Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-16 01:54:01.430 00:06:00.048 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 01:59:13.952 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50754 10 6452 1 2025-11-16 01:55:01.428 00:06:00.053 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 02:00:14.360 00:00:10.410 TCP 1.101.0.1:3000 -> 23.104.0.1:37474 11 6504 1 2025-11-16 02:01:14.812 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49348 10 6452 1 2025-11-16 02:02:15.218 00:00:10.916 TCP 1.101.0.1:3000 -> 23.104.0.1:43490 10 6452 1 2025-11-16 02:03:08.749 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 02:03:08.608 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 02:03:08.689 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 02:03:08.752 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 02:03:08.772 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 02:03:16.185 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33354 10 6452 1 2025-11-16 02:04:16.586 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:49384 10 6452 1 2025-11-16 02:05:16.982 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56334 10 6452 1 2025-11-16 02:01:01.432 00:06:00.048 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 02:06:17.393 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:37500 10 6452 1 2025-11-16 02:02:01.430 00:06:00.053 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 02:07:17.749 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54874 10 6452 1 2025-11-16 02:08:08.976 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 02:08:08.688 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 02:08:08.609 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 02:08:08.894 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 02:08:08.858 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 02:08:18.149 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:48478 10 6452 1 2025-11-16 02:09:18.514 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:58142 10 6452 1 2025-11-16 02:10:18.923 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:33498 10 6452 1 2025-11-16 02:11:19.337 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39336 10 6452 1 2025-11-16 02:12:19.743 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:54754 10 6452 1 2025-11-16 02:08:01.434 00:06:00.050 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 02:13:09.035 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 02:13:08.672 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 02:13:08.742 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 02:13:09.149 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 02:13:08.823 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 02:13:20.151 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60342 10 6452 1 2025-11-16 02:09:01.433 00:06:00.055 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 02:14:20.556 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:48974 10 6452 1 2025-11-16 02:15:20.953 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:53444 10 6452 1 2025-11-16 02:16:21.364 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:39032 10 6452 1 2025-11-16 02:17:21.769 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:38356 10 6452 1 2025-11-16 02:18:09.493 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 02:18:09.322 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 02:18:09.157 00:00:00.026 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 02:18:09.411 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 02:18:09.410 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 02:18:22.135 00:00:10.653 TCP 1.101.0.1:3000 -> 23.104.0.1:39878 10 6452 1 2025-11-16 02:19:22.827 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:50340 10 6452 1 2025-11-16 02:15:01.435 00:06:00.055 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 02:20:23.231 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57480 10 6452 1 2025-11-16 02:16:01.432 00:06:00.060 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 02:21:23.634 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:59692 10 6452 1 2025-11-16 02:22:24.031 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:60746 10 6452 1 2025-11-16 02:23:09.198 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 02:23:09.110 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 02:23:09.031 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 02:23:09.116 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 02:23:09.222 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 02:23:24.394 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:54886 10 6452 1 2025-11-16 02:24:24.801 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:56150 10 6452 1 2025-11-16 02:25:25.167 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:53672 10 6452 1 2025-11-16 02:26:25.569 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:33706 10 6452 1 2025-11-16 02:22:01.437 00:06:00.055 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 02:27:25.976 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:43118 10 6452 1 2025-11-16 02:23:01.433 00:06:00.060 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 02:28:09.394 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 02:28:09.305 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 02:28:09.317 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 02:28:09.313 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 02:28:09.438 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 02:28:26.393 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:38738 10 6452 1 2025-11-16 02:29:26.805 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:44854 10 6452 1 2025-11-16 02:30:27.209 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:39646 10 6452 1 2025-11-16 02:31:27.576 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43232 10 6452 1 2025-11-16 02:32:27.978 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:43344 10 6452 1 2025-11-16 02:33:09.452 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 02:33:09.373 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 02:33:09.250 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 02:33:09.489 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 02:33:09.333 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 02:33:28.347 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:57320 10 6452 1 2025-11-16 02:29:01.437 00:06:00.056 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 02:34:28.773 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:59084 10 6452 1 2025-11-16 02:30:01.434 00:06:00.061 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 02:35:29.143 00:00:10.643 TCP 1.101.0.1:3000 -> 23.104.0.1:38980 10 6452 1 2025-11-16 02:36:29.825 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56066 10 6452 1 2025-11-16 02:37:30.221 00:00:10.419 TCP 1.101.0.1:3000 -> 23.104.0.1:42578 11 6504 1 2025-11-16 02:38:09.418 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 02:38:09.549 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 02:38:09.384 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 02:38:09.335 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 02:38:09.596 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 02:38:30.681 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:43870 10 6452 1 2025-11-16 02:39:31.109 00:00:10.994 TCP 1.101.0.1:3000 -> 23.104.0.1:58066 10 6452 1 2025-11-16 02:40:32.138 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:45870 10 6452 1 2025-11-16 02:36:01.437 00:06:00.057 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 02:41:32.546 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36610 10 6452 1 2025-11-16 02:37:01.435 00:06:00.061 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 02:42:32.951 00:00:10.356 TCP 1.101.0.1:3000 -> 23.104.0.1:36522 10 6452 1 2025-11-16 02:43:09.769 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 02:43:09.621 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 02:43:09.655 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 02:43:09.686 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 02:43:09.691 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 02:43:33.316 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:34824 10 6452 1 2025-11-16 02:44:33.676 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:50516 10 6452 1 2025-11-16 02:45:34.107 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:52376 10 6452 1 2025-11-16 02:46:34.508 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54436 10 6452 1 2025-11-16 02:47:34.915 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46580 10 6452 1 2025-11-16 02:48:09.688 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 02:43:01.441 00:06:00.055 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 02:48:09.617 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 02:48:09.736 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 02:48:09.606 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 02:48:09.722 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 02:48:35.320 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:55542 10 6452 1 2025-11-16 02:44:01.438 00:06:00.060 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 02:49:35.730 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:46936 10 6452 1 2025-11-16 02:50:36.140 00:00:10.664 TCP 1.101.0.1:3000 -> 23.104.0.1:49260 10 6452 1 2025-11-16 02:51:36.845 00:00:10.345 TCP 1.101.0.1:3000 -> 23.104.0.1:52994 10 6452 1 2025-11-16 02:52:37.226 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:36946 10 6452 1 2025-11-16 02:53:09.977 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 02:53:09.688 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 02:53:09.624 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 02:53:09.895 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 02:53:09.832 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 02:53:37.627 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:36188 10 6452 1 2025-11-16 02:54:38.021 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46656 10 6452 1 2025-11-16 02:50:01.441 00:06:00.055 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 02:55:38.461 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:41894 10 6452 1 2025-11-16 02:51:01.440 00:06:00.061 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 02:56:38.857 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:57350 10 6452 1 2025-11-16 02:57:39.268 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:37918 10 6452 1 2025-11-16 02:58:10.094 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 02:58:09.730 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 02:58:09.944 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 02:58:10.095 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 02:58:10.026 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 02:58:39.630 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:34568 10 6452 1 Summary: total flows: 138, total bytes: 417842, total packets: 1034, avg bps: 859, avg pps: 0, avg bpp: 404 Time window: 2025-11-16 01:54:01 - 2025-11-16 02:58:49 Total flows processed: 138, passed: 138, Blocks skipped: 0, Bytes read: 14416 Sys: 0.0052s User: 0.0010s Wall: 0.0023s flows/second: 59714.6 Runtime: 0.0023s