Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-01 15:53:53.638 00:06:00.271 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-01 15:58:57.664 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:40900 10 6452 1 2025-11-01 15:59:58.072 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59918 10 6452 1 2025-11-01 16:00:58.479 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:40968 10 6452 1 2025-11-01 16:01:12.522 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 16:01:12.301 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 16:01:12.452 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 16:01:12.362 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 16:01:12.536 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 16:01:58.873 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:50512 10 6452 1 2025-11-01 16:02:59.293 00:00:10.416 TCP 1.101.0.1:3000 -> 23.104.0.1:55848 11 6504 1 2025-11-01 16:03:59.752 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:44882 10 6452 1 2025-11-01 15:59:53.636 00:06:00.278 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-01 16:05:00.123 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:53288 10 6452 1 2025-11-01 16:00:53.639 00:06:00.273 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-01 16:06:00.490 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54432 10 6452 1 2025-11-01 16:06:12.638 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 16:06:12.555 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 16:06:12.465 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 16:06:12.554 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 16:06:12.500 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 16:07:00.899 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:34894 10 6452 1 2025-11-01 16:08:01.264 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:34840 10 6452 1 2025-11-01 16:09:01.663 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:52186 10 6452 1 2025-11-01 16:10:02.098 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36398 10 6452 1 2025-11-01 16:11:12.594 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 16:11:12.620 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 16:11:12.797 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 16:11:12.378 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 16:11:02.506 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33728 10 6452 1 2025-11-01 16:11:12.879 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 16:06:53.640 00:06:00.276 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-01 16:12:02.907 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:51318 10 6452 1 2025-11-01 16:07:53.643 00:06:00.271 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-01 16:13:03.316 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:59228 10 6452 1 2025-11-01 16:14:03.675 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43598 10 6452 1 2025-11-01 16:15:04.101 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:51196 10 6452 1 2025-11-01 16:16:13.450 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 16:16:13.253 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 16:16:04.506 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:55784 10 6452 1 2025-11-01 16:16:13.211 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 16:16:13.209 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 16:16:13.294 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 16:17:04.911 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:38650 10 6452 1 2025-11-01 16:18:05.276 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47616 10 6452 1 2025-11-01 16:13:53.642 00:06:00.277 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-01 16:19:05.678 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49426 10 6452 1 2025-11-01 16:14:53.644 00:06:00.272 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-01 16:20:06.108 00:00:10.416 TCP 1.101.0.1:3000 -> 23.104.0.1:48020 11 6504 1 2025-11-01 16:21:12.930 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 16:21:12.654 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 16:21:13.076 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 16:21:12.996 00:00:00.040 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 16:21:13.159 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 16:21:06.565 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39266 10 6452 1 2025-11-01 16:22:06.967 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:53030 10 6452 1 2025-11-01 16:23:07.333 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47702 10 6452 1 2025-11-01 16:24:07.732 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:36676 10 6452 1 2025-11-01 16:25:08.107 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:54044 10 6452 1 2025-11-01 16:20:53.644 00:06:00.283 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-01 16:26:12.991 00:00:00.042 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 16:26:12.727 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 16:26:12.993 00:00:00.033 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 16:26:12.898 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 16:26:13.077 00:00:00.032 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 16:26:08.511 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:36658 10 6452 1 2025-11-01 16:21:53.645 00:06:00.278 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-01 16:27:08.912 00:00:10.889 TCP 1.101.0.1:3000 -> 23.104.0.1:38896 10 6452 1 2025-11-01 16:28:09.836 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:49180 10 6452 1 2025-11-01 16:29:10.260 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:55256 10 6452 1 2025-11-01 16:30:10.627 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:51868 10 6452 1 2025-11-01 16:31:13.049 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 16:31:13.075 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 16:31:12.925 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 16:31:12.966 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 16:31:13.069 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 16:31:11.036 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49340 10 6452 1 2025-11-01 16:32:11.439 00:00:10.348 TCP 1.101.0.1:3000 -> 23.104.0.1:36558 10 6452 1 2025-11-01 16:27:53.644 00:06:00.285 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-01 16:33:11.840 00:00:10.401 TCP 1.101.0.1:3000 -> 23.104.0.1:55666 10 6452 1 2025-11-01 16:28:53.646 00:06:00.278 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-01 16:34:12.285 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41952 10 6452 1 2025-11-01 16:35:12.691 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:44184 10 6452 1 2025-11-01 16:36:13.171 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 16:36:12.984 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 16:36:13.421 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 16:36:13.312 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 16:36:13.506 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 16:36:13.067 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:41640 10 6452 1 2025-11-01 16:37:13.472 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:37566 10 6452 1 2025-11-01 16:38:13.888 00:00:10.798 TCP 1.101.0.1:3000 -> 23.104.0.1:50976 10 6452 1 2025-11-01 16:39:14.727 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:45354 10 6452 1 2025-11-01 16:34:53.645 00:06:00.283 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-01 16:40:15.136 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48930 10 6452 1 2025-11-01 16:35:53.648 00:06:00.278 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-01 16:41:13.313 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 16:41:13.153 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 16:41:13.312 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 16:41:13.322 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 16:41:13.396 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 16:41:15.537 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:50178 10 6452 1 2025-11-01 16:42:15.947 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:46804 10 6452 1 2025-11-01 16:43:16.365 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:50202 10 6452 1 2025-11-01 16:44:16.726 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:56216 10 6452 1 2025-11-01 16:45:17.135 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60986 10 6452 1 2025-11-01 16:46:13.443 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 16:46:13.258 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 16:46:13.113 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 16:46:13.109 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 16:46:13.195 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 16:46:17.537 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:42434 10 6452 1 2025-11-01 16:41:53.650 00:06:00.282 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-01 16:47:17.940 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:54716 10 6452 1 2025-11-01 16:42:53.652 00:06:00.277 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-01 16:48:18.361 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:57116 10 6452 1 2025-11-01 16:49:18.773 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:60666 10 6452 1 2025-11-01 16:50:19.184 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:33788 10 6452 1 2025-11-01 16:51:13.483 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 16:51:13.428 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 16:51:13.313 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 16:51:13.316 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 16:51:13.396 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 16:51:19.546 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38600 10 6452 1 2025-11-01 16:52:19.948 00:00:11.101 TCP 1.101.0.1:3000 -> 23.104.0.1:60322 10 6452 1 2025-11-01 16:53:21.110 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51488 10 6452 1 2025-11-01 16:48:53.650 00:06:00.283 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-01 16:54:21.514 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55882 10 6452 1 2025-11-01 16:49:53.653 00:06:00.279 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-01 16:55:21.918 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34666 10 6452 1 2025-11-01 16:56:13.918 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 16:56:13.801 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 16:56:13.842 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 16:56:13.781 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 16:56:13.925 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 16:56:22.326 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45252 10 6452 1 2025-11-01 16:57:22.732 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:60476 10 6452 1 2025-11-01 16:58:23.107 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:48600 10 6452 1 Summary: total flows: 137, total bytes: 416981, total packets: 1020, avg bps: 859, avg pps: 0, avg bpp: 408 Time window: 2025-11-01 15:53:53 - 2025-11-01 16:58:33 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0027s User: 0.0027s Wall: 0.0021s flows/second: 65934.6 Runtime: 0.0021s