Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-16 15:54:01.680 00:06:00.099 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 15:59:27.238 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:33176 10 7079 1 2025-11-16 15:55:01.676 00:06:00.104 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 16:00:27.637 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50270 10 7079 1 2025-11-16 16:01:28.062 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:56996 10 7079 1 2025-11-16 16:02:28.494 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36900 10 7079 1 2025-11-16 16:03:25.848 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 16:03:25.814 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 16:03:25.765 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 16:03:25.960 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 16:03:25.891 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 16:03:28.898 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:59238 12 7183 1 2025-11-16 16:04:29.314 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59444 10 7079 1 2025-11-16 16:05:29.718 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:37808 10 7079 1 2025-11-16 16:01:01.682 00:06:00.101 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 16:06:30.128 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:36714 10 7079 1 2025-11-16 16:02:01.679 00:06:00.106 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 16:07:30.534 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:44308 10 7079 1 2025-11-16 16:08:25.881 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 16:08:25.796 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 16:08:25.773 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 16:08:25.799 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 16:08:25.789 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 16:08:30.943 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:36656 10 7079 1 2025-11-16 16:09:31.362 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:57728 10 7079 1 2025-11-16 16:10:31.733 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:34740 12 7183 1 2025-11-16 16:11:32.138 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47602 10 7079 1 2025-11-16 16:12:32.541 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50696 10 7079 1 2025-11-16 16:08:01.684 00:06:00.101 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 16:13:25.874 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 16:13:25.961 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 16:13:25.801 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 16:13:25.790 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 16:13:25.919 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 16:13:32.951 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:44900 10 7079 1 2025-11-16 16:09:01.681 00:06:00.105 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 16:14:33.369 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47210 10 7079 1 2025-11-16 16:15:33.770 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:54406 10 7079 1 2025-11-16 16:16:34.175 00:00:10.444 TCP 1.101.0.1:3000 -> 23.104.0.1:56310 12 10375 1 2025-11-16 16:17:34.658 00:00:10.434 TCP 1.101.0.1:3000 -> 23.104.0.1:49892 10 6452 1 2025-11-16 16:18:26.010 00:00:00.039 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 16:18:26.155 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 16:18:26.026 00:00:00.028 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 16:18:26.137 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 16:18:26.092 00:00:00.040 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 16:18:35.133 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39468 10 6452 1 2025-11-16 16:19:35.536 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59344 10 6452 1 2025-11-16 16:15:01.684 00:06:00.100 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 16:20:35.935 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:41062 10 6452 1 2025-11-16 16:16:01.682 00:06:00.105 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 16:21:36.351 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:37470 10 6452 1 2025-11-16 16:22:36.710 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39676 10 6452 1 2025-11-16 16:23:26.458 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 16:23:26.431 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 16:23:26.386 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 16:23:26.376 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 16:23:26.378 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 16:23:37.112 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35906 10 6452 1 2025-11-16 16:24:37.517 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:46270 10 6452 1 2025-11-16 16:25:37.915 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:45838 10 6452 1 2025-11-16 16:26:38.292 00:00:10.402 TCP 1.101.0.1:3000 -> 23.104.0.1:33048 10 6452 1 2025-11-16 16:22:01.687 00:06:00.102 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 16:27:38.715 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56752 10 6452 1 2025-11-16 16:23:01.683 00:06:00.108 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 16:28:26.339 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 16:28:26.128 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 16:28:26.145 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 16:28:26.257 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 16:28:26.297 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 16:28:39.118 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:53258 10 6452 1 2025-11-16 16:29:39.515 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:53516 10 6452 1 2025-11-16 16:30:39.932 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:38174 10 6452 1 2025-11-16 16:31:40.361 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58912 10 6452 1 2025-11-16 16:32:40.760 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:45266 10 6452 1 2025-11-16 16:33:26.393 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 16:33:26.312 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 16:33:26.268 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 16:33:26.263 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 16:33:26.061 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 16:33:41.173 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:35524 10 6452 1 2025-11-16 16:29:01.688 00:06:00.101 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 16:34:41.536 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:49142 10 6452 1 2025-11-16 16:30:01.688 00:06:00.106 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 16:35:41.941 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:33526 10 6452 1 2025-11-16 16:36:42.353 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:49020 10 6452 1 2025-11-16 16:37:42.717 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:53002 10 6452 1 2025-11-16 16:38:26.426 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 16:38:26.402 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 16:38:26.460 00:00:00.030 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 16:38:26.206 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 16:38:26.542 00:00:00.030 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 16:38:43.141 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:35272 10 6452 1 2025-11-16 16:39:43.534 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56746 10 6452 1 2025-11-16 16:40:43.935 00:00:10.342 TCP 1.101.0.1:3000 -> 23.104.0.1:55646 10 6452 1 2025-11-16 16:36:01.690 00:06:00.105 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 16:41:44.318 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:37210 10 6452 1 2025-11-16 16:37:01.687 00:06:00.110 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 16:42:44.720 00:00:10.356 TCP 1.101.0.1:3000 -> 23.104.0.1:45570 10 6452 1 2025-11-16 16:43:26.482 00:00:00.027 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 16:43:26.511 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 16:43:26.346 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 16:43:26.342 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 16:43:26.428 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 16:43:45.119 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41446 10 6452 1 2025-11-16 16:44:45.525 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:48638 10 6452 1 2025-11-16 16:45:45.890 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:59328 12 6556 1 2025-11-16 16:46:46.316 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:56594 10 6452 1 2025-11-16 16:47:46.684 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:52438 10 6452 1 2025-11-16 16:43:01.691 00:06:00.104 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 16:48:26.654 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 16:48:26.622 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 16:48:26.503 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 16:48:26.571 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 16:48:26.502 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 16:48:47.114 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:47644 10 6452 1 2025-11-16 16:44:01.689 00:06:00.109 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 16:49:47.522 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:33510 10 6452 1 2025-11-16 16:50:47.886 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:33558 12 6556 1 2025-11-16 16:51:48.314 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:52124 10 6452 1 2025-11-16 16:52:48.726 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:58438 10 6452 1 2025-11-16 16:53:26.760 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 16:53:26.749 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 16:53:26.485 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 16:53:26.677 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 16:53:26.757 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 16:53:49.143 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:46090 10 6452 1 2025-11-16 16:54:49.575 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:37296 10 6452 1 2025-11-16 16:50:01.695 00:06:00.101 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 16:55:49.938 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:38694 10 6452 1 2025-11-16 16:51:01.693 00:06:00.108 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 16:56:50.353 00:00:10.700 TCP 1.101.0.1:3000 -> 23.104.0.1:46866 10 6452 1 2025-11-16 16:57:51.125 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:44158 10 6452 1 2025-11-16 16:58:27.187 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 16:58:27.263 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 16:58:26.808 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 16:58:27.105 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 16:58:26.797 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 Summary: total flows: 137, total bytes: 426284, total packets: 1032, avg bps: 882, avg pps: 0, avg bpp: 413 Time window: 2025-11-16 15:54:01 - 2025-11-16 16:58:27 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0020s User: 0.0030s Wall: 0.0018s flows/second: 76452.9 Runtime: 0.0018s