Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-02 18:54:54.143 00:04:00.353 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-02 18:59:24.824 00:00:10.519 TCP 1.101.0.1:3000 -> 23.104.0.1:53116 10 6452 1 2025-11-02 19:00:25.382 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56590 10 6452 1 2025-11-02 19:01:25.778 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:60400 10 6452 1 2025-11-02 19:01:44.965 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 19:01:44.973 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 19:01:45.153 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 19:01:45.114 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 19:01:45.056 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 19:02:26.149 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:49662 10 6452 1 2025-11-02 18:58:54.145 00:04:00.349 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-02 19:03:26.551 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:59004 10 6452 1 2025-11-02 18:59:54.142 00:04:00.354 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-02 19:04:26.954 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:51364 10 6452 1 2025-11-02 19:05:27.369 00:00:10.397 TCP 1.101.0.1:3000 -> 23.104.0.1:51342 10 6452 1 2025-11-02 19:06:27.801 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:52534 10 6452 1 2025-11-02 19:06:45.066 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 19:06:45.219 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 19:06:45.100 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 19:06:45.155 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 19:06:44.979 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 19:07:28.210 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:34756 10 6452 1 2025-11-02 19:03:54.146 00:04:00.351 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-02 19:08:28.579 00:00:10.910 TCP 1.101.0.1:3000 -> 23.104.0.1:36268 10 6452 1 2025-11-02 19:04:54.146 00:04:00.353 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-02 19:09:29.530 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55318 10 6452 1 2025-11-02 19:10:29.931 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:57724 10 6452 1 2025-11-02 19:11:30.363 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:38792 10 6452 1 2025-11-02 19:11:45.353 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 19:11:45.274 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 19:11:45.241 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 19:11:45.216 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 19:11:45.271 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 19:12:30.767 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53926 10 6452 1 2025-11-02 19:08:54.152 00:04:00.347 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-02 19:13:31.173 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43006 10 6452 1 2025-11-02 19:14:31.578 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:54036 10 6452 1 2025-11-02 19:09:54.148 00:06:00.354 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-02 19:15:31.945 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:36590 10 6452 1 2025-11-02 19:16:32.365 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44224 10 6452 1 2025-11-02 19:16:45.263 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 19:16:45.285 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 19:16:45.271 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 19:16:45.458 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 19:16:45.180 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 19:17:32.769 00:00:10.343 TCP 1.101.0.1:3000 -> 23.104.0.1:43336 10 6452 1 2025-11-02 19:18:33.146 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:53104 10 6452 1 2025-11-02 19:13:54.151 00:06:00.351 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-02 19:19:33.552 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:39890 10 6452 1 2025-11-02 19:20:33.953 00:00:10.447 TCP 1.101.0.1:3000 -> 23.104.0.1:55508 12 10369 1 2025-11-02 19:16:54.149 00:04:00.356 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-02 19:21:34.440 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45804 10 6452 1 2025-11-02 19:21:45.527 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 19:21:45.470 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 19:21:45.419 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 19:21:45.257 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 19:21:45.340 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 19:22:34.840 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:36644 10 6452 1 2025-11-02 19:23:35.270 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53328 10 6452 1 2025-11-02 19:24:35.669 00:00:11.088 TCP 1.101.0.1:3000 -> 23.104.0.1:45770 10 6452 1 2025-11-02 19:20:54.153 00:04:00.351 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-02 19:25:36.793 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:42924 10 6452 1 2025-11-02 19:21:54.150 00:04:00.357 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-02 19:26:46.163 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 19:26:46.161 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 19:26:46.328 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 19:26:46.063 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 19:26:37.160 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:57612 10 6452 1 2025-11-02 19:26:46.081 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 19:27:37.576 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:54270 10 6452 1 2025-11-02 19:28:37.984 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:58906 10 6452 1 2025-11-02 19:29:38.356 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39602 10 6452 1 2025-11-02 19:25:54.154 00:04:00.353 