Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-01 11:59:09.331 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:59312 10 6452 1 2025-11-01 12:00:09.741 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:55646 10 6452 1 2025-11-01 12:01:07.744 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 12:01:07.797 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 12:01:07.797 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 12:01:07.508 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 12:01:07.660 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 12:01:10.146 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:50082 10 6452 1 2025-11-01 11:56:53.560 00:06:00.279 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-01 12:02:10.561 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48464 10 6452 1 2025-11-01 12:03:10.964 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55490 10 6452 1 2025-11-01 12:04:11.366 00:00:10.519 TCP 1.101.0.1:3000 -> 23.104.0.1:42478 14 14298 1 2025-11-01 11:59:53.564 00:06:00.277 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-01 12:05:11.917 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:60500 10 6452 1 2025-11-01 12:06:07.702 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 12:06:07.705 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 12:06:07.635 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 12:06:07.779 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 12:06:07.862 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 12:06:12.278 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:38164 10 6452 1 2025-11-01 12:07:12.682 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36814 10 6452 1 2025-11-01 12:08:13.109 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:40348 12 6556 1 2025-11-01 12:03:53.562 00:06:00.283 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-01 12:09:13.506 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:52294 10 6452 1 2025-11-01 12:10:13.907 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:47688 10 6452 1 2025-11-01 12:11:08.170 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 12:11:08.245 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 12:11:08.141 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 12:11:08.182 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 12:11:08.264 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 12:11:14.266 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:39704 10 6452 1 2025-11-01 12:06:53.567 00:06:00.277 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-01 12:12:14.629 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:46698 10 6452 1 2025-11-01 12:13:14.991 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38642 10 6452 1 2025-11-01 12:14:15.396 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:55930 10 6452 1 2025-11-01 12:15:15.757 00:00:10.393 TCP 1.101.0.1:3000 -> 23.104.0.1:50618 10 6452 1 2025-11-01 12:10:53.563 00:06:00.284 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-01 12:16:08.346 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 12:16:08.190 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 12:16:08.093 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 12:16:07.846 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 12:16:08.263 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 12:16:16.188 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35194 10 6452 1 2025-11-01 12:17:16.590 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:38240 10 6452 1 2025-11-01 12:18:17.007 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:44144 10 6452 1 2025-11-01 12:13:53.565 00:06:00.279 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-01 12:19:17.369 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:50904 10 6452 1 2025-11-01 12:20:17.732 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:58214 10 6452 1 2025-11-01 12:21:07.959 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 12:21:08.176 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 12:21:08.075 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 12:21:07.836 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 12:21:07.877 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 12:21:18.143 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51254 10 6452 1 2025-11-01 12:22:18.548 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:38494 10 6452 1 2025-11-01 12:17:53.563 00:06:00.285 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-01 12:23:18.952 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:42578 10 6452 1 2025-11-01 12:24:19.316 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:41176 10 6452 1 2025-11-01 12:25:19.681 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55044 10 6452 1 2025-11-01 12:20:53.565 00:06:00.280 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-01 12:26:08.166 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 12:26:08.104 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 12:26:08.049 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 12:26:08.164 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 12:26:08.246 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 12:26:20.108 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:52760 10 6452 1 2025-11-01 12:27:20.508 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:33560 10 6452 1 2025-11-01 12:28:20.924 00:00:10.346 TCP 1.101.0.1:3000 -> 23.104.0.1:40828 10 6452 1 2025-11-01 12:29:21.312 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:47618 10 6452 1 2025-11-01 12:24:53.564 00:06:00.286 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-01 12:30:21.674 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:53176 10 6452 1 2025-11-01 12:31:08.361 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 12:31:08.323 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 12:31:08.247 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 12:31:08.319 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 12:31:08.402 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 12:31:22.110 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47884 10 6452 1 2025-11-01 12:32:22.522 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50786 10 6452 1 2025-11-01 12:27:53.567 00:06:00.281 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-01 12:33:22.932 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:34184 10 6452 1 2025-11-01 12:34:23.355 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42046 10 6452 1 2025-11-01 12:35:23.756 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:53964 10 6452 1 2025-11-01 12:36:08.370 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 12:36:08.384 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 12:36:08.422 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 12:36:08.220 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 12:36:08.453 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 12:36:24.177 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:36310 10 6452 1 2025-11-01 12:31:53.572 00:06:00.278 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-01 12:37:24.578 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46244 10 6452 1 2025-11-01 12:38:24.982 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:51790 10 6452 1 2025-11-01 12:39:25.347 00:00:10.529 TCP 1.101.0.1:3000 -> 23.104.0.1:45932 10 6452 1 2025-11-01 12:34:53.577 00:06:00.274 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-01 12:40:25.908 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:51668 10 6452 1 2025-11-01 12:41:08.751 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 12:41:08.655 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 12:41:08.585 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 12:41:08.398 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 12:41:08.833 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 12:41:26.316 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:55304 10 6452 1 2025-11-01 12:42:26.724 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:49556 10 6452 1 2025-11-01 12:43:27.134 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39028 10 6452 1 2025-11-01 12:38:53.574 00:06:00.278 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-01 12:44:27.542 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:32778 10 6452 1 2025-11-01 12:45:27.943 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:37368 10 6452 1 2025-11-01 12:46:08.528 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 12:46:08.531 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 12:46:08.659 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 12:46:08.592 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 12:46:08.675 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 12:46:28.355 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:33058 10 6452 1 2025-11-01 12:41:53.577 00:06:00.273 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-01 12:47:28.755 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:49968 10 6452 1 2025-11-01 12:48:29.158 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:44236 10 6452 1 2025-11-01 12:49:29.558 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:58524 10 6452 1 2025-11-01 12:50:29.921 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41958 10 6452 1 2025-11-01 12:45:53.575 00:06:00.280 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-01 12:51:08.590 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 12:51:08.713 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 12:51:08.545 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 12:51:08.669 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 12:51:08.753 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 12:51:30.333 00:00:10.420 TCP 1.101.0.1:3000 -> 23.104.0.1:44220 11 6504 1 2025-11-01 12:52:30.792 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51890 10 6452 1 2025-11-01 12:53:31.191 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:57066 10 6452 1 2025-11-01 12:48:53.579 00:06:00.275 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-01 12:54:31.595 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37388 10 6452 1 2025-11-01 12:55:31.993 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33354 10 6452 1 2025-11-01 12:56:09.000 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 12:56:08.916 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 12:56:08.916 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 12:56:08.675 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 12:56:08.933 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 12:56:32.393 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59700 10 6452 1 2025-11-01 12:57:32.797 00:00:10.404 TCP 1.101.0.1:3000 -> 23.104.0.1:45046 11 6504 1 2025-11-01 12:52:53.577 00:06:00.281 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-01 12:58:33.243 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:58552 10 6452 1 Summary: total flows: 137, total bytes: 424931, total packets: 1026, avg bps: 913, avg pps: 0, avg bpp: 414 Time window: 2025-11-01 11:56:53 - 2025-11-01 12:58:53 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0038s User: 0.0009s Wall: 0.0013s flows/second: 103703.2 Runtime: 0.0013s