Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-05 01:59:23.061 00:00:10.413 TCP 1.101.0.1:3000 -> 23.104.0.1:49968 11 6504 1 2025-11-05 02:00:23.514 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44630 10 6452 1 2025-11-05 01:55:55.426 00:06:00.260 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-05 02:01:23.916 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51618 10 6452 1 2025-11-05 02:02:24.320 00:00:10.439 TCP 1.101.0.1:3000 -> 23.104.0.1:35230 12 10375 1 2025-11-05 02:02:51.672 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-05 02:02:51.543 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-05 02:02:51.275 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-05 02:02:51.058 00:00:00.051 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-05 02:02:51.590 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-05 01:57:55.428 00:06:00.256 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-05 02:03:24.800 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38764 10 6452 1 2025-11-05 02:04:25.207 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:43984 10 6452 1 2025-11-05 02:05:25.603 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:56964 10 6452 1 2025-11-05 02:06:26.014 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56016 10 6452 1 2025-11-05 02:07:26.416 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:47212 10 6452 1 2025-11-05 02:07:51.491 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-05 02:07:51.491 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-05 02:07:51.409 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-05 02:07:51.423 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-05 02:07:51.407 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-05 02:02:55.426 00:06:00.262 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-05 02:08:26.822 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55128 10 6452 1 2025-11-05 02:09:27.223 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:32932 10 6452 1 2025-11-05 02:04:55.429 00:06:00.257 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-05 02:10:27.624 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:39306 10 6452 1 2025-11-05 02:11:28.028 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:33586 10 6452 1 2025-11-05 02:12:28.430 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:36748 10 6452 1 2025-11-05 02:12:51.413 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-05 02:12:51.201 00:00:00.041 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-05 02:12:51.333 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-05 02:12:51.562 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-05 02:12:51.330 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-05 02:13:28.828 00:00:13.716 TCP 1.101.0.1:3000 -> 23.104.0.1:34442 10 6452 1 2025-11-05 02:14:32.595 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:39782 10 6452 1 2025-11-05 02:09:55.432 00:06:00.257 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-05 02:15:32.956 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:58994 10 6452 1 2025-11-05 02:16:33.365 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:57454 10 6452 1 2025-11-05 02:11:55.437 00:06:00.249 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-05 02:17:33.723 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:49742 10 6452 1 2025-11-05 02:17:51.491 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-05 02:17:51.407 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-05 02:17:51.255 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-05 02:17:51.609 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-05 02:17:51.692 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-05 02:18:34.107 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41304 10 6452 1 2025-11-05 02:19:34.509 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53298 10 6452 1 2025-11-05 02:20:34.909 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:53038 10 6452 1 2025-11-05 02:21:35.272 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:54382 10 6452 1 2025-11-05 02:16:55.435 00:06:00.255 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-05 02:22:35.680 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:39842 10 6452 1 2025-11-05 02:22:51.809 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-05 02:22:51.728 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-05 02:22:51.625 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-05 02:22:51.626 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-05 02:22:51.495 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-05 02:23:36.106 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:52368 10 6452 1 2025-11-05 02:18:55.438 00:06:00.255 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-05 02:24:36.509 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:48632 10 6452 1 2025-11-05 02:25:36.873 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44830 10 6452 1 2025-11-05 02:26:37.281 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45638 10 6452 1 2025-11-05 02:27:37.694 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:41710 10 6452 1 2025-11-05 02:27:53.565 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-05 02:27:53.483 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-05 02:27:53.520 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-05 02:27:53.118 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-05 02:27:52.950 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-05 02:28:38.073 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:37168 10 6452 1 2025-11-05 02:23:55.437 00:06:00.255 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-05 02:29:38.470 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:60456 10 6452 1 2025-11-05 02:30:38.873 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:50360 10 6452 1 2025-11-05 02:25:55.439 00:06:00.250 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-05 02:31:39.239 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:54646 10 6452 1 2025-11-05 02:32:39.599 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:59942 10 6452 1 2025-11-05 02:32:51.704 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-05 02:32:51.926 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-05 02:32:51.701 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-05 02:32:51.651 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-05 02:32:51.621 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-05 02:33:40.012 00:00:25.195 TCP 1.101.0.1:3000 -> 23.104.0.1:39254 10 6452 1 2025-11-05 02:34:55.244 00:00:10.355 TCP 1.101.0.1:3000 -> 23.104.0.1:33112 10 6452 1 2025-11-05 02:30:55.440 00:06:00.255 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-05 02:35:55.638 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57008 10 6452 1 2025-11-05 02:36:56.039 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:55364 10 6452 1 2025-11-05 02:37:51.882 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-05 02:37:52.020 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-05 02:37:51.800 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-05 02:37:51.889 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-05 02:37:51.798 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-05 02:32:55.441 00:06:00.250 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-05 02:37:56.397 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50160 10 6452 1 2025-11-05 02:38:56.801 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50492 10 6452 1 2025-11-05 02:39:57.205 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57804 10 6452 1 2025-11-05 02:40:57.613 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50432 10 6452 1 2025-11-05 02:41:58.020 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:48638 10 6452 1 2025-11-05 02:42:51.821 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-05 02:42:51.981 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-05 02:42:51.907 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-05 02:42:51.895 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-05 02:42:51.978 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-05 02:37:55.440 00:06:00.255 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-05 02:42:58.382 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:60758 10 6452 1 2025-11-05 02:43:58.779 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:60332 10 6452 1 2025-11-05 02:39:55.444 00:06:00.249 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-05 02:44:59.188 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59258 10 6452 1 2025-11-05 02:45:59.587 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36606 10 6452 1 2025-11-05 02:46:59.991 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54480 10 6452 1 2025-11-05 02:47:52.250 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-05 02:47:52.245 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-05 02:47:52.105 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-05 02:47:52.250 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-05 02:47:52.333 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-05 02:48:00.393 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45480 10 6452 1 2025-11-05 02:49:00.797 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:51186 10 6452 1 2025-11-05 02:44:55.443 00:06:00.252 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-05 02:50:01.167 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47940 10 6452 1 2025-11-05 02:51:01.571 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:35976 10 6452 1 2025-11-05 02:46:55.446 00:06:00.248 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-05 02:52:01.959 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:35524 10 6452 1 2025-11-05 02:52:52.155 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-05 02:52:52.141 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-05 02:52:52.004 00:00:00.056 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-05 02:52:52.300 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-05 02:52:52.383 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-05 02:53:02.325 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40692 10 6452 1 2025-11-05 02:54:02.733 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34076 10 6452 1 2025-11-05 02:55:03.136 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48156 10 6452 1 2025-11-05 02:56:03.537 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49218 10 6452 1 2025-11-05 02:51:55.447 00:06:00.255 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-05 02:57:03.947 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:38406 10 6452 1 2025-11-05 02:57:52.304 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-05 02:57:52.370 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-05 02:57:52.121 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-05 02:57:52.144 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-05 02:57:52.221 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-05 02:58:04.368 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36320 10 6452 1 Summary: total flows: 136, total bytes: 414400, total packets: 1011, avg bps: 886, avg pps: 0, avg bpp: 409 Time window: 2025-11-05 01:55:55 - 2025-11-05 02:58:14 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0034s User: 0.0014s Wall: 0.0022s flows/second: 63226.0 Runtime: 0.0022s