Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-01 15:58:57.664 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:40900 10 6452 1 2025-11-01 15:54:53.635 00:06:00.278 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-01 15:59:58.073 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59918 10 6452 1 2025-11-01 16:00:58.479 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:40968 10 6452 1 2025-11-01 16:01:12.452 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 16:01:12.522 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 16:01:12.362 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 16:01:12.302 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 16:01:12.536 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 16:01:58.874 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:50512 10 6452 1 2025-11-01 15:57:53.639 00:06:00.272 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-01 16:02:59.293 00:00:10.416 TCP 1.101.0.1:3000 -> 23.104.0.1:55848 11 6504 1 2025-11-01 16:03:59.753 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:44882 10 6452 1 2025-11-01 16:05:00.123 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:53288 10 6452 1 2025-11-01 16:06:12.555 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 16:06:12.501 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 16:06:12.465 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 16:06:00.490 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54432 10 6452 1 2025-11-01 16:06:12.554 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 16:06:12.636 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 16:01:53.636 00:06:00.279 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-01 16:07:00.900 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:34894 10 6452 1 2025-11-01 16:08:01.263 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:34840 10 6452 1 2025-11-01 16:09:01.664 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:52186 10 6452 1 2025-11-01 16:04:53.642 00:06:00.270 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-01 16:10:02.099 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36398 10 6452 1 2025-11-01 16:11:12.593 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 16:11:02.505 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33728 10 6452 1 2025-11-01 16:11:12.377 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 16:11:12.619 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 16:11:12.796 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 16:11:12.879 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 16:12:02.906 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:51318 10 6452 1 2025-11-01 16:13:03.316 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:59228 10 6452 1 2025-11-01 16:08:53.640 00:06:00.276 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-01 16:14:03.675 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43598 10 6452 1 2025-11-01 16:15:04.101 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:51196 10 6452 1 2025-11-01 16:16:13.209 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 16:16:13.254 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 16:16:04.507 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:55784 10 6452 1 2025-11-01 16:16:13.212 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 16:16:13.451 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 16:16:13.294 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 16:11:53.643 00:06:00.270 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-01 16:17:04.911 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:38650 10 6452 1 2025-11-01 16:18:05.275 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47616 10 6452 1 2025-11-01 16:19:05.678 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49426 10 6452 1 2025-11-01 16:20:06.108 00:00:10.417 TCP 1.101.0.1:3000 -> 23.104.0.1:48020 11 6504 1 2025-11-01 16:15:53.642 00:06:00.277 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-01 16:21:13.158 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 16:21:12.929 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 16:21:12.994 00:00:00.041 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 16:21:12.653 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 16:21:13.075 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 16:21:06.564 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39266 10 6452 1 2025-11-01 16:22:06.967 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:53030 10 6452 1 2025-11-01 16:23:07.333 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:47702 10 6452 1 2025-11-01 16:18:53.644 00:06:00.275 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-01 16:24:07.734 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:36676 10 6452 1 2025-11-01 16:25:08.106 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:54044 10 6452 1 2025-11-01 16:26:13.076 00:00:00.031 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 16:26:12.991 00:00:00.043 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 16:26:12.898 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 16:26:12.727 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 16:26:12.993 00:00:00.033 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 16:26:08.510 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:36658 10 6452 1 2025-11-01 16:27:08.912 00:00:10.889 TCP 1.101.0.1:3000 -> 23.104.0.1:38896 10 6452 1 2025-11-01 16:22:53.643 00:06:00.283 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-01 16:28:09.835 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:49180 10 6452 1 2025-11-01 16:29:10.260 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:55256 10 6452 1 2025-11-01 16:30:10.626 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:51868 10 6452 1 2025-11-01 16:25:53.646 00:06:00.278 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-01 16:31:12.966 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 16:31:13.075 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 16:31:13.069 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 16:31:12.924 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 16:31:13.049 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 16:31:11.036 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49340 10 6452 1 2025-11-01 16:32:11.439 00:00:10.348 TCP 1.101.0.1:3000 -> 23.104.0.1:36558 10 6452 1 2025-11-01 16:33:11.841 00:00:10.401 TCP 1.101.0.1:3000 -> 23.104.0.1:55666 10 6452 1 2025-11-01 16:34:12.285 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41952 10 6452 1 2025-11-01 16:29:53.645 00:06:00.282 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-01 16:35:12.690 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:44184 10 6452 1 2025-11-01 16:36:13.506 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 16:36:13.172 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 16:36:13.312 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 16:36:12.984 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 16:36:13.422 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 16:36:13.067 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:41640 10 6452 1 2025-11-01 16:37:13.473 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:37566 10 6452 1 2025-11-01 16:32:53.648 00:06:00.277 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-01 16:38:13.888 00:00:10.798 TCP 1.101.0.1:3000 -> 23.104.0.1:50976 10 6452 1 2025-11-01 16:39:14.727 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:45354 10 6452 1 2025-11-01 16:40:15.135 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48930 10 6452 1 2025-11-01 16:41:13.315 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 16:41:13.324 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 16:41:13.154 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 16:41:13.314 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 16:41:13.396 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 16:41:15.537 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:50178 10 6452 1 2025-11-01 16:36:53.646 00:06:00.282 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-01 16:42:15.947 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:46804 10 6452 1 2025-11-01 16:43:16.363 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:50202 10 6452 1 2025-11-01 16:44:16.726 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:56216 10 6452 1 2025-11-01 16:39:53.649 00:06:00.278 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-01 16:45:17.137 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60986 10 6452 1 2025-11-01 16:46:13.443 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 16:46:13.109 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 16:46:13.258 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 16:46:13.113 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 16:46:13.196 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 16:46:17.538 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:42434 10 6452 1 2025-11-01 16:47:17.940 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:54716 10 6452 1 2025-11-01 16:48:18.362 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:57116 10 6452 1 2025-11-01 16:43:53.649 00:06:00.282 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-01 16:49:18.773 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:60666 10 6452 1 2025-11-01 16:50:19.184 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:33788 10 6452 1 2025-11-01 16:51:13.318 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 16:51:13.429 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 16:51:13.315 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 16:51:13.485 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 16:51:13.396 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 16:51:19.545 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:38600 10 6452 1 2025-11-01 16:46:53.654 00:06:00.275 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-01 16:52:19.948 00:00:11.101 TCP 1.101.0.1:3000 -> 23.104.0.1:60322 10 6452 1 2025-11-01 16:53:21.109 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51488 10 6452 1 2025-11-01 16:54:21.515 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55882 10 6452 1 2025-11-01 16:55:21.918 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34666 10 6452 1 2025-11-01 16:50:53.651 00:06:00.283 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-01 16:56:13.917 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 16:56:13.780 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 16:56:13.800 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 16:56:13.841 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 16:56:13.925 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 16:56:22.327 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45252 10 6452 1 2025-11-01 16:57:22.733 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:60476 10 6452 1 2025-11-01 16:58:23.107 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:48600 10 6452 1 Summary: total flows: 137, total bytes: 416981, total packets: 1020, avg bps: 873, avg pps: 0, avg bpp: 408 Time window: 2025-11-01 15:54:53 - 2025-11-01 16:58:33 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0051s User: 0.0010s Wall: 0.0017s flows/second: 79841.6 Runtime: 0.0017s