Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-15 18:54:01.288 00:06:00.071 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-15 18:55:01.285 00:06:00.076 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-15 18:59:40.366 00:00:23.618 TCP 1.101.0.1:3000 -> 23.104.0.1:59556 10 6452 1 2025-11-15 19:00:54.024 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:44882 10 6452 1 2025-11-15 19:01:54.431 00:00:13.034 TCP 1.101.0.1:3000 -> 23.104.0.1:38750 10 6452 1 2025-11-15 19:03:00.518 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 19:03:00.461 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 19:03:00.502 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 19:03:00.575 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 19:03:00.584 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 19:02:57.504 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42516 10 6452 1 2025-11-15 19:03:57.906 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:51250 10 6452 1 2025-11-15 19:04:58.311 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:55010 10 6452 1 2025-11-15 19:01:01.288 00:06:00.072 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-15 19:05:58.712 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:45196 10 6452 1 2025-11-15 19:02:01.286 00:06:00.077 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-15 19:06:59.097 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:48606 10 6452 1 2025-11-15 19:08:00.608 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 19:08:00.608 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 19:08:00.484 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 19:08:00.525 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 19:08:00.527 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 19:07:59.460 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58736 10 6452 1 2025-11-15 19:08:59.863 00:00:10.569 TCP 1.101.0.1:3000 -> 23.104.0.1:36348 10 6452 1 2025-11-15 19:10:00.466 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60640 10 6452 1 2025-11-15 19:11:00.875 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:40752 10 6452 1 2025-11-15 19:12:01.276 00:00:10.954 TCP 1.101.0.1:3000 -> 23.104.0.1:41758 10 6452 1 2025-11-15 19:13:00.599 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 19:13:00.652 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 19:13:00.429 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 19:13:00.645 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 19:13:00.512 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 19:08:01.290 00:06:00.072 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-15 19:13:02.267 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:51776 10 6452 1 2025-11-15 19:09:01.287 00:06:00.077 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-15 19:14:02.625 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:53978 10 6452 1 2025-11-15 19:15:02.983 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:42286 10 6452 1 2025-11-15 19:16:03.413 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:60680 10 6452 1 2025-11-15 19:17:03.775 00:00:10.424 TCP 1.101.0.1:3000 -> 23.104.0.1:54410 12 10375 1 2025-11-15 19:18:00.769 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 19:18:00.838 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 19:18:00.706 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 19:18:00.919 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 19:18:00.788 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 19:18:04.239 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52584 10 6452 1 2025-11-15 19:19:04.646 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:51626 10 6452 1 2025-11-15 19:15:01.291 00:06:00.074 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-15 19:20:05.054 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:55878 10 6452 1 2025-11-15 19:16:01.288 00:06:00.080 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-15 19:21:05.459 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:55556 10 6452 1 2025-11-15 19:22:05.877 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:38206 10 6452 1 2025-11-15 19:23:00.957 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 19:23:00.814 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 19:23:00.957 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 19:23:00.666 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 19:23:01.040 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 19:23:06.287 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39376 10 6452 1 2025-11-15 19:24:06.693 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:58194 10 6452 1 2025-11-15 19:25:07.108 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42308 10 6452 1 2025-11-15 19:26:07.513 00:00:10.419 TCP 1.101.0.1:3000 -> 23.104.0.1:36096 11 6504 1 2025-11-15 19:22:01.291 00:06:00.075 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-15 19:27:07.977 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:38476 10 6452 1 2025-11-15 19:28:00.857 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 19:28:00.671 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 19:28:00.883 00:00:00.033 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 19:28:00.877 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 19:23:01.289 00:06:00.080 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-15 19:28:00.966 00:00:00.034 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 19:28:08.357 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49670 10 6452 1 2025-11-15 19:29:08.762 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:55432 10 6452 1 2025-11-15 19:30:09.171 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:44260 10 6452 1 2025-11-15 19:31:09.596 00:00:10.441 TCP 1.101.0.1:3000 -> 23.104.0.1:33958 12 10369 1 2025-11-15 19:32:10.104 00:00:10.471 TCP 1.101.0.1:3000 -> 23.104.0.1:40058 10 6452 1 2025-11-15 19:33:01.970 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 19:33:01.574 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 19:33:01.591 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 19:33:01.889 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 19:33:02.053 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 19:33:10.610 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:49994 10 6452 1 2025-11-15 19:29:01.294 00:06:00.073 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-15 19:34:10.976 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:45404 10 6452 1 2025-11-15 19:30:01.293 00:06:00.078 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-15 19:35:11.385 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33342 10 6452 1 2025-11-15 19:36:11.789 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:40556 10 6452 1 2025-11-15 19:37:12.197 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:57738 10 6452 1 2025-11-15 19:38:00.927 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 19:38:01.113 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 19:38:01.059 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 19:38:01.118 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 19:38:01.142 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 19:38:12.564 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:44286 10 6452 1 2025-11-15 19:39:12.963 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:46070 10 6452 1 2025-11-15 19:40:13.398 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:48510 10 6452 1 2025-11-15 19:36:01.298 00:06:00.070 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-15 19:41:13.806 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:57170 10 6452 1 2025-11-15 19:37:01.295 00:06:00.076 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-15 19:42:14.216 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:49302 10 6452 1 2025-11-15 19:43:00.905 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 19:43:01.113 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 19:43:01.122 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 19:43:01.186 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 19:43:01.205 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 19:43:14.632 00:00:10.421 TCP 1.101.0.1:3000 -> 23.104.0.1:39652 11 6504 1 2025-11-15 19:44:15.110 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34814 10 6452 1 2025-11-15 19:45:15.511 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43432 10 6452 1 2025-11-15 19:46:15.917 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:34720 10 6452 1 2025-11-15 19:47:16.281 00:00:17.330 TCP 1.101.0.1:3000 -> 23.104.0.1:60692 10 6452 1 2025-11-15 19:48:01.280 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 19:48:01.358 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 19:48:01.280 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 19:48:01.203 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 19:43:01.298 00:06:00.075 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-15 19:48:01.363 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 19:48:23.663 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:56562 10 6452 1 2025-11-15 19:44:01.295 00:06:00.080 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-15 19:49:24.062 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:51756 10 6452 1 2025-11-15 19:50:24.419 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38970 10 6452 1 2025-11-15 19:51:24.826 00:00:10.438 TCP 1.101.0.1:3000 -> 23.104.0.1:49236 12 10375 1 2025-11-15 19:52:25.304 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59466 10 6452 1 2025-11-15 19:53:01.541 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 19:53:01.505 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 19:53:01.609 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 19:53:01.539 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 19:53:01.693 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 19:53:25.708 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:59774 10 6452 1 2025-11-15 19:54:26.111 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:57216 10 6452 1 2025-11-15 19:50:01.300 00:06:00.075 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-15 19:55:26.478 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50416 10 6452 1 2025-11-15 19:51:01.299 00:06:00.077 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-15 19:56:26.878 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:39930 10 6452 1 2025-11-15 19:57:27.244 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:47062 10 6452 1 2025-11-15 19:58:01.627 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 19:58:01.545 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 19:58:01.286 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 19:58:01.545 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 19:58:01.599 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 19:58:27.658 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40198 10 6452 1 Summary: total flows: 137, total bytes: 423153, total packets: 1030, avg bps: 873, avg pps: 0, avg bpp: 410 Time window: 2025-11-15 18:54:01 - 2025-11-15 19:58:38 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0050s User: 0.0000s Wall: 0.0030s flows/second: 45274.2 Runtime: 0.0030s