Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-13 19:55:00.207 00:04:00.225 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-13 19:57:00.203 00:02:00.231 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-11-13 19:59:34.174 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:36638 10 6452 1 2025-11-13 20:00:34.579 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:35630 10 6452 1 2025-11-13 20:00:00.208 00:01:00.224 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-11-13 20:00:00.205 00:01:00.229 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-11-13 20:01:34.977 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:47140 10 6452 1 2025-11-13 20:02:04.091 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 20:02:03.778 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 20:02:04.058 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 20:02:03.725 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 20:02:04.140 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 20:02:35.407 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47678 10 6452 1 2025-11-13 20:03:35.811 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55056 10 6452 1 2025-11-13 20:04:36.211 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50250 10 6452 1 2025-11-13 20:05:36.615 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:39568 10 6452 1 2025-11-13 20:02:00.205 00:04:00.232 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-13 20:02:00.206 00:04:00.227 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-13 20:06:37.013 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40530 10 6452 1 2025-11-13 20:07:04.504 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 20:07:04.319 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 20:07:04.182 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 20:07:04.421 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 20:07:04.318 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 20:07:37.414 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:39504 10 6452 1 2025-11-13 20:08:37.825 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:36778 10 6452 1 2025-11-13 20:09:38.195 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42948 10 6452 1 2025-11-13 20:10:38.600 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:37880 10 6452 1 2025-11-13 20:07:00.211 00:04:00.223 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-13 20:07:00.208 00:04:00.229 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-13 20:11:39.010 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:49636 10 6452 1 2025-11-13 20:12:03.879 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 20:12:03.909 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 20:12:03.925 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 20:12:03.796 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 20:12:03.969 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 20:12:39.422 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:51804 10 6452 1 2025-11-13 20:13:39.835 00:00:10.412 TCP 1.101.0.1:3000 -> 23.104.0.1:45006 10 6452 1 2025-11-13 20:14:40.307 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39970 10 6452 1 2025-11-13 20:15:40.712 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:48130 10 6452 1 2025-11-13 20:12:00.212 00:04:00.224 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-13 20:12:00.208 00:04:00.230 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-13 20:16:41.100 00:00:10.424 TCP 1.101.0.1:3000 -> 23.104.0.1:42990 10 6452 1 2025-11-13 20:17:04.059 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 20:17:04.070 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 20:17:04.065 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 20:17:04.062 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 20:17:04.148 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 20:17:41.558 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48800 10 6452 1 2025-11-13 20:18:41.964 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47336 10 6452 1 2025-11-13 20:19:42.365 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:32938 10 6452 1 2025-11-13 20:20:42.775 00:00:15.254 TCP 1.101.0.1:3000 -> 23.104.0.1:34390 10 6452 1 2025-11-13 20:17:00.213 00:04:00.224 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-13 20:17:00.210 00:04:00.229 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-13 20:21:48.096 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:60758 10 6452 1 2025-11-13 20:22:04.242 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 20:22:04.153 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 20:22:04.197 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 20:22:04.160 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 20:22:04.062 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 20:22:48.498 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48876 10 6452 1 2025-11-13 20:23:48.900 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39560 10 6452 1 2025-11-13 20:24:49.310 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:39592 10 6452 1 2025-11-13 20:22:00.209 00:04:00.230 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-13 20:25:49.720 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:36414 10 6452 1 2025-11-13 20:22:00.213 00:04:00.225 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-13 20:26:50.135 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:48030 10 6452 1 2025-11-13 20:27:04.425 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 20:27:04.190 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 20:27:04.165 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 20:27:04.331 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 20:27:04.249 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 20:27:50.534 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36432 10 6452 1 2025-11-13 20:27:00.216 00:01:00.223 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-11-13 20:28:50.939 00:00:10.393 TCP 1.101.0.1:3000 -> 23.104.0.1:39808 10 6452 1 2025-11-13 20:29:51.373 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43732 