Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-05 02:53:55.450 00:06:00.250 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-05 02:59:04.772 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:46260 10 6452 1 2025-11-05 03:00:05.145 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:44080 10 6452 1 2025-11-05 03:01:05.512 00:00:10.463 TCP 1.101.0.1:3000 -> 23.104.0.1:33662 10 6452 1 2025-11-05 03:02:06.015 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:51914 10 6452 1 2025-11-05 03:02:52.407 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-05 03:02:52.330 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-05 03:02:52.399 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-05 03:02:52.273 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-05 03:02:52.324 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-05 03:03:06.376 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40346 10 6452 1 2025-11-05 02:58:55.447 00:06:00.257 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-05 03:04:06.777 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33464 10 6452 1 2025-11-05 03:05:07.181 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52336 10 6452 1 2025-11-05 03:00:55.453 00:06:00.257 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-05 03:06:07.582 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53644 10 6452 1 2025-11-05 03:07:07.982 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:49562 10 6452 1 2025-11-05 03:07:52.672 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-05 03:07:52.592 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-05 03:07:52.530 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-05 03:07:52.268 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-05 03:07:52.589 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-05 03:08:08.392 00:00:10.406 TCP 1.101.0.1:3000 -> 23.104.0.1:39484 10 6452 1 2025-11-05 03:09:08.832 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47346 10 6452 1 2025-11-05 03:10:09.234 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:52912 10 6452 1 2025-11-05 03:05:55.457 00:06:00.259 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-05 03:11:09.641 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48138 10 6452 1 2025-11-05 03:12:10.051 00:00:10.445 TCP 1.101.0.1:3000 -> 23.104.0.1:40682 12 10375 1 2025-11-05 03:12:52.666 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-05 03:12:52.676 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-05 03:12:52.673 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-05 03:12:52.650 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-05 03:12:52.584 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-05 03:07:55.456 00:06:00.256 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-05 03:13:10.533 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49410 10 6452 1 2025-11-05 03:14:10.938 00:00:10.395 TCP 1.101.0.1:3000 -> 23.104.0.1:41118 10 6452 1 2025-11-05 03:15:11.371 00:00:10.355 TCP 1.101.0.1:3000 -> 23.104.0.1:59710 10 6452 1 2025-11-05 03:16:11.767 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:36260 10 6452 1 2025-11-05 03:17:12.180 00:00:10.437 TCP 1.101.0.1:3000 -> 23.104.0.1:48998 12 10375 1 2025-11-05 03:17:53.391 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-05 03:17:53.422 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-05 03:17:53.242 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-05 03:17:53.031 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-05 03:17:53.310 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-05 03:12:55.456 00:06:00.260 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-05 03:18:12.661 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:33808 10 6452 1 2025-11-05 03:19:13.094 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49560 10 6452 1 2025-11-05 03:14:55.459 00:06:00.255 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-05 03:20:13.500 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58094 10 6452 1 2025-11-05 03:21:13.902 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53408 12 6556 1 2025-11-05 03:22:14.313 00:00:10.438 TCP 1.101.0.1:3000 -> 23.104.0.1:54812 12 10369 1 2025-11-05 03:22:52.940 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-05 03:22:52.775 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-05 03:22:52.799 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-05 03:22:52.821 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-05 03:22:52.857 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-05 03:23:14.787 00:00:10.974 TCP 1.101.0.1:3000 -> 23.104.0.1:52768 10 6452 1 2025-11-05 03:24:15.795 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:50542 10 6452 1 2025-11-05 03:19:55.458 00:06:00.259 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-05 03:25:16.192 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:44072 11 6504 1 2025-11-05 03:26:16.608 00:00:10.445 TCP 1.101.0.1:3000 -> 23.104.0.1:43080 10 6452 1 2025-11-05 03:21:55.461 00:06:00.253 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-05 03:27:17.105 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47682 10 6452 1 2025-11-05 03:27:52.906 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-05 03:27:52.820 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-05 03:27:52.908 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-05 03:27:52.850 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-05 03:27:52.824 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-05 03:28:17.505 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36030 10 6452 1 2025-11-05 03:29:17.910 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60792 