Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-01 17:53:53.665 00:06:00.285 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-01 17:59:01.951 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:57204 10 6452 1 2025-11-01 18:00:02.317 00:00:10.651 TCP 1.101.0.1:3000 -> 23.104.0.1:53472 10 6452 1 2025-11-01 18:01:14.883 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 18:01:14.637 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 18:01:03.010 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:55998 10 6452 1 2025-11-01 18:01:14.823 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 18:01:14.892 00:00:00.019 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 18:01:14.906 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 17:56:53.668 00:06:00.283 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-01 18:02:03.407 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:41088 10 6452 1 2025-11-01 18:03:03.817 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53336 10 6452 1 2025-11-01 18:04:04.218 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:45522 10 6452 1 2025-11-01 18:05:04.616 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:50910 10 6452 1 2025-11-01 18:00:53.668 00:06:00.286 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-01 18:06:14.876 00:00:00.034 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 18:06:14.744 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 18:06:14.827 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 18:06:04.986 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:51112 10 6452 1 2025-11-01 18:06:15.120 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 18:06:15.052 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 18:07:05.360 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48266 10 6452 1 2025-11-01 18:08:05.766 00:00:10.433 TCP 1.101.0.1:3000 -> 23.104.0.1:52332 11 6504 1 2025-11-01 18:03:53.671 00:06:00.281 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-01 18:09:06.248 00:00:10.347 TCP 1.101.0.1:3000 -> 23.104.0.1:56182 10 6452 1 2025-11-01 18:10:06.661 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:45496 10 6452 1 2025-11-01 18:11:14.932 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 18:11:15.096 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 18:11:15.095 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 18:11:07.028 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:53974 10 6452 1 2025-11-01 18:11:15.149 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 18:11:15.178 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 18:12:07.438 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:58774 10 6452 1 2025-11-01 18:07:53.671 00:06:00.285 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-01 18:13:07.843 00:00:10.348 TCP 1.101.0.1:3000 -> 23.104.0.1:39972 10 6452 1 2025-11-01 18:14:08.229 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:45326 10 6452 1 2025-11-01 18:15:08.623 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39480 10 6452 1 2025-11-01 18:10:53.673 00:06:00.281 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-01 18:16:15.175 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 18:16:09.028 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59132 10 6452 1 2025-11-01 18:16:15.172 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 18:16:15.099 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 18:16:15.082 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 18:16:15.164 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 18:17:09.435 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:43466 11 6492 1 2025-11-01 18:18:09.798 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:45530 10 6452 1 2025-11-01 18:19:10.212 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48526 10 6452 1 2025-11-01 18:14:53.672 00:06:00.286 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-01 18:20:10.614 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:36126 10 6452 1 2025-11-01 18:21:15.374 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 18:21:15.221 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 18:21:15.344 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 18:21:15.324 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 18:21:15.408 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 18:21:11.037 00:00:10.344 TCP 1.101.0.1:3000 -> 23.104.0.1:50358 10 6452 1 2025-11-01 18:22:11.426 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42760 10 6452 1 2025-11-01 18:17:53.677 00:06:00.279 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-01 18:23:11.829 00:00:10.352 TCP 1.101.0.1:3000 -> 23.104.0.1:55502 10 6452 1 2025-11-01 18:24:12.224 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:36686 10 6452 1 2025-11-01 18:25:12.581 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:41550 10 6452 1 2025-11-01 18:26:15.470 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 18:26:15.396 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 18:26:15.305 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 18:26:15.602 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 18:26:15.686 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 18:26:12.985 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:54390 10 6452 1 2025-11-01 18:21:53.675 00:06:00.284 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-01 18:27:13.394 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47520 10 6452 1 2025-11-01 18:28:13.799 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:35842 10 6452 1 2025-11-01 18:29:14.195 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:41978 10 6452 1 2025-11-01 18:24:53.678 00:06:00.279 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-01 18:30:14.598 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:48414 10 6452 1 2025-11-01 18:31:15.637 00:00:00.032 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 18:31:15.679 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 18:31:15.554 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 18:31:15.549 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 18:31:15.438 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 18:31:15.003 00:00:10.949 TCP 1.101.0.1:3000 -> 23.104.0.1:39602 10 6452 1 2025-11-01 18:32:15.993 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:36368 10 6452 1 2025-11-01 18:33:16.405 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:44214 10 6452 1 2025-11-01 18:28:53.678 00:06:00.284 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-01 18:34:16.808 00:00:10.642 TCP 1.101.0.1:3000 -> 23.104.0.1:53456 10 6452 1 2025-11-01 18:35:17.488 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:59614 10 6452 1 2025-11-01 18:36:15.852 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 18:36:15.690 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 18:36:15.681 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 18:36:15.240 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 18:36:15.769 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 18:36:17.886 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:40460 10 6452 1 2025-11-01 18:31:53.679 00:06:00.280 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-01 18:37:18.258 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46838 10 6452 1 2025-11-01 18:38:18.666 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:50976 10 6452 1 2025-11-01 18:39:19.089 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48610 10 6452 1 2025-11-01 18:40:19.489 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39698 10 6452 1 2025-11-01 18:35:53.676 00:06:00.285 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-01 18:41:16.385 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 18:41:16.226 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 18:41:16.224 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 18:41:16.248 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 18:41:16.303 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 18:41:19.889 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:37652 12 6556 1 2025-11-01 18:42:20.303 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51332 10 6452 1 2025-11-01 18:43:20.710 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:51472 10 6452 1 2025-11-01 18:38:53.681 00:06:00.278 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-01 18:44:21.108 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59330 10 6452 1 2025-11-01 18:45:21.512 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58722 10 6452 1 2025-11-01 18:46:15.840 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 18:46:15.758 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 18:46:15.649 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 18:46:15.919 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 18:46:15.865 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 18:46:21.917 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:49654 10 6452 1 2025-11-01 18:47:22.279 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41406 10 6452 1 2025-11-01 18:42:53.680 00:06:00.284 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-01 18:48:22.689 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:60128 10 6452 1 2025-11-01 18:49:23.055 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:60400 10 6452 1 2025-11-01 18:50:23.486 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37416 10 6452 1 2025-11-01 18:45:53.683 00:06:00.278 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-01 18:51:15.733 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 18:51:15.863 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 18:51:15.711 00:00:00.034 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 18:51:15.916 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 18:51:15.998 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 18:51:23.888 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:41674 10 6452 1 2025-11-01 18:52:24.297 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:52262 10 6452 1 2025-11-01 18:53:24.662 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45120 10 6452 1 2025-11-01 18:54:25.090 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:46392 10 6452 1 2025-11-01 18:49:53.682 00:06:00.283 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-01 18:55:25.491 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:43256 10 6452 1 2025-11-01 18:56:15.979 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 18:56:15.941 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 18:56:15.906 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 18:56:15.915 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 18:56:15.990 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 18:56:25.889 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:34702 10 6452 1 2025-11-01 18:57:26.293 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44246 10 6452 1 2025-11-01 18:52:53.687 00:06:00.276 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-01 18:58:26.694 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55956 10 6452 1 Summary: total flows: 138, total bytes: 417934, total packets: 1036, avg bps: 857, avg pps: 0, avg bpp: 403 Time window: 2025-11-01 17:53:53 - 2025-11-01 18:58:53 Total flows processed: 138, passed: 138, Blocks skipped: 0, Bytes read: 14416 Sys: 0.0029s User: 0.0019s Wall: 0.0021s flows/second: 65521.2 Runtime: 0.0021s