Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-02 18:53:54.145 00:06:00.348 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-02 18:59:24.823 00:00:10.519 TCP 1.101.0.1:3000 -> 23.104.0.1:53116 10 6452 1 2025-11-02 19:00:25.382 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:56590 10 6452 1 2025-11-02 19:01:25.778 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:60400 10 6452 1 2025-11-02 19:01:45.151 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 19:01:45.113 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 19:01:44.972 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 19:01:44.964 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 19:01:45.055 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 19:02:26.147 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:49662 10 6452 1 2025-11-02 19:03:26.552 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:59004 10 6452 1 2025-11-02 18:58:54.143 00:06:00.354 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-02 19:04:26.955 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:51364 10 6452 1 2025-11-02 19:05:27.370 00:00:10.396 TCP 1.101.0.1:3000 -> 23.104.0.1:51342 10 6452 1 2025-11-02 19:00:54.146 00:06:00.348 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-02 19:06:27.800 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:52534 10 6452 1 2025-11-02 19:06:45.065 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 19:06:44.978 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 19:06:45.099 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 19:06:45.219 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 19:06:45.154 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 19:07:28.210 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:34756 10 6452 1 2025-11-02 19:08:28.578 00:00:10.911 TCP 1.101.0.1:3000 -> 23.104.0.1:36268 10 6452 1 2025-11-02 19:09:29.530 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55318 10 6452 1 2025-11-02 19:10:29.930 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:57724 10 6452 1 2025-11-02 19:05:54.148 00:06:00.353 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-02 19:11:30.363 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:38792 10 6452 1 2025-11-02 19:11:45.353 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 19:11:45.273 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 19:11:45.215 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 19:11:45.270 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 19:11:45.240 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 19:12:30.768 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53926 10 6452 1 2025-11-02 19:07:54.150 00:06:00.349 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-02 19:13:31.172 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43006 10 6452 1 2025-11-02 19:14:31.577 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:54036 10 6452 1 2025-11-02 19:15:31.945 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:36590 10 6452 1 2025-11-02 19:16:45.285 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 19:16:45.457 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 19:16:45.180 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 19:16:45.270 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 19:16:32.365 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44224 10 6452 1 2025-11-02 19:16:45.263 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 19:17:32.768 00:00:10.344 TCP 1.101.0.1:3000 -> 23.104.0.1:43336 10 6452 1 2025-11-02 19:12:54.148 00:06:00.355 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-02 19:18:33.146 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:53104 10 6452 1 2025-11-02 19:19:33.551 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:39890 10 6452 1 2025-11-02 19:14:54.151 00:06:00.351 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-02 19:20:33.953 00:00:10.447 TCP 1.101.0.1:3000 -> 23.104.0.1:55508 12 10369 1 2025-11-02 19:21:45.528 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 19:21:45.419 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 19:21:34.440 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45804 10 6452 1 2025-11-02 19:21:45.258 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 19:21:45.470 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 19:21:45.340 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 19:22:34.840 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:36644 10 6452 1 2025-11-02 19:23:35.270 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:53328 10 6452 1 2025-11-02 19:24:35.670 00:00:11.088 TCP 1.101.0.1:3000 -> 23.104.0.1:45770 10 6452 1 2025-11-02 19:19:54.150 00:06:00.357 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-02 19:25:36.793 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:42924 10 6452 1 2025-11-02 19:26:46.161 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 19:26:46.063 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 19:26:46.081 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 19:26:46.328 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 19:26:37.160 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:57612 10 6452 1 2025-11-02 19:26:46.164 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 19:21:54.153 00:06:00.352 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-02 19:27:37.577 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:54270 10 6452 1 2025-11-02 19:28:37.986 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:58906 10 6452 1 2025-11-02 19:29:38.356 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39602 10 6452 1 2025-11-02 19:30:38.758 00:00:10.345 TCP 1.101.0.1:3000 -> 23.104.0.1:34796 10 6452 1 2025-11-02 19:31:45.937 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 19:31:45.941 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 19:31:45.797 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 19:31:45.854 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 19:31:45.935 00:00:00.026 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 19:31:39.139 00:00:11.095 TCP 1.101.0.1:3000 -> 23.104.0.1:38770 10 6452 1 2025-11-02 19:26:54.150 00:06:00.357 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-02 19:32:40.282 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:44556 10 6452 1 2025-11-02 19:33:40.644 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33102 10 6452 1 2025-11-02 19:28:54.154 00:06:00.352 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-02 19:34:41.055 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:36082 10 6452 1 2025-11-02 19:35:41.425 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54446 10 6452 1 2025-11-02 19:36:45.855 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 19:36:45.538 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 19:36:45.661 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 19:36:45.771 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 19:36:45.808 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 19:36:41.831 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:48058 10 6452 1 2025-11-02 19:37:42.215 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:38396 10 6452 1 2025-11-02 19:33:54.151 00:06:00.358 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-02 19:38:42.578 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46516 10 6452 1 2025-11-02 19:39:42.977 00:00:10.445 TCP 1.101.0.1:3000 -> 23.104.0.1:45560 12 10375 1 2025-11-02 19:40:43.458 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:33230 10 6452 1 2025-11-02 19:35:54.155 00:06:00.351 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-02 19:41:45.653 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 19:41:45.589 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 19:41:45.916 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 19:41:45.661 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 19:41:45.997 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 19:41:43.822 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:44672 10 6452 1 2025-11-02 19:42:44.232 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53968 10 6452 1 2025-11-02 19:43:44.634 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:41940 10 6452 1 2025-11-02 19:44:45.029 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:45934 10 6452 1 2025-11-02 19:40:54.153 00:06:00.358 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-02 19:45:45.393 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40778 10 6452 1 2025-11-02 19:46:45.736 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 19:46:45.816 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 19:46:45.908 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 19:46:45.908 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 19:46:45.990 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 19:46:45.794 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46480 10 6452 1 2025-11-02 19:42:54.157 00:06:00.352 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-02 19:47:46.196 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38210 10 6452 1 2025-11-02 19:48:46.597 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:41842 10 6452 1 2025-11-02 19:49:47.014 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:39702 10 6452 1 2025-11-02 19:50:47.370 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40442 10 6452 1 2025-11-02 19:51:46.392 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 19:51:46.268 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 19:51:46.196 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 19:51:46.309 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 19:51:46.183 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 19:51:47.772 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:45976 10 6452 1 2025-11-02 19:47:54.154 00:06:00.358 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-02 19:52:48.137 00:00:10.344 TCP 1.101.0.1:3000 -> 23.104.0.1:42076 10 6452 1 2025-11-02 19:53:48.522 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:48540 10 6452 1 2025-11-02 19:49:54.158 00:06:00.352 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-02 19:54:48.927 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:37670 10 6452 1 2025-11-02 19:55:49.366 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:35006 10 6452 1 2025-11-02 19:56:45.940 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 19:56:46.181 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 19:56:46.013 00:00:00.040 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 19:56:46.190 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 19:56:46.272 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 19:56:49.798 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55410 10 6452 1 2025-11-02 19:57:50.202 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:33400 10 6452 1 Summary: total flows: 136, total bytes: 418265, total packets: 1012, avg bps: 869, avg pps: 0, avg bpp: 413 Time window: 2025-11-02 18:53:54 - 2025-11-02 19:58:00 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0030s User: 0.0020s Wall: 0.0019s flows/second: 71878.2 Runtime: 0.0019s