Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-16 03:54:01.466 00:06:00.058 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 03:59:03.910 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59976 10 6452 1 2025-11-16 04:00:04.311 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:36600 10 6452 1 2025-11-16 04:01:04.673 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:42428 10 6452 1 2025-11-16 04:02:05.114 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:39974 10 6452 1 2025-11-16 04:03:11.293 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 04:03:05.552 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45468 10 6452 1 2025-11-16 04:03:11.208 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 04:03:11.158 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 04:03:11.210 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 04:03:11.362 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 04:04:05.964 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:53150 10 6452 1 2025-11-16 04:00:01.475 00:06:00.048 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 04:05:06.336 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:58094 10 6452 1 2025-11-16 04:01:01.471 00:06:00.055 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 04:06:06.696 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:47386 10 6452 1 2025-11-16 04:07:07.106 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59922 10 6452 1 2025-11-16 04:08:11.524 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 04:08:11.571 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 04:08:11.244 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 04:08:11.442 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 04:08:11.411 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 04:08:07.514 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:57268 10 6452 1 2025-11-16 04:09:07.917 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:54634 10 6452 1 2025-11-16 04:10:08.315 00:00:10.821 TCP 1.101.0.1:3000 -> 23.104.0.1:39206 10 6452 1 2025-11-16 04:11:09.171 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:33776 10 6452 1 2025-11-16 04:07:01.474 00:06:00.050 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 04:12:09.571 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:52462 10 6452 1 2025-11-16 04:08:01.471 00:06:00.055 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 04:13:11.537 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 04:13:11.507 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 04:13:11.385 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 04:13:11.454 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 04:13:11.160 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 04:13:09.969 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:58914 10 6452 1 2025-11-16 04:14:10.341 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:50522 10 6452 1 2025-11-16 04:15:10.703 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:52830 10 6452 1 2025-11-16 04:16:11.116 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:42494 10 6452 1 2025-11-16 04:17:11.481 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:57986 10 6452 1 2025-11-16 04:18:11.602 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 04:18:11.555 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 04:18:11.471 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 04:18:11.518 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 04:18:11.606 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 04:18:11.887 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:47804 10 6452 1 2025-11-16 04:14:01.474 00:06:00.052 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 04:19:12.264 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54816 10 6452 1 2025-11-16 04:15:01.472 00:06:00.057 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 04:20:12.667 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:37024 10 6452 1 2025-11-16 04:21:13.098 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33170 10 6452 1 2025-11-16 04:22:13.499 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:47200 10 6452 1 2025-11-16 04:23:11.588 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 04:23:11.541 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 04:23:11.376 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 04:23:11.741 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 04:23:11.457 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 04:23:13.906 00:00:10.802 TCP 1.101.0.1:3000 -> 23.104.0.1:47798 11 6492 1 2025-11-16 04:24:14.750 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:35844 10 6452 1 2025-11-16 04:25:15.116 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:58112 10 6452 1 2025-11-16 04:21:01.477 00:06:00.051 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 04:26:15.521 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50546 10 6452 1 2025-11-16 04:22:01.474 00:06:00.058 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 04:27:15.921 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:56516 10 6452 1 2025-11-16 04:28:11.886 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 04:28:11.796 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 04:28:11.743 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 04:28:11.804 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 04:28:11.804 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 04:28:16.287 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47240 10 6452 1 2025-11-16 04:29:16.696 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50720 10 6452 1 2025-11-16 04:30:17.105 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:60546 10 6452 1 2025-11-16 04:31:17.507 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:41650 10 6452 1 2025-11-16 04:32:17.864 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:57932 10 6452 1 2025-11-16 04:28:01.481 00:06:00.050 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 04:33:12.004 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 04:33:11.922 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 04:33:11.799 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 04:33:11.707 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 04:33:11.827 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 04:33:18.285 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:44884 10 6452 1 2025-11-16 04:29:01.478 00:06:00.055 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 04:34:18.643 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:38958 10 6452 1 2025-11-16 04:35:19.011 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:58482 10 6452 1 2025-11-16 04:36:19.412 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:41092 10 6452 1 2025-11-16 04:37:19.822 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:48582 10 6452 1 2025-11-16 04:38:11.958 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 04:38:11.816 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 04:38:11.966 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 04:38:11.883 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 04:38:12.048 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 04:38:20.226 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:41194 10 6452 1 2025-11-16 04:39:20.589 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:59390 10 6452 1 2025-11-16 04:35:01.484 00:06:00.048 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 04:40:21.003 00:00:10.425 TCP 1.101.0.1:3000 -> 23.104.0.1:55246 10 6452 1 2025-11-16 04:36:01.480 00:06:00.053 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 04:41:21.470 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:57156 10 6452 1 2025-11-16 04:42:21.874 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35704 10 6452 1 2025-11-16 04:43:12.080 00:00:00.033 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 04:43:12.122 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 04:43:11.841 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 04:43:11.998 00:00:00.033 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 04:43:12.153 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 04:43:22.275 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49208 10 6452 1 2025-11-16 04:44:22.680 00:00:10.543 TCP 1.101.0.1:3000 -> 23.104.0.1:60430 10 6452 1 2025-11-16 04:45:23.262 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57530 10 6452 1 2025-11-16 04:46:23.687 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41576 10 6452 1 2025-11-16 04:42:01.485 00:06:00.051 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 04:47:24.111 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:53348 10 6452 1 2025-11-16 04:43:01.485 00:06:00.053 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 04:48:12.276 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 04:48:12.287 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 04:48:12.213 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 04:48:12.193 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 04:48:12.199 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 04:48:24.517 00:00:10.691 TCP 1.101.0.1:3000 -> 23.104.0.1:37782 10 6452 1 2025-11-16 04:49:25.245 00:00:10.398 TCP 1.101.0.1:3000 -> 23.104.0.1:56464 10 6452 1 2025-11-16 04:50:25.679 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:48188 10 6452 1 2025-11-16 04:51:26.112 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:46968 10 6452 1 2025-11-16 04:52:26.473 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59620 10 6452 1 2025-11-16 04:53:12.461 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 04:53:12.179 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 04:53:11.970 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 04:53:12.379 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 04:53:12.332 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 04:53:26.875 00:00:10.421 TCP 1.101.0.1:3000 -> 23.104.0.1:46624 11 6504 1 2025-11-16 04:49:01.485 00:06:00.053 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 04:54:27.335 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58334 10 6452 1 2025-11-16 04:50:01.486 00:06:00.056 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 04:55:27.744 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41772 10 6452 1 2025-11-16 04:56:28.151 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:46884 10 6452 1 2025-11-16 04:57:28.550 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:45108 10 6452 1 2025-11-16 04:58:12.567 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 04:58:12.075 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 04:58:12.282 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 04:58:12.686 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 04:58:12.366 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 04:58:28.950 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:58576 10 6452 1 Summary: total flows: 137, total bytes: 416969, total packets: 1020, avg bps: 860, avg pps: 0, avg bpp: 408 Time window: 2025-11-16 03:54:01 - 2025-11-16 04:58:39 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0036s User: 0.0027s Wall: 0.0023s flows/second: 59226.9 Runtime: 0.0023s