Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-04 10:59:16.914 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:35278 10 6452 1 2025-11-04 10:54:55.061 00:06:00.317 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-04 11:00:17.320 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:57432 10 6452 1 2025-11-04 11:01:17.724 00:00:10.343 TCP 1.101.0.1:3000 -> 23.104.0.1:48998 10 6452 1 2025-11-04 11:02:18.111 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50698 10 6452 1 2025-11-04 11:02:32.976 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-04 11:02:33.278 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-04 11:02:33.172 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 11:02:32.980 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 11:02:33.063 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-04 11:03:18.512 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:40618 10 6452 1 2025-11-04 11:04:18.875 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:36340 10 6452 1 2025-11-04 10:59:55.061 00:06:00.319 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-04 11:05:19.288 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:50256 10 6452 1 2025-11-04 11:06:19.696 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41690 10 6452 1 2025-11-04 11:01:55.063 00:06:00.315 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-04 11:07:33.248 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-04 11:07:33.174 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-04 11:07:33.053 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 11:07:20.116 00:00:12.161 TCP 1.101.0.1:3000 -> 23.104.0.1:48868 10 6452 1 2025-11-04 11:07:33.166 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 11:07:33.290 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-04 11:08:22.313 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36610 10 6452 1 2025-11-04 11:09:22.718 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:42384 10 6452 1 2025-11-04 11:10:23.100 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:57408 10 6452 1 2025-11-04 11:11:23.506 00:00:10.399 TCP 1.101.0.1:3000 -> 23.104.0.1:34174 12 10369 1 2025-11-04 11:06:55.065 00:06:00.317 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-04 11:12:33.488 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-04 11:12:33.409 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-04 11:12:33.088 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-04 11:12:33.212 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 11:12:23.944 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:33476 10 6452 1 2025-11-04 11:12:33.405 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 11:13:24.357 00:00:10.846 TCP 1.101.0.1:3000 -> 23.104.0.1:57380 10 6452 1 2025-11-04 11:08:55.066 00:06:00.315 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-04 11:14:25.239 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:54900 10 6452 1 2025-11-04 11:15:25.608 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:39868 10 6452 1 2025-11-04 11:16:25.972 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:33484 10 6452 1 2025-11-04 11:17:33.297 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-04 11:17:33.441 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-04 11:17:33.438 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-04 11:17:33.375 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 11:17:33.215 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 11:17:26.386 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41178 10 6452 1 2025-11-04 11:18:26.787 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:38260 10 6452 1 2025-11-04 11:13:55.064 00:06:00.324 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-04 11:19:27.201 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:57744 10 6452 1 2025-11-04 11:20:27.613 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:51148 10 6452 1 2025-11-04 11:15:55.068 00:06:00.318 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-04 11:21:27.992 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:51326 10 6452 1 2025-11-04 11:22:34.089 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-04 11:22:34.095 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-04 11:22:33.989 00:00:00.029 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 11:22:34.103 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 11:22:34.186 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-04 11:22:28.405 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:40006 10 6452 1 2025-11-04 11:23:28.772 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:56510 10 6452 1 2025-11-04 11:24:29.142 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:44384 10 6452 1 2025-11-04 11:25:29.548 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:46180 10 6452 1 2025-11-04 11:20:55.073 00:06:00.317 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-04 11:26:29.950 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:46622 10 6452 1 2025-11-04 11:27:33.536 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-04 11:27:33.697 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-04 11:27:33.663 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-04 11:27:33.377 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 11:27:33.455 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 11:27:30.323 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:57824 10 6452 1 2025-11-04 11:22:55.075 00:06:00.313 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-04 11:28:30.734 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:46712 10 6452 1 2025-11-04 11:29:31.147 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52128 10 6452 1 2025-11-04 11:30:31.549 00:00:21.852 TCP 1.101.0.1:3000 -> 23.104.0.1:33002 10 6452 1 2025-11-04 11:31:43.465 00:00:10.438 TCP 1.101.0.1:3000 -> 23.104.0.1:54066 12 10375 1 2025-11-04 11:32:33.797 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-04 11:32:33.779 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-04 11:32:33.843 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-04 11:32:33.626 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 11:32:33.715 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 11:32:43.946 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:35480 10 6452 1 2025-11-04 11:27:55.073 00:06:00.318 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-04 11:33:44.314 00:00:10.356 TCP 1.101.0.1:3000 -> 23.104.0.1:39036 10 6452 1 2025-11-04 11:29:55.077 00:06:00.314 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-04 11:34:44.711 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:33792 10 6452 1 2025-11-04 11:35:45.116 00:00:10.438 TCP 1.101.0.1:3000 -> 23.104.0.1:58996 12 10369 1 2025-11-04 11:36:45.594 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:55588 10 6452 1 2025-11-04 11:37:33.918 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-04 11:37:33.754 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-04 11:37:33.987 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-04 11:37:33.795 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 11:37:33.835 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 11:37:45.993 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37786 10 6452 1 2025-11-04 11:38:46.397 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:55074 10 6452 1 2025-11-04 11:39:46.754 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:46792 10 6452 1 2025-11-04 11:34:55.078 00:06:00.318 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-04 11:40:47.149 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55852 10 6452 1 2025-11-04 11:41:47.551 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:55708 10 6452 1 2025-11-04 11:36:55.079 00:06:00.314 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-04 11:42:34.290 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-04 11:42:34.288 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-04 11:42:33.794 00:00:00.048 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 11:42:34.216 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 11:42:34.300 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-04 11:42:47.928 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:54442 10 6452 1 2025-11-04 11:43:48.337 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:51044 10 6452 1 2025-11-04 11:44:48.753 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:58400 10 6452 1 2025-11-04 11:45:49.118 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:54706 10 6452 1 2025-11-04 11:41:55.080 00:06:00.315 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-04 11:46:49.520 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:38140 10 6452 1 2025-11-04 11:47:34.004 00:00:00.043 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-04 11:47:33.984 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-04 11:47:34.191 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 11:47:33.841 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 11:47:33.922 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-04 11:47:49.919 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33974 10 6452 1 2025-11-04 11:43:55.084 00:06:00.310 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-04 11:48:50.319 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45312 10 6452 1 2025-11-04 11:49:50.721 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:43862 10 6452 1 2025-11-04 11:50:51.140 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52492 10 6452 1 2025-11-04 11:51:51.543 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:40172 10 6452 1 2025-11-04 11:52:34.211 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-04 11:52:34.329 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-04 11:52:34.131 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 11:52:34.128 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 11:52:34.212 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-04 11:52:51.938 00:00:10.513 TCP 1.101.0.1:3000 -> 23.104.0.1:53176 10 6452 1 2025-11-04 11:48:55.083 00:06:00.314 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-04 11:53:52.488 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51636 10 6452 1 2025-11-04 11:54:52.900 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:44006 12 6556 1 2025-11-04 11:50:55.085 00:06:00.309 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-04 11:55:53.310 00:00:10.934 TCP 1.101.0.1:3000 -> 23.104.0.1:33774 10 6452 1 2025-11-04 11:56:54.287 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43774 10 6452 1 2025-11-04 11:57:34.138 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-04 11:57:34.139 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-04 11:57:34.220 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 11:57:34.061 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 11:57:34.144 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-04 11:57:54.693 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:39064 10 6452 1 Summary: total flows: 136, total bytes: 422286, total packets: 1016, avg bps: 891, avg pps: 0, avg bpp: 415 Time window: 2025-11-04 10:54:55 - 2025-11-04 11:58:05 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0030s User: 0.0020s Wall: 0.0023s flows/second: 59154.3 Runtime: 0.0023s