Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-02 23:58:49.932 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:43624 10 6452 1 2025-11-02 23:59:50.304 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:54022 10 6452 1 2025-11-02 23:56:54.258 00:04:00.345 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-03 00:00:50.708 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47770 10 6452 1 2025-11-03 00:01:51.078 00:00:00.044 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 23:57:54.255 00:04:00.349 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-03 00:01:50.911 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-03 00:01:50.914 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-03 00:01:50.674 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-03 00:01:50.995 00:00:00.044 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-03 00:01:51.110 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:55754 10 6452 1 2025-11-03 00:01:54.259 00:01:00.343 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-11-03 00:02:51.515 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:58538 10 6452 1 2025-11-03 00:03:51.920 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:34448 10 6452 1 2025-11-03 00:04:52.319 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35812 10 6452 1 2025-11-03 00:03:54.259 00:02:00.346 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-11-03 00:05:52.725 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:57442 10 6452 1 2025-11-03 00:06:51.086 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-03 00:06:50.940 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-03 00:06:50.996 00:00:00.043 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-03 00:06:51.299 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-03 00:06:51.383 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-03 00:02:54.257 00:04:00.353 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-03 00:06:53.112 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50368 10 6452 1 2025-11-03 00:06:54.260 00:01:00.345 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-11-03 00:07:53.517 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41858 10 6452 1 2025-11-03 00:07:54.258 00:01:00.350 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-11-03 00:08:53.922 00:00:10.432 TCP 1.101.0.1:3000 -> 23.104.0.1:46492 10 6452 1 2025-11-03 00:09:54.395 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60662 10 6452 1 2025-11-03 00:08:54.260 00:02:00.346 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-11-03 00:10:54.801 00:00:10.345 TCP 1.101.0.1:3000 -> 23.104.0.1:56256 10 6452 1 2025-11-03 00:11:50.989 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-03 00:09:54.258 00:02:00.350 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-11-03 00:11:51.145 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-03 00:11:51.144 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-03 00:11:51.214 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-03 00:11:50.906 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-03 00:11:55.182 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:57084 10 6452 1 2025-11-03 00:11:54.260 00:01:00.345 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-11-03 00:12:55.543 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:45454 10 6452 1 2025-11-03 00:12:54.259 00:01:00.349 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-11-03 00:13:55.946 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:39178 10 6452 1 2025-11-03 00:14:56.357 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:46102 10 6452 1 2025-11-03 00:15:56.764 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:60692 10 6452 1 2025-11-03 00:14:54.260 00:02:00.349 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-11-03 00:16:51.181 00:00:00.030 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-03 00:16:51.100 00:00:00.029 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-03 00:16:51.383 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-03 00:16:51.338 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-03 00:16:51.237 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-03 00:16:57.186 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:59130 10 6452 1 2025-11-03 00:13:54.262 00:04:00.344 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-03 00:17:57.550 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:51678 10 6452 1 2025-11-03 00:17:54.260 00:01:00.348 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-11-03 00:18:57.952 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:52620 10 6452 1 2025-11-03 00:19:58.327 00:00:10.812 TCP 1.101.0.1:3000 -> 23.104.0.1:44204 10 6452 1 2025-11-03 00:20:59.176 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44492 10 6452 1 2025-11-03 00:21:51.345 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-03 00:21:51.342 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-03 00:21:51.166 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-03 00:21:51.344 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-03 00:21:51.428 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-03 00:21:59.583 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43442 10 6452 1 2025-11-03 00:18:54.263 00:04:00.352 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-03 00:22:59.984 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:55808 10 6452 1 2025-11-03 00:19:54.260 00:04:00.357 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-03 00:24:00.399 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50494 10 6452 1 2025-11-03 00:25:00.808 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40972 10 6452 1 2025-11-03 00:26:01.208 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:56232 10 6452 1 2025-11-03 00:26:53.183 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-03 00:26:52.939 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-03 00:26:52.926 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-03 00:26:52.900 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-03 00:26:53.101 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-03 00:27:01.614 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37902 10 6452 1 2025-11-03 00:23:54.265 00:04:00.354 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-03 00:28:02.018 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:40460 10 6452 1 2025-11-03 00:24:54.261 00:04:00.359 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-03 00:29:02.421 