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-02 19:30:38.759 00:00:10.344 TCP 1.101.0.1:3000 -> 23.104.0.1:34796 10 6452 1 2025-11-02 19:26:54.151 00:04:00.357 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-02 19:31:45.936 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 19:31:45.943 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 19:31:45.936 00:00:00.026 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 19:31:45.798 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 19:31:45.855 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 19:31:39.139 00:00:11.095 TCP 1.101.0.1:3000 -> 23.104.0.1:38770 10 6452 1 2025-11-02 19:32:40.282 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:44556 10 6452 1 2025-11-02 19:33:40.644 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33102 10 6452 1 2025-11-02 19:30:54.153 00:04:00.352 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-02 19:34:41.054 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:36082 10 6452 1 2025-11-02 19:35:41.424 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54446 10 6452 1 2025-11-02 19:31:54.151 00:04:00.357 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-02 19:36:45.855 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 19:36:45.662 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 19:36:45.773 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 19:36:45.539 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 19:36:45.809 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 19:36:41.831 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:48058 10 6452 1 2025-11-02 19:37:42.216 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:38396 10 6452 1 2025-11-02 19:38:42.577 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46516 10 6452 1 2025-11-02 19:35:54.154 00:04:00.352 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-02 19:39:42.977 00:00:10.446 TCP 1.101.0.1:3000 -> 23.104.0.1:45560 12 10375 1 2025-11-02 19:36:54.153 00:04:00.357 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-02 19:40:43.458 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:33230 10 6452 1 2025-11-02 19:41:45.997 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 19:41:45.653 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 19:41:45.660 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 19:41:45.588 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 19:41:45.915 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 19:41:43.821 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:44672 10 6452 1 2025-11-02 19:42:44.231 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53968 10 6452 1 2025-11-02 19:43:44.635 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:41940 10 6452 1 2025-11-02 19:40:54.158 00:04:00.353 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-02 19:44:45.031 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:45934 10 6452 1 2025-11-02 19:41:54.153 00:04:00.358 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-02 19:45:45.391 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40778 10 6452 1 2025-11-02 19:46:45.989 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 19:46:45.735 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 19:46:45.906 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 19:46:45.814 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 19:46:45.906 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 19:46:45.794 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46480 10 6452 1 2025-11-02 19:47:46.196 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38210 10 6452 1 2025-11-02 19:48:46.598 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41842 10 6452 1 2025-11-02 19:45:54.158 00:04:00.352 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-02 19:49:47.014 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:39702 10 6452 1 2025-11-02 19:50:47.370 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40442 10 6452 1 2025-11-02 19:51:46.391 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 19:51:46.268 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 19:51:46.183 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 19:51:46.196 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 19:51:46.309 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 19:46:54.155 00:06:00.358 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-02 19:51:47.771 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:45976 10 6452 1 2025-11-02 19:52:48.138 00:00:10.343 TCP 1.101.0.1:3000 -> 23.104.0.1:42076 10 6452 1 2025-11-02 19:53:48.522 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:48540 10 6452 1 2025-11-02 19:54:48.927 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:37670 10 6452 1 2025-11-02 19:50:54.159 00:06:00.354 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-02 19:55:49.366 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:35006 10 6452 1 2025-11-02 19:56:46.180 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 19:56:45.939 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 19:56:46.013 00:00:00.039 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 19:56:46.189 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 19:56:46.272 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 19:56:49.798 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55410 10 6452 1 2025-11-02 19:53:54.157 00:04:00.359 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-02 19:57:50.202 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:33400 10 6452 1 Summary: total flows: 142, total bytes: 418757, total packets: 1020, avg bps: 884, avg pps: 0, avg bpp: 410 Time window: 2025-11-02 18:54:54 - 2025-11-02 19:58:00 Total flows processed: 142, passed: 142, Blocks skipped: 0, Bytes read: 14832 Sys: 0.0049s User: 0.0000s Wall: 0.0023s flows/second: 62998.9 Runtime: 0.0023s