Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-03 08:53:54.459 00:06:00.346 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-03 08:59:08.593 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:46034 10 6452 1 2025-11-03 09:00:08.959 00:00:10.405 TCP 1.101.0.1:3000 -> 23.104.0.1:60154 12 10375 1 2025-11-03 09:01:09.403 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33828 10 6452 1 2025-11-03 09:02:01.960 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-03 09:02:01.922 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-03 09:02:01.883 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-03 09:02:01.878 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-03 09:02:01.875 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-03 09:02:09.807 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43848 10 6452 1 2025-11-03 09:03:10.209 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55878 10 6452 1 2025-11-03 08:58:54.457 00:06:00.351 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-03 09:04:10.608 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:45290 10 6452 1 2025-11-03 09:05:11.014 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:51364 10 6452 1 2025-11-03 09:00:54.461 00:06:00.346 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-03 09:06:11.374 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:50882 10 6452 1 2025-11-03 09:07:01.931 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-03 09:07:01.761 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-03 09:07:01.727 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-03 09:07:01.880 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-03 09:07:01.810 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-03 09:07:11.782 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36234 10 6452 1 2025-11-03 09:08:12.189 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:45666 10 6452 1 2025-11-03 09:09:12.595 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45142 10 6452 1 2025-11-03 09:10:13.002 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:50672 10 6452 1 2025-11-03 09:05:54.458 00:06:00.354 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-03 09:11:13.413 00:00:10.876 TCP 1.101.0.1:3000 -> 23.104.0.1:39180 10 6452 1 2025-11-03 09:12:02.158 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-03 09:12:01.919 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-03 09:12:01.886 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-03 09:12:02.077 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-03 09:12:01.847 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-03 09:12:14.339 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57680 10 6452 1 2025-11-03 09:07:54.462 00:06:00.349 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-03 09:13:14.742 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:38726 10 6452 1 2025-11-03 09:14:15.146 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51144 10 6452 1 2025-11-03 09:15:15.546 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:55886 10 6452 1 2025-11-03 09:16:15.949 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:39644 10 6452 1 2025-11-03 09:17:02.856 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-03 09:17:02.704 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-03 09:17:02.646 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-03 09:17:02.650 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-03 09:17:02.729 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-03 09:17:16.359 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:34796 10 6452 1 2025-11-03 09:12:54.458 00:06:00.356 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-03 09:18:16.759 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:58844 10 6452 1 2025-11-03 09:19:17.180 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:60434 10 6452 1 2025-11-03 09:14:54.461 00:06:00.351 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-03 09:20:17.584 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:53654 10 6452 1 2025-11-03 09:21:17.946 00:00:10.394 TCP 1.101.0.1:3000 -> 23.104.0.1:37650 10 6452 1 2025-11-03 09:22:02.231 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-03 09:22:02.253 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-03 09:22:02.195 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-03 09:22:02.307 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-03 09:22:02.337 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-03 09:22:18.372 00:00:11.768 TCP 1.101.0.1:3000 -> 23.104.0.1:55260 10 6452 1 2025-11-03 09:23:20.177 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40602 10 6452 1 2025-11-03 09:24:20.579 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45526 10 6452 1 2025-11-03 09:19:54.460 00:06:00.356 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-03 09:25:20.983 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:52272 10 6452 1 2025-11-03 09:26:21.389 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49088 10 6452 1 2025-11-03 09:21:54.462 00:06:00.351 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-03 09:27:02.597 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-03 09:27:02.290 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-03 09:27:02.515 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-03 09:27:02.374 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-03 09:27:02.371 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-03 09:27:21.793 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:39250 10 6452 1 2025-11-03 09:28:22.148 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:52110 10 6452 1 2025-11-03 09:29:22.518 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:46058 