36:48.401 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:56848 10 6452 1 2025-11-12 07:37:48.766 00:00:10.556 TCP 1.101.0.1:3000 -> 23.104.0.1:35832 10 6452 1 2025-11-12 07:38:49.372 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:38426 10 6452 1 2025-11-12 07:39:49.772 00:00:10.710 TCP 1.101.0.1:3000 -> 23.104.0.1:49798 10 6452 1 2025-11-12 07:40:50.520 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44136 10 6452 1 2025-11-12 07:35:59.450 00:06:00.149 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-12 07:41:19.974 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 07:41:19.667 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 07:41:19.967 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 07:41:20.082 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 07:41:20.050 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 07:36:59.453 00:06:00.144 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-12 07:41:50.934 00:00:10.396 TCP 1.101.0.1:3000 -> 23.104.0.1:59052 10 6452 1 2025-11-12 07:42:51.368 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48850 10 6452 1 2025-11-12 07:43:51.770 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:51798 10 6452 1 2025-11-12 07:44:52.177 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:48898 10 6452 1 2025-11-12 07:45:52.543 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40840 10 6452 1 2025-11-12 07:46:20.341 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 07:46:20.085 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 07:46:20.214 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 07:46:20.121 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 07:46:20.297 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 07:46:52.945 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:40160 10 6452 1 2025-11-12 07:42:59.453 00:06:00.147 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-12 07:47:53.354 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:51642 10 6452 1 2025-11-12 07:43:59.455 00:06:00.143 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-12 07:48:53.752 00:00:10.393 TCP 1.101.0.1:3000 -> 23.104.0.1:55808 10 6452 1 2025-11-12 07:49:54.184 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:36296 10 6452 1 2025-11-12 07:50:54.545 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:48268 10 6452 1 2025-11-12 07:51:20.326 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 07:51:20.456 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 07:51:20.318 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 07:51:20.373 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 07:51:20.401 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 07:51:54.911 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41230 10 6452 1 2025-11-12 07:52:55.310 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48490 10 6452 1 2025-11-12 07:53:55.711 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:43126 11 6492 1 2025-11-12 07:49:59.457 00:06:00.146 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-12 07:54:56.115 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:40860 10 6452 1 2025-11-12 07:50:59.459 00:06:00.141 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-12 07:55:56.532 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:50230 10 6452 1 2025-11-12 07:56:20.502 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 07:56:20.418 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 07:56:20.365 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 07:56:20.419 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 07:56:20.416 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 07:56:56.948 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:47776 10 6452 1 2025-11-12 07:57:57.359 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:35008 10 6452 1 Summary: total flows: 137, total bytes: 419322, total packets: 1030, avg bps: 871, avg pps: 0, avg bpp: 407 Time window: 2025-11-12 06:53:59 - 2025-11-12 07:58:07 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0036s User: 0.0014s Wall: 0.0019s flows/second: 70436.3 Runtime: 0.0020s