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40912 10 6452 1 2025-11-03 00:30:02.825 00:00:10.401 TCP 1.101.0.1:3000 -> 23.104.0.1:42148 12 10369 1 2025-11-03 00:31:03.263 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:60588 10 6452 1 2025-11-03 00:31:51.661 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-03 00:31:51.667 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-03 00:31:51.531 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-03 00:31:51.292 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-03 00:31:51.746 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-03 00:32:03.670 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45546 10 6452 1 2025-11-03 00:28:54.267 00:04:00.353 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-03 00:33:04.093 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:41354 10 6452 1 2025-11-03 00:29:54.266 00:04:00.358 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-03 00:34:04.503 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:57664 10 6452 1 2025-11-03 00:33:54.269 00:01:00.350 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-11-03 00:35:04.925 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:42930 10 6452 1 2025-11-03 00:36:05.296 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:53820 10 6452 1 2025-11-03 00:36:51.955 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-03 00:36:51.700 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-03 00:36:51.699 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-03 00:36:51.588 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-03 00:36:51.873 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-03 00:37:05.700 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:54902 10 6452 1 2025-11-03 00:35:54.269 00:02:00.351 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-11-03 00:38:06.109 00:00:17.320 TCP 1.101.0.1:3000 -> 23.104.0.1:53826 10 6452 1 2025-11-03 00:34:54.267 00:04:00.356 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-03 00:39:13.471 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:53898 10 6452 1 2025-11-03 00:38:54.270 00:01:00.351 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-11-03 00:40:13.830 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:51070 10 6452 1 2025-11-03 00:39:54.268 00:01:00.357 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-11-03 00:41:14.234 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:41426 10 6452 1 2025-11-03 00:41:52.214 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-03 00:41:52.132 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-03 00:41:52.011 00:00:00.041 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-03 00:41:51.834 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-03 00:41:51.498 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-03 00:42:14.648 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45438 10 6452 1 2025-11-03 00:40:54.271 00:02:00.354 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-11-03 00:43:15.068 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42526 10 6452 1 2025-11-03 00:41:54.267 00:02:00.359 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-11-03 00:44:15.473 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:37874 10 6452 1 2025-11-03 00:43:54.271 00:01:00.354 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-11-03 00:45:15.843 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:34038 10 6452 1 2025-11-03 00:44:54.268 00:01:00.359 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-11-03 00:46:16.273 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:57748 10 6452 1 2025-11-03 00:46:52.766 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-03 00:46:52.614 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-03 00:46:52.681 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-03 00:46:52.785 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-03 00:46:52.685 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-03 00:47:16.691 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:36570 10 6452 1 2025-11-03 00:48:17.070 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:44298 10 6452 1 2025-11-03 00:46:54.269 00:02:00.359 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-11-03 00:49:17.473 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:50190 10 6452 1 2025-11-03 00:45:54.271 00:04:00.355 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-03 00:50:17.886 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:57900 10 6452 1 2025-11-03 00:49:54.269 00:01:00.360 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-11-03 00:51:18.266 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:52432 10 6452 1 2025-11-03 00:51:51.989 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-03 00:51:51.965 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-03 00:51:51.967 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-03 00:51:51.927 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-03 00:51:51.905 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-03 00:52:18.678 00:00:10.477 TCP 1.101.0.1:3000 -> 23.104.0.1:35628 10 6452 1 2025-11-03 00:53:19.206 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33186 10 6452 1 2025-11-03 00:54:19.609 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:48594 10 6452 1 2025-11-03 00:50:54.271 00:04:00.357 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-03 00:55:20.038 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59068 10 6452 1 2025-11-03 00:51:54.269 00:04:00.362 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-03 00:56:20.448 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:43696 10 6452 1 2025-11-03 00:56:52.307 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-03 00:56:51.933 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-03 00:56:51.915 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-03 00:56:52.049 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-03 00:56:52.130 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-03 00:57:20.816 00:00:10.454 TCP 1.101.0.1:3000 -> 23.104.0.1:37022 10 6452 1 2025-11-03 00:58:21.307 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52870 10 6452 1 Summary: total flows: 154, total bytes: 420671, total packets: 1018, avg bps: 910, avg pps: 0, avg bpp: 413 Time window: 2025-11-02 23:56:54 - 2025-11-03 00:58:31 Total flows processed: 154, passed: 154, Blocks skipped: 0, Bytes read: 16080 Sys: 0.0043s User: 0.0009s Wall: 0.0026s flows/second: 60041.2 Runtime: 0.0026s