10 6452 1 2025-11-03 09:30:22.943 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:57868 11 6492 1 2025-11-03 09:31:23.363 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:39834 10 6452 1 2025-11-03 09:26:54.465 00:06:00.353 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-03 09:32:02.493 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-03 09:32:02.465 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-03 09:32:02.301 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-03 09:32:02.411 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-03 09:32:02.397 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-03 09:32:23.725 00:00:10.970 TCP 1.101.0.1:3000 -> 23.104.0.1:58600 10 6452 1 2025-11-03 09:33:24.742 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53334 10 6452 1 2025-11-03 09:28:54.467 00:06:00.352 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-03 09:34:25.143 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:36692 10 6452 1 2025-11-03 09:35:25.501 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:37406 10 6452 1 2025-11-03 09:36:25.885 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:33610 10 6452 1 2025-11-03 09:37:03.211 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-03 09:37:03.187 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-03 09:37:03.151 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-03 09:37:03.103 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-03 09:37:03.234 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-03 09:37:26.254 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37460 10 6452 1 2025-11-03 09:38:26.660 00:00:11.098 TCP 1.101.0.1:3000 -> 23.104.0.1:53164 10 6452 1 2025-11-03 09:33:54.468 00:06:00.352 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-03 09:39:27.797 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59826 10 6452 1 2025-11-03 09:40:28.207 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38702 10 6452 1 2025-11-03 09:35:54.472 00:06:00.345 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-03 09:41:28.611 00:00:14.562 TCP 1.101.0.1:3000 -> 23.104.0.1:45318 10 6452 1 2025-11-03 09:42:02.588 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-03 09:42:02.776 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-03 09:42:02.602 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-03 09:42:02.506 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-03 09:42:02.734 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-03 09:42:33.214 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:34460 10 6452 1 2025-11-03 09:43:33.617 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:59306 10 6452 1 2025-11-03 09:44:34.020 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42882 10 6452 1 2025-11-03 09:45:34.423 00:00:10.402 TCP 1.101.0.1:3000 -> 23.104.0.1:60992 12 10375 1 2025-11-03 09:40:54.471 00:06:00.350 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-03 09:46:34.860 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:58574 10 6452 1 2025-11-03 09:47:02.957 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-03 09:47:02.768 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-03 09:47:02.785 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-03 09:47:02.870 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-03 09:47:02.683 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-03 09:47:35.276 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:41376 10 6452 1 2025-11-03 09:42:54.474 00:06:00.346 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-03 09:48:35.684 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:52274 10 6452 1 2025-11-03 09:49:36.071 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:51600 10 6452 1 2025-11-03 09:50:36.443 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:34166 10 6452 1 2025-11-03 09:51:36.804 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38224 10 6452 1 2025-11-03 09:52:02.771 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-03 09:52:02.736 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-03 09:52:02.850 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-03 09:52:02.771 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-03 09:52:02.933 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-03 09:52:37.204 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38580 10 6452 1 2025-11-03 09:47:54.476 00:06:00.348 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-03 09:53:37.608 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:38938 10 6452 1 2025-11-03 09:54:38.022 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:47372 10 6452 1 2025-11-03 09:49:54.479 00:06:00.342 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-03 09:55:38.437 00:00:10.461 TCP 1.101.0.1:3000 -> 23.104.0.1:41962 12 10375 1 2025-11-03 09:56:38.938 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:43428 10 6452 1 2025-11-03 09:57:02.895 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-03 09:57:02.825 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-03 09:57:02.898 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-03 09:57:02.898 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-03 09:57:02.980 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-03 09:57:39.356 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52716 10 6452 1 2025-11-03 09:58:39.760 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:34772 10 6452 1 Summary: total flows: 137, total bytes: 428686, total packets: 1025, avg bps: 880, avg pps: 0, avg bpp: 418 Time window: 2025-11-03 08:53:54 - 2025-11-03 09:58:50 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0035s User: 0.0023s Wall: 0.0021s flows/second: 65678.3 Runtime: 0.0021s