Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-02 01:54:53.806 00:05:00.354 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-02 01:59:24.205 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49966 10 6452 1 2025-11-02 01:55:53.809 00:05:00.349 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-02 02:00:24.603 00:00:10.414 TCP 1.101.0.1:3000 -> 23.104.0.1:40212 11 6504 1 2025-11-02 02:01:24.324 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 02:01:24.564 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 02:01:24.553 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 02:01:24.414 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 02:01:24.406 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 02:01:25.067 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:48390 10 6452 1 2025-11-02 02:02:25.477 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:40756 10 6452 1 2025-11-02 02:03:25.881 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54434 10 6452 1 2025-11-02 02:04:26.282 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54902 10 6452 1 2025-11-02 02:00:53.807 00:05:00.355 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-02 02:05:26.685 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:57416 10 6452 1 2025-11-02 02:01:53.808 00:05:00.350 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-02 02:06:24.694 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 02:06:24.524 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 02:06:24.639 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 02:06:24.588 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 02:06:24.722 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 02:06:27.114 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:34780 10 6452 1 2025-11-02 02:07:27.524 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41342 10 6452 1 2025-11-02 02:08:27.928 00:00:10.397 TCP 1.101.0.1:3000 -> 23.104.0.1:56834 10 6452 1 2025-11-02 02:09:28.348 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39954 10 6452 1 2025-11-02 02:10:28.751 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43300 10 6452 1 2025-11-02 02:06:53.808 00:05:00.361 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-02 02:11:24.738 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 02:11:24.888 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 02:11:25.172 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 02:11:25.180 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 02:11:25.254 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 02:11:29.156 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56920 10 6452 1 2025-11-02 02:07:53.810 00:05:00.358 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-02 02:12:29.563 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41666 10 6452 1 2025-11-02 02:13:29.966 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39158 10 6452 1 2025-11-02 02:14:30.369 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57500 10 6452 1 2025-11-02 02:15:30.777 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:43790 10 6452 1 2025-11-02 02:16:24.751 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 02:16:24.776 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 02:16:24.745 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 02:16:24.751 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 02:16:24.828 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 02:16:31.147 00:00:10.347 TCP 1.101.0.1:3000 -> 23.104.0.1:49342 10 6452 1 2025-11-02 02:12:53.808 00:05:00.363 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-02 02:17:31.554 00:00:10.512 TCP 1.101.0.1:3000 -> 23.104.0.1:53234 10 6452 1 2025-11-02 02:13:53.811 00:05:00.359 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-02 02:18:32.128 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:37430 10 6452 1 2025-11-02 02:19:32.490 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47232 10 6452 1 2025-11-02 02:20:32.894 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:46656 12 6556 1 2025-11-02 02:21:24.918 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 02:21:24.871 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 02:21:24.959 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 02:21:24.916 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 02:21:25.042 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 02:21:33.315 00:00:10.691 TCP 1.101.0.1:3000 -> 23.104.0.1:37836 10 6452 1 2025-11-02 02:22:34.064 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:47118 10 6452 1 2025-11-02 02:18:53.808 00:05:00.365 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-02 02:23:34.425 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:60842 10 6452 1 2025-11-02 02:19:53.811 00:05:00.359 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-02 02:24:34.829 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58848 10 6452 1 2025-11-02 02:25:35.232 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:52032 10 6452 1 2025-11-02 02:26:25.923 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 02:26:25.830 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 02:26:25.924 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 02:26:26.008 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 02:26:25.996 00:00:00.048 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 02:26:35.591 00:00:11.000 TCP 1.101.0.1:3000 -> 23.104.0.1:51900 10 6452 1 2025-11-02 02:27:36.631 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:53150 10 6452 1 2025-11-02 02:28:37.034 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:49838 10 6452 1 2025-11-02 02:24:53.810 00:05:00.367 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-02 02:29:37.395 00:00:10.483 TCP 1.101.0.1:3000 -> 23.104.0.1:52428 10 6452 1 2025-11-02 02:25:53.826 00:05:00.350 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-02 02:30:37.914 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54650 10 6452 1 2025-11-02 02:31:25.411 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 02:31:25.191 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 02:31:25.198 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 02:31:25.328 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 02:31:25.231 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 02:31:38.315 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:34492 10 6452 1 2025-11-02 02:32:38.725 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:59348 10 6452 1 2025-11-02 02:33:39.104 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:37022 10 6452 1 2025-11-02 02:34:39.509 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58310 10 6452 1 2025-11-02 02:30:53.813 00:05:00.369 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-02 02:35:39.910 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54838 10 6452 1 2025-11-02 02:31:53.816 00:05:00.363 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-02 02:36:25.188 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 02:36:25.295 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 02:36:25.185 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 02:36:25.270 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 02:36:25.269 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 02:36:40.323 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:40428 10 6452 1 2025-11-02 02:37:40.793 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:59844 10 6452 1 2025-11-02 02:38:41.205 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:58094 10 6452 1 2025-11-02 02:39:41.565 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36716 10 6452 1 2025-11-02 02:40:41.970 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58100 10 6452 1 2025-11-02 02:36:53.816 00:05:00.368 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-02 02:41:25.193 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 02:41:24.895 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 02:41:25.186 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 02:41:25.449 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 02:41:25.268 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 02:41:42.373 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47814 10 6452 1 2025-11-02 02:37:53.817 00:05:00.363 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-02 02:42:42.775 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:34314 10 6452 1 2025-11-02 02:43:43.187 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:58434 10 6452 1 2025-11-02 02:44:43.592 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:43814 10 6452 1 2025-11-02 02:45:44.004 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:54432 10 6452 1 2025-11-02 02:46:25.615 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 02:46:25.555 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 02:46:25.805 00:00:00.026 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 02:46:25.696 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 02:46:25.888 00:00:00.026 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 02:46:44.404 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:35258 11 6492 1 2025-11-02 02:42:53.816 00:05:00.368 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-02 02:47:44.809 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33238 10 6452 1 2025-11-02 02:43:53.818 00:05:00.364 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-02 02:48:45.219 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40632 10 6452 1 2025-11-02 02:49:45.624 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:39472 12 6556 1 2025-11-02 02:50:46.022 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53322 10 6452 1 2025-11-02 02:51:25.445 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 02:51:25.651 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 02:51:25.629 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 02:51:25.456 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 02:51:25.712 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 02:51:46.432 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:55840 10 6452 1 2025-11-02 02:48:53.817 00:05:00.369 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-02 02:52:46.833 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57204 10 6452 1 2025-11-02 02:49:53.820 00:05:00.363 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-02 02:53:47.233 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:45556 10 6452 1 2025-11-02 02:54:47.636 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60768 10 6452 1 2025-11-02 02:55:48.042 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56886 10 6452 1 2025-11-02 02:56:25.746 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 02:56:25.667 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 02:56:25.526 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 02:56:25.663 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 02:56:25.736 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 02:56:48.444 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:49430 10 6452 1 2025-11-02 02:57:48.850 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:32840 10 6452 1 Summary: total flows: 139, total bytes: 410848, total packets: 1016, avg bps: 868, avg pps: 0, avg bpp: 404 Time window: 2025-11-02 01:54:53 - 2025-11-02 02:57:59 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0049s User: 0.0020s Wall: 0.0026s flows/second: 53922.3 Runtime: 0.0026s