Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-01 04:59:10.219 00:00:11.244 TCP 1.101.0.1:3000 -> 23.104.0.1:43390 12 10369 1 2025-11-01 05:00:11.503 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:35186 10 6452 1 2025-11-01 05:00:59.261 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 05:00:59.165 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 05:00:59.259 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 05:00:59.004 00:00:00.042 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 05:00:59.180 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 05:01:11.919 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:41572 10 6452 1 2025-11-01 04:56:53.401 00:06:00.257 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-01 05:02:12.289 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:34920 10 6452 1 2025-11-01 05:03:12.656 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53090 10 6452 1 2025-11-01 05:04:13.069 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:50922 10 6452 1 2025-11-01 04:59:53.405 00:06:00.252 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-01 05:05:13.480 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:37670 10 6452 1 2025-11-01 05:05:59.356 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 05:05:59.354 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 05:05:59.276 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 05:05:59.365 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 05:05:59.448 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 05:06:13.882 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:53892 10 6452 1 2025-11-01 05:07:14.307 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41336 10 6452 1 2025-11-01 05:08:14.708 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:32914 10 6452 1 2025-11-01 05:03:53.405 00:06:00.256 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-01 05:09:15.098 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52542 10 6452 1 2025-11-01 05:10:15.504 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56388 10 6452 1 2025-11-01 05:10:59.172 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 05:10:59.518 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 05:10:59.421 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 05:10:59.428 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 05:10:59.509 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 05:11:15.903 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:51112 10 6452 1 2025-11-01 05:06:53.409 00:06:00.252 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-01 05:12:16.314 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:33044 10 6452 1 2025-11-01 05:13:16.717 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:43186 10 6452 1 2025-11-01 05:14:17.129 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:59112 10 6452 1 2025-11-01 05:15:17.536 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:35078 10 6452 1 2025-11-01 05:10:53.408 00:06:00.255 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-01 05:15:59.730 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 05:15:59.648 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 05:15:59.481 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 05:15:59.636 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 05:15:59.388 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 05:16:17.900 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:54794 12 6556 1 2025-11-01 05:17:18.317 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59388 10 6452 1 2025-11-01 05:18:18.724 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:44308 10 6452 1 2025-11-01 05:13:53.409 00:06:00.253 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-01 05:19:19.146 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44654 10 6452 1 2025-11-01 05:20:19.548 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:53804 10 6452 1 2025-11-01 05:20:59.547 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 05:20:59.562 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 05:20:59.557 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 05:20:59.702 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 05:20:59.465 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 05:21:19.917 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58730 10 6452 1 2025-11-01 05:22:20.317 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46628 10 6452 1 2025-11-01 05:17:53.408 00:06:00.258 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-01 05:23:20.720 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:52594 10 6452 1 2025-11-01 05:24:21.128 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54804 10 6452 1 2025-11-01 05:25:21.530 00:00:10.416 TCP 1.101.0.1:3000 -> 23.104.0.1:36792 11 6504 1 2025-11-01 05:20:53.410 00:06:00.254 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-01 05:25:59.976 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 05:25:59.912 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 05:25:59.952 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 05:26:00.139 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 05:26:00.058 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 05:26:21.982 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:56678 10 6452 1 2025-11-01 05:27:22.399 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:52534 10 6452 1 2025-11-01 05:28:22.802 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:44088 10 6452 1 2025-11-01 05:29:23.177 00:00:12.745 TCP 1.101.0.1:3000 -> 23.104.0.1:47432 10 6452 1 2025-11-01 05:24:53.409 00:06:00.262 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-01 05:30:25.976 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:56654 10 6452 1 2025-11-01 05:30:59.759 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 05:30:59.931 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 05:30:59.783 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 05:30:59.979 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 05:31:00.061 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 05:31:26.389 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:38458 10 6452 1 2025-11-01 05:32:26.794 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41298 10 6452 1 2025-11-01 05:27:53.411 00:06:00.256 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-01 05:33:27.203 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:51390 10 6452 1 2025-11-01 05:34:27.610 00:00:10.399 TCP 1.101.0.1:3000 -> 23.104.0.1:41336 10 6452 1 2025-11-01 05:35:28.048 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:37622 10 6452 1 2025-11-01 05:36:00.175 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 05:35:59.983 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 05:36:00.068 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 05:36:00.259 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 05:36:00.341 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 05:36:28.412 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:57236 10 6452 1 2025-11-01 05:31:53.412 00:06:00.273 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-01 05:37:28.777 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:56994 10 6452 1 2025-11-01 05:38:29.188 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49650 10 6452 1 2025-11-01 05:39:29.598 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:50242 10 6452 1 2025-11-01 05:34:53.416 00:06:00.267 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-01 05:40:30.034 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60172 10 6452 1 2025-11-01 05:41:00.222 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 05:40:59.959 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 05:40:59.893 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 05:41:00.143 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 05:41:00.138 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 05:41:30.439 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:53516 10 6452 1 2025-11-01 05:42:30.861 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:53144 10 6452 1 2025-11-01 05:43:31.235 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:53148 10 6452 1 2025-11-01 05:38:53.415 00:06:00.274 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-01 05:44:31.597 00:00:11.669 TCP 1.101.0.1:3000 -> 23.104.0.1:34314 12 10369 1 2025-11-01 05:45:33.303 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39838 10 6452 1 2025-11-01 05:45:59.964 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 05:46:00.268 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 05:46:00.227 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 05:46:00.062 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 05:46:00.185 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 05:46:33.710 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:57132 10 6452 1 2025-11-01 05:41:53.421 00:06:00.267 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-01 05:47:34.114 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:33646 10 6452 1 2025-11-01 05:48:34.475 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:35026 10 6452 1 2025-11-01 05:49:34.877 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:32878 10 6452 1 2025-11-01 05:50:35.279 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:49478 10 6452 1 2025-11-01 05:45:53.418 00:06:00.271 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-01 05:51:00.307 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 05:51:00.225 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 05:51:00.116 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 05:51:00.227 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 05:51:00.143 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 05:51:35.641 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:53686 10 6452 1 2025-11-01 05:52:36.002 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41250 10 6452 1 2025-11-01 05:53:36.404 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:60670 10 6452 1 2025-11-01 05:48:53.421 00:06:00.266 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-01 05:54:36.766 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:54936 10 6452 1 2025-11-01 05:55:37.187 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:57788 10 6452 1 2025-11-01 05:56:00.419 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 05:56:00.274 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 05:56:00.379 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 05:56:00.240 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 05:56:00.335 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 05:56:37.589 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43782 10 6452 1 2025-11-01 05:57:37.997 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57880 10 6452 1 2025-11-01 05:52:53.421 00:06:00.271 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-01 05:58:38.401 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:57148 10 6452 1 Summary: total flows: 137, total bytes: 424867, total packets: 1025, avg bps: 913, avg pps: 0, avg bpp: 414 Time window: 2025-11-01 04:56:53 - 2025-11-01 05:58:53 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0037s User: 0.0009s Wall: 0.0020s flows/second: 68562.2 Runtime: 0.0020s