Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-04 13:58:44.267 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47518 10 6452 1 2025-11-04 13:59:44.669 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:60644 10 6452 1 2025-11-04 13:54:55.120 00:06:00.318 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-04 14:00:45.100 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49542 10 6452 1 2025-11-04 13:56:55.123 00:06:00.312 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-04 14:01:45.497 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:44746 10 6452 1 2025-11-04 14:02:37.018 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-04 14:02:36.645 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-04 14:02:36.934 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-04 14:02:36.787 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 14:02:36.934 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 14:02:45.906 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:34888 10 6452 1 2025-11-04 14:03:46.295 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51794 10 6452 1 2025-11-04 14:04:46.704 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:50778 10 6452 1 2025-11-04 14:05:47.113 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36808 10 6452 1 2025-11-04 14:06:47.519 00:00:10.420 TCP 1.101.0.1:3000 -> 23.104.0.1:48114 11 6504 1 2025-11-04 14:01:55.127 00:06:00.312 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-04 14:07:36.982 00:00:00.026 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-04 14:07:36.778 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-04 14:07:36.658 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-04 14:07:36.744 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 14:07:36.899 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 14:07:47.983 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52506 10 6452 1 2025-11-04 14:03:55.130 00:06:00.308 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-04 14:08:48.388 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56396 12 6556 1 2025-11-04 14:09:48.798 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:41528 10 6452 1 2025-11-04 14:10:49.212 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:51540 10 6452 1 2025-11-04 14:11:49.580 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:51826 10 6452 1 2025-11-04 14:12:37.046 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-04 14:12:37.122 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-04 14:12:37.196 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-04 14:12:37.068 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 14:12:36.964 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 14:12:49.940 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:41962 10 6452 1 2025-11-04 14:08:55.131 00:06:00.312 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-04 14:13:50.354 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36832 10 6452 1 2025-11-04 14:14:50.756 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38962 10 6452 1 2025-11-04 14:10:55.134 00:06:00.306 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-04 14:15:51.154 00:00:22.633 TCP 1.101.0.1:3000 -> 23.104.0.1:51860 10 6452 1 2025-11-04 14:17:03.850 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:58806 10 6452 1 2025-11-04 14:17:37.057 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-04 14:17:37.060 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-04 14:17:36.983 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 14:17:37.063 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 14:17:37.144 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-04 14:18:04.268 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46004 10 6452 1 2025-11-04 14:19:04.673 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:36122 10 6452 1 2025-11-04 14:20:05.105 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:38526 10 6452 1 2025-11-04 14:15:55.132 00:06:00.314 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-04 14:21:05.476 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:52960 10 6452 1 2025-11-04 14:22:05.838 00:00:10.397 TCP 1.101.0.1:3000 -> 23.104.0.1:41060 10 6452 1 2025-11-04 14:22:37.371 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-04 14:22:37.289 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 14:22:37.171 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-04 14:22:37.284 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-04 14:22:36.927 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 14:17:55.137 00:06:00.305 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-04 14:23:06.271 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41394 10 6452 1 2025-11-04 14:24:06.680 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36546 10 6452 1 2025-11-04 14:25:07.105 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:32834 10 6452 1 2025-11-04 14:26:07.468 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46178 10 6452 1 2025-11-04 14:27:07.869 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55322 10 6452 1 2025-11-04 14:27:37.510 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-04 14:27:37.346 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-04 14:27:37.116 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-04 14:27:37.129 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 14:27:37.426 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 14:22:55.135 00:06:00.310 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-04 14:28:08.284 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58426 10 6452 1 2025-11-04 14:29:08.686 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49282 10 6452 1 2025-11-04 14:24:55.138 00:06:00.306 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-04 14:30:09.107 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:33416 10 6452 1 2025-11-04 14:31:09.470 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:47470 10 6452 1 2025-11-04 14:32:09.841 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:38196 10 6452 1 2025-11-04 14:32:37.714 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-04 14:32:37.535 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-04 14:32:37.475 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-04 14:32:37.494 00:00:00.031 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 14:32:37.630 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 14:33:10.265 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:49142 10 6452 1 2025-11-04 14:34:10.679 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:34430 10 6452 1 2025-11-04 14:29:55.138 00:06:00.310 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-04 14:35:11.108 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39092 10 6452 1 2025-11-04 14:36:11.516 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:59288 10 6452 1 2025-11-04 14:31:55.140 00:06:00.304 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-04 14:37:11.926 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:49552 10 6452 1 2025-11-04 14:37:37.378 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-04 14:37:37.529 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-04 14:37:37.414 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 14:37:37.529 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 14:37:37.614 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-04 14:38:12.335 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47902 10 6452 1 2025-11-04 14:39:12.746 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:43302 10 6452 1 2025-11-04 14:40:13.152 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53710 10 6452 1 2025-11-04 14:41:13.551 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:57334 10 6452 1 2025-11-04 14:36:55.139 00:06:00.312 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-04 14:42:13.964 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:41562 10 6452 1 2025-11-04 14:42:37.513 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 14:42:37.519 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-04 14:42:37.517 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-04 14:42:37.461 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 14:42:37.596 00:00:00.030 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-04 14:43:14.360 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:56376 10 6452 1 2025-11-04 14:38:55.143 00:06:00.307 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-04 14:44:14.764 00:00:10.917 TCP 1.101.0.1:3000 -> 23.104.0.1:45926 10 6452 1 2025-11-04 14:45:15.719 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:48508 10 6452 1 2025-11-04 14:46:16.136 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:42902 10 6452 1 2025-11-04 14:47:16.540 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:60162 10 6452 1 2025-11-04 14:47:37.575 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-04 14:47:37.721 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-04 14:47:37.672 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-04 14:47:37.526 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 14:47:37.492 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 14:48:16.901 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:54806 12 6556 1 2025-11-04 14:43:55.140 00:06:00.312 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-04 14:49:17.317 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48648 10 6452 1 2025-11-04 14:50:17.719 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:43156 10 6452 1 2025-11-04 14:45:55.145 00:06:00.305 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-04 14:51:18.127 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:58464 10 6452 1 2025-11-04 14:52:18.530 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57710 10 6452 1 2025-11-04 14:52:37.826 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-04 14:52:37.573 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-04 14:52:37.728 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 14:52:37.764 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 14:52:37.846 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-04 14:53:18.934 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:46332 10 6452 1 2025-11-04 14:54:19.360 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:36334 10 6452 1 2025-11-04 14:55:19.763 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:53096 10 6452 1 2025-11-04 14:50:55.145 00:06:00.308 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-04 14:56:20.178 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:35624 10 6452 1 2025-11-04 14:57:37.863 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-04 14:57:20.579 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:45490 10 6452 1 2025-11-04 14:57:37.878 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-04 14:57:37.960 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-04 14:57:37.729 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 14:57:37.782 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 14:52:55.147 00:06:00.304 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-04 14:58:20.943 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:48558 10 6452 1 Summary: total flows: 138, total bytes: 417998, total packets: 1037, avg bps: 870, avg pps: 0, avg bpp: 403 Time window: 2025-11-04 13:54:55 - 2025-11-04 14:58:55 Total flows processed: 138, passed: 138, Blocks skipped: 0, Bytes read: 14416 Sys: 0.0038s User: 0.0015s Wall: 0.0021s flows/second: 64816.8 Runtime: 0.0022s