Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-15 20:54:01.319 00:06:00.070 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-15 20:58:57.036 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44248 10 6452 1 2025-11-15 20:59:57.434 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:52374 10 6452 1 2025-11-15 21:00:57.857 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:54344 10 6452 1 2025-11-15 21:01:58.271 00:00:10.447 TCP 1.101.0.1:3000 -> 23.104.0.1:52618 12 10369 1 2025-11-15 21:03:02.924 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 21:03:02.852 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 21:03:02.759 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 21:03:02.849 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 21:03:02.841 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 21:02:58.754 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:50418 10 6452 1 2025-11-15 21:03:59.183 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60590 10 6452 1 2025-11-15 21:00:01.326 00:06:00.062 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-15 21:04:59.589 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:42976 10 6452 1 2025-11-15 21:01:01.324 00:06:00.068 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-15 21:05:59.992 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:34526 10 6452 1 2025-11-15 21:07:00.402 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:60234 10 6452 1 2025-11-15 21:08:03.345 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 21:08:03.228 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 21:08:02.914 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 21:08:03.264 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 21:08:02.881 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 21:08:00.784 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:53598 10 6452 1 2025-11-15 21:09:01.148 00:00:10.467 TCP 1.101.0.1:3000 -> 23.104.0.1:55700 10 6452 1 2025-11-15 21:10:01.653 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:41554 10 6452 1 2025-11-15 21:11:02.062 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:41648 10 6452 1 2025-11-15 21:07:01.327 00:06:00.063 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-15 21:12:02.462 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:35320 10 6452 1 2025-11-15 21:08:01.324 00:06:00.068 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-15 21:13:03.155 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 21:13:03.071 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 21:13:02.924 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 21:13:03.071 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 21:13:03.076 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 21:13:02.871 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:42470 10 6452 1 2025-11-15 21:14:03.278 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:44096 10 6452 1 2025-11-15 21:15:03.681 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:50114 10 6452 1 2025-11-15 21:16:04.111 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:55116 10 6452 1 2025-11-15 21:17:04.474 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45020 10 6452 1 2025-11-15 21:18:03.248 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 21:18:03.368 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 21:18:03.102 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 21:18:03.390 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 21:18:03.185 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 21:18:04.878 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56820 10 6452 1 2025-11-15 21:14:01.330 00:06:00.062 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-15 21:19:05.289 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:42266 10 6452 1 2025-11-15 21:15:01.328 00:06:00.066 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-15 21:20:05.691 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34368 10 6452 1 2025-11-15 21:21:06.113 00:00:10.442 TCP 1.101.0.1:3000 -> 23.104.0.1:46452 12 10375 1 2025-11-15 21:22:06.596 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:45174 10 6452 1 2025-11-15 21:23:03.393 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 21:23:03.248 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 21:23:03.212 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 21:23:03.310 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 21:23:03.386 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 21:23:07.008 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40298 10 6452 1 2025-11-15 21:24:07.415 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:41318 10 6452 1 2025-11-15 21:25:07.779 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:58704 10 6452 1 2025-11-15 21:21:01.335 00:06:00.058 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-15 21:26:08.191 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40998 10 6452 1 2025-11-15 21:22:01.332 00:06:00.064 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-15 21:27:08.595 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51142 10 6452 1 2025-11-15 21:28:03.461 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 21:28:03.286 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 21:28:02.947 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 21:28:03.380 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 21:28:03.302 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 21:28:08.995 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38604 10 6452 1 2025-11-15 21:29:09.403 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:47610 10 6452 1 2025-11-15 21:30:09.810 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:39054 10 6452 1 2025-11-15 21:31:10.217 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47438 10 6452 1 2025-11-15 21:32:10.618 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36138 10 6452 1 2025-11-15 21:33:03.469 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 21:33:03.388 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 21:33:03.547 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 21:33:03.387 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 21:33:03.565 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 21:28:01.338 00:06:00.059 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-15 21:33:11.018 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:52722 10 6452 1 2025-11-15 21:29:01.335 00:06:00.065 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-15 21:34:11.412 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:51002 10 6452 1 2025-11-15 21:35:11.772 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:46888 10 6452 1 2025-11-15 21:36:12.180 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33472 10 6452 1 2025-11-15 21:37:12.600 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:40130 10 6452 1 2025-11-15 21:38:03.589 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 21:38:03.668 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 21:38:03.574 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 21:38:03.507 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 21:38:03.503 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 21:38:12.964 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37670 10 6452 1 2025-11-15 21:39:13.371 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49670 10 6452 1 2025-11-15 21:35:01.342 00:06:00.057 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-15 21:40:13.766 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:49290 10 6452 1 2025-11-15 21:36:01.339 00:06:00.063 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-15 21:41:14.182 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:36030 10 6452 1 2025-11-15 21:42:14.599 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:51104 10 6452 1 2025-11-15 21:43:03.670 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 21:43:03.528 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 21:43:03.663 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 21:43:03.786 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 21:43:03.744 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 21:43:14.961 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:56658 10 6452 1 2025-11-15 21:44:15.324 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37712 10 6452 1 2025-11-15 21:45:15.729 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:54252 10 6452 1 2025-11-15 21:46:16.154 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37106 10 6452 1 2025-11-15 21:42:01.343 00:06:00.059 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-15 21:47:16.557 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55012 10 6452 1 2025-11-15 21:48:03.572 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 21:48:03.493 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 21:48:03.722 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 21:48:03.720 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 21:43:01.341 00:06:00.064 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-15 21:48:03.806 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 21:48:16.961 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:47294 10 6452 1 2025-11-15 21:49:17.372 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:55946 10 6452 1 2025-11-15 21:50:17.779 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42508 10 6452 1 2025-11-15 21:51:18.181 00:00:10.435 TCP 1.101.0.1:3000 -> 23.104.0.1:47942 12 10375 1 2025-11-15 21:52:18.660 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34794 10 6452 1 2025-11-15 21:53:03.809 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 21:53:03.614 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 21:53:03.886 00:00:00.017 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 21:53:03.936 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 21:53:03.969 00:00:00.017 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 21:53:19.074 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:52114 10 6452 1 2025-11-15 21:49:01.343 00:06:00.064 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-15 21:54:19.476 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:37698 10 6452 1 2025-11-15 21:50:01.342 00:06:00.069 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-15 21:55:19.885 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:53312 12 6556 1 2025-11-15 21:56:20.304 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:57014 10 6452 1 2025-11-15 21:57:20.709 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:34746 10 6452 1 2025-11-15 21:58:03.849 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 21:58:03.920 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 21:58:03.961 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 21:58:03.918 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 21:58:04.044 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 21:58:21.117 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:51912 10 6452 1 Summary: total flows: 137, total bytes: 428744, total packets: 1026, avg bps: 886, avg pps: 0, avg bpp: 417 Time window: 2025-11-15 20:54:01 - 2025-11-15 21:58:31 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0031s User: 0.0020s Wall: 0.0036s flows/second: 37625.7 Runtime: 0.0037s