Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-02 15:59:09.296 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:36430 10 6452 1 2025-11-02 16:00:09.698 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:45798 10 6452 1 2025-11-02 16:01:10.066 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:39002 10 6452 1 2025-11-02 16:01:41.205 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 16:01:41.384 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 16:01:41.336 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 16:01:41.382 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 16:01:41.465 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 15:56:54.100 00:06:00.337 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-02 16:02:10.428 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:34622 10 6452 1 2025-11-02 16:03:10.792 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:35232 10 6452 1 2025-11-02 16:04:11.211 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:56934 10 6452 1 2025-11-02 15:59:54.098 00:06:00.000 TCP 179.21.23.23:179 -> 179.21.23.21:38570 13 809 1 2025-11-02 16:05:11.581 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51468 10 6452 1 2025-11-02 16:06:11.991 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56268 10 6452 1 2025-11-02 16:06:41.749 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 16:06:41.663 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 16:06:41.308 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 16:06:41.558 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 16:06:41.667 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 16:07:12.392 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50264 10 6452 1 2025-11-02 16:08:12.811 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:48930 10 6452 1 2025-11-02 16:03:54.101 00:06:00.002 TCP 179.21.23.21:38570 -> 179.21.23.23:179 13 790 1 2025-11-02 16:05:54.441 00:03:00.000 TCP 179.21.23.23:179 -> 179.21.23.21:38570 7 421 1 2025-11-02 16:09:13.215 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:53128 10 6452 1 2025-11-02 16:10:13.570 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50610 10 6452 1 2025-11-02 16:11:13.971 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:35768 10 6452 1 2025-11-02 16:11:41.842 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 16:11:41.599 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 16:11:41.747 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 16:11:41.595 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 16:11:41.927 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 16:12:14.387 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48792 10 6452 1 2025-11-02 16:13:14.794 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:46348 10 6452 1 2025-11-02 16:09:54.099 00:04:00.341 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-02 16:14:15.203 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36038 10 6452 1 2025-11-02 16:09:54.438 00:06:00.001 TCP 179.21.23.21:38570 -> 179.21.23.23:179 13 809 1 2025-11-02 16:15:15.604 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:54648 10 6452 1 2025-11-02 16:16:16.005 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:47512 10 6452 1 2025-11-02 16:16:41.514 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 16:16:41.772 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 16:16:41.817 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 16:16:41.605 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 16:16:41.688 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 16:17:16.420 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:39656 10 6452 1 2025-11-02 16:16:54.103 00:01:00.338 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-11-02 16:18:16.795 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:42502 10 6452 1 2025-11-02 16:14:54.100 00:04:00.345 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-02 16:19:17.202 00:00:10.899 TCP 1.101.0.1:3000 -> 23.104.0.1:38446 10 6452 1 2025-11-02 16:20:18.141 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35620 10 6452 1 2025-11-02 16:21:18.540 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:49150 10 6452 1 2025-11-02 16:21:41.604 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 16:21:41.743 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 16:21:41.558 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 16:21:41.742 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 16:21:41.825 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 16:22:18.946 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:44468 10 6452 1 2025-11-02 16:18:54.103 00:04:00.340 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-02 16:23:19.373 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:43394 10 6452 1 2025-11-02 16:19:54.100 00:04:00.345 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-02 16:24:19.790 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:33018 10 6452 1 2025-11-02 16:25:20.198 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41860 10 6452 1 2025-11-02 16:26:20.604 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:33130 10 6452 1 2025-11-02 16:26:41.888 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 16:26:42.124 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 16:26:42.040 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 16:26:42.079 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 16:26:42.162 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 16:27:21.003 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:49572 10 6452 1 2025-11-02 16:23:54.104 00:04:00.340 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-02 16:28:21.406 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:41244 10 6452 1 2025-11-02 16:29:21.809 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:50280 10 6452 1 2025-11-02 16:24:54.102 00:06:00.345 