Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-17 12:54:02.091 00:06:00.155 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-17 12:59:05.772 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:58420 10 6452 1 2025-11-17 13:00:06.186 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:36542 10 6452 1 2025-11-17 12:56:02.095 00:06:00.151 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-17 13:01:06.587 00:00:10.876 TCP 1.101.0.1:3000 -> 23.104.0.1:46006 10 6452 1 2025-11-17 13:02:07.501 00:00:10.736 TCP 1.101.0.1:3000 -> 23.104.0.1:60054 10 6452 1 2025-11-17 13:03:08.273 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:41734 10 6452 1 2025-11-17 13:03:50.909 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 13:03:50.941 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 13:03:50.827 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 13:03:50.970 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 13:03:51.065 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 13:04:08.671 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36450 10 6452 1 2025-11-17 13:05:09.105 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42132 10 6452 1 2025-11-17 13:01:02.093 00:06:00.155 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-17 13:06:09.507 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:41064 10 6452 1 2025-11-17 13:07:09.912 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:53252 10 6452 1 2025-11-17 13:03:02.096 00:06:00.149 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-17 13:08:10.315 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:57114 10 6452 1 2025-11-17 13:08:50.978 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 13:08:51.141 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 13:08:51.059 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 13:08:51.085 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 13:08:51.058 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 13:09:10.717 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:49292 10 6452 1 2025-11-17 13:10:11.133 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49074 10 6452 1 2025-11-17 13:11:11.542 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:34186 10 6452 1 2025-11-17 13:12:11.944 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:34948 10 6452 1 2025-11-17 13:08:02.093 00:06:00.157 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-17 13:13:12.359 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:37026 10 6452 1 2025-11-17 13:13:50.795 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 13:13:51.300 00:00:00.016 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 13:13:51.267 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 13:13:51.210 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 13:13:51.126 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 13:14:12.721 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39746 10 6452 1 2025-11-17 13:10:02.096 00:06:00.152 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-17 13:15:13.125 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:50550 10 6452 1 2025-11-17 13:16:13.528 00:00:10.395 TCP 1.101.0.1:3000 -> 23.104.0.1:53020 10 6452 1 2025-11-17 13:17:13.942 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:58554 10 6452 1 2025-11-17 13:18:14.356 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48500 10 6452 1 2025-11-17 13:18:51.339 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 13:18:51.455 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 13:18:51.189 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 13:18:51.258 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 13:18:51.455 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 13:19:14.763 00:00:10.348 TCP 1.101.0.1:3000 -> 23.104.0.1:36304 10 6452 1 2025-11-17 13:15:02.095 00:06:00.157 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-17 13:20:15.152 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:33114 10 6452 1 2025-11-17 13:21:15.558 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:34432 10 6452 1 2025-11-17 13:17:02.097 00:06:00.152 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-17 13:22:15.918 00:00:10.446 TCP 1.101.0.1:3000 -> 23.104.0.1:49446 12 10375 1 2025-11-17 13:23:16.405 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:51122 10 6452 1 2025-11-17 13:23:51.777 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 13:23:51.876 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 13:23:51.774 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 13:23:51.360 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 13:23:51.858 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 13:24:16.815 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:53726 10 6452 1 2025-11-17 13:25:17.220 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48652 10 6452 1 2025-11-17 13:26:17.621 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:60964 10 6452 1 2025-11-17 13:22:02.096 00:06:00.157 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-17 13:27:17.983 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:35788 10 6452 1 2025-11-17 13:28:18.410 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53920 10 6452 1 2025-11-17 13:28:51.564 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 13:28:51.331 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 13:28:51.064 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 13:28:51.482 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 13:28:51.328 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 13:24:02.098 00:06:00.153 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-17 13:29:18.817 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:35218 10 6452 1 2025-11-17 13:30:19.228 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:39484 10 6452 1 2025-11-17 13:31:19.586 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:59472 10 6452 1 2025-11-17 13:32:19.991 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:46112 10 6452 1 2025-11-17 13:33:20.399 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53606 10 6452 1 2025-11-17 13:33:51.729 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 13:33:51.607 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 13:33:51.609 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 13:33:51.646 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 13:33:51.719 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 13:29:02.097 00:06:00.157 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-17 13:34:20.804 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:38026 10 6452 1 2025-11-17 13:35:21.208 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:40320 10 6452 1 2025-11-17 13:31:02.100 00:06:00.152 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-17 13:36:21.611 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:50334 10 6452 1 2025-11-17 13:37:22.008 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49134 10 6452 1 2025-11-17 13:38:22.408 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:35506 10 6452 1 2025-11-17 13:38:51.777 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 13:38:51.914 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 13:38:51.853 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 13:38:51.670 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 13:38:51.998 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 13:39:22.806 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:38090 10 6452 1 2025-11-17 13:40:23.211 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:58314 10 6452 1 2025-11-17 13:36:02.098 00:06:00.158 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-17 13:41:23.620 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51440 10 6452 1 2025-11-17 13:42:24.023 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:35098 10 6452 1 2025-11-17 13:38:02.101 00:06:00.152 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-17 13:43:24.437 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41098 10 6452 1 2025-11-17 13:43:52.259 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 13:43:52.285 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 13:43:52.253 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 13:43:52.251 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 13:43:52.335 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 13:44:24.846 00:00:10.353 TCP 1.101.0.1:3000 -> 23.104.0.1:48698 10 6452 1 2025-11-17 13:45:25.235 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54522 10 6452 1 2025-11-17 13:46:25.633 00:00:10.465 TCP 1.101.0.1:3000 -> 23.104.0.1:50770 10 6452 1 2025-11-17 13:47:26.155 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59202 10 6452 1 2025-11-17 13:43:02.099 00:06:00.157 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-17 13:48:26.558 00:00:11.124 TCP 1.101.0.1:3000 -> 23.104.0.1:50418 10 6452 1 2025-11-17 13:48:51.876 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 13:48:51.859 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 13:48:51.618 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 13:48:51.794 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 13:48:51.918 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 13:49:27.696 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:57696 10 6452 1 2025-11-17 13:45:02.103 00:06:00.151 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-17 13:50:28.118 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:35840 10 6452 1 2025-11-17 13:51:28.528 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:35616 10 6452 1 2025-11-17 13:52:28.926 00:00:10.437 TCP 1.101.0.1:3000 -> 23.104.0.1:39042 11 6504 1 2025-11-17 13:53:29.405 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:51852 10 6452 1 2025-11-17 13:53:51.910 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 13:53:51.874 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 13:53:52.080 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 13:53:51.904 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 13:53:52.162 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 13:54:29.811 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:57684 10 6452 1 2025-11-17 13:50:02.102 00:06:00.155 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-17 13:55:30.216 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:39046 10 6452 1 2025-11-17 13:56:30.620 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:52716 10 6452 1 2025-11-17 13:52:02.107 00:06:00.150 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-17 13:57:30.985 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:49174 10 6452 1 2025-11-17 13:58:31.357 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55924 10 6452 1 Summary: total flows: 133, total bytes: 420453, total packets: 1020, avg bps: 866, avg pps: 0, avg bpp: 412 Time window: 2025-11-17 12:54:02 - 2025-11-17 13:58:41 Total flows processed: 133, passed: 133, Blocks skipped: 0, Bytes read: 13896 Sys: 0.0022s User: 0.0011s Wall: 0.0012s flows/second: 109188.2 Runtime: 0.0012s