Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-01 16:53:53.654 00:06:00.277 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-01 16:59:23.511 00:00:10.450 TCP 1.101.0.1:3000 -> 23.104.0.1:52612 12 10369 1 2025-11-01 17:00:24.001 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57382 10 6452 1 2025-11-01 17:01:13.541 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 17:01:13.860 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 17:01:13.851 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 17:01:13.658 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 17:01:13.459 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 17:01:24.404 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:49770 10 6452 1 2025-11-01 17:02:24.761 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:35852 10 6452 1 2025-11-01 16:57:53.654 00:06:00.281 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-01 17:03:25.172 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36038 10 6452 1 2025-11-01 17:04:25.584 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:38738 10 6452 1 2025-11-01 17:05:25.948 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:50598 10 6452 1 2025-11-01 17:00:53.656 00:06:00.277 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-01 17:06:13.934 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 17:06:13.756 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 17:06:13.847 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 17:06:13.841 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 17:06:13.851 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 17:06:26.369 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:42564 10 6452 1 2025-11-01 17:07:26.728 00:00:10.506 TCP 1.101.0.1:3000 -> 23.104.0.1:38622 10 6452 1 2025-11-01 17:08:27.271 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38558 10 6452 1 2025-11-01 17:09:27.674 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:38186 10 6452 1 2025-11-01 17:04:53.656 00:06:00.280 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-01 17:10:28.113 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:56334 10 6452 1 2025-11-01 17:11:13.856 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 17:11:14.046 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 17:11:13.917 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 17:11:13.621 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 17:11:13.774 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 17:11:28.519 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:44648 12 6556 1 2025-11-01 17:12:28.923 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:42994 10 6452 1 2025-11-01 17:07:53.659 00:06:00.276 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-01 17:13:29.343 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:48374 10 6452 1 2025-11-01 17:14:29.748 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:39936 10 6452 1 2025-11-01 17:15:30.113 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:60952 10 6452 1 2025-11-01 17:16:13.847 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 17:16:13.870 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 17:16:14.008 00:00:00.030 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 17:16:13.710 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 17:16:13.764 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 17:16:30.517 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:41212 10 6452 1 2025-11-01 17:11:53.657 00:06:00.283 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-01 17:17:30.886 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:43550 12 6556 1 2025-11-01 17:18:31.309 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58678 10 6452 1 2025-11-01 17:19:31.715 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:57464 10 6452 1 2025-11-01 17:14:53.660 00:06:00.278 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-01 17:20:32.134 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:49814 10 6452 1 2025-11-01 17:21:14.384 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 17:21:14.327 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 17:21:14.326 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 17:21:14.251 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 17:21:14.466 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 17:21:32.535 00:00:10.356 TCP 1.101.0.1:3000 -> 23.104.0.1:60376 10 6452 1 2025-11-01 17:22:32.932 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:49548 10 6452 1 2025-11-01 17:23:33.358 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54670 10 6452 1 2025-11-01 17:18:53.658 00:06:00.283 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-01 17:24:33.765 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:42654 10 6452 1 2025-11-01 17:25:34.191 00:00:11.785 TCP 1.101.0.1:3000 -> 23.104.0.1:45036 10 6452 1 2025-11-01 17:26:14.125 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 17:26:14.235 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 17:26:14.012 00:00:00.042 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 17:26:14.196 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 17:26:14.278 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 17:26:36.021 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:46218 10 6452 1 2025-11-01 17:21:53.662 00:06:00.277 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-01 17:27:36.383 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:59154 10 6452 1 2025-11-01 17:28:36.792 00:00:10.346 TCP 1.101.0.1:3000 -> 23.104.0.1:52232 10 6452 1 2025-11-01 17:29:37.173 00:00:14.518 TCP 1.101.0.1:3000 -> 23.104.0.1:41938 10 6452 1 2025-11-01 17:30:41.726 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:52710 10 6452 1 2025-11-01 17:25:53.662 00:06:00.283 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-01 17:31:14.372 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 17:31:14.713 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 17:31:14.463 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 17:31:14.457 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 17:31:14.290 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 17:31:42.138 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:36232 10 6452 1 2025-11-01 17:32:42.541 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:54810 10 6452 1 2025-11-01 17:28:53.665 00:06:00.278 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-01 17:33:42.941 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:47502 10 6452 1 2025-11-01 17:34:43.351 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50632 10 6452 1 2025-11-01 17:35:43.746 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:41004 10 6452 1 2025-11-01 17:36:14.515 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 17:36:14.481 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 17:36:14.426 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 17:36:14.470 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 17:36:14.433 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 17:36:44.112 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:55416 10 6452 1 2025-11-01 17:37:44.475 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35596 10 6452 1 2025-11-01 17:32:53.663 00:06:00.284 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-01 17:38:44.873 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:34028 10 6452 1 2025-11-01 17:39:45.278 00:00:10.444 TCP 1.101.0.1:3000 -> 23.104.0.1:58834 12 10375 1 2025-11-01 17:35:53.665 00:06:00.279 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-01 17:40:45.769 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:50624 10 6452 1 2025-11-01 17:41:14.543 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 17:41:14.549 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 17:41:14.284 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 17:41:14.553 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 17:41:14.636 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 17:41:46.194 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:59118 10 6452 1 2025-11-01 17:42:46.601 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:54570 10 6452 1 2025-11-01 17:43:47.008 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:47248 10 6452 1 2025-11-01 17:39:53.663 00:06:00.284 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-01 17:44:47.406 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41834 10 6452 1 2025-11-01 17:45:47.807 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45212 10 6452 1 2025-11-01 17:46:14.590 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 17:46:14.520 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 17:46:14.468 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 17:46:14.527 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 17:46:14.612 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 17:46:48.212 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35178 10 6452 1 2025-11-01 17:42:53.666 00:06:00.279 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-01 17:47:48.617 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45944 10 6452 1 2025-11-01 17:48:49.024 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:58402 10 6452 1 2025-11-01 17:49:49.386 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59616 10 6452 1 2025-11-01 17:50:49.786 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:60540 10 6452 1 2025-11-01 17:51:14.895 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 17:51:14.735 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 17:51:14.632 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 17:51:14.846 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 17:51:14.813 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 17:46:53.663 00:06:00.285 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-01 17:51:50.195 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:58994 10 6452 1 2025-11-01 17:52:50.599 00:00:19.348 TCP 1.101.0.1:3000 -> 23.104.0.1:50522 10 6452 1 2025-11-01 17:54:00.016 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47044 10 6452 1 2025-11-01 17:49:53.668 00:06:00.280 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-01 17:55:00.416 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:41152 10 6452 1 2025-11-01 17:56:00.773 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:47626 10 6452 1 2025-11-01 17:56:14.925 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 17:56:14.978 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 17:56:14.982 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 17:56:14.982 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 17:56:15.066 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 17:57:01.146 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35256 10 6452 1 2025-11-01 17:58:01.551 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55586 10 6452 1 Summary: total flows: 136, total bytes: 418473, total packets: 1016, avg bps: 867, avg pps: 0, avg bpp: 411 Time window: 2025-11-01 16:53:53 - 2025-11-01 17:58:11 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0037s User: 0.0015s Wall: 0.0024s flows/second: 55645.8 Runtime: 0.0025s