Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-02 02:54:53.819 00:05:00.371 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-02 02:58:49.272 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43804 10 6452 1 2025-11-02 02:55:53.821 00:05:00.366 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-02 02:59:49.667 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:53774 10 6452 1 2025-11-02 03:00:50.096 00:00:11.408 TCP 1.101.0.1:3000 -> 23.104.0.1:33180 10 6452 1 2025-11-02 03:01:25.645 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 03:01:25.673 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 03:01:25.640 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 03:01:25.780 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 03:01:25.723 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 03:01:51.541 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:48698 10 6452 1 2025-11-02 03:02:51.952 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54780 10 6452 1 2025-11-02 03:03:52.355 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43392 10 6452 1 2025-11-02 03:00:53.819 00:05:00.372 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-02 03:04:52.759 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:54772 10 6452 1 2025-11-02 03:01:53.823 00:05:00.366 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-02 03:05:53.167 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:50966 10 6452 1 2025-11-02 03:06:25.853 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 03:06:25.603 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 03:06:25.854 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 03:06:25.937 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 03:06:25.937 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 03:06:53.577 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:47718 10 6452 1 2025-11-02 03:07:53.983 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:40682 10 6452 1 2025-11-02 03:08:54.391 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:45904 10 6452 1 2025-11-02 03:09:54.805 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:36328 10 6452 1 2025-11-02 03:06:53.820 00:05:00.372 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-02 03:10:55.178 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:37194 10 6452 1 2025-11-02 03:11:25.964 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 03:11:26.299 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 03:11:26.292 00:00:00.026 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 03:11:26.126 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 03:11:26.376 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 03:07:53.823 00:05:00.367 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-02 03:11:55.603 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56126 10 6452 1 2025-11-02 03:12:56.011 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57676 10 6452 1 2025-11-02 03:13:56.417 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38650 10 6452 1 2025-11-02 03:14:56.821 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39112 10 6452 1 2025-11-02 03:15:57.222 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41088 10 6452 1 2025-11-02 03:16:25.917 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 03:16:26.174 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 03:16:26.134 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 03:16:26.092 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 03:16:26.130 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 03:12:53.823 00:05:00.370 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-02 03:16:57.624 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44704 10 6452 1 2025-11-02 03:13:53.827 00:05:00.368 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-02 03:17:58.035 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:43550 10 6452 1 2025-11-02 03:18:58.444 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:45528 10 6452 1 2025-11-02 03:19:58.847 00:00:10.440 TCP 1.101.0.1:3000 -> 23.104.0.1:56796 11 6504 1 2025-11-02 03:20:59.326 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45708 10 6452 1 2025-11-02 03:21:26.090 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 03:21:26.168 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 03:21:26.141 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 03:21:26.194 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 03:21:26.224 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 03:21:59.728 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:43326 10 6452 1 2025-11-02 03:18:53.824 00:05:00.374 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-02 03:23:00.143 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47978 10 6452 1 2025-11-02 03:19:53.828 00:05:00.367 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-02 03:24:00.546 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:52016 10 6452 1 2025-11-02 03:25:00.912 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:58042 10 6452 1 2025-11-02 03:26:01.310 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:49638 10 6452 1 2025-11-02 03:26:26.270 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 03:26:26.213 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 03:26:26.441 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 03:26:26.187 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 03:26:26.206 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 03:27:01.676 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:47008 10 6452 1 2025-11-02 03:28:02.106 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:38092 10 6452 1 2025-11-02 03:24:53.830 00:05:00.371 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-02 03:29:02.467 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34020 10 6452 1 2025-11-02 03:25:53.833 00:05:00.366 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-02 03:30:02.873 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55862 10 6452 1 2025-11-02 03:31:03.280 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:40298 10 6452 1 2025-11-02 03:31:26.381 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 03:31:26.191 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 03:31:26.299 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 03:31:26.303 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 03:31:26.516 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 03:32:03.687 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:39676 10 6452 1 2025-11-02 03:33:04.111 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:40468 10 6452 1 2025-11-02 03:34:04.510 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:45848 10 6452 1 2025-11-02 03:30:53.833 00:05:00.370 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-02 03:35:04.938 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:57426 10 6452 1 2025-11-02 03:31:53.837 00:05:00.363 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-02 03:36:05.356 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:52522 10 6452 1 2025-11-02 03:36:26.321 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 03:36:26.239 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 03:36:26.204 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 03:36:26.238 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 03:36:26.423 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 03:37:05.744 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42278 10 6452 1 2025-11-02 03:38:06.148 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:52398 10 6452 1 2025-11-02 03:39:06.554 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:58726 10 6452 1 2025-11-02 03:40:06.931 00:00:10.451 TCP 1.101.0.1:3000 -> 23.104.0.1:48116 12 10369 1 2025-11-02 03:36:53.839 00:05:00.365 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-02 03:41:07.422 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:45744 10 6452 1 2025-11-02 03:41:26.627 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 03:41:26.546 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 03:41:26.542 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 03:41:26.483 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 03:41:26.417 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 03:37:53.842 00:05:00.359 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-02 03:42:07.823 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38488 10 6452 1 2025-11-02 03:43:08.234 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:40206 10 6452 1 2025-11-02 03:44:08.636 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:40240 10 6452 1 2025-11-02 03:45:08.991 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:47876 10 6452 1 2025-11-02 03:46:09.399 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:56176 10 6452 1 2025-11-02 03:46:26.734 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 03:46:26.643 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 03:46:26.403 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 03:46:26.653 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 03:46:26.573 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 03:42:53.839 00:05:00.365 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-02 03:47:09.807 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:33922 10 6452 1 2025-11-02 03:43:53.844 00:05:00.360 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-02 03:48:10.231 00:00:10.398 TCP 1.101.0.1:3000 -> 23.104.0.1:45488 10 6452 1 2025-11-02 03:49:10.675 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:43902 10 6452 1 2025-11-02 03:50:11.036 00:00:10.450 TCP 1.101.0.1:3000 -> 23.104.0.1:59062 12 10375 1 2025-11-02 03:51:26.730 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 03:51:26.644 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 03:51:26.783 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 03:51:26.779 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 03:51:26.866 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 03:51:11.528 00:00:21.897 TCP 1.101.0.1:3000 -> 23.104.0.1:49714 12 6556 1 2025-11-02 03:52:23.488 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:44144 10 6452 1 2025-11-02 03:48:53.843 00:05:00.363 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-02 03:53:23.890 00:00:10.348 TCP 1.101.0.1:3000 -> 23.104.0.1:48728 10 6452 1 2025-11-02 03:49:53.843 00:05:00.359 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-02 03:54:24.276 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:40928 10 6452 1 2025-11-02 03:55:24.644 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46940 10 6452 1 2025-11-02 03:56:26.809 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 03:56:26.700 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 03:56:26.743 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 03:56:26.745 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 03:56:26.825 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 03:56:25.059 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56178 10 6452 1 2025-11-02 03:57:25.467 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38256 10 6452 1 2025-11-02 03:58:25.872 00:00:11.138 TCP 1.101.0.1:3000 -> 23.104.0.1:60506 10 6452 1 Summary: total flows: 140, total bytes: 424996, total packets: 1027, avg bps: 889, avg pps: 0, avg bpp: 413 Time window: 2025-11-02 02:54:53 - 2025-11-02 03:58:37 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0045s User: 0.0018s Wall: 0.0027s flows/second: 51074.4 Runtime: 0.0028s