Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-02 17:54:54.124 00:04:00.345 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-02 17:58:58.560 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:43284 10 6452 1 2025-11-02 17:55:54.121 00:04:00.350 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-02 17:59:58.925 00:00:10.351 TCP 1.101.0.1:3000 -> 23.104.0.1:40982 10 6452 1 2025-11-02 18:00:59.312 00:00:10.435 TCP 1.101.0.1:3000 -> 23.104.0.1:33026 10 6452 1 2025-11-02 18:01:43.836 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 18:01:43.892 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 18:01:43.695 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 18:01:43.754 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 18:01:43.836 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 18:01:59.786 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43370 10 6452 1 2025-11-02 18:03:00.191 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:45046 10 6452 1 2025-11-02 17:59:54.126 00:04:00.345 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-02 18:04:00.596 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:55528 10 6452 1 2025-11-02 18:00:54.123 00:04:00.351 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-02 18:05:01.003 00:00:10.396 TCP 1.101.0.1:3000 -> 23.104.0.1:60372 10 6452 1 2025-11-02 18:06:01.439 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:38550 10 6452 1 2025-11-02 18:06:44.139 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 18:06:44.064 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 18:06:43.834 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 18:06:44.062 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 18:06:44.144 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 18:07:01.797 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59772 10 6452 1 2025-11-02 18:08:02.204 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41836 10 6452 1 2025-11-02 18:04:54.130 00:04:00.343 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-02 18:09:02.611 00:00:10.431 TCP 1.101.0.1:3000 -> 23.104.0.1:60504 11 6504 1 2025-11-02 18:10:03.115 00:00:10.707 TCP 1.101.0.1:3000 -> 23.104.0.1:57680 10 6452 1 2025-11-02 18:05:54.128 00:06:00.348 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-02 18:11:03.881 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:37390 10 6452 1 2025-11-02 18:11:43.863 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 18:11:44.104 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 18:11:44.058 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 18:11:44.060 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 18:11:44.146 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 18:12:04.242 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:42774 10 6452 1 2025-11-02 18:13:04.651 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58426 10 6452 1 2025-11-02 18:14:05.066 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:37852 10 6452 1 2025-11-02 18:09:54.133 00:06:00.341 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-02 18:15:05.473 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58828 10 6452 1 2025-11-02 18:16:05.873 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42540 10 6452 1 2025-11-02 18:16:44.272 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 18:16:44.250 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 18:16:44.281 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 18:16:44.273 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 18:16:44.355 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 18:12:54.130 00:04:00.346 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-02 18:17:06.281 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33698 10 6452 1 2025-11-02 18:18:06.690 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:45854 10 6452 1 2025-11-02 18:19:07.060 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:52188 10 6452 1 2025-11-02 18:20:07.465 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50536 10 6452 1 2025-11-02 18:16:54.134 00:04:00.340 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-02 18:21:07.867 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:42348 10 6452 1 2025-11-02 18:21:44.239 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 18:21:44.158 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 18:21:44.201 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 18:21:44.203 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 18:21:44.118 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 18:17:54.131 00:04:00.346 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-02 18:22:08.286 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:58384 10 6452 1 2025-11-02 18:23:08.652 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42002 10 6452 1 2025-11-02 18:24:09.063 00:00:10.562 TCP 1.101.0.1:3000 -> 23.104.0.1:57880 10 6452 1 2025-11-02 18:25:09.667 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43708 10 6452 1 2025-11-02 18:21:54.134 00:04:00.341 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-02 18:26:10.095 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39540 10 6452 1 2025-11-02 18:26:44.204 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 18:26:44.208 00:00:00.028 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 18:26:44.308 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 18:26:44.284 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 18:26:44.367 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 18:22:54.133 00:04:00.349 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-02 18:27:10.501 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:44006 10 6452 1 2025-11-02 18:28:10.907 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52356 10 6452 1 2025-11-02 18:29:11.312 00:00:10.347 TCP 1.101.0.1:3000 -> 23.104.0.1:36672 10 6452 1 2025-11-02 18:30:11.697 