Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-22 07:54:04.487 00:06:00.311 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-22 07:59:10.986 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:57622 10 6452 1 2025-11-22 07:55:04.485 00:06:00.316 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-22 08:00:11.396 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:53790 12 6556 1 2025-11-22 08:01:11.163 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 08:01:11.066 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 08:01:10.991 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 08:01:11.080 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 08:01:11.084 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 08:01:11.813 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54084 10 6452 1 2025-11-22 08:02:12.218 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:42890 10 6452 1 2025-11-22 08:03:12.623 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:46200 10 6452 1 2025-11-22 08:04:12.979 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:48628 10 6452 1 2025-11-22 08:05:13.402 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44094 10 6452 1 2025-11-22 08:01:04.489 00:06:00.311 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-22 08:06:11.254 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 08:06:11.169 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 08:06:11.148 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 08:06:11.148 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 08:06:11.230 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 08:06:13.813 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:40226 10 6452 1 2025-11-22 08:02:04.486 00:06:00.317 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-22 08:07:14.185 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:39398 10 6452 1 2025-11-22 08:08:14.588 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42478 10 6452 1 2025-11-22 08:09:14.988 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:44700 10 6452 1 2025-11-22 08:10:15.404 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:44164 10 6452 1 2025-11-22 08:11:10.956 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 08:11:11.267 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 08:11:11.333 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 08:11:11.184 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 08:11:11.181 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 08:11:15.804 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:41600 10 6452 1 2025-11-22 08:12:16.212 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52254 10 6452 1 2025-11-22 08:08:04.491 00:06:00.314 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-22 08:13:16.617 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53678 10 6452 1 2025-11-22 08:09:04.488 00:06:00.319 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-22 08:14:17.021 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55044 10 6452 1 2025-11-22 08:15:17.431 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52382 10 6452 1 2025-11-22 08:16:11.606 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 08:16:11.474 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 08:16:11.260 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 08:16:11.524 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 08:16:11.351 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 08:16:17.835 00:00:10.399 TCP 1.101.0.1:3000 -> 23.104.0.1:50478 10 6452 1 2025-11-22 08:17:18.268 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59754 10 6452 1 2025-11-22 08:18:18.672 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:36632 10 6452 1 2025-11-22 08:19:19.101 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60990 10 6452 1 2025-11-22 08:15:04.491 00:06:00.318 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-22 08:20:19.501 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:56960 10 6452 1 2025-11-22 08:16:04.488 00:06:00.323 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-22 08:21:11.467 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 08:21:11.546 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 08:21:11.401 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 08:21:11.385 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 08:21:11.392 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 08:21:19.862 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:47658 10 6452 1 2025-11-22 08:22:20.278 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55206 10 6452 1 2025-11-22 08:23:20.681 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:43722 10 6452 1 2025-11-22 08:24:21.041 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59778 10 6452 1 2025-11-22 08:25:21.444 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35720 10 6452 1 2025-11-22 08:26:11.888 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 08:26:11.569 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 08:26:11.643 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 08:26:11.805 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 08:26:11.819 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 08:26:21.847 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:37022 10 6452 1 2025-11-22 08:22:04.492 00:06:00.318 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-22 08:27:22.271 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46854 10 6452 1 2025-11-22 08:23:04.491 00:06:00.322 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-22 08:28:22.672 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35756 10 6452 1 2025-11-22 08:29:23.114 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41602 10 6452 1 2025-11-22 08:30:23.517 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41186 10 6452 1 2025-11-22 08:31:11.702 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 08:31:11.589 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 08:31:11.672 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 08:31:11.541 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 08:31:11.754 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 08:31:23.924 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:39588 10 6452 1 2025-11-22 08:32:24.300 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:47844 10 6452 1 2025-11-22 08:33:24.693 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:57366 10 6452 1 2025-11-22 08:29:04.495 00:06:00.317 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-22 08:34:25.109 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:45954 10 6452 1 2025-11-22 08:30:04.492 00:06:00.323 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-22 08:35:25.493 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:57506 10 6452 1 2025-11-22 08:36:11.789 00:00:00.026 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 08:36:11.821 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 08:36:11.799 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 08:36:11.711 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 08:36:11.882 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 08:36:25.901 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:37554 10 6452 1 2025-11-22 08:37:26.321 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:54316 10 6452 1 2025-11-22 08:38:26.733 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:51504 10 6452 1 2025-11-22 08:39:27.157 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:33322 10 6452 1 2025-11-22 08:40:27.560 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:60040 10 6452 1 2025-11-22 08:36:04.496 00:06:00.318 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-22 08:41:11.804 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 08:41:11.603 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 08:41:11.701 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 08:41:11.881 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 08:41:11.784 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 08:41:27.968 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:39064 10 6452 1 2025-11-22 08:37:04.494 00:06:00.322 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-22 08:42:28.350 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42592 10 6452 1 2025-11-22 08:43:28.753 00:00:10.393 TCP 1.101.0.1:3000 -> 23.104.0.1:55232 10 6452 1 2025-11-22 08:44:29.177 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:54694 10 6452 1 2025-11-22 08:45:29.589 00:00:10.989 TCP 1.101.0.1:3000 -> 23.104.0.1:37380 10 6452 1 2025-11-22 08:46:11.995 00:00:00.029 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 08:46:11.682 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 08:46:11.828 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 08:46:11.994 00:00:00.036 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 08:46:11.909 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 08:46:30.616 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36176 10 6452 1 2025-11-22 08:47:31.021 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:36124 10 6452 1 2025-11-22 08:43:04.499 00:06:00.318 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-22 08:48:31.387 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56074 10 6452 1 2025-11-22 08:44:04.495 00:06:00.322 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-22 08:49:31.788 00:00:10.438 TCP 1.101.0.1:3000 -> 23.104.0.1:42962 12 10375 1 2025-11-22 08:50:32.267 00:00:10.987 TCP 1.101.0.1:3000 -> 23.104.0.1:38640 10 6452 1 2025-11-22 08:51:12.172 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 08:51:11.942 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 08:51:12.166 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 08:51:11.855 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 08:51:12.247 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 08:51:33.289 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:50802 10 6452 1 2025-11-22 08:52:33.700 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:53628 10 6452 1 2025-11-22 08:53:34.116 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:37990 10 6452 1 2025-11-22 08:54:34.522 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:37976 10 6452 1 2025-11-22 08:50:04.499 00:06:00.318 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-22 08:55:34.944 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:39392 10 6452 1 2025-11-22 08:51:04.499 00:06:00.324 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-22 08:56:12.875 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 08:56:12.735 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 08:56:12.600 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 08:56:12.793 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 08:56:12.793 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 08:56:35.356 00:00:10.446 TCP 1.101.0.1:3000 -> 23.104.0.1:57790 10 6452 1 2025-11-22 08:57:35.839 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:40308 10 6452 1 2025-11-22 08:58:36.269 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:46222 10 6452 1 Summary: total flows: 138, total bytes: 421765, total packets: 1036, avg bps: 869, avg pps: 0, avg bpp: 407 Time window: 2025-11-22 07:54:04 - 2025-11-22 08:58:46 Total flows processed: 138, passed: 138, Blocks skipped: 0, Bytes read: 14416 Sys: 0.0053s User: 0.0000s Wall: 0.0021s flows/second: 65744.4 Runtime: 0.0021s