Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-03 00:59:21.704 00:00:11.449 TCP 1.101.0.1:3000 -> 23.104.0.1:50024 10 6452 1 2025-11-03 00:55:54.273 00:04:00.356 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-03 01:00:23.189 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:53386 10 6452 1 2025-11-03 00:56:54.271 00:04:00.363 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-03 01:01:23.597 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57636 10 6452 1 2025-11-03 01:01:51.920 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-03 01:01:52.146 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-03 01:01:52.234 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-03 01:01:52.061 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-03 01:01:52.144 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-03 01:02:24.005 00:00:10.503 TCP 1.101.0.1:3000 -> 23.104.0.1:56744 10 6452 1 2025-11-03 01:03:24.546 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:38462 10 6452 1 2025-11-03 01:04:24.952 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56314 10 6452 1 2025-11-03 01:00:54.273 00:04:00.358 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-03 01:05:25.360 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:34990 10 6452 1 2025-11-03 01:01:54.272 00:04:00.363 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-03 01:06:25.722 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:49534 10 6452 1 2025-11-03 01:06:52.288 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-03 01:06:52.339 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-03 01:06:52.209 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-03 01:06:52.361 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-03 01:06:52.206 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-03 01:07:26.139 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50776 10 6452 1 2025-11-03 01:08:26.543 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39026 10 6452 1 2025-11-03 01:09:26.952 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:60508 10 6452 1 2025-11-03 01:05:54.276 00:04:00.357 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-03 01:10:27.359 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51066 10 6452 1 2025-11-03 01:06:54.274 00:04:00.361 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-03 01:11:27.762 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:57124 10 6452 1 2025-11-03 01:11:52.467 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-03 01:11:52.387 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-03 01:10:54.279 00:01:00.355 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-11-03 01:11:52.238 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-03 01:11:52.012 00:00:00.045 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-03 01:11:52.385 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-03 01:12:28.182 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:55938 10 6452 1 2025-11-03 01:11:54.277 00:01:00.361 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-11-03 01:13:28.547 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:58434 10 6452 1 2025-11-03 01:14:28.951 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52322 10 6452 1 2025-11-03 01:12:54.279 00:02:00.357 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-11-03 01:15:29.351 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:50848 10 6452 1 2025-11-03 01:13:54.277 00:02:00.366 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-11-03 01:16:29.754 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:51022 10 6452 1 2025-11-03 01:16:52.821 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-03 01:16:52.751 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-03 01:15:54.280 00:01:00.360 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-11-03 01:16:52.983 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-03 01:16:52.833 00:00:00.027 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-03 01:16:52.739 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-03 01:17:30.123 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:39114 10 6452 1 2025-11-03 01:16:54.277 00:01:00.367 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-11-03 01:18:30.479 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50796 10 6452 1 2025-11-03 01:19:30.882 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:44962 10 6452 1 2025-11-03 01:20:31.241 00:00:10.443 TCP 1.101.0.1:3000 -> 23.104.0.1:44154 12 10375 1 2025-11-03 01:18:54.278 00:02:00.365 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-11-03 01:21:31.728 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:54318 10 6452 1 2025-11-03 01:21:52.748 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-03 01:21:52.513 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-03 01:17:54.279 00:04:00.361 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-03 01:21:52.514 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-03 01:21:52.543 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-03 01:21:52.665 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-03 01:22:32.134 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:53354 10 6452 1 2025-11-03 01:21:54.278 00:01:00.366 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-11-03 01:23:32.568 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:39672 10 6452 1 2025-11-03 01:24:32.970 00:00:10.401 TCP 1.101.0.1:3000 -> 23.104.0.1:53752 10 6452 1 2025-11-03 01:25:33.423 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34736 10 6452 1 2025-11-03 01:26:33.828 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41594 10 6452 1 2025-11-03 01:26:52.762 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-03 01:22:54.283 00:04:00.360 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-03 01:26:52.849 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-03 01:26:52.663 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-03 01:26:52.899 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-03 01:26:52.981 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-03 01:27:34.233 00:00:10.431 TCP 1.101.0.1:3000 -> 23.104.0.1:46520 10 6452 1 2025-11-03 01:23:54.279 00:04:00.368 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-03 01:28:34.702 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:45706 10 6452 1 2025-11-03 01:29:35.109 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:54566 10 6452 1 2025-11-03 01:30:35.465 00:00:10.628 