Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-12 08:53:59.478 00:06:00.173 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-12 08:59:25.833 00:00:10.343 TCP 1.101.0.1:3000 -> 23.104.0.1:44732 10 6452 1 2025-11-12 09:00:26.215 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:39704 10 6452 1 2025-11-12 09:01:21.735 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 09:01:21.741 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 09:01:21.778 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 09:01:21.730 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 09:01:21.862 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 09:01:26.616 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39164 10 6452 1 2025-11-12 09:02:27.019 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:50978 10 6452 1 2025-11-12 09:03:27.421 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33172 10 6452 1 2025-11-12 09:04:27.823 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51868 10 6452 1 2025-11-12 08:59:59.478 00:06:00.179 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-12 09:05:28.227 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:33656 10 6452 1 2025-11-12 09:00:59.483 00:06:00.171 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-12 09:06:21.727 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 09:06:22.056 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 09:06:21.716 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 09:06:22.173 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 09:06:21.800 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 09:06:28.631 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:49550 10 6452 1 2025-11-12 09:07:28.997 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:39160 10 6452 1 2025-11-12 09:08:29.409 00:00:10.534 TCP 1.101.0.1:3000 -> 23.104.0.1:33092 10 6452 1 2025-11-12 09:09:29.984 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:38908 10 6452 1 2025-11-12 09:10:30.391 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:39312 10 6452 1 2025-11-12 09:11:21.947 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 09:11:21.942 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 09:11:21.779 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 09:11:21.864 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 09:11:21.985 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 09:11:30.767 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:44484 10 6452 1 2025-11-12 09:06:59.480 00:06:00.179 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-12 09:12:31.189 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:38654 10 6452 1 2025-11-12 09:07:59.484 00:06:00.174 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-12 09:13:31.549 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:60612 10 6452 1 2025-11-12 09:14:31.958 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:42454 10 6452 1 2025-11-12 09:15:32.373 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:43148 10 6452 1 2025-11-12 09:16:22.215 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 09:16:21.983 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 09:16:21.980 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 09:16:22.132 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 09:16:22.204 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 09:16:32.780 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38856 10 6452 1 2025-11-12 09:17:33.184 00:00:10.716 TCP 1.101.0.1:3000 -> 23.104.0.1:42796 10 6452 1 2025-11-12 09:18:33.938 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:45464 10 6452 1 2025-11-12 09:13:59.482 00:06:00.180 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-12 09:19:34.344 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44912 10 6452 1 2025-11-12 09:14:59.484 00:06:00.175 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-12 09:20:34.750 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:38972 11 6492 1 2025-11-12 09:21:22.096 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 09:21:21.960 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 09:21:22.199 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 09:21:22.076 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 09:21:22.042 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 09:21:35.152 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44544 10 6452 1 2025-11-12 09:22:35.553 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:35936 10 6452 1 2025-11-12 09:23:35.959 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50516 10 6452 1 2025-11-12 09:24:36.368 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:32802 10 6452 1 2025-11-12 09:25:36.772 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:40250 10 6452 1 2025-11-12 09:20:59.485 00:06:00.181 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-12 09:26:22.131 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 09:26:22.239 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 09:26:22.381 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 09:26:22.312 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 09:26:22.465 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 09:26:37.181 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36020 10 6452 1 2025-11-12 09:21:59.489 00:06:00.175 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-12 09:27:37.585 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:45180 10 6452 1 2025-11-12 09:28:37.988 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:47906 10 6452 1 2025-11-12 09:29:38.354 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38358 10 6452 1 2025-11-12 09:30:38.762 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:42876 10 6452 1 2025-11-12 09:31:22.396 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 09:31:22.306 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 09:31:22.257 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 09:31:22.256 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 09:31:22.341 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 09:31:39.180 00:00:10.721 TCP 1.101.0.1:3000 -> 23.104.0.1:48814 10 6452 1 2025-11-12 09:32:39.939 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:55836 10 6452 1 2025-11-12 09:27:59.487 00:06:00.184 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-12 09:33:40.352 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41742 10 6452 1 2025-11-12 09:28:59.489 00:06:00.179 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-12 09:34:40.755 00:00:10.396 TCP 1.101.0.1:3000 -> 23.104.0.1:50064 10 6452 1 2025-11-12 09:35:41.191 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:46992 10 6452 1 2025-11-12 09:36:22.506 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 09:36:22.470 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 09:36:22.286 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 09:36:22.423 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 09:36:22.475 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 09:36:41.595 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36348 10 6452 1 2025-11-12 09:37:42.000 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60276 10 6452 1 2025-11-12 09:38:42.400 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:42858 10 6452 1 2025-11-12 09:39:42.764 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:50544 10 6452 1 2025-11-12 09:34:59.488 00:06:00.185 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-12 09:40:43.175 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48702 10 6452 1 2025-11-12 09:35:59.491 00:06:00.179 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-12 09:41:22.435 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 09:41:22.230 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 09:41:22.457 00:00:00.030 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 09:41:22.623 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 09:41:22.539 00:00:00.030 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 09:41:43.577 00:00:15.440 TCP 1.101.0.1:3000 -> 23.104.0.1:53114 10 6452 1 2025-11-12 09:42:49.064 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44870 10 6452 1 2025-11-12 09:43:49.469 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:39190 10 6452 1 2025-11-12 09:44:49.874 00:00:11.059 TCP 1.101.0.1:3000 -> 23.104.0.1:57344 10 6452 1 2025-11-12 09:45:50.970 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:35600 10 6452 1 2025-11-12 09:46:22.569 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 09:46:22.569 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 09:46:22.648 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 09:46:22.659 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 09:46:22.651 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 09:41:59.492 00:06:00.184 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-12 09:46:51.381 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:37216 10 6452 1 2025-11-12 09:42:59.494 00:06:00.179 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-12 09:47:51.790 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:51280 10 6452 1 2025-11-12 09:48:52.206 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:51652 10 6452 1 2025-11-12 09:49:52.579 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:40256 10 6452 1 2025-11-12 09:50:52.945 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:47852 10 6452 1 2025-11-12 09:51:22.746 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 09:51:22.750 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 09:51:22.578 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 09:51:22.663 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 09:51:22.749 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 09:51:53.319 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50770 10 6452 1 2025-11-12 09:52:53.724 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:55380 10 6452 1 2025-11-12 09:48:59.491 00:06:00.185 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-12 09:53:54.134 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:35496 10 6452 1 2025-11-12 09:49:59.496 00:06:00.180 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-12 09:54:54.553 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:45548 10 6452 1 2025-11-12 09:55:54.953 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:35724 10 6452 1 2025-11-12 09:56:22.762 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 09:56:22.625 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 09:56:22.772 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 09:56:22.672 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 09:56:22.856 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 09:56:55.365 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:44126 10 6452 1 2025-11-12 09:57:55.767 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:47064 10 6452 1 Summary: total flows: 136, total bytes: 410465, total packets: 1009, avg bps: 853, avg pps: 0, avg bpp: 406 Time window: 2025-11-12 08:53:59 - 2025-11-12 09:58:06 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0040s User: 0.0008s Wall: 0.0013s flows/second: 105012.0 Runtime: 0.0013s