Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-02 04:54:53.861 00:05:00.363 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-02 04:58:51.582 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:34230 10 6452 1 2025-11-02 04:55:53.862 00:05:00.358 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-02 04:59:51.985 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45518 10 6452 1 2025-11-02 05:00:52.389 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60974 10 6452 1 2025-11-02 05:01:28.131 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 05:01:28.194 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 05:01:28.135 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 05:01:28.134 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 05:01:28.219 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 05:01:52.794 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:56048 10 6452 1 2025-11-02 05:02:53.197 00:00:10.559 TCP 1.101.0.1:3000 -> 23.104.0.1:41912 10 6452 1 2025-11-02 05:03:53.798 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:51030 10 6452 1 2025-11-02 05:00:53.865 00:05:00.361 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-02 05:04:54.203 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42504 10 6452 1 2025-11-02 05:01:53.868 00:05:00.356 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-02 05:05:54.604 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:38802 10 6452 1 2025-11-02 05:06:28.216 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 05:06:28.083 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 05:06:28.032 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 05:06:28.158 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 05:06:28.115 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 05:06:55.002 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:57582 10 6452 1 2025-11-02 05:07:55.367 00:00:10.416 TCP 1.101.0.1:3000 -> 23.104.0.1:51408 11 6504 1 2025-11-02 05:08:55.834 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:45294 10 6452 1 2025-11-02 05:09:56.258 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:36206 10 6452 1 2025-11-02 05:06:53.867 00:05:00.363 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-02 05:10:56.678 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41440 10 6452 1 2025-11-02 05:11:28.364 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 05:11:28.233 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 05:11:28.060 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 05:11:28.371 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 05:11:28.142 00:00:00.026 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 05:07:53.868 00:05:00.358 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-02 05:11:57.110 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35674 10 6452 1 2025-11-02 05:12:57.515 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47040 10 6452 1 2025-11-02 05:13:57.919 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50392 10 6452 1 2025-11-02 05:14:58.323 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53098 10 6452 1 2025-11-02 05:15:58.731 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:37736 10 6452 1 2025-11-02 05:16:28.691 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 05:16:28.486 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 05:16:28.563 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 05:16:28.561 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 05:16:28.646 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 05:12:53.867 00:05:00.363 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-02 05:16:59.118 00:00:10.458 TCP 1.101.0.1:3000 -> 23.104.0.1:52540 10 6452 1 2025-11-02 05:13:53.871 00:05:00.359 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-02 05:17:59.620 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33814 10 6452 1 2025-11-02 05:19:00.025 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:51044 10 6452 1 2025-11-02 05:20:00.428 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45156 10 6452 1 2025-11-02 05:21:00.831 00:00:10.399 TCP 1.101.0.1:3000 -> 23.104.0.1:58626 10 6452 1 2025-11-02 05:21:28.512 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 05:21:28.406 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 05:21:28.567 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 05:21:28.512 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 05:21:28.649 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 05:22:01.269 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55492 10 6452 1 2025-11-02 05:18:53.869 00:05:00.367 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-02 05:23:01.668 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:55668 10 6452 1 2025-11-02 05:19:53.871 00:05:00.363 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-02 05:24:02.110 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54502 10 6452 1 2025-11-02 05:25:02.512 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:57386 10 6452 1 2025-11-02 05:26:02.876 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43898 10 6452 1 2025-11-02 05:26:28.651 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 05:26:28.612 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 05:26:28.566 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 05:26:28.454 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 05:26:28.648 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 05:27:03.281 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:58656 10 6452 1 2025-11-02 05:28:03.702 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57056 10 6452 1 2025-11-02 05:24:53.870 00:05:00.368 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-02 05:29:04.110 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43946 10 6452 1 2025-11-02 05:25:53.872 00:05:00.362 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-02 05:30:04.510 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36776 10 6452 1 2025-11-02 05:31:04.912 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52534 10 6452 1 2025-11-02 05:31:28.760 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 05:31:28.718 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 05:31:28.872 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 05:31:28.760 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 05:31:28.954 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 05:32:05.315 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:51386 10 6452 1 2025-11-02 05:33:05.724 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:55420 10 6452 1 2025-11-02 05:34:06.141 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53422 10 6452 1 2025-11-02 05:30:53.872 00:05:00.368 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-02 05:35:06.545 00:00:10.317 TCP 1.101.0.1:3000 -> 23.104.0.1:55618 10 6452 1 2025-11-02 05:31:53.874 00:05:00.363 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-02 05:36:06.901 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:34428 10 6452 1 2025-11-02 05:36:28.929 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 05:36:28.845 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 05:36:29.209 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 05:36:28.845 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 05:36:29.226 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 05:37:07.274 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:34902 10 6452 1 2025-11-02 05:38:07.679 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:46736 10 6452 1 2025-11-02 05:39:08.103 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:48088 10 6452 1 2025-11-02 05:40:08.505 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:36408 10 6452 1 2025-11-02 05:36:53.872 00:05:00.368 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-02 05:41:08.915 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:41422 10 6452 1 2025-11-02 05:41:28.804 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 05:41:28.921 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 05:41:28.815 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 05:41:29.175 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 05:41:28.899 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 05:37:53.876 00:05:00.364 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-02 05:42:09.321 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60472 10 6452 1 2025-11-02 05:43:09.725 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:51462 10 6452 1 2025-11-02 05:44:10.111 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50130 10 6452 1 2025-11-02 05:45:10.522 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:54652 10 6452 1 2025-11-02 05:46:10.953 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:33668 10 6452 1 2025-11-02 05:46:28.867 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 05:46:28.997 00:00:00.041 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 05:46:29.086 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 05:46:28.862 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 05:46:29.170 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 05:42:53.874 00:05:00.368 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-02 05:47:11.365 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:45418 10 6452 1 2025-11-02 05:43:53.876 00:05:00.363 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-02 05:48:11.787 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:55542 10 6452 1 2025-11-02 05:49:12.160 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:35782 10 6452 1 2025-11-02 05:50:12.560 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:59274 10 6452 1 2025-11-02 05:51:12.971 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:37764 10 6452 1 2025-11-02 05:51:29.003 00:00:00.045 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 05:51:28.723 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 05:51:29.003 00:00:00.040 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 05:51:29.003 00:00:00.046 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 05:51:29.084 00:00:00.041 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 05:52:13.380 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:46444 10 6452 1 2025-11-02 05:48:53.874 00:05:00.369 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-02 05:53:13.759 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:49858 10 6452 1 2025-11-02 05:49:53.877 00:05:00.364 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-02 05:54:14.130 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:37736 10 6452 1 2025-11-02 05:55:14.538 00:00:10.434 TCP 1.101.0.1:3000 -> 23.104.0.1:36226 12 10369 1 2025-11-02 05:56:15.014 00:00:10.315 TCP 1.101.0.1:3000 -> 23.104.0.1:55532 10 6452 1 2025-11-02 05:56:29.383 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 05:56:29.222 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 05:56:29.256 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 05:56:29.351 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 05:56:29.340 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 05:57:15.370 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48944 10 6452 1 2025-11-02 05:58:15.775 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:34034 10 6452 1 Summary: total flows: 140, total bytes: 420969, total packets: 1023, avg bps: 883, avg pps: 0, avg bpp: 411 Time window: 2025-11-02 04:54:53 - 2025-11-02 05:58:26 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0034s User: 0.0017s Wall: 0.0019s flows/second: 74235.5 Runtime: 0.0019s