Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-09 07:53:57.629 00:06:00.089 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-09 07:58:57.199 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:54262 10 6452 1 2025-11-09 07:59:53.812 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 07:59:53.790 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 07:59:53.958 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 07:59:53.949 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 07:59:54.041 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 07:59:57.603 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40154 10 6452 1 2025-11-09 08:00:58.008 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:53526 10 6452 1 2025-11-09 08:01:58.409 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:46748 10 6452 1 2025-11-09 08:02:58.832 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:57216 10 6452 1 2025-11-09 08:03:59.243 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:52748 10 6452 1 2025-11-09 08:04:54.059 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 08:04:53.710 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 08:04:54.062 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 08:04:54.058 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 08:04:54.145 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 07:59:57.633 00:06:00.084 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-09 08:04:59.643 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:50580 10 6452 1 2025-11-09 08:00:57.632 00:06:00.089 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-09 08:06:00.059 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:35514 10 6452 1 2025-11-09 08:07:00.464 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59524 10 6452 1 2025-11-09 08:08:00.863 00:00:10.439 TCP 1.101.0.1:3000 -> 23.104.0.1:36824 12 10375 1 2025-11-09 08:09:01.339 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:48006 10 6452 1 2025-11-09 08:09:54.279 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 08:09:53.941 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 08:09:54.184 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 08:09:54.197 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 08:09:53.931 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 08:10:01.746 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59746 10 6452 1 2025-11-09 08:11:02.150 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43988 10 6452 1 2025-11-09 08:06:57.634 00:06:00.084 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-09 08:12:02.553 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39972 10 6452 1 2025-11-09 08:07:57.632 00:06:00.089 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-09 08:13:02.956 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57422 10 6452 1 2025-11-09 08:14:03.359 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:33840 10 6452 1 2025-11-09 08:14:54.145 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 08:14:54.063 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 08:14:54.052 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 08:14:54.116 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 08:14:54.228 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 08:15:03.759 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:45910 10 6452 1 2025-11-09 08:16:04.170 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38030 10 6452 1 2025-11-09 08:17:04.572 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:47324 10 6452 1 2025-11-09 08:18:04.930 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:51104 10 6452 1 2025-11-09 08:13:57.637 00:06:00.083 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-09 08:19:05.363 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51944 10 6452 1 2025-11-09 08:19:54.438 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 08:19:54.362 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 08:19:54.164 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 08:19:54.356 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 08:19:54.281 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 08:14:57.634 00:06:00.088 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-09 08:20:05.769 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:43676 10 6452 1 2025-11-09 08:21:06.189 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56464 10 6452 1 2025-11-09 08:22:06.589 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:35192 10 6452 1 2025-11-09 08:23:06.983 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33494 10 6452 1 2025-11-09 08:24:07.391 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:33880 10 6452 1 2025-11-09 08:24:54.447 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 08:24:54.247 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 08:24:54.439 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 08:24:54.369 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 08:24:54.522 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 08:25:07.800 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33484 10 6452 1 2025-11-09 08:20:57.641 00:06:00.082 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-09 08:26:08.209 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44220 10 6452 1 2025-11-09 08:21:57.637 00:06:00.087 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-09 08:27:08.626 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:59512 10 6452 1 2025-11-09 08:28:09.030 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:42476 10 6452 1 2025-11-09 08:29:09.447 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:46558 10 6452 1 2025-11-09 08:29:54.461 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 08:29:54.235 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 08:29:54.465 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 08:29:54.553 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 08:29:54.548 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 08:30:09.853 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:54680 10 6452 1 2025-11-09 08:31:10.278 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52454 10 6452 1 2025-11-09 08:32:10.682 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:40378 10 6452 1 2025-11-09 08:27:57.641 00:06:00.083 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-09 08:33:11.062 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:60278 10 6452 1 2025-11-09 08:28:57.639 00:06:00.088 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-09 08:34:11.474 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:52168 10 6452 1 2025-11-09 08:34:54.684 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 08:34:54.602 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 08:34:54.644 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 08:34:54.467 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 08:34:54.504 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 08:35:11.840 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:34090 10 6452 1 2025-11-09 08:36:12.263 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:55014 10 6452 1 2025-11-09 08:37:12.662 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34624 10 6452 1 2025-11-09 08:38:13.065 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41260 10 6452 1 2025-11-09 08:39:13.465 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33364 10 6452 1 2025-11-09 08:39:54.717 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 08:39:54.699 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 08:39:54.635 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 08:39:54.795 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 08:39:54.629 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 08:34:57.646 00:06:00.080 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-09 08:40:13.864 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:56268 10 6452 1 2025-11-09 08:35:57.645 00:06:00.089 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-09 08:41:14.272 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55464 10 6452 1 2025-11-09 08:42:14.682 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:48566 10 6452 1 2025-11-09 08:43:15.102 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:58754 10 6452 1 2025-11-09 08:44:15.469 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:40114 10 6452 1 2025-11-09 08:44:54.787 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 08:44:54.441 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 08:44:54.790 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 08:44:54.787 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 08:44:54.874 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 08:45:15.868 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52242 10 6452 1 2025-11-09 08:46:16.270 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:49362 10 6452 1 2025-11-09 08:41:57.647 00:06:00.087 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-09 08:47:16.633 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:50488 10 6452 1 2025-11-09 08:42:57.646 00:06:00.091 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-09 08:48:16.997 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49572 10 6452 1 2025-11-09 08:49:17.401 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50814 10 6452 1 2025-11-09 08:49:55.054 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 08:49:54.975 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 08:49:54.664 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 08:49:54.971 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 08:49:54.814 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 08:50:17.804 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39972 10 6452 1 2025-11-09 08:51:18.214 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:40952 10 6452 1 2025-11-09 08:52:18.622 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:57424 10 6452 1 2025-11-09 08:53:18.993 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53692 10 6452 1 2025-11-09 08:48:57.648 00:06:00.088 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-09 08:54:19.397 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:41460 10 6452 1 2025-11-09 08:54:54.949 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 08:54:54.966 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 08:54:54.998 00:00:00.042 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 08:54:54.994 00:00:00.039 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 08:54:55.081 00:00:00.042 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 08:49:57.646 00:06:00.093 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-09 08:55:19.764 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:42596 10 6452 1 2025-11-09 08:56:20.172 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:52068 10 6452 1 2025-11-09 08:57:20.551 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39856 10 6452 1 2025-11-09 08:58:20.952 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:44060 10 6452 1 Summary: total flows: 137, total bytes: 420800, total packets: 1020, avg bps: 869, avg pps: 0, avg bpp: 412 Time window: 2025-11-09 07:53:57 - 2025-11-09 08:58:31 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0026s User: 0.0035s Wall: 0.0020s flows/second: 69440.4 Runtime: 0.0020s