Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-16 08:54:01.556 00:06:00.066 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 08:59:19.618 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:60774 10 6452 1 2025-11-16 08:55:01.553 00:06:00.071 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 09:00:20.018 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44152 10 6452 1 2025-11-16 09:01:20.425 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:39520 10 6452 1 2025-11-16 09:02:20.853 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:42618 10 6452 1 2025-11-16 09:03:17.174 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 09:03:17.071 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 09:03:17.235 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 09:03:16.990 00:00:00.037 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 09:03:17.318 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 09:03:21.277 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59500 10 6452 1 2025-11-16 09:04:21.682 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:45874 10 6452 1 2025-11-16 09:05:22.109 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:42060 10 6452 1 2025-11-16 09:01:01.557 00:06:00.068 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 09:06:22.507 00:00:10.435 TCP 1.101.0.1:3000 -> 23.104.0.1:35602 12 10375 1 2025-11-16 09:02:01.553 00:06:00.073 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 09:07:22.985 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:36142 10 6452 1 2025-11-16 09:08:17.402 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 09:08:17.217 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 09:08:16.983 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 09:08:17.319 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 09:08:17.316 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 09:08:23.342 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:60112 10 6452 1 2025-11-16 09:09:23.705 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51872 10 6452 1 2025-11-16 09:10:24.114 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56256 10 6452 1 2025-11-16 09:11:24.516 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:33212 10 6452 1 2025-11-16 09:12:24.919 00:00:10.412 TCP 1.101.0.1:3000 -> 23.104.0.1:56874 10 6452 1 2025-11-16 09:08:01.560 00:06:00.067 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 09:13:17.801 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 09:13:17.425 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 09:13:17.532 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 09:13:17.718 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 09:13:17.417 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 09:13:25.369 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:45062 10 6452 1 2025-11-16 09:09:01.558 00:06:00.072 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 09:14:25.770 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:32866 10 6452 1 2025-11-16 09:15:26.180 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33206 10 6452 1 2025-11-16 09:16:26.580 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:38362 10 6452 1 2025-11-16 09:17:26.986 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:54146 10 6452 1 2025-11-16 09:18:17.519 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 09:18:17.329 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 09:18:17.547 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 09:18:17.435 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 09:18:17.596 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 09:18:27.352 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:34796 10 6452 1 2025-11-16 09:19:27.756 00:00:10.394 TCP 1.101.0.1:3000 -> 23.104.0.1:58836 10 6452 1 2025-11-16 09:15:01.563 00:06:00.065 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 09:20:28.189 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35788 10 6452 1 2025-11-16 09:16:01.560 00:06:00.071 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 09:21:28.590 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53230 10 6452 1 2025-11-16 09:22:28.992 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:60880 10 6452 1 2025-11-16 09:23:17.728 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 09:23:17.524 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 09:23:17.589 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 09:23:17.766 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 09:23:17.672 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 09:23:29.418 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:51554 10 6452 1 2025-11-16 09:24:29.823 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:48404 10 6452 1 2025-11-16 09:25:30.190 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39186 10 6452 1 2025-11-16 09:26:30.597 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38292 10 6452 1 2025-11-16 09:22:01.565 00:06:00.064 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 09:27:30.998 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:45698 10 6452 1 2025-11-16 09:23:01.562 00:06:00.081 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 09:28:17.836 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 09:28:17.879 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 09:28:17.771 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 09:28:17.774 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 09:28:17.854 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 09:28:31.360 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35304 10 6452 1 2025-11-16 09:29:31.769 00:00:13.657 TCP 1.101.0.1:3000 -> 23.104.0.1:58314 10 6452 1 2025-11-16 09:30:35.475 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37972 10 6452 1 2025-11-16 09:31:35.877 00:00:10.317 TCP 1.101.0.1:3000 -> 23.104.0.1:55246 10 6452 1 2025-11-16 09:32:36.230 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:39466 10 6452 1 2025-11-16 09:33:17.651 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 09:33:17.566 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 09:33:17.728 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 09:33:17.733 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 09:33:17.810 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 09:33:36.630 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40132 10 6452 1 2025-11-16 09:29:01.566 00:06:00.065 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 09:34:37.035 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:43740 10 6452 1 2025-11-16 09:30:01.564 00:06:00.070 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 09:35:37.436 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:54290 10 6452 1 2025-11-16 09:36:37.795 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48190 10 6452 1 2025-11-16 09:37:38.198 00:00:10.417 TCP 1.101.0.1:3000 -> 23.104.0.1:54428 11 6504 1 2025-11-16 09:38:18.027 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 09:38:17.864 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 09:38:17.830 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 09:38:17.943 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 09:38:17.934 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 09:38:38.657 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:39292 10 6452 1 2025-11-16 09:39:39.093 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36648 10 6452 1 2025-11-16 09:40:39.499 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34304 10 6452 1 2025-11-16 09:36:01.571 00:06:00.063 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 09:41:39.902 00:00:10.442 TCP 1.101.0.1:3000 -> 23.104.0.1:33704 12 10375 1 2025-11-16 09:37:01.568 00:06:00.068 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 09:42:40.388 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57500 10 6452 1 2025-11-16 09:43:17.936 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 09:43:18.091 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 09:43:17.998 00:00:00.046 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 09:43:17.854 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 09:43:17.974 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 09:43:40.787 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44566 10 6452 1 2025-11-16 09:44:41.195 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:33730 10 6452 1 2025-11-16 09:45:41.559 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:47672 10 6452 1 2025-11-16 09:46:41.930 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:39012 10 6452 1 2025-11-16 09:47:42.344 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41450 10 6452 1 2025-11-16 09:43:01.572 00:06:00.068 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 09:48:18.532 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 09:48:18.492 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 09:48:18.144 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 09:48:18.450 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 09:48:18.450 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 09:48:42.751 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:45662 10 6452 1 2025-11-16 09:44:01.570 00:06:00.073 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 09:49:43.152 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:53662 10 6452 1 2025-11-16 09:50:43.553 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60786 10 6452 1 2025-11-16 09:51:43.949 00:00:10.750 TCP 1.101.0.1:3000 -> 23.104.0.1:45712 10 6452 1 2025-11-16 09:52:44.740 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41100 10 6452 1 2025-11-16 09:53:18.185 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 09:53:17.984 00:00:00.026 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 09:53:18.080 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 09:53:18.086 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 09:53:18.162 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 09:53:45.146 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:47672 10 6452 1 2025-11-16 09:54:45.507 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:34386 10 6452 1 2025-11-16 09:50:01.574 00:06:00.068 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 09:55:45.912 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:51086 10 6452 1 2025-11-16 09:51:01.570 00:06:00.074 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 09:56:46.315 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:44730 10 6452 1 2025-11-16 09:57:46.723 00:00:10.723 TCP 1.101.0.1:3000 -> 23.104.0.1:48318 10 6452 1 2025-11-16 09:58:18.463 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 09:58:18.503 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 09:58:18.254 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 09:58:18.380 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 09:58:18.313 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 Summary: total flows: 137, total bytes: 419184, total packets: 1027, avg bps: 869, avg pps: 0, avg bpp: 408 Time window: 2025-11-16 08:54:01 - 2025-11-16 09:58:18 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0058s User: 0.0000s Wall: 0.0018s flows/second: 74820.3 Runtime: 0.0018s