Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-01 21:54:53.723 00:05:00.348 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-01 21:59:01.429 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45446 10 6452 1 2025-11-01 21:55:53.726 00:05:00.344 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-01 22:00:01.835 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:45310 10 6452 1 2025-11-01 22:01:02.252 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53654 10 6452 1 2025-11-01 22:01:19.878 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 22:01:19.715 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 22:01:19.671 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 22:01:19.876 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 22:01:19.754 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 22:02:02.654 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:57452 10 6452 1 2025-11-01 22:03:03.022 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:39436 10 6452 1 2025-11-01 22:04:03.422 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:39300 10 6452 1 2025-11-01 22:00:53.725 00:05:00.351 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-01 22:05:03.830 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41886 10 6452 1 2025-11-01 22:01:53.730 00:05:00.343 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-01 22:06:04.231 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:36366 10 6452 1 2025-11-01 22:06:19.734 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 22:06:19.691 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 22:06:19.805 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 22:06:19.810 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 22:06:19.888 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 22:07:04.639 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:41698 10 6452 1 2025-11-01 22:08:05.007 00:00:10.355 TCP 1.101.0.1:3000 -> 23.104.0.1:59324 10 6452 1 2025-11-01 22:09:05.403 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:55406 10 6452 1 2025-11-01 22:10:05.765 00:00:10.460 TCP 1.101.0.1:3000 -> 23.104.0.1:33114 12 10375 1 2025-11-01 22:06:53.728 00:05:00.349 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-01 22:11:19.924 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 22:11:06.261 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:54800 10 6452 1 2025-11-01 22:11:19.841 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 22:11:19.863 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 22:11:19.842 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 22:11:19.746 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 22:07:53.731 00:05:00.344 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-01 22:12:06.630 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52130 10 6452 1 2025-11-01 22:13:07.032 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44190 10 6452 1 2025-11-01 22:14:07.443 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:58886 10 6452 1 2025-11-01 22:15:07.859 00:00:10.401 TCP 1.101.0.1:3000 -> 23.104.0.1:40746 10 6452 1 2025-11-01 22:16:20.048 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 22:16:19.876 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 22:16:19.943 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 22:16:20.044 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 22:16:08.309 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:54808 10 6452 1 2025-11-01 22:16:20.026 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 22:12:53.731 00:05:00.349 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-01 22:17:08.726 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:36446 10 6452 1 2025-11-01 22:13:53.731 00:05:00.345 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-01 22:18:09.137 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:34118 10 6452 1 2025-11-01 22:19:09.547 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:49682 10 6452 1 2025-11-01 22:20:09.958 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:46220 10 6452 1 2025-11-01 22:21:20.302 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 22:21:10.371 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:56702 10 6452 1 2025-11-01 22:21:20.147 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 22:21:20.077 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 22:21:20.219 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 22:21:20.219 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 22:22:10.731 00:00:10.394 TCP 1.101.0.1:3000 -> 23.104.0.1:48142 10 6452 1 2025-11-01 22:18:53.731 00:05:00.351 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-01 22:23:11.148 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:38128 10 6452 1 2025-11-01 22:19:53.743 00:05:00.338 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-01 22:24:11.516 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57358 10 6452 1 2025-11-01 22:25:11.921 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:59932 10 6452 1 2025-11-01 22:26:20.206 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 22:26:20.118 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 22:26:19.950 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 22:26:20.123 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 22:26:20.373 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 22:26:12.287 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:36804 10 6452 1 2025-11-01 22:27:12.685 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:52906 10 6452 1 2025-11-01 22:28:13.110 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54154 10 6452 1 2025-11-01 22:24:53.740 00:05:00.343 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-01 22:29:13.514 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:52606 10 6452 1 2025-11-01 22:25:53.743 00:05:00.338 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-01 22:30:13.917 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57180 10 6452 1 2025-11-01 22:31:20.333 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 22:31:20.174 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 22:31:20.334 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 22:31:20.251 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 22:31:20.446 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 22:31:14.320 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51858 10 6452 1 2025-11-01 22:32:14.727 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:43044 10 6452 1 2025-11-01 22:33:15.139 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:49042 10 6452 1 2025-11-01 22:34:15.576 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42138 10 6452 1 2025-11-01 22:30:53.742 00:05:00.343 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-01 22:35:15.978 00:00:10.350 TCP 1.101.0.1:3000 -> 23.104.0.1:48518 10 6452 1 2025-11-01 22:31:53.746 00:05:00.337 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-01 22:36:20.411 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 22:36:20.459 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 22:36:20.490 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 22:36:20.178 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 22:36:20.574 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 22:36:16.369 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53530 10 6452 1 2025-11-01 22:37:16.769 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:47896 10 6452 1 2025-11-01 22:38:17.140 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34304 10 6452 1 2025-11-01 22:39:17.539 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:42412 10 6452 1 2025-11-01 22:40:17.901 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:47800 10 6452 1 2025-11-01 22:36:53.744 00:05:00.343 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-01 22:41:20.643 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 22:41:20.500 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 22:41:20.572 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 22:41:20.561 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 22:41:20.507 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 22:41:18.316 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57652 10 6452 1 2025-11-01 22:37:53.748 00:05:00.340 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-01 22:42:18.723 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:40428 10 6452 1 2025-11-01 22:43:19.132 00:00:10.619 TCP 1.101.0.1:3000 -> 23.104.0.1:42196 10 6452 1 2025-11-01 22:44:19.788 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:45830 10 6452 1 2025-11-01 22:45:20.197 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:32906 10 6452 1 2025-11-01 22:46:20.762 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 22:46:20.505 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 22:46:20.667 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 22:46:20.662 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 22:46:20.750 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 22:46:20.559 00:00:11.965 TCP 1.101.0.1:3000 -> 23.104.0.1:39754 10 6452 1 2025-11-01 22:42:53.745 00:05:00.347 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-01 22:47:22.561 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47932 10 6452 1 2025-11-01 22:43:53.750 00:05:00.340 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-01 22:48:22.964 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58608 10 6452 1 2025-11-01 22:49:23.372 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:44086 10 6452 1 2025-11-01 22:50:23.787 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59862 10 6452 1 2025-11-01 22:51:20.836 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 22:51:20.709 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 22:51:20.470 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 22:51:20.753 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 22:51:20.635 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 22:51:24.190 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58750 10 6452 1 2025-11-01 22:52:24.592 00:00:17.291 TCP 1.101.0.1:3000 -> 23.104.0.1:36016 10 6452 1 2025-11-01 22:48:53.747 00:05:00.348 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-01 22:53:31.920 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:52158 10 6452 1 2025-11-01 22:49:53.750 00:05:00.343 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-01 22:54:32.289 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:38932 10 6452 1 2025-11-01 22:55:32.694 00:00:10.709 TCP 1.101.0.1:3000 -> 23.104.0.1:45058 10 6452 1 2025-11-01 22:56:20.725 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 22:56:20.643 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 22:56:20.745 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 22:56:20.642 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 22:56:20.727 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 22:56:33.442 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41210 10 6452 1 2025-11-01 22:57:33.844 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:42550 10 6452 1 2025-11-01 22:58:34.270 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:34696 10 6452 1 Summary: total flows: 140, total bytes: 420923, total packets: 1022, avg bps: 879, avg pps: 0, avg bpp: 411 Time window: 2025-11-01 21:54:53 - 2025-11-01 22:58:44 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0030s User: 0.0020s Wall: 0.0020s flows/second: 71461.9 Runtime: 0.0020s