Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-23 11:54:05.050 00:06:00.001 TCP 179.21.23.23:179 -> 179.21.23.21:38570 13 809 1 2025-11-23 11:58:56.830 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:37426 10 6452 1 2025-11-23 11:59:57.189 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57068 10 6452 1 2025-11-23 12:00:57.595 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:34354 10 6452 1 2025-11-23 12:01:44.853 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 12:01:44.589 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 12:01:44.965 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 12:01:44.768 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 12:01:45.049 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 12:01:58.019 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:32874 10 6452 1 2025-11-23 12:02:58.422 00:00:10.414 TCP 1.101.0.1:3000 -> 23.104.0.1:48448 11 6504 1 2025-11-23 12:03:58.879 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:51914 10 6452 1 2025-11-23 12:00:05.868 00:05:59.184 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 12:00:05.054 00:06:00.001 TCP 179.21.23.21:38570 -> 179.21.23.23:179 13 790 1 2025-11-23 12:04:59.242 00:00:10.420 TCP 1.101.0.1:3000 -> 23.104.0.1:54202 10 6452 1 2025-11-23 12:05:59.688 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:55050 10 6452 1 2025-11-23 12:06:44.799 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 12:06:44.719 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 12:06:44.849 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 12:06:44.717 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 12:06:44.688 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 12:06:05.873 00:01:00.000 TCP 179.21.23.23:179 -> 179.21.23.21:38570 3 175 1 2025-11-23 12:07:00.060 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49200 10 6452 1 2025-11-23 12:08:00.466 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:49698 10 6452 1 2025-11-23 12:09:00.873 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57788 10 6452 1 2025-11-23 12:10:01.276 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56888 10 6452 1 2025-11-23 12:06:05.868 00:05:59.188 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 12:11:01.678 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:40904 10 6452 1 2025-11-23 12:11:44.746 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 12:11:44.683 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 12:11:44.857 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 12:11:44.917 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 12:11:44.940 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 12:08:05.054 00:04:00.820 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-23 12:12:02.105 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49944 10 6452 1 2025-11-23 12:12:05.870 00:01:00.000 TCP 179.21.23.21:38570 -> 179.21.23.23:179 3 194 1 2025-11-23 12:13:02.510 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:60148 10 6452 1 2025-11-23 12:14:02.951 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:49768 10 6452 1 2025-11-23 12:15:03.325 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:35404 10 6452 1 2025-11-23 12:16:03.754 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:35732 10 6452 1 2025-11-23 12:16:45.230 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 12:16:45.166 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 12:16:45.186 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 12:16:45.192 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 12:16:45.268 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 12:17:04.154 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41642 10 6452 1 2025-11-23 12:13:05.054 00:06:00.002 TCP 179.21.23.23:179 -> 179.21.23.21:38570 13 809 1 2025-11-23 12:14:05.056 00:04:00.816 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-23 12:18:04.558 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54942 10 6452 1 2025-11-23 12:19:04.959 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47260 10 6452 1 2025-11-23 12:20:05.366 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37178 10 6452 1 2025-11-23 12:21:05.769 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:50368 10 6452 1 2025-11-23 12:21:44.986 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 12:21:44.911 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 12:21:45.089 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 12:21:44.982 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 12:21:45.171 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 12:22:06.179 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:40930 10 6452 1 2025-11-23 12:23:06.544 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:51040 10 6452 1 2025-11-23 12:19:05.875 00:06:00.004 TCP 179.21.23.23:179 -> 179.21.23.21:38570 13 790 1 2025-11-23 12:19:05.058 00:06:00.003 TCP 179.21.23.21:38570 -> 179.21.23.23:179 13 790 1 2025-11-23 12:24:06.946 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:59542 10 6452 1 2025-11-23 12:25:07.322 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:42482 10 6452 1 2025-11-23 12:26:07.683 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51614 10 6452 1 2025-11-23 12:26:45.264 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 12:26:45.183 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 12:26:45.072 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 12:26:45.181 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 12:26:45.130 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 12:27:08.110 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:50770 10 6452 1 2025-11-23 12:28:08.520 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:57280 10 6452 1 2025-11-23 12:29:08.892 00:00:10.342 TCP 1.101.0.1:3000 -> 23.104.0.1:46584 10 6452 1 2025-11-23 12:25:05.877 00:06:00.002 TCP 179.21.23.21:38570 -> 179.21.23.23:179 