TCP 1.101.0.1:3000 -> 23.104.0.1:57116 11 6504 1 2025-11-03 01:31:52.901 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-03 01:31:36.135 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:52746 10 6452 1 2025-11-03 01:31:52.744 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-03 01:27:54.281 00:04:00.363 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-03 01:31:52.746 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-03 01:31:52.656 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-03 01:31:52.817 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-03 01:32:36.548 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54570 10 6452 1 2025-11-03 01:28:54.279 00:04:00.369 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-03 01:33:36.952 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:59826 10 6452 1 2025-11-03 01:34:37.363 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52604 10 6452 1 2025-11-03 01:35:37.769 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:33298 10 6452 1 2025-11-03 01:36:38.142 00:00:10.345 TCP 1.101.0.1:3000 -> 23.104.0.1:59346 10 6452 1 2025-11-03 01:36:53.382 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-03 01:36:53.319 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-03 01:32:54.284 00:04:00.362 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-03 01:36:53.573 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-03 01:36:52.891 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-03 01:36:53.300 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-03 01:37:38.525 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41580 10 6452 1 2025-11-03 01:33:54.281 00:04:00.367 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-03 01:38:38.935 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:50578 10 6452 1 2025-11-03 01:37:54.291 00:01:00.355 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-11-03 01:39:39.358 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:33088 10 6452 1 2025-11-03 01:40:39.766 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:54176 10 6452 1 2025-11-03 01:41:53.098 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-03 01:41:52.869 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-03 01:39:54.292 00:02:00.356 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-11-03 01:41:53.101 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-03 01:41:53.059 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-03 01:41:40.183 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:35302 10 6452 1 2025-11-03 01:41:53.181 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-03 01:42:40.583 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:37572 10 6452 1 2025-11-03 01:38:54.291 00:04:00.362 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-03 01:43:40.987 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:49604 10 6452 1 2025-11-03 01:42:54.293 00:01:00.357 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-11-03 01:43:54.290 00:01:00.361 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-11-03 01:44:41.396 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:44718 10 6452 1 2025-11-03 01:45:41.796 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53562 10 6452 1 2025-11-03 01:46:53.243 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-03 01:44:54.293 00:02:00.356 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-11-03 01:46:53.205 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-03 01:46:53.122 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-03 01:46:42.200 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:40040 10 6452 1 2025-11-03 01:46:53.087 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-03 01:46:53.170 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-03 01:45:54.291 00:02:00.362 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-11-03 01:47:42.600 00:00:11.016 TCP 1.101.0.1:3000 -> 23.104.0.1:57026 10 6452 1 2025-11-03 01:48:43.656 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:33666 10 6452 1 2025-11-03 01:47:54.294 00:01:00.356 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-11-03 01:49:44.066 00:00:10.439 TCP 1.101.0.1:3000 -> 23.104.0.1:48824 12 10375 1 2025-11-03 01:48:54.291 00:01:00.361 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-11-03 01:50:44.551 00:00:11.008 TCP 1.101.0.1:3000 -> 23.104.0.1:44274 10 6452 1 2025-11-03 01:51:53.306 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-03 01:51:53.007 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-03 01:49:54.294 00:02:00.356 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-11-03 01:51:53.132 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-03 01:51:53.089 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-03 01:51:53.222 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-03 01:51:45.594 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:60198 10 6452 1 2025-11-03 01:50:54.292 00:02:00.362 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-11-03 01:52:45.958 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:36698 10 6452 1 2025-11-03 01:52:54.294 00:01:00.357 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-11-03 01:53:46.367 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59614 10 6452 1 2025-11-03 01:53:54.292 00:01:00.362 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-11-03 01:54:46.778 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:37046 10 6452 1 2025-11-03 01:55:47.200 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:50558 10 6452 1 2025-11-03 01:56:53.355 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-03 01:56:53.041 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-03 01:56:53.271 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-03 01:56:53.346 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-03 01:56:53.272 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-03 01:56:47.607 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:34400 10 6452 1 2025-11-03 01:55:54.292 00:02:00.362 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-11-03 01:57:48.071 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35242 10 6452 1 Summary: total flows: 154, total bytes: 418569, total packets: 1017, avg bps: 899, avg pps: 0, avg bpp: 411 Time window: 2025-11-03 00:55:54 - 2025-11-03 01:57:58 Total flows processed: 154, passed: 154, Blocks skipped: 0, Bytes read: 16080 Sys: 0.0047s User: 0.0012s Wall: 0.0030s flows/second: 51994.1 Runtime: 0.0030s