10 6452 1 2025-11-05 03:30:18.316 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43546 10 6452 1 2025-11-05 03:31:18.725 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:55934 10 6452 1 2025-11-05 03:26:55.459 00:06:00.259 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-05 03:32:19.114 00:00:20.538 TCP 1.101.0.1:3000 -> 23.104.0.1:42000 10 6452 1 2025-11-05 03:32:52.810 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-05 03:32:52.900 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-05 03:32:52.943 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-05 03:32:52.902 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-05 03:32:52.983 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-05 03:33:29.692 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51824 10 6452 1 2025-11-05 03:28:55.464 00:06:00.252 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-05 03:34:30.113 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:44626 10 6452 1 2025-11-05 03:35:30.515 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:43500 10 6452 1 2025-11-05 03:36:30.878 00:00:10.607 TCP 1.101.0.1:3000 -> 23.104.0.1:52768 10 6452 1 2025-11-05 03:37:31.525 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46738 10 6452 1 2025-11-05 03:37:53.190 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-05 03:37:53.140 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-05 03:37:52.734 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-05 03:37:53.084 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-05 03:37:53.167 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-05 03:38:31.923 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:40852 10 6452 1 2025-11-05 03:33:55.463 00:06:00.257 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-05 03:39:32.344 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:38984 10 6452 1 2025-11-05 03:40:32.755 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:40452 10 6452 1 2025-11-05 03:35:55.467 00:06:00.251 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-05 03:41:33.136 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60784 10 6452 1 2025-11-05 03:42:33.547 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:56408 10 6452 1 2025-11-05 03:42:53.235 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-05 03:42:53.170 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-05 03:42:52.998 00:00:00.034 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-05 03:42:53.242 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-05 03:42:53.326 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-05 03:43:33.948 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:53520 10 6452 1 2025-11-05 03:44:34.367 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:50292 10 6452 1 2025-11-05 03:45:34.769 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:54812 10 6452 1 2025-11-05 03:40:55.465 00:06:00.257 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-05 03:46:35.181 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:57228 10 6452 1 2025-11-05 03:47:35.580 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:55324 10 6452 1 2025-11-05 03:47:53.549 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-05 03:47:53.146 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-05 03:47:53.245 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-05 03:47:53.276 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-05 03:47:53.468 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-05 03:42:55.469 00:06:00.250 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-05 03:48:35.976 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39726 10 6452 1 2025-11-05 03:49:36.377 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53760 10 6452 1 2025-11-05 03:50:36.788 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:50770 10 6452 1 2025-11-05 03:51:37.201 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40718 10 6452 1 2025-11-05 03:52:53.549 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-05 03:52:37.608 00:00:10.977 TCP 1.101.0.1:3000 -> 23.104.0.1:46512 10 6452 1 2025-11-05 03:52:53.603 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-05 03:52:53.258 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-05 03:52:53.400 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-05 03:52:53.466 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-05 03:47:55.469 00:06:00.253 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-05 03:53:38.625 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56532 10 6452 1 2025-11-05 03:54:39.033 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:49868 10 6452 1 2025-11-05 03:49:55.472 00:06:00.247 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-05 03:55:39.399 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:60596 10 6452 1 2025-11-05 03:56:39.796 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56544 10 6452 1 2025-11-05 03:57:53.672 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-05 03:57:53.444 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-05 03:57:53.618 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-05 03:57:53.366 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-05 03:57:40.200 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:51996 10 6452 1 2025-11-05 03:57:53.589 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 Summary: total flows: 136, total bytes: 422344, total packets: 1017, avg bps: 880, avg pps: 0, avg bpp: 415 Time window: 2025-11-05 02:53:55 - 2025-11-05 03:57:53 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0051s User: 0.0010s Wall: 0.0019s flows/second: 70102.7 Runtime: 0.0020s