13 809 1 2025-11-23 12:30:09.272 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:32814 10 6452 1 2025-11-23 12:26:05.059 00:06:00.002 TCP 179.21.23.23:179 -> 179.21.23.21:38570 13 809 1 2025-11-23 12:31:09.640 00:00:10.443 TCP 1.101.0.1:3000 -> 23.104.0.1:33050 12 10375 1 2025-11-23 12:31:45.421 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 12:31:45.423 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 12:31:45.237 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 12:31:45.338 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 12:31:45.069 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 12:32:10.120 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:42564 10 6452 1 2025-11-23 12:33:10.499 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:39918 10 6452 1 2025-11-23 12:34:10.919 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:59874 10 6452 1 2025-11-23 12:35:11.317 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54440 10 6452 1 2025-11-23 12:36:11.719 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:37958 10 6452 1 2025-11-23 12:36:45.869 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 12:36:45.778 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 12:36:45.953 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 12:36:45.787 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 12:36:45.793 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 12:32:05.063 00:06:00.001 TCP 179.21.23.21:38570 -> 179.21.23.23:179 13 790 1 2025-11-23 12:32:05.881 00:05:59.181 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 12:37:12.132 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60212 10 6452 1 2025-11-23 12:38:12.536 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:40282 10 6452 1 2025-11-23 12:38:05.884 00:01:00.016 TCP 179.21.23.23:179 -> 179.21.23.21:38570 3 175 1 2025-11-23 12:39:12.902 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54224 12 6556 1 2025-11-23 12:40:13.313 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:52822 10 6452 1 2025-11-23 12:41:13.711 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:60742 10 6452 1 2025-11-23 12:41:45.510 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 12:41:45.576 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 12:41:45.425 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 12:41:45.428 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 12:41:45.518 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 12:42:14.119 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45994 10 6452 1 2025-11-23 12:38:05.882 00:05:59.184 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 12:43:14.523 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:60446 10 6452 1 2025-11-23 12:40:05.062 00:04:00.838 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-23 12:44:14.926 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:60782 10 6452 1 2025-11-23 12:44:05.898 00:01:00.000 TCP 179.21.23.21:38570 -> 179.21.23.23:179 3 194 1 2025-11-23 12:45:15.347 00:00:10.459 TCP 1.101.0.1:3000 -> 23.104.0.1:33118 10 6452 1 2025-11-23 12:46:15.839 00:00:10.402 TCP 1.101.0.1:3000 -> 23.104.0.1:45324 10 6452 1 2025-11-23 12:46:45.613 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 12:46:45.323 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 12:46:45.684 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 12:46:45.392 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 12:46:45.766 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 12:47:16.268 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:51674 10 6452 1 2025-11-23 12:48:16.674 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:37674 10 6452 1 2025-11-23 12:45:05.063 00:04:00.838 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-23 12:49:17.030 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:41600 10 6452 1 2025-11-23 12:46:05.067 00:04:00.832 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-23 12:50:17.399 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:42534 10 6452 1 2025-11-23 12:51:17.800 00:00:10.347 TCP 1.101.0.1:3000 -> 23.104.0.1:34474 10 6452 1 2025-11-23 12:51:45.855 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 12:51:45.649 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 12:51:45.652 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 12:51:45.772 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 12:51:45.769 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 12:52:18.182 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:46612 10 6452 1 2025-11-23 12:53:18.544 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43384 10 6452 1 2025-11-23 12:54:18.951 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55112 10 6452 1 2025-11-23 12:50:05.069 00:06:00.001 TCP 179.21.23.23:179 -> 179.21.23.21:38570 13 809 1 2025-11-23 12:51:05.074 00:04:00.831 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-23 12:55:19.357 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38386 10 6452 1 2025-11-23 12:56:19.757 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:35282 10 6452 1 2025-11-23 12:56:45.942 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 12:56:46.182 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 12:56:46.181 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 12:56:46.156 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 12:56:46.264 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 12:57:20.176 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:51176 10 6452 1 2025-11-23 12:58:20.580 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:35488 10 6452 1 Summary: total flows: 143, total bytes: 420904, total packets: 1022, avg bps: 871, avg pps: 0, avg bpp: 411 Time window: 2025-11-23 11:54:05 - 2025-11-23 12:58:30 Total flows processed: 143, passed: 143, Blocks skipped: 0, Bytes read: 14936 Sys: 0.0045s User: 0.0009s Wall: 0.0028s flows/second: 51889.0 Runtime: 0.0028s