Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-02 01:59:24.206 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49966 10 6452 1 2025-11-02 02:00:24.603 00:00:10.414 TCP 1.101.0.1:3000 -> 23.104.0.1:40212 11 6504 1 2025-11-02 01:56:53.805 00:05:00.355 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-02 02:01:24.407 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 02:01:24.564 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 02:01:24.414 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 02:01:24.324 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 02:01:24.552 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 02:01:25.067 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:48390 10 6452 1 2025-11-02 02:02:25.477 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:40756 10 6452 1 2025-11-02 02:03:25.882 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54434 10 6452 1 2025-11-02 01:59:53.809 00:05:00.350 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-02 02:04:26.282 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54902 10 6452 1 2025-11-02 02:05:26.685 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:57416 10 6452 1 2025-11-02 02:06:24.693 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 02:06:24.588 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 02:06:24.523 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 02:06:24.639 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 02:06:24.723 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 02:06:27.115 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:34780 10 6452 1 2025-11-02 02:02:53.807 00:05:00.355 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-02 02:07:27.523 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41342 10 6452 1 2025-11-02 02:08:27.928 00:00:10.398 TCP 1.101.0.1:3000 -> 23.104.0.1:56834 10 6452 1 2025-11-02 02:09:28.347 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39954 10 6452 1 2025-11-02 02:05:53.810 00:05:00.357 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-02 02:10:28.751 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43300 10 6452 1 2025-11-02 02:11:25.255 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 02:11:24.738 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 02:11:24.888 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 02:11:25.180 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 02:11:25.172 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 02:11:29.157 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56920 10 6452 1 2025-11-02 02:12:29.561 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41666 10 6452 1 2025-11-02 02:08:53.807 00:05:00.364 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-02 02:13:29.966 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39158 10 6452 1 2025-11-02 02:14:30.369 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57500 10 6452 1 2025-11-02 02:15:30.777 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:43790 10 6452 1 2025-11-02 02:11:53.810 00:05:00.358 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-02 02:16:24.828 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 02:16:24.752 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 02:16:24.778 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 02:16:24.746 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 02:16:24.752 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 02:16:31.149 00:00:10.346 TCP 1.101.0.1:3000 -> 23.104.0.1:49342 10 6452 1 2025-11-02 02:17:31.554 00:00:10.512 TCP 1.101.0.1:3000 -> 23.104.0.1:53234 10 6452 1 2025-11-02 02:18:32.129 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:37430 10 6452 1 2025-11-02 02:14:53.807 00:05:00.364 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-02 02:19:32.490 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47232 10 6452 1 2025-11-02 02:20:32.894 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:46656 12 6556 1 2025-11-02 02:21:24.917 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 02:21:24.916 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 02:21:24.870 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 02:21:24.959 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 02:21:25.043 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 02:21:33.316 00:00:10.691 TCP 1.101.0.1:3000 -> 23.104.0.1:37836 10 6452 1 2025-11-02 02:17:53.811 00:05:00.359 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-02 02:22:34.065 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:47118 10 6452 1 2025-11-02 02:23:34.426 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:60842 10 6452 1 2025-11-02 02:24:34.829 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:58848 10 6452 1 2025-11-02 02:20:53.809 00:05:00.366 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-02 02:25:35.231 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:52032 10 6452 1 2025-11-02 02:26:25.923 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 02:26:25.995 00:00:00.048 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 02:26:25.830 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 02:26:25.924 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 02:26:26.008 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 02:26:35.590 00:00:11.000 TCP 1.101.0.1:3000 -> 23.104.0.1:51900 10 6452 1 2025-11-02 02:27:36.631 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:53150 10 6452 1 2025-11-02 02:23:53.812 00:05:00.362 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-02 02:28:37.034 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:49838 10 6452 1 2025-11-02 02:29:37.396 00:00:10.483 TCP 1.101.0.1:3000 -> 23.104.0.1:52428 10 6452 1 2025-11-02 02:30:37.913 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54650 10 6452 1 2025-11-02 02:26:53.813 00:05:00.367 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-02 02:31:25.229 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 02:31:25.197 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 02:31:25.326 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 02:31:25.190 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 02:31:25.409 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 02:31:38.316 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:34492 10 6452 1 2025-11-02 02:32:38.727 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:59348 10 6452 1 2025-11-02 02:33:39.104 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:37022 10 6452 1 2025-11-02 02:29:53.816 00:05:00.363 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-02 02:34:39.511 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58310 10 6452 1 2025-11-02 02:35:39.911 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54838 10 6452 1 2025-11-02 02:36:25.188 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 02:36:25.269 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 02:36:25.294 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 02:36:25.185 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 02:36:25.267 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 02:36:40.323 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:40428 10 6452 1 2025-11-02 02:32:53.815 00:05:00.367 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-02 02:37:40.794 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:59844 10 6452 1 2025-11-02 02:38:41.205 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:58094 10 6452 1 2025-11-02 02:35:53.819 00:05:00.363 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-02 02:39:41.566 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36716 10 6452 1 2025-11-02 02:40:41.971 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58100 10 6452 1 2025-11-02 02:41:24.895 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 02:41:25.193 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 02:41:25.449 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 02:41:25.186 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 02:41:25.268 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 02:41:42.372 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47814 10 6452 1 2025-11-02 02:38:53.815 00:05:00.368 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-02 02:42:42.774 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:34314 10 6452 1 2025-11-02 02:43:43.189 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:58434 10 6452 1 2025-11-02 02:44:43.593 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:43814 10 6452 1 2025-11-02 02:45:44.004 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:54432 10 6452 1 2025-11-02 02:41:53.819 00:05:00.363 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-02 02:46:25.888 00:00:00.026 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 02:46:25.616 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 02:46:25.697 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 02:46:25.556 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 02:46:25.805 00:00:00.027 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 02:46:44.404 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:35258 11 6492 1 2025-11-02 02:47:44.808 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33238 10 6452 1 2025-11-02 02:44:53.816 00:05:00.368 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-02 02:48:45.217 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40632 10 6452 1 2025-11-02 02:49:45.623 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:39472 12 6556 1 2025-11-02 02:50:46.022 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53322 10 6452 1 2025-11-02 02:51:25.445 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 02:51:25.456 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 02:51:25.651 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 02:51:25.629 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 02:51:25.712 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 02:47:53.820 00:05:00.364 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-02 02:51:46.432 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:55840 10 6452 1 2025-11-02 02:52:46.832 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57204 10 6452 1 2025-11-02 02:53:47.234 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:45556 10 6452 1 2025-11-02 02:50:53.817 00:05:00.368 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-02 02:54:47.637 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60768 10 6452 1 2025-11-02 02:55:48.043 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56886 10 6452 1 2025-11-02 02:56:25.668 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 02:56:25.737 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 02:56:25.527 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 02:56:25.663 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 02:56:25.745 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 02:56:48.443 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49430 10 6452 1 2025-11-02 02:53:53.821 00:05:00.366 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-02 02:57:48.849 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:32840 10 6452 1 Summary: total flows: 139, total bytes: 410848, total packets: 1016, avg bps: 883, avg pps: 0, avg bpp: 404 Time window: 2025-11-02 01:56:53 - 2025-11-02 02:58:54 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0041s User: 0.0025s Wall: 0.0026s flows/second: 53521.4 Runtime: 0.0026s