10 6452 1 2025-11-13 20:29:00.219 00:02:00.221 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-11-13 20:27:00.213 00:04:00.229 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-13 20:30:51.773 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:43056 10 6452 1 2025-11-13 20:31:52.182 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:34476 10 6452 1 2025-11-13 20:32:04.557 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 20:32:04.271 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 20:32:04.638 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 20:32:04.688 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 20:32:04.720 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 20:32:00.218 00:01:00.225 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-11-13 20:32:00.220 00:01:00.220 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-11-13 20:32:52.584 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:44574 10 6452 1 2025-11-13 20:33:52.981 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:51204 10 6452 1 2025-11-13 20:34:53.389 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60300 10 6452 1 2025-11-13 20:35:53.788 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52994 10 6452 1 2025-11-13 20:36:54.193 00:00:10.562 TCP 1.101.0.1:3000 -> 23.104.0.1:49868 10 6452 1 2025-11-13 20:37:04.399 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 20:37:04.312 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 20:37:04.645 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 20:37:04.606 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 20:37:04.727 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 20:34:00.221 00:04:00.220 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-13 20:34:00.218 00:04:00.225 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-13 20:37:54.791 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:55732 10 6452 1 2025-11-13 20:38:55.189 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56498 10 6452 1 2025-11-13 20:39:55.597 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50208 10 6452 1 2025-11-13 20:40:56.005 00:00:11.033 TCP 1.101.0.1:3000 -> 23.104.0.1:56260 10 6452 1 2025-11-13 20:42:04.713 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 20:42:04.711 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 20:42:04.378 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 20:42:04.631 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 20:42:04.443 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 20:41:57.102 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41856 10 6452 1 2025-11-13 20:39:00.219 00:04:00.226 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-13 20:39:00.222 00:04:00.221 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-13 20:42:57.509 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:52732 10 6452 1 2025-11-13 20:43:57.928 00:00:10.393 TCP 1.101.0.1:3000 -> 23.104.0.1:47070 10 6452 1 2025-11-13 20:44:58.358 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:36622 10 6452 1 2025-11-13 20:45:58.718 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:54518 10 6452 1 2025-11-13 20:47:04.715 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 20:47:04.703 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 20:47:04.579 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 20:47:04.632 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 20:47:04.756 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 20:46:59.138 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54726 10 6452 1 2025-11-13 20:44:00.221 00:04:00.225 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-13 20:44:00.224 00:04:00.219 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-13 20:47:59.541 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:34432 10 6452 1 2025-11-13 20:48:59.943 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:43210 10 6452 1 2025-11-13 20:50:00.320 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:35878 10 6452 1 2025-11-13 20:51:00.723 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55564 10 6452 1 2025-11-13 20:52:04.885 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 20:52:04.708 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 20:52:04.932 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 20:52:04.831 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 20:52:05.016 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 20:52:01.134 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56554 10 6452 1 2025-11-13 20:49:00.225 00:04:00.220 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-13 20:49:00.222 00:04:00.226 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-13 20:53:01.538 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58892 10 6452 1 2025-11-13 20:54:01.938 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:52594 10 6452 1 2025-11-13 20:55:02.352 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58712 10 6452 1 2025-11-13 20:56:02.752 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39694 10 6452 1 2025-11-13 20:57:04.825 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 20:57:04.764 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 20:57:04.822 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 20:57:05.004 00:00:00.035 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 20:57:04.904 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 20:57:03.154 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:50398 10 6452 1 2025-11-13 20:54:00.226 00:04:00.221 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-13 20:54:00.223 00:04:00.226 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-13 20:58:03.527 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:42982 10 6452 1 Summary: total flows: 148, total bytes: 411286, total packets: 1022, avg bps: 867, avg pps: 0, avg bpp: 402 Time window: 2025-11-13 19:55:00 - 2025-11-13 20:58:13 Total flows processed: 148, passed: 148, Blocks skipped: 0, Bytes read: 15456 Sys: 0.0045s User: 0.0009s Wall: 0.0021s flows/second: 70741.5 Runtime: 0.0021s