Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-02 03:54:53.843 00:05:00.364 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-02 03:59:27.056 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:54912 10 6452 1 2025-11-02 03:55:53.845 00:05:00.359 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-02 04:00:27.414 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57996 10 6452 1 2025-11-02 04:01:26.685 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 04:01:26.817 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 04:01:26.903 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 04:01:26.843 00:00:00.044 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 04:01:26.986 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 04:01:27.815 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58832 10 6452 1 2025-11-02 04:02:28.219 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33758 10 6452 1 2025-11-02 04:03:28.623 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:37298 10 6452 1 2025-11-02 04:04:29.032 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:58896 10 6452 1 2025-11-02 04:00:53.844 00:05:00.365 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-02 04:05:29.427 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:43728 10 6452 1 2025-11-02 04:01:53.847 00:05:00.361 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-02 04:06:27.001 00:00:00.046 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 04:06:26.999 00:00:00.041 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 04:06:26.795 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 04:06:26.997 00:00:00.041 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 04:06:27.080 00:00:00.041 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 04:06:29.829 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:48280 10 6452 1 2025-11-02 04:07:30.194 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:39688 10 6452 1 2025-11-02 04:08:30.587 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:59946 10 6452 1 2025-11-02 04:09:30.946 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:52216 10 6452 1 2025-11-02 04:10:31.365 00:00:10.588 TCP 1.101.0.1:3000 -> 23.104.0.1:49026 10 6452 1 2025-11-02 04:06:53.849 00:05:00.362 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-02 04:11:27.008 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 04:11:27.105 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 04:11:27.062 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 04:11:26.924 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 04:11:27.105 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 04:11:31.997 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:60584 10 6452 1 2025-11-02 04:07:53.850 00:05:00.358 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-02 04:12:32.393 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:38330 10 6452 1 2025-11-02 04:13:32.796 00:00:10.347 TCP 1.101.0.1:3000 -> 23.104.0.1:41838 10 6452 1 2025-11-02 04:14:33.184 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:47118 10 6452 1 2025-11-02 04:15:33.594 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48512 10 6452 1 2025-11-02 04:16:26.907 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 04:16:27.227 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 04:16:27.282 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 04:16:27.221 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 04:16:27.364 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 04:16:34.007 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:40288 10 6452 1 2025-11-02 04:12:53.848 00:05:00.364 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-02 04:17:34.407 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:36010 10 6452 1 2025-11-02 04:13:53.851 00:05:00.358 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-02 04:18:34.817 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53482 10 6452 1 2025-11-02 04:19:35.219 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:36854 10 6452 1 2025-11-02 04:20:35.618 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45548 10 6452 1 2025-11-02 04:21:27.443 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 04:21:27.355 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 04:21:27.109 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 04:21:27.360 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 04:21:27.458 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 04:21:36.020 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:40666 10 6452 1 2025-11-02 04:22:36.425 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:56172 10 6452 1 2025-11-02 04:18:53.851 00:05:00.365 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-02 04:23:36.823 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50684 10 6452 1 2025-11-02 04:19:53.853 00:05:00.360 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-02 04:24:37.228 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:48646 10 6452 1 2025-11-02 04:25:37.635 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:58310 10 6452 1 2025-11-02 04:26:27.400 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 04:26:27.147 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 04:26:27.499 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 04:26:27.313 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 04:26:27.583 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 04:26:38.061 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:36386 10 6452 1 2025-11-02 04:27:38.468 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47148 10 6452 1 2025-11-02 04:28:38.873 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55436 10 6452 1 2025-11-02 04:24:53.853 00:05:00.364 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-02 04:29:39.281 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45206 10 6452 1 2025-11-02 04:25:53.856 00:05:00.359 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-02 04:30:39.681 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:42144 10 6452 1 2025-11-02 04:31:27.513 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 04:31:27.429 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 04:31:27.536 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 04:31:27.537 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 04:31:27.558 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 04:31:40.113 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55756 10 6452 1 2025-11-02 04:32:40.518 00:00:10.393 TCP 1.101.0.1:3000 -> 23.104.0.1:57932 10 6452 1 2025-11-02 04:33:41.026 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49168 10 6452 1 2025-11-02 04:34:41.429 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:41778 10 6452 1 2025-11-02 04:30:53.854 00:05:00.366 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-02 04:35:41.838 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:57134 10 6452 1 2025-11-02 04:31:53.856 00:05:00.360 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-02 04:36:27.545 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 04:36:27.305 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 04:36:27.641 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 04:36:27.449 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 04:36:27.725 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 04:36:42.266 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:37560 10 6452 1 2025-11-02 04:37:42.637 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:59452 10 6452 1 2025-11-02 04:38:43.001 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57698 10 6452 1 2025-11-02 04:39:43.405 00:00:10.441 TCP 1.101.0.1:3000 -> 23.104.0.1:49640 12 10369 1 2025-11-02 04:36:53.855 00:05:00.365 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-02 04:40:43.881 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:54208 12 6556 1 2025-11-02 04:41:28.119 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 04:41:27.947 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 04:41:28.313 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 04:41:28.122 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 04:41:28.395 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 04:41:44.310 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:60584 10 6452 1 2025-11-02 04:37:53.858 00:05:00.360 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-02 04:42:44.725 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44350 10 6452 1 2025-11-02 04:43:45.131 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46796 10 6452 1 2025-11-02 04:44:45.536 00:00:10.582 TCP 1.101.0.1:3000 -> 23.104.0.1:40086 10 6452 1 2025-11-02 04:45:46.156 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48730 10 6452 1 2025-11-02 04:46:28.067 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 04:46:27.789 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 04:46:27.926 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 04:46:27.816 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 04:46:28.152 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 04:42:53.857 00:05:00.364 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-02 04:46:46.561 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:56104 10 6452 1 2025-11-02 04:43:53.859 00:05:00.360 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-02 04:47:46.982 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:43142 10 6452 1 2025-11-02 04:48:47.357 00:00:10.480 TCP 1.101.0.1:3000 -> 23.104.0.1:58964 10 6452 1 2025-11-02 04:49:47.892 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:53646 12 6556 1 2025-11-02 04:50:48.298 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37926 10 6452 1 2025-11-02 04:51:27.832 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 04:51:27.665 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 04:51:27.979 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 04:51:27.984 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 04:51:28.061 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 04:51:48.701 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44558 10 6452 1 2025-11-02 04:48:53.858 00:05:00.365 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-02 04:52:49.109 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60624 10 6452 1 2025-11-02 04:49:53.861 00:05:00.360 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-02 04:53:49.515 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:50980 10 6452 1 2025-11-02 04:54:49.924 00:00:10.399 TCP 1.101.0.1:3000 -> 23.104.0.1:35622 10 6452 1 2025-11-02 04:55:50.364 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42370 10 6452 1 2025-11-02 04:56:28.015 00:00:00.038 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 04:56:27.985 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 04:56:28.000 00:00:00.037 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 04:56:28.126 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 04:56:28.068 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 04:56:50.761 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:55742 10 6452 1 2025-11-02 04:57:51.176 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:35878 10 6452 1 Summary: total flows: 139, total bytes: 414673, total packets: 1016, avg bps: 875, avg pps: 0, avg bpp: 408 Time window: 2025-11-02 03:54:53 - 2025-11-02 04:58:01 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0040s User: 0.0020s Wall: 0.0020s flows/second: 69679.5 Runtime: 0.0020s