Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-07 02:53:56.464 00:06:00.175 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-07 02:59:16.548 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43284 10 6452 1 2025-11-07 03:00:16.950 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:57516 10 6452 1 2025-11-07 03:01:17.365 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:36722 10 6452 1 2025-11-07 03:02:17.767 00:00:10.440 TCP 1.101.0.1:3000 -> 23.104.0.1:53704 12 10375 1 2025-11-07 03:03:18.253 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58940 10 6452 1 2025-11-07 03:03:50.235 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-07 03:03:50.155 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-07 03:03:49.997 00:00:00.037 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-07 03:03:50.152 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-07 03:03:50.163 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-07 02:58:56.470 00:06:00.169 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-07 03:04:18.660 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53916 10 6452 1 2025-11-07 03:05:19.070 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:52992 10 6452 1 2025-11-07 03:00:56.467 00:06:00.174 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-07 03:06:19.467 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:54934 10 6452 1 2025-11-07 03:07:19.870 00:00:10.442 TCP 1.101.0.1:3000 -> 23.104.0.1:52292 12 10375 1 2025-11-07 03:08:20.349 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48628 10 6452 1 2025-11-07 03:08:50.261 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-07 03:08:50.052 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-07 03:08:50.346 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-07 03:08:50.350 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-07 03:08:50.430 00:00:00.034 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-07 03:09:20.755 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:33770 10 6452 1 2025-11-07 03:10:21.167 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49114 10 6452 1 2025-11-07 03:05:56.470 00:06:00.170 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-07 03:11:21.574 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:51612 10 6452 1 2025-11-07 03:12:21.978 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:55846 10 6452 1 2025-11-07 03:07:56.467 00:06:00.176 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-07 03:13:22.384 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:37444 10 6452 1 2025-11-07 03:13:50.367 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-07 03:13:49.936 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-07 03:13:50.378 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-07 03:13:50.276 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-07 03:13:50.460 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-07 03:14:22.783 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53812 10 6452 1 2025-11-07 03:15:23.186 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:34198 10 6452 1 2025-11-07 03:16:23.592 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:39672 10 6452 1 2025-11-07 03:17:23.995 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51420 10 6452 1 2025-11-07 03:12:56.472 00:06:00.174 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-07 03:18:24.398 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57976 10 6452 1 2025-11-07 03:18:50.365 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-07 03:18:50.191 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-07 03:18:50.431 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-07 03:18:50.435 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-07 03:18:50.515 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-07 03:19:24.801 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:33608 10 6452 1 2025-11-07 03:14:56.469 00:06:00.179 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-07 03:20:25.210 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:59462 10 6452 1 2025-11-07 03:21:25.572 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:35552 10 6452 1 2025-11-07 03:22:25.983 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:57194 10 6452 1 2025-11-07 03:23:26.345 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:39512 10 6452 1 2025-11-07 03:23:50.726 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-07 03:23:51.190 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-07 03:23:50.994 00:00:00.026 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-07 03:23:51.188 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-07 03:23:51.078 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-07 03:24:26.744 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:32788 10 6452 1 2025-11-07 03:19:56.471 00:06:00.175 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-07 03:25:27.148 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:45380 10 6452 1 2025-11-07 03:26:27.556 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:45722 10 6452 1 2025-11-07 03:21:56.469 00:06:00.180 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-07 03:27:27.979 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:40830 10 6452 1 2025-11-07 03:28:28.335 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58252 10 6452 1 2025-11-07 03:28:50.667 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-07 03:28:50.500 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-07 03:28:50.631 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-07 03:28:50.584 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-07 03:28:50.589 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-07 03:29:28.737 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:33294 10 6452 1 2025-11-07 03:30:29.113 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:49068 10 6452 1 2025-11-07 03:31:29.540 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58952 10 6452 1 2025-11-07 03:26:56.478 00:06:00.172 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-07 03:32:29.945 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:34862 10 6452 1 2025-11-07 03:33:30.366 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:36124 10 6452 1 2025-11-07 03:33:50.792 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-07 03:33:50.964 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-07 03:33:50.980 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-07 03:33:51.054 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-07 03:33:51.048 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-07 03:28:56.474 00:06:00.178 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-07 03:34:30.730 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:60562 10 6452 1 2025-11-07 03:35:31.139 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:56776 10 6452 1 2025-11-07 03:36:31.498 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:34546 10 6452 1 2025-11-07 03:37:31.861 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:41228 10 6452 1 2025-11-07 03:38:32.273 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34130 10 6452 1 2025-11-07 03:38:50.866 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-07 03:38:50.821 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-07 03:38:50.860 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-07 03:38:50.917 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-07 03:38:50.943 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-07 03:33:56.478 00:06:00.173 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-07 03:39:32.679 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:58216 10 6452 1 2025-11-07 03:40:33.111 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52566 10 6452 1 2025-11-07 03:35:56.476 00:06:00.178 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-07 03:41:33.513 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34468 10 6452 1 2025-11-07 03:42:33.914 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:58266 10 6452 1 2025-11-07 03:43:34.316 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:40228 10 6452 1 2025-11-07 03:43:51.293 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-07 03:43:51.214 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-07 03:43:51.263 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-07 03:43:51.209 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-07 03:43:51.423 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-07 03:44:34.714 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:50224 10 6452 1 2025-11-07 03:45:35.124 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:36596 10 6452 1 2025-11-07 03:40:56.478 00:06:00.176 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-07 03:46:35.539 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:35792 10 6452 1 2025-11-07 03:47:35.940 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:38118 10 6452 1 2025-11-07 03:42:56.476 00:06:00.179 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-07 03:48:50.955 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-07 03:48:36.352 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:41076 10 6452 1 2025-11-07 03:48:50.949 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-07 03:48:50.956 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-07 03:48:51.031 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-07 03:48:50.984 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-07 03:49:36.759 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:59110 10 6452 1 2025-11-07 03:50:37.182 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:54578 10 6452 1 2025-11-07 03:51:37.594 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:51724 10 6452 1 2025-11-07 03:52:37.994 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:38886 10 6452 1 2025-11-07 03:47:56.479 00:06:00.175 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-07 03:53:38.407 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:35962 10 6452 1 2025-11-07 03:53:51.438 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-07 03:53:51.356 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-07 03:53:51.248 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-07 03:53:51.171 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-07 03:53:51.133 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-07 03:54:38.839 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:55938 10 6452 1 2025-11-07 03:49:56.478 00:06:00.180 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-07 03:55:39.263 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57220 10 6452 1 2025-11-07 03:56:39.668 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:44844 10 6452 1 2025-11-07 03:57:40.114 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:59162 10 6452 1 2025-11-07 03:58:50.971 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-07 03:58:40.474 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:52218 10 6452 1 Summary: total flows: 133, total bytes: 423715, total packets: 1010, avg bps: 870, avg pps: 0, avg bpp: 419 Time window: 2025-11-07 02:53:56 - 2025-11-07 03:58:50 Total flows processed: 133, passed: 133, Blocks skipped: 0, Bytes read: 13896 Sys: 0.0046s User: 0.0009s Wall: 0.0012s flows/second: 109124.1 Runtime: 0.0012s