Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-13 10:54:59.994 00:05:00.267 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-13 10:59:39.791 00:00:10.519 TCP 1.101.0.1:3000 -> 23.104.0.1:47622 14 14298 1 2025-11-13 11:00:40.348 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:42782 10 6452 1 2025-11-13 11:01:40.707 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54856 10 6452 1 2025-11-13 11:01:52.975 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 11:01:52.796 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 11:01:52.811 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 11:01:53.058 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 10:58:59.998 00:03:00.261 TCP 179.21.23.21:38570 -> 179.21.23.23:179 8 492 1 2025-11-13 11:01:52.894 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 11:00:59.996 00:01:00.265 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-11-13 11:02:41.112 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:43144 10 6452 1 2025-11-13 11:03:41.510 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43236 10 6452 1 2025-11-13 11:04:41.913 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:40118 11 6504 1 2025-11-13 11:05:42.331 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:37174 10 6452 1 2025-11-13 11:06:52.892 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 11:06:52.858 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 11:06:42.736 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:34816 10 6452 1 2025-11-13 11:06:53.064 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 11:06:52.799 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 11:06:52.974 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 11:02:59.996 00:05:00.004 TCP 179.21.23.23:179 -> 179.21.23.21:38570 11 686 1 2025-11-13 11:07:43.107 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54844 10 6452 1 2025-11-13 11:03:00.001 00:06:00.260 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-13 11:08:43.510 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57038 10 6452 1 2025-11-13 11:09:43.914 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:34262 10 6452 1 2025-11-13 11:10:44.330 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:33878 10 6452 1 2025-11-13 11:11:44.735 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43554 10 6452 1 2025-11-13 11:11:53.293 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 11:11:52.856 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 11:11:53.099 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 11:11:53.328 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 11:11:53.183 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 11:12:45.141 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59934 10 6452 1 2025-11-13 11:08:00.262 00:06:00.001 TCP 179.21.23.23:179 -> 179.21.23.21:38570 13 790 1 2025-11-13 11:13:45.549 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:35054 10 6452 1 2025-11-13 11:14:45.912 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60080 10 6452 1 2025-11-13 11:10:00.003 00:06:00.259 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-13 11:15:46.319 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33814 12 6556 1 2025-11-13 11:16:53.228 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 11:16:53.316 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 11:16:53.183 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 11:16:53.144 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 11:16:53.316 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 11:16:46.722 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:36272 10 6452 1 2025-11-13 11:17:47.105 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60162 10 6452 1 2025-11-13 11:18:47.509 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55356 10 6452 1 2025-11-13 11:19:47.918 00:00:10.440 TCP 1.101.0.1:3000 -> 23.104.0.1:55366 12 10369 1 2025-11-13 11:15:00.001 00:06:00.265 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-13 11:20:48.397 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54678 10 6452 1 2025-11-13 11:21:53.577 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 11:21:53.490 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 11:21:53.242 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 11:21:53.495 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 11:21:53.495 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 11:17:00.032 00:06:00.003 TCP 179.21.23.21:38570 -> 179.21.23.23:179 13 790 1 2025-11-13 11:21:48.802 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:34562 10 6452 1 2025-11-13 11:22:49.217 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44930 10 6452 1 2025-11-13 11:23:49.621 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60064 10 6452 1 2025-11-13 11:24:50.024 00:00:17.663 TCP 1.101.0.1:3000 -> 23.104.0.1:59298 10 6452 1 2025-11-13 11:25:57.727 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:42884 10 6452 1 2025-11-13 11:26:53.404 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 11:26:53.500 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 11:26:53.402 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 11:26:53.303 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 11:26:53.486 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 11:22:00.033 00:06:00.003 TCP 179.21.23.23:179 -> 179.21.23.21:38570 13 809 1 2025-11-13 11:26:58.133 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:36154 10 6452 1 2025-11-13 11:23:00.264 00:06:00.003 TCP 179.21.23.21:38570 -> 179.21.23.23:179 13 809 1 2025-11-13 11:27:58.538 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:34170 10 6452 1 2025-11-13 11:28:58.898 00:00:11.565 TCP 1.101.0.1:3000 -> 23.104.0.1:39442 12 6556 1 2025-11-13 