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-02 16:30:22.216 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57890 10 6452 1 2025-11-02 16:31:22.618 00:00:10.689 TCP 1.101.0.1:3000 -> 23.104.0.1:60756 10 6452 1 2025-11-02 16:31:42.176 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 16:31:42.054 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 16:31:42.010 00:00:00.031 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 16:31:41.981 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 16:31:42.093 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 16:32:23.342 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:50252 10 6452 1 2025-11-02 16:33:23.705 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41250 10 6452 1 2025-11-02 16:28:54.104 00:06:00.341 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-02 16:34:24.113 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:53928 10 6452 1 2025-11-02 16:35:24.515 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58322 10 6452 1 2025-11-02 16:36:41.941 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 16:36:24.927 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:58162 10 6452 1 2025-11-02 16:36:41.973 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 16:36:41.973 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 16:36:42.002 00:00:00.042 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 16:36:41.860 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 16:31:54.102 00:06:00.002 TCP 179.21.23.23:179 -> 179.21.23.21:38570 13 809 1 2025-11-02 16:37:25.336 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:43666 10 6452 1 2025-11-02 16:38:25.742 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:47692 10 6452 1 2025-11-02 16:39:26.153 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:45304 10 6452 1 2025-11-02 16:40:26.558 00:00:10.396 TCP 1.101.0.1:3000 -> 23.104.0.1:42568 12 10369 1 2025-11-02 16:35:54.105 00:06:00.001 TCP 179.21.23.21:38570 -> 179.21.23.23:179 13 790 1 2025-11-02 16:37:54.447 00:03:00.001 TCP 179.21.23.23:179 -> 179.21.23.21:38570 7 421 1 2025-11-02 16:41:27.010 00:00:10.464 TCP 1.101.0.1:3000 -> 23.104.0.1:52708 10 6452 1 2025-11-02 16:41:42.175 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 16:41:42.108 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 16:41:42.155 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 16:41:42.173 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 16:41:42.256 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 16:42:27.513 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:37468 10 6452 1 2025-11-02 16:43:27.878 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58966 10 6452 1 2025-11-02 16:44:28.283 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:37350 10 6452 1 2025-11-02 16:41:54.447 00:03:00.001 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 440 1 2025-11-02 16:45:28.681 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:45488 10 6452 1 2025-11-02 16:41:54.105 00:04:00.345 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-02 16:46:29.112 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:41310 10 6452 1 2025-11-02 16:46:42.350 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 16:46:42.298 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 16:46:42.247 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 16:46:42.298 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 16:46:42.379 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 16:47:29.477 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:33930 10 6452 1 2025-11-02 16:48:29.897 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:44162 10 6452 1 2025-11-02 16:49:30.268 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:51706 10 6452 1 2025-11-02 16:45:54.108 00:04:00.342 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-02 16:50:30.697 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41108 10 6452 1 2025-11-02 16:46:54.106 00:04:00.347 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-02 16:51:42.726 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 16:51:42.725 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 16:51:42.475 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 16:51:42.566 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 16:51:31.112 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:41194 10 6452 1 2025-11-02 16:51:42.648 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 16:52:31.527 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:35058 10 6452 1 2025-11-02 16:53:31.924 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:59058 10 6452 1 2025-11-02 16:54:32.331 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54970 10 6452 1 2025-11-02 16:50:54.108 00:04:00.342 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-02 16:55:32.736 00:00:10.440 TCP 1.101.0.1:3000 -> 23.104.0.1:54074 12 10375 1 2025-11-02 16:51:54.106 00:04:00.347 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-02 16:56:42.850 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 16:56:42.499 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 16:56:42.300 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 16:56:42.539 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 16:56:33.214 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39014 10 6452 1 2025-11-02 16:56:42.767 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 16:57:33.619 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47320 10 6452 1 2025-11-02 16:58:34.021 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:35824 10 6452 1 Summary: total flows: 142, total bytes: 424348, total packets: 1016, avg bps: 914, avg pps: 0, avg bpp: 417 Time window: 2025-11-02 15:56:54 - 2025-11-02 16:58:44 Total flows processed: 142, passed: 142, Blocks skipped: 0, Bytes read: 14832 Sys: 0.0042s User: 0.0025s Wall: 0.0021s flows/second: 67680.8 Runtime: 0.0021s