Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-02 00:54:53.793 00:05:00.352 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-02 00:59:39.547 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:35422 10 6452 1 2025-11-02 00:55:53.794 00:05:00.346 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-02 01:00:39.905 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:45944 10 6452 1 2025-11-02 01:01:23.691 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 01:01:23.606 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 01:01:23.600 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 01:01:23.591 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 01:01:23.775 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 01:01:40.321 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35918 10 6452 1 2025-11-02 01:02:40.720 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:44996 10 6452 1 2025-11-02 01:03:41.137 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:35686 10 6452 1 2025-11-02 01:00:53.795 00:05:00.351 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-02 01:04:41.500 00:00:20.822 TCP 1.101.0.1:3000 -> 23.104.0.1:54618 10 6452 1 2025-11-02 01:01:53.796 00:05:00.348 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-02 01:05:52.358 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:42178 10 6452 1 2025-11-02 01:06:23.418 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 01:06:23.307 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 01:06:23.342 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 01:06:23.349 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 01:06:23.424 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 01:06:52.759 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:34038 10 6452 1 2025-11-02 01:07:53.177 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:42966 10 6452 1 2025-11-02 01:08:53.577 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36916 10 6452 1 2025-11-02 01:09:53.982 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:37324 10 6452 1 2025-11-02 01:06:53.794 00:05:00.354 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-02 01:10:54.385 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:52786 10 6452 1 2025-11-02 01:11:23.589 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 01:11:23.436 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 01:11:23.474 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 01:11:23.586 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 01:11:23.557 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 01:07:53.797 00:05:00.347 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-02 01:11:54.786 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:34448 10 6452 1 2025-11-02 01:12:55.187 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:32780 10 6452 1 2025-11-02 01:13:55.594 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:50124 10 6452 1 2025-11-02 01:14:55.994 00:00:10.566 TCP 1.101.0.1:3000 -> 23.104.0.1:46056 10 6452 1 2025-11-02 01:15:56.596 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53900 10 6452 1 2025-11-02 01:16:23.702 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 01:16:23.717 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 01:16:23.680 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 01:16:23.620 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 01:16:23.790 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 01:12:53.794 00:05:00.354 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-02 01:16:57.004 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60318 10 6452 1 2025-11-02 01:13:53.797 00:05:00.349 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-02 01:17:57.404 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:49630 10 6452 1 2025-11-02 01:18:57.814 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44728 10 6452 1 2025-11-02 01:19:58.220 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54792 10 6452 1 2025-11-02 01:20:58.629 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:56262 10 6452 1 2025-11-02 01:21:23.128 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 01:21:23.005 00:00:00.035 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 01:21:22.887 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 01:21:23.045 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 01:21:23.037 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 01:21:59.002 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44450 10 6452 1 2025-11-02 01:18:53.796 00:05:00.354 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-02 01:22:59.399 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60932 10 6452 1 2025-11-02 01:19:53.798 00:05:00.349 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-02 01:23:59.802 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58766 10 6452 1 2025-11-02 01:25:00.205 00:00:10.440 TCP 1.101.0.1:3000 -> 23.104.0.1:51172 12 10375 1 2025-11-02 01:26:00.684 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39142 10 6452 1 2025-11-02 01:26:23.946 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 01:26:23.858 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 01:26:23.619 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 01:26:23.862 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 01:26:23.667 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 01:27:01.108 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:33154 10 6452 1 2025-11-02 01:28:01.479 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:38376 10 6452 1 2025-11-02 01:24:53.798 00:05:00.354 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-02 01:29:01.878 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:57796 10 6452 1 2025-11-02 01:25:53.800 00:05:00.349 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-02 01:30:02.281 00:00:20.656 TCP 1.101.0.1:3000 -> 23.104.0.1:45368 12 10375 1 2025-11-02 01:31:23.904 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 01:31:23.725 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 01:31:23.900 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 01:31:12.972 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:47270 10 6452 1 2025-11-02 01:31:23.888 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 01:31:23.808 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 01:32:13.395 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58152 10 6452 1 2025-11-02 01:33:13.793 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:39882 10 6452 1 2025-11-02 01:34:14.152 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56926 10 6452 1 2025-11-02 01:30:53.799 00:05:00.354 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-02 01:35:14.558 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41858 10 6452 1 2025-11-02 01:31:53.800 00:05:00.350 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-02 01:36:24.397 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 01:36:24.132 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 01:36:24.456 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 01:36:24.397 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 01:36:14.959 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:48692 10 6452 1 2025-11-02 01:36:24.539 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 01:37:15.365 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:36030 10 6452 1 2025-11-02 01:38:15.764 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:42522 10 6452 1 2025-11-02 01:39:16.178 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:41282 10 6452 1 2025-11-02 01:40:16.582 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59536 10 6452 1 2025-11-02 01:36:53.802 00:05:00.353 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-02 01:41:24.168 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 01:41:24.127 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 01:41:24.234 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 01:41:24.228 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 01:41:24.209 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 01:41:16.986 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:47108 10 6452 1 2025-11-02 01:37:53.802 00:05:00.351 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-02 01:42:17.351 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:37270 10 6452 1 2025-11-02 01:43:17.755 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42396 10 6452 1 2025-11-02 01:44:18.156 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:47100 10 6452 1 2025-11-02 01:45:18.522 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39668 10 6452 1 2025-11-02 01:46:24.038 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 01:46:24.274 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 01:46:24.281 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 01:46:24.274 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 01:46:24.363 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 01:46:18.924 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:35952 10 6452 1 2025-11-02 01:42:53.800 00:05:00.357 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-02 01:47:19.357 00:00:10.346 TCP 1.101.0.1:3000 -> 23.104.0.1:58460 10 6452 1 2025-11-02 01:43:53.804 00:05:00.350 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-02 01:48:19.792 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:38434 10 6452 1 2025-11-02 01:49:20.203 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:57688 10 6452 1 2025-11-02 01:50:20.614 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:49566 10 6452 1 2025-11-02 01:51:24.710 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 01:51:24.782 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 01:51:24.721 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 01:51:24.627 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 01:51:24.624 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 01:51:21.030 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54580 10 6452 1 2025-11-02 01:52:21.441 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45918 10 6452 1 2025-11-02 01:48:53.804 00:05:00.354 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-02 01:53:21.843 00:00:10.346 TCP 1.101.0.1:3000 -> 23.104.0.1:35382 10 6452 1 2025-11-02 01:49:53.807 00:05:00.349 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-02 01:54:22.227 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44216 10 6452 1 2025-11-02 01:55:22.632 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:43722 10 6452 1 2025-11-02 01:56:24.292 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 01:56:24.387 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 01:56:24.278 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 01:56:24.389 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 01:56:24.361 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 01:56:23.035 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45406 10 6452 1 2025-11-02 01:57:23.436 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:38918 10 6452 1 2025-11-02 01:58:23.803 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38642 10 6452 1 Summary: total flows: 139, total bytes: 418394, total packets: 1014, avg bps: 876, avg pps: 0, avg bpp: 412 Time window: 2025-11-02 00:54:53 - 2025-11-02 01:58:34 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0039s User: 0.0019s Wall: 0.0027s flows/second: 51731.0 Runtime: 0.0027s