Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-02 07:59:06.971 00:00:10.401 TCP 1.101.0.1:3000 -> 23.104.0.1:57154 10 6452 1 2025-11-02 08:00:07.409 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50606 10 6452 1 2025-11-02 07:56:53.930 00:05:00.353 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-02 08:01:07.814 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:43264 10 6452 1 2025-11-02 08:01:31.555 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 08:01:31.578 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 08:01:31.782 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 08:01:31.582 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 08:01:31.664 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 08:02:08.185 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:42062 10 6452 1 2025-11-02 08:03:08.593 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37626 10 6452 1 2025-11-02 07:59:53.934 00:05:00.346 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-02 08:04:08.995 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49940 10 6452 1 2025-11-02 08:05:09.401 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57250 10 6452 1 2025-11-02 08:06:09.805 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59984 10 6452 1 2025-11-02 08:06:31.556 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 08:06:31.835 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 08:06:31.696 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 08:06:31.667 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 08:06:31.751 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 08:02:53.934 00:05:00.351 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-02 08:07:10.204 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:50748 10 6452 1 2025-11-02 08:08:10.615 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57968 10 6452 1 2025-11-02 08:09:11.019 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:34350 10 6452 1 2025-11-02 08:05:53.936 00:05:00.347 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-02 08:10:11.433 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:50878 10 6452 1 2025-11-02 08:11:11.846 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:34934 10 6452 1 2025-11-02 08:11:32.217 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 08:11:32.275 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 08:11:31.992 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 08:11:32.154 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 08:11:32.237 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 08:12:12.266 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:44940 10 6452 1 2025-11-02 08:08:53.933 00:05:00.353 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-02 08:13:12.679 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:58656 10 6452 1 2025-11-02 08:14:13.112 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44430 10 6452 1 2025-11-02 08:15:13.513 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51780 10 6452 1 2025-11-02 08:11:53.938 00:05:00.347 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-02 08:16:13.921 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:42850 10 6452 1 2025-11-02 08:16:31.959 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 08:16:32.098 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 08:16:32.258 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 08:16:32.135 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 08:16:32.042 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 08:17:14.304 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:46878 10 6452 1 2025-11-02 08:18:14.676 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43728 10 6452 1 2025-11-02 08:14:53.935 00:05:00.353 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-02 08:19:15.106 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:46060 10 6452 1 2025-11-02 08:20:15.508 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:53658 10 6452 1 2025-11-02 08:21:15.873 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:47564 10 6452 1 2025-11-02 08:21:32.084 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 08:21:32.232 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 08:21:31.935 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 08:21:32.383 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 08:21:32.465 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 08:17:53.938 00:05:00.349 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-02 08:22:16.255 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50330 10 6452 1 2025-11-02 08:23:16.657 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:43596 10 6452 1 2025-11-02 08:24:17.064 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:50656 10 6452 1 2025-11-02 08:20:53.937 00:05:00.353 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-02 08:25:17.462 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:46418 10 6452 1 2025-11-02 08:26:17.857 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:60238 10 6452 1 2025-11-02 08:26:32.164 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 08:26:32.280 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 08:26:32.293 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 08:26:32.147 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 08:26:32.235 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 08:27:18.273 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:48632 10 6452 1 2025-11-02 08:23:53.941 00:05:00.347 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-02 08:28:18.638 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60196 10 6452 1 2025-11-02 08:29:19.040 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:59016 10 6452 1 2025-11-02 08:30:19.444 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:50892 10 6452 1 2025-11-02 08:26:53.939 00:05:00.352 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-02 08:31:32.236 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 08:31:32.409 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 08:31:32.145 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 08:31:32.346 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 08:31:19.865 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:59870 10 6452 1 2025-11-02 08:31:32.430 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 08:32:20.234 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:36688 10 6452 1 2025-11-02 08:33:20.647 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:50736 10 6452 1 2025-11-02 08:29:53.942 00:05:00.347 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-02 08:34:21.061 00:00:10.736 TCP 1.101.0.1:3000 -> 23.104.0.1:42284 10 6452 1 2025-11-02 08:35:21.838 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:57476 10 6452 1 2025-11-02 08:36:32.713 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 08:36:32.589 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 08:36:32.467 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 08:36:32.436 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 08:36:22.250 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:45844 10 6452 1 2025-11-02 08:36:32.630 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 08:32:53.943 00:05:00.350 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-02 08:37:22.652 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44394 10 6452 1 2025-11-02 08:38:23.073 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39248 10 6452 1 2025-11-02 08:39:23.477 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51898 10 6452 1 2025-11-02 08:35:53.943 00:05:00.347 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-02 08:40:23.876 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:60080 10 6452 1 2025-11-02 08:41:32.580 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 08:41:32.636 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 08:41:32.643 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 08:41:32.636 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 08:41:32.719 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 08:41:24.240 00:00:10.967 TCP 1.101.0.1:3000 -> 23.104.0.1:36316 10 6452 1 2025-11-02 08:42:25.252 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58968 10 6452 1 2025-11-02 08:38:53.942 00:05:00.352 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-02 08:43:25.657 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:54472 10 6452 1 2025-11-02 08:44:26.097 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:56230 10 6452 1 2025-11-02 08:45:26.518 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:51062 10 6452 1 2025-11-02 08:41:53.945 00:05:00.348 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-02 08:46:32.728 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 08:46:32.382 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 08:46:32.787 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 08:46:32.524 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 08:46:32.873 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 08:46:26.925 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:49732 10 6452 1 2025-11-02 08:47:27.330 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:43672 10 6452 1 2025-11-02 08:48:27.748 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:57808 10 6452 1 2025-11-02 08:44:53.946 00:05:00.351 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-02 08:49:28.160 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:40246 10 6452 1 2025-11-02 08:50:28.571 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:42704 10 6452 1 2025-11-02 08:51:33.003 00:00:00.039 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 08:51:32.930 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 08:51:32.925 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 08:51:33.127 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 08:51:33.209 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 08:51:28.934 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:50012 10 6452 1 2025-11-02 08:47:53.948 00:05:00.349 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-02 08:52:29.360 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53524 10 6452 1 2025-11-02 08:53:29.764 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:53390 10 6452 1 2025-11-02 08:54:30.183 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60916 10 6452 1 2025-11-02 08:50:53.946 00:05:00.354 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-02 08:55:30.582 00:00:11.070 TCP 1.101.0.1:3000 -> 23.104.0.1:51726 10 6452 1 2025-11-02 08:56:32.952 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 08:56:32.856 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 08:56:32.907 00:00:00.020 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 08:56:32.784 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 08:56:32.992 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 08:56:31.688 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:36032 10 6452 1 2025-11-02 08:57:32.109 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54258 10 6452 1 2025-11-02 08:53:53.949 00:05:00.348 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-02 08:58:32.511 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:34126 10 6452 1 Summary: total flows: 140, total bytes: 417000, total packets: 1020, avg bps: 896, avg pps: 0, avg bpp: 408 Time window: 2025-11-02 07:56:53 - 2025-11-02 08:58:54 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0053s User: 0.0009s Wall: 0.0025s flows/second: 56407.5 Runtime: 0.0025s