Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-22 09:54:04.525 00:06:00.338 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-22 09:59:01.107 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:48170 10 6452 1 2025-11-22 10:00:01.550 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:39682 10 6452 1 2025-11-22 10:01:13.815 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 10:01:13.633 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 10:01:01.947 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:60874 10 6452 1 2025-11-22 10:01:13.168 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 10:01:13.733 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 10:01:13.684 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 10:02:02.367 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:57686 10 6452 1 2025-11-22 10:03:02.772 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:47512 10 6452 1 2025-11-22 10:04:03.187 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38482 10 6452 1 2025-11-22 10:00:04.528 00:06:00.333 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-22 10:05:03.589 00:00:10.396 TCP 1.101.0.1:3000 -> 23.104.0.1:47440 12 10369 1 2025-11-22 10:01:04.527 00:06:00.336 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-22 10:06:04.024 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:35864 10 6452 1 2025-11-22 10:06:13.722 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 10:06:13.580 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 10:06:13.639 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 10:06:13.678 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 10:06:13.721 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 10:07:04.423 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59600 10 6452 1 2025-11-22 10:08:04.834 00:00:17.338 TCP 1.101.0.1:3000 -> 23.104.0.1:39200 10 6452 1 2025-11-22 10:09:12.215 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:39634 10 6452 1 2025-11-22 10:10:12.576 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59986 10 6452 1 2025-11-22 10:11:13.722 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 10:11:13.477 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 10:11:13.299 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 10:11:13.639 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 10:11:13.751 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 10:11:12.983 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:44956 10 6452 1 2025-11-22 10:07:04.531 00:06:00.332 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-22 10:12:13.349 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56928 10 6452 1 2025-11-22 10:08:04.529 00:06:00.336 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-22 10:13:13.752 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37818 10 6452 1 2025-11-22 10:14:14.154 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:47306 10 6452 1 2025-11-22 10:15:14.525 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:42294 10 6452 1 2025-11-22 10:16:13.595 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 10:16:13.523 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 10:16:13.852 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 10:16:13.765 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 10:16:13.936 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 10:16:14.933 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:40148 10 6452 1 2025-11-22 10:17:15.360 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:40204 10 6452 1 2025-11-22 10:18:15.768 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:47714 10 6452 1 2025-11-22 10:14:04.540 00:06:00.334 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-22 10:19:16.176 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:44574 10 6452 1 2025-11-22 10:15:04.538 00:06:00.340 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-22 10:20:16.581 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:52988 10 6452 1 2025-11-22 10:21:13.900 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 10:21:13.893 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 10:21:13.652 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 10:21:13.818 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 10:21:14.084 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 10:21:16.944 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:58964 10 6452 1 2025-11-22 10:22:17.368 00:00:10.958 TCP 1.101.0.1:3000 -> 23.104.0.1:42726 10 6452 1 2025-11-22 10:23:18.376 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:54902 10 6452 1 2025-11-22 10:24:18.843 00:00:10.349 TCP 1.101.0.1:3000 -> 23.104.0.1:52280 10 6452 1 2025-11-22 10:25:19.224 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36980 10 6452 1 2025-11-22 10:21:04.543 00:06:00.333 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-22 10:26:13.731 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 10:26:13.789 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 10:26:13.891 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 10:26:13.830 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 10:26:13.973 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 10:26:19.627 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47602 10 6452 1 2025-11-22 10:22:04.540 00:06:00.338 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-22 10:27:20.036 00:00:10.493 TCP 1.101.0.1:3000 -> 23.104.0.1:58650 11 6504 1 2025-11-22 10:28:20.571 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41654 10 6452 1 2025-11-22 10:29:20.975 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:42944 10 6452 1 2025-11-22 10:30:21.378 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49588 10 6452 1 2025-11-22 10:31:14.037 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 10:31:13.721 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 10:31:13.872 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 10:31:14.160 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 10:31:13.956 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 10:31:21.786 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:54258 10 6452 1 2025-11-22 10:32:22.194 00:00:15.575 TCP 1.101.0.1:3000 -> 23.104.0.1:41820 10 6452 1 2025-11-22 10:28:04.543 00:06:00.338 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-22 10:33:27.819 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:49808 12 6556 1 2025-11-22 10:29:04.542 00:06:00.342 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-22 10:34:28.227 00:00:10.356 TCP 1.101.0.1:3000 -> 23.104.0.1:55270 10 6452 1 2025-11-22 10:35:28.622 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:46350 10 6452 1 2025-11-22 10:36:14.034 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 10:36:14.228 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 10:36:14.140 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 10:36:14.040 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 10:36:14.223 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 10:36:28.984 00:00:12.656 TCP 1.101.0.1:3000 -> 23.104.0.1:37326 10 6452 1 2025-11-22 10:37:31.676 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:47262 10 6452 1 2025-11-22 10:38:32.105 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38904 10 6452 1 2025-11-22 10:39:32.510 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41632 10 6452 1 2025-11-22 10:35:04.544 00:06:00.338 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-22 10:40:32.911 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:42684 10 6452 1 2025-11-22 10:36:04.541 00:06:00.344 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-22 10:41:14.442 00:00:00.031 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 10:41:15.001 00:00:00.042 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 10:41:14.779 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 10:41:14.360 00:00:00.030 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 10:41:14.364 00:00:00.027 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 10:41:33.276 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:36812 10 6452 1 2025-11-22 10:42:33.634 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:60120 10 6452 1 2025-11-22 10:43:34.062 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:36784 10 6452 1 2025-11-22 10:44:34.461 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56306 10 6452 1 2025-11-22 10:45:34.864 00:00:10.910 TCP 1.101.0.1:3000 -> 23.104.0.1:49410 10 6452 1 2025-11-22 10:46:14.440 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 10:46:14.283 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 10:46:14.374 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 10:46:14.357 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 10:46:14.168 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 10:46:35.812 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56252 10 6452 1 2025-11-22 10:42:04.547 00:06:00.338 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-22 10:47:36.215 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:35036 10 6452 1 2025-11-22 10:43:04.544 00:06:00.343 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-22 10:48:36.621 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:47006 10 6452 1 2025-11-22 10:49:37.023 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:42868 10 6452 1 2025-11-22 10:50:37.386 00:00:10.413 TCP 1.101.0.1:3000 -> 23.104.0.1:40384 11 6504 1 2025-11-22 10:51:14.390 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 10:51:14.292 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 10:51:14.392 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 10:51:14.331 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 10:51:14.475 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 10:51:37.840 00:00:10.442 TCP 1.101.0.1:3000 -> 23.104.0.1:53600 11 6504 1 2025-11-22 10:52:38.323 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:36778 10 6452 1 2025-11-22 10:53:38.721 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:46300 10 6452 1 2025-11-22 10:49:04.549 00:06:00.345 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-22 10:54:39.132 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:55026 10 6452 1 2025-11-22 10:50:04.547 00:06:00.350 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-22 10:55:39.542 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:53482 10 6452 1 2025-11-22 10:56:14.598 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 10:56:14.229 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 10:56:14.517 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 10:56:14.521 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 10:56:14.396 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 10:56:39.981 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:54362 10 6452 1 2025-11-22 10:57:40.394 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41530 10 6452 1 Summary: total flows: 136, total bytes: 414602, total packets: 1015, avg bps: 866, avg pps: 0, avg bpp: 408 Time window: 2025-11-22 09:54:04 - 2025-11-22 10:57:50 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0031s User: 0.0020s Wall: 0.0019s flows/second: 72647.1 Runtime: 0.0019s