Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-02 11:54:53.994 00:05:00.363 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-02 11:59:26.451 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:46814 10 6452 1 2025-11-02 11:55:53.998 00:05:00.359 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-02 12:00:26.848 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:45500 10 6452 1 2025-11-02 12:01:36.699 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 12:01:27.278 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:40898 10 6452 1 2025-11-02 12:01:36.569 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 12:01:36.615 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 12:01:36.310 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 12:01:36.781 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 12:02:27.640 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:43994 10 6452 1 2025-11-02 12:03:28.005 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41420 10 6452 1 2025-11-02 12:04:28.412 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42718 10 6452 1 2025-11-02 12:00:53.995 00:05:00.365 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-02 12:05:28.818 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60510 10 6452 1 2025-11-02 12:01:53.998 00:05:00.360 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-02 12:06:36.866 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 12:06:36.563 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 12:06:36.658 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 12:06:36.783 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 12:06:36.564 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 12:06:29.220 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:57492 10 6452 1 2025-11-02 12:07:29.581 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37218 10 6452 1 2025-11-02 12:08:29.988 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:54300 10 6452 1 2025-11-02 12:09:30.391 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52218 10 6452 1 2025-11-02 12:10:30.792 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:51360 10 6452 1 2025-11-02 12:06:53.997 00:05:00.366 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-02 12:11:36.782 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 12:11:36.697 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 12:11:36.586 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 12:11:36.699 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 12:11:36.590 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 12:11:31.151 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:52052 10 6452 1 2025-11-02 12:12:31.559 00:00:10.314 TCP 1.101.0.1:3000 -> 23.104.0.1:36512 10 6452 1 2025-11-02 12:07:54.028 00:06:00.331 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-02 12:13:31.914 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49022 10 6452 1 2025-11-02 12:14:32.321 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:52966 10 6452 1 2025-11-02 12:15:32.729 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:50084 10 6452 1 2025-11-02 12:16:36.609 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 12:16:36.756 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 12:16:36.968 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 12:16:36.873 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 12:16:36.838 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 12:16:33.135 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60728 10 6452 1 2025-11-02 12:17:33.539 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:47100 10 6452 1 2025-11-02 12:12:54.033 00:06:00.331 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-02 12:18:33.901 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:36272 10 6452 1 2025-11-02 12:19:34.315 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57182 10 6452 1 2025-11-02 12:14:54.035 00:06:00.325 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-02 12:20:34.719 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:44442 10 6452 1 2025-11-02 12:21:36.873 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 12:21:36.679 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 12:21:36.763 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 12:21:36.944 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 12:21:36.849 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 12:21:35.128 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:40224 10 6452 1 2025-11-02 12:22:35.542 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:42260 10 6452 1 2025-11-02 12:23:35.905 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:57060 10 6452 1 2025-11-02 12:24:36.315 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:54156 10 6452 1 2025-11-02 12:19:54.035 00:06:00.329 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-02 12:25:36.677 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:46584 10 6452 1 2025-11-02 12:26:37.106 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 12:26:37.229 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 12:26:37.237 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 12:26:36.955 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 12:26:37.190 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 12:26:37.104 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59048 10 6452 1 2025-11-02 12:21:54.038 00:06:00.324 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-02 12:27:37.508 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:33894 10 6452 1 2025-11-02 12:28:37.904 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:52420 12 6556 1 2025-11-02 12:29:38.316 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54592 10 6452 1 2025-11-02 12:30:38.726 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:45934 10 6452 1 2025-11-02 12:31:36.932 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 12:31:37.114 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 12:31:37.150 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 12:31:37.066 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 12:31:37.233 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 12:31:39.146 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:60626 10 6452 1 2025-11-02 12:26:54.043 00:06:00.322 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-02 12:32:39.559 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46652 10 6452 1 2025-11-02 12:33:39.964 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36534 10 6452 1 2025-11-02 12:28:54.045 00:06:00.317 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-02 12:34:40.366 00:00:10.443 TCP 1.101.0.1:3000 -> 23.104.0.1:48346 12 10369 1 2025-11-02 12:35:40.845 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:57436 10 6452 1 2025-11-02 12:36:37.171 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 12:36:37.189 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 12:36:37.006 00:00:00.049 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 12:36:37.088 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 12:36:37.094 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 12:36:41.271 00:00:10.348 TCP 1.101.0.1:3000 -> 23.104.0.1:55260 10 6452 1 2025-11-02 12:37:41.664 00:00:10.394 TCP 1.101.0.1:3000 -> 23.104.0.1:40512 10 6452 1 2025-11-02 12:33:54.044 00:06:00.326 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-02 12:38:42.104 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40426 10 6452 1 2025-11-02 12:39:42.513 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:51766 10 6452 1 2025-11-02 12:40:42.926 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:58656 10 6452 1 2025-11-02 12:35:54.047 00:06:00.321 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-02 12:41:37.494 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 12:41:37.413 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 12:41:37.116 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 12:41:37.413 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 12:41:37.221 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 12:41:43.342 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:40926 10 6452 1 2025-11-02 12:42:43.699 00:00:10.415 TCP 1.101.0.1:3000 -> 23.104.0.1:37826 11 6504 1 2025-11-02 12:43:44.156 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:45110 10 6452 1 2025-11-02 12:44:44.570 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:37278 10 6452 1 2025-11-02 12:45:44.977 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:45346 10 6452 1 2025-11-02 12:40:54.047 00:06:00.329 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-02 12:46:37.718 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 12:46:37.548 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 12:46:37.854 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 12:46:37.717 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 12:46:37.936 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 12:46:45.337 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:44470 10 6452 1 2025-11-02 12:42:54.050 00:06:00.324 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-02 12:47:45.742 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34734 10 6452 1 2025-11-02 12:48:46.144 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54962 10 6452 1 2025-11-02 12:49:46.544 00:00:10.356 TCP 1.101.0.1:3000 -> 23.104.0.1:52066 10 6452 1 2025-11-02 12:50:46.938 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:47528 10 6452 1 2025-11-02 12:51:37.708 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 12:51:37.625 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 12:51:37.548 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 12:51:37.627 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 12:51:37.748 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 12:51:47.358 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:48360 10 6452 1 2025-11-02 12:47:54.049 00:06:00.329 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-02 12:52:47.757 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:42842 10 6452 1 2025-11-02 12:53:48.171 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:46000 10 6452 1 2025-11-02 12:49:54.051 00:06:00.324 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-02 12:54:48.531 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:53220 10 6452 1 2025-11-02 12:55:48.941 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:37804 10 6452 1 2025-11-02 12:56:37.502 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 12:56:37.492 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 12:56:37.666 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 12:56:37.599 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 12:56:37.749 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 12:56:49.364 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:52300 10 6452 1 2025-11-02 12:57:49.768 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:40304 10 6452 1 Summary: total flows: 137, total bytes: 414744, total packets: 1017, avg bps: 876, avg pps: 0, avg bpp: 407 Time window: 2025-11-02 11:54:53 - 2025-11-02 12:58:00 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0043s User: 0.0011s Wall: 0.0019s flows/second: 71239.7 Runtime: 0.0019s