Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-01 23:54:53.771 00:05:00.348 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-01 23:59:00.181 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:35016 10 6452 1 2025-11-01 23:55:53.772 00:05:00.344 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-02 00:00:00.540 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35726 10 6452 1 2025-11-02 00:01:00.944 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:40740 10 6452 1 2025-11-02 00:01:22.062 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 00:01:21.881 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 00:01:22.125 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 00:01:21.916 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 00:01:22.208 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 00:02:01.363 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:40882 10 6452 1 2025-11-02 00:03:01.774 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:48956 10 6452 1 2025-11-02 00:04:02.185 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:53278 10 6452 1 2025-11-02 00:00:53.770 00:05:00.349 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-02 00:05:02.547 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52146 10 6452 1 2025-11-02 00:01:53.773 00:05:00.345 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-02 00:06:02.948 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:39206 10 6452 1 2025-11-02 00:06:22.193 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 00:06:22.111 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 00:06:22.197 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 00:06:22.205 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 00:06:22.138 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 00:07:03.320 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58470 10 6452 1 2025-11-02 00:08:03.733 00:00:10.880 TCP 1.101.0.1:3000 -> 23.104.0.1:53908 10 6452 1 2025-11-02 00:09:04.655 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:56544 10 6452 1 2025-11-02 00:10:05.018 00:00:15.935 TCP 1.101.0.1:3000 -> 23.104.0.1:53312 10 6452 1 2025-11-02 00:06:53.772 00:05:00.362 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-02 00:11:22.385 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 00:11:22.270 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 00:11:22.178 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 00:11:22.184 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 00:11:11.012 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:34630 10 6452 1 2025-11-02 00:11:22.261 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 00:07:53.774 00:05:00.346 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-02 00:12:11.375 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41290 10 6452 1 2025-11-02 00:13:11.778 00:00:10.527 TCP 1.101.0.1:3000 -> 23.104.0.1:57824 10 6452 1 2025-11-02 00:14:12.343 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:36302 10 6452 1 2025-11-02 00:15:12.702 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:60862 10 6452 1 2025-11-02 00:16:13.114 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:38004 10 6452 1 2025-11-02 00:16:22.643 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 00:16:22.341 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 00:16:22.527 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 00:16:22.423 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 00:16:22.610 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 00:12:53.773 00:05:00.352 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-02 00:17:13.474 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37834 10 6452 1 2025-11-02 00:13:53.775 00:05:00.347 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-02 00:18:13.877 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:40088 10 6452 1 2025-11-02 00:19:14.280 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:40536 10 6452 1 2025-11-02 00:20:14.643 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40730 10 6452 1 2025-11-02 00:21:15.062 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:59432 10 6452 1 2025-11-02 00:21:22.658 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 00:21:22.391 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 00:21:22.592 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 00:21:22.548 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 00:21:22.675 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 00:22:15.422 00:00:18.304 TCP 1.101.0.1:3000 -> 23.104.0.1:45228 10 6452 1 2025-11-02 00:18:53.774 00:05:00.353 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-02 00:23:23.765 00:00:10.344 TCP 1.101.0.1:3000 -> 23.104.0.1:36008 10 6452 1 2025-11-02 00:19:53.777 00:05:00.348 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-02 00:24:24.147 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35906 10 6452 1 2025-11-02 00:25:24.548 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:33150 10 6452 1 2025-11-02 00:26:22.883 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 00:26:22.496 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 00:26:22.523 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 00:26:22.802 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 00:26:22.581 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 00:26:24.914 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:54864 10 6452 1 2025-11-02 00:27:25.276 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:60742 10 6452 1 2025-11-02 00:28:25.677 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:48906 10 6452 1 2025-11-02 00:24:53.780 00:05:00.349 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-02 00:29:26.109 00:00:11.153 TCP 1.101.0.1:3000 -> 23.104.0.1:47932 10 6452 1 2025-11-02 00:25:53.785 00:05:00.342 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-02 00:30:27.298 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53820 10 6452 1 2025-11-02 00:31:22.827 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 00:31:22.706 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 00:31:22.819 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 00:31:22.734 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 00:31:22.901 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 00:31:27.701 00:00:10.394 TCP 1.101.0.1:3000 -> 23.104.0.1:52748 10 6452 1 2025-11-02 00:32:28.137 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:43282 10 6452 1 2025-11-02 00:33:28.509 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40040 10 6452 1 2025-11-02 00:34:28.917 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:59584 10 6452 1 2025-11-02 00:30:53.785 00:05:00.346 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-02 00:35:29.319 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:43092 10 6452 1 2025-11-02 00:31:53.788 00:05:00.340 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-02 00:36:22.788 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 00:36:22.724 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 00:36:22.854 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 00:36:22.789 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 00:36:22.937 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 00:36:29.718 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:43084 10 6452 1 2025-11-02 00:37:30.135 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36132 10 6452 1 2025-11-02 00:38:30.542 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:41446 10 6452 1 2025-11-02 00:39:30.913 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49896 10 6452 1 2025-11-02 00:40:31.317 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:50066 10 6452 1 2025-11-02 00:36:53.786 00:05:00.350 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-02 00:41:22.884 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 00:41:22.945 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 00:41:22.747 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 00:41:22.802 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 00:41:22.709 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 00:41:31.720 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:60644 10 6452 1 2025-11-02 00:37:53.790 00:05:00.347 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-02 00:42:32.134 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:48534 10 6452 1 2025-11-02 00:43:32.541 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:35334 10 6452 1 2025-11-02 00:44:32.907 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:47804 12 6556 1 2025-11-02 00:45:33.324 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:51270 10 6452 1 2025-11-02 00:46:22.885 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 00:46:23.055 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 00:46:22.960 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 00:46:22.891 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 00:46:23.043 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 00:46:33.729 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:58314 10 6452 1 2025-11-02 00:42:53.788 00:05:00.351 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-02 00:47:34.142 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37350 10 6452 1 2025-11-02 00:43:53.791 00:05:00.345 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-02 00:48:34.544 00:00:10.789 TCP 1.101.0.1:3000 -> 23.104.0.1:44330 10 6452 1 2025-11-02 00:49:35.392 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:58416 10 6452 1 2025-11-02 00:50:35.772 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:59328 10 6452 1 2025-11-02 00:51:22.910 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 00:51:22.871 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 00:51:22.910 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 00:51:23.009 00:00:00.031 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 00:51:22.992 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 00:51:36.186 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:57894 10 6452 1 2025-11-02 00:52:36.586 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41436 10 6452 1 2025-11-02 00:48:53.788 00:05:00.351 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-02 00:53:36.994 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50808 10 6452 1 2025-11-02 00:49:53.792 00:05:00.346 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-02 00:54:37.400 00:00:10.475 TCP 1.101.0.1:3000 -> 23.104.0.1:35036 14 14292 1 2025-11-02 00:55:37.913 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37072 10 6452 1 2025-11-02 00:56:23.307 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 00:56:23.356 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 00:56:23.240 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 00:56:23.076 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 00:56:23.323 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 00:56:38.317 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:52690 10 6452 1 2025-11-02 00:57:38.721 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:41368 10 6452 1 2025-11-02 00:58:39.137 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:47686 12 6556 1 Summary: total flows: 140, total bytes: 425048, total packets: 1028, avg bps: 886, avg pps: 0, avg bpp: 413 Time window: 2025-11-01 23:54:53 - 2025-11-02 00:58:49 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0056s User: 0.0009s Wall: 0.0024s flows/second: 59098.5 Runtime: 0.0024s