11:30:00.503 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56326 10 6452 1 2025-11-13 11:31:00.908 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46738 10 6452 1 2025-11-13 11:31:53.905 00:00:00.055 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 11:31:53.865 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 11:31:53.717 00:00:00.034 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 11:31:53.822 00:00:00.055 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 11:31:53.788 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 11:32:01.311 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:42720 10 6452 1 2025-11-13 11:28:00.270 00:06:00.001 TCP 179.21.23.23:179 -> 179.21.23.21:38570 13 790 1 2025-11-13 11:33:01.673 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:37676 10 6452 1 2025-11-13 11:34:02.100 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:40070 10 6452 1 2025-11-13 11:30:00.039 00:06:00.229 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-13 11:35:02.461 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50002 10 6452 1 2025-11-13 11:36:02.863 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39668 10 6452 1 2025-11-13 11:36:53.744 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 11:36:53.655 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 11:36:53.699 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 11:36:53.700 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 11:36:53.783 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 11:37:03.268 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:38626 10 6452 1 2025-11-13 11:38:03.631 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55218 10 6452 1 2025-11-13 11:35:00.046 00:04:00.227 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-13 11:39:04.034 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55486 10 6452 1 2025-11-13 11:40:04.441 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39286 10 6452 1 2025-11-13 11:41:04.849 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:40492 10 6452 1 2025-11-13 11:41:53.884 00:00:00.026 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 11:41:53.783 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 11:41:53.832 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 11:41:53.829 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 11:41:53.914 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 11:37:00.048 00:06:00.222 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-13 11:42:05.278 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:48508 10 6452 1 2025-11-13 11:43:05.680 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55184 10 6452 1 2025-11-13 11:40:00.046 00:04:00.226 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-13 11:44:06.094 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39536 10 6452 1 2025-11-13 11:45:06.491 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:37738 10 6452 1 2025-11-13 11:46:06.860 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:47832 10 6452 1 2025-11-13 11:46:53.865 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 11:46:53.879 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 11:46:53.931 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 11:46:53.782 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 11:46:53.929 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 11:47:07.272 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:38416 10 6452 1 2025-11-13 11:48:07.682 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:38986 10 6452 1 2025-11-13 11:44:00.053 00:06:00.000 TCP 179.21.23.21:38570 -> 179.21.23.23:179 13 790 1 2025-11-13 11:49:08.105 00:00:11.123 TCP 1.101.0.1:3000 -> 23.104.0.1:47690 10 6452 1 2025-11-13 11:45:00.049 00:06:00.229 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-13 11:50:09.264 00:00:10.439 TCP 1.101.0.1:3000 -> 23.104.0.1:52070 12 10369 1 2025-11-13 11:51:09.741 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:37600 10 6452 1 2025-11-13 11:51:54.163 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 11:51:53.900 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 11:51:53.925 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 11:51:54.081 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 11:51:53.976 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 11:52:10.145 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:58044 10 6452 1 2025-11-13 11:53:10.511 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49026 10 6452 1 2025-11-13 11:54:10.915 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38950 10 6452 1 2025-11-13 11:50:00.275 00:06:00.005 TCP 179.21.23.21:38570 -> 179.21.23.23:179 13 809 1 2025-11-13 11:55:11.323 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:48936 10 6452 1 2025-11-13 11:56:11.688 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:45710 10 6452 1 2025-11-13 11:56:54.070 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 11:56:54.278 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 11:56:54.071 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 11:56:54.060 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 11:56:54.153 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 11:52:00.049 00:06:00.235 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-13 11:57:12.111 00:00:10.453 TCP 1.101.0.1:3000 -> 23.104.0.1:36962 12 6556 1 2025-11-13 11:58:12.599 00:00:10.401 TCP 1.101.0.1:3000 -> 23.104.0.1:55538 10 6452 1 Summary: total flows: 139, total bytes: 426838, total packets: 1029, avg bps: 897, avg pps: 0, avg bpp: 414 Time window: 2025-11-13 10:54:59 - 2025-11-13 11:58:23 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0012s User: 0.0024s Wall: 0.0014s flows/second: 101093.9 Runtime: 0.0014s