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53686 10 6452 1 2025-11-02 18:26:54.135 00:04:00.343 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-02 18:31:12.110 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58878 10 6452 1 2025-11-02 18:31:44.466 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 18:31:44.282 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 18:31:44.206 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 18:31:44.307 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 18:31:44.389 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 18:27:54.133 00:04:00.351 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-02 18:32:12.512 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58104 10 6452 1 2025-11-02 18:33:12.918 00:00:10.354 TCP 1.101.0.1:3000 -> 23.104.0.1:39910 10 6452 1 2025-11-02 18:34:13.315 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:41846 10 6452 1 2025-11-02 18:35:13.712 00:00:11.603 TCP 1.101.0.1:3000 -> 23.104.0.1:49906 10 6452 1 2025-11-02 18:31:54.138 00:04:00.347 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-02 18:36:15.355 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:51404 10 6452 1 2025-11-02 18:36:44.448 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 18:36:44.439 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 18:36:44.255 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 18:36:44.550 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 18:36:44.632 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 18:32:54.135 00:04:00.353 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-02 18:37:15.714 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:33646 10 6452 1 2025-11-02 18:38:16.099 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:55978 10 6452 1 2025-11-02 18:39:16.458 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:36880 10 6452 1 2025-11-02 18:40:16.819 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:58280 10 6452 1 2025-11-02 18:36:54.138 00:04:00.347 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-02 18:41:17.226 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:46610 10 6452 1 2025-11-02 18:41:44.668 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 18:41:44.434 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 18:41:44.443 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 18:41:44.667 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 18:41:44.749 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 18:42:17.624 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:53244 10 6452 1 2025-11-02 18:37:54.137 00:06:00.354 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-02 18:43:17.988 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55984 10 6452 1 2025-11-02 18:44:18.393 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53550 10 6452 1 2025-11-02 18:45:18.809 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52926 10 6452 1 2025-11-02 18:46:19.212 00:00:10.780 TCP 1.101.0.1:3000 -> 23.104.0.1:42970 10 6452 1 2025-11-02 18:46:44.544 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 18:46:44.704 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 18:46:44.730 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 18:46:44.708 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 18:46:44.792 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 18:41:54.139 00:06:00.350 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-02 18:47:20.027 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43350 10 6452 1 2025-11-02 18:48:20.430 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:40790 10 6452 1 2025-11-02 18:44:54.138 00:04:00.353 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-02 18:49:20.793 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36038 10 6452 1 2025-11-02 18:50:21.205 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:54296 10 6452 1 2025-11-02 18:51:21.564 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:44658 10 6452 1 2025-11-02 18:51:44.881 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 18:51:44.736 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 18:51:44.843 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 18:51:44.744 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 18:51:44.963 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 18:52:21.978 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:41530 10 6452 1 2025-11-02 18:53:22.394 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:56506 10 6452 1 2025-11-02 18:48:54.145 00:06:00.001 TCP 179.21.23.21:38570 -> 179.21.23.23:179 13 790 1 2025-11-02 18:49:54.141 00:04:00.353 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-02 18:54:22.799 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:51798 10 6452 1 2025-11-02 18:55:23.207 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:52022 10 6452 1 2025-11-02 18:56:23.610 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48240 10 6452 1 2025-11-02 18:56:44.576 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 18:56:45.176 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 18:56:45.086 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 18:56:45.164 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 18:56:45.247 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 18:57:24.012 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54136 10 6452 1 2025-11-02 18:54:54.493 00:03:00.000 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 440 1 2025-11-02 18:58:24.416 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55046 10 6452 1 Summary: total flows: 143, total bytes: 417421, total packets: 1027, avg bps: 874, avg pps: 0, avg bpp: 406 Time window: 2025-11-02 17:54:54 - 2025-11-02 18:58:34 Total flows processed: 143, passed: 143, Blocks skipped: 0, Bytes read: 14936 Sys: 0.0025s User: 0.0025s Wall: 0.0022s flows/second: 65838.1 Runtime: 0.0022s