Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-06 03:59:18.836 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:54970 10 6452 1 2025-11-06 03:54:56.033 00:06:00.180 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-06 04:00:19.266 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43106 10 6452 1 2025-11-06 04:01:19.668 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:42270 10 6452 1 2025-11-06 04:02:20.029 00:00:10.444 TCP 1.101.0.1:3000 -> 23.104.0.1:58248 12 10375 1 2025-11-06 04:03:22.459 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-06 04:03:22.286 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-06 04:03:22.508 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-06 04:03:22.237 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 04:03:22.378 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 04:03:20.501 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:49208 10 6452 1 2025-11-06 04:04:20.902 00:00:18.202 TCP 1.101.0.1:3000 -> 23.104.0.1:54992 12 6556 1 2025-11-06 03:59:56.038 00:06:00.166 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-06 04:05:29.141 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43698 10 6452 1 2025-11-06 04:06:29.543 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44310 10 6452 1 2025-11-06 04:01:56.035 00:06:00.175 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-06 04:07:29.947 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:59046 10 6452 1 2025-11-06 04:08:23.287 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-06 04:08:23.487 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-06 04:08:23.433 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 04:08:23.485 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 04:08:23.568 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-06 04:08:30.351 00:00:10.991 TCP 1.101.0.1:3000 -> 23.104.0.1:35614 10 6452 1 2025-11-06 04:09:31.385 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:48534 10 6452 1 2025-11-06 04:10:31.792 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40884 10 6452 1 2025-11-06 04:11:32.196 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41690 10 6452 1 2025-11-06 04:06:56.039 00:06:00.166 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-06 04:12:32.598 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59300 10 6452 1 2025-11-06 04:13:22.653 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-06 04:13:22.884 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-06 04:13:22.661 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-06 04:13:22.392 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 04:13:22.570 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 04:13:33.004 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:33282 10 6452 1 2025-11-06 04:08:56.038 00:06:00.169 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-06 04:14:33.408 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:47038 10 6452 1 2025-11-06 04:15:33.767 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:47684 10 6452 1 2025-11-06 04:16:34.189 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:42446 10 6452 1 2025-11-06 04:17:34.616 00:00:10.952 TCP 1.101.0.1:3000 -> 23.104.0.1:54310 10 6452 1 2025-11-06 04:18:22.799 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-06 04:18:22.790 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-06 04:18:22.626 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-06 04:18:22.724 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 04:18:22.715 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 04:18:35.625 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47890 10 6452 1 2025-11-06 04:13:56.043 00:06:00.163 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-06 04:19:36.029 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:46910 10 6452 1 2025-11-06 04:20:36.445 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43018 10 6452 1 2025-11-06 04:15:56.040 00:06:00.169 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-06 04:21:36.850 00:00:10.588 TCP 1.101.0.1:3000 -> 23.104.0.1:53816 10 6452 1 2025-11-06 04:22:37.474 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:46796 10 6452 1 2025-11-06 04:23:22.777 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-06 04:23:22.782 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-06 04:23:22.693 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-06 04:23:22.813 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 04:23:22.694 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 04:23:37.835 00:00:10.354 TCP 1.101.0.1:3000 -> 23.104.0.1:55524 10 6452 1 2025-11-06 04:24:38.225 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:44002 10 6452 1 2025-11-06 04:25:38.588 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:48862 10 6452 1 2025-11-06 04:20:56.044 00:06:00.163 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-06 04:26:38.953 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:50676 10 6452 1 2025-11-06 04:27:39.363 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:55954 10 6452 1 2025-11-06 04:22:56.042 00:06:00.168 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-06 04:28:23.044 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-06 04:28:22.904 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-06 04:28:22.842 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 04:28:23.090 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 04:28:23.172 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-06 04:28:39.732 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:33328 10 6452 1 2025-11-06 04:29:40.101 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:34392 10 6452 1 2025-11-06 04:30:40.503 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:42308 10 6452 1 2025-11-06 04:31:40.900 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:48934 12 6556 1 2025-11-06 04:32:41.317 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:35600 10 6452 1 2025-11-06 04:27:56.046 00:06:00.162 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-06 04:33:24.092 00:00:00.047 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-06 04:33:24.246 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-06 04:33:24.047 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-06 04:33:23.997 00:00:00.046 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 04:33:24.009 00:00:00.046 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 04:33:41.716 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:56670 10 6452 1 2025-11-06 04:34:42.130 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50110 10 6452 1 2025-11-06 04:29:56.042 00:06:00.168 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-06 04:35:42.532 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:41598 10 6452 1 2025-11-06 04:36:42.888 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:50410 12 6556 1 2025-11-06 04:37:43.306 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35094 10 6452 1 2025-11-06 04:38:23.202 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-06 04:38:23.251 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-06 04:38:23.196 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-06 04:38:23.033 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 04:38:23.120 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 04:38:43.706 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35288 10 6452 1 2025-11-06 04:39:44.118 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:50336 10 6452 1 2025-11-06 04:34:56.050 00:06:00.162 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-06 04:40:44.488 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:50958 10 6452 1 2025-11-06 04:36:56.046 00:06:00.168 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-06 04:41:44.849 00:00:10.717 TCP 1.101.0.1:3000 -> 23.104.0.1:51246 10 6452 1 2025-11-06 04:42:45.603 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45506 10 6452 1 2025-11-06 04:43:23.304 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-06 04:43:23.292 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-06 04:43:23.284 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 04:43:23.338 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 04:43:23.421 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-06 04:43:46.009 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:59470 10 6452 1 2025-11-06 04:44:46.368 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46476 10 6452 1 2025-11-06 04:45:46.779 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:54432 10 6452 1 2025-11-06 04:46:47.200 00:00:10.417 TCP 1.101.0.1:3000 -> 23.104.0.1:60462 11 6504 1 2025-11-06 04:41:56.051 00:06:00.163 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-06 04:47:47.671 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45838 10 6452 1 2025-11-06 04:48:23.531 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-06 04:48:23.441 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-06 04:48:23.443 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-06 04:48:23.643 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 04:48:23.448 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 04:43:56.047 00:06:00.169 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-06 04:48:48.103 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49842 10 6452 1 2025-11-06 04:49:48.509 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59080 10 6452 1 2025-11-06 04:50:48.915 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51812 10 6452 1 2025-11-06 04:51:49.326 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:57198 10 6452 1 2025-11-06 04:52:49.744 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:43406 10 6452 1 2025-11-06 04:53:23.739 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-06 04:53:23.584 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-06 04:53:23.563 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-06 04:53:23.578 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 04:53:23.658 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 04:48:56.051 00:06:00.163 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-06 04:53:50.146 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:58186 10 6452 1 2025-11-06 04:54:50.546 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:36610 10 6452 1 2025-11-06 04:50:56.049 00:06:00.168 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-06 04:55:50.908 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:45914 10 6452 1 2025-11-06 04:56:51.279 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50732 10 6452 1 2025-11-06 04:57:51.680 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:47422 10 6452 1 2025-11-06 04:58:23.687 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-06 04:58:23.605 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-06 04:58:23.613 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-06 04:58:23.494 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 04:58:23.603 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 Summary: total flows: 136, total bytes: 414712, total packets: 1017, avg bps: 871, avg pps: 0, avg bpp: 407 Time window: 2025-11-06 03:54:56 - 2025-11-06 04:58:23 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0028s User: 0.0019s Wall: 0.0038s flows/second: 36150.9 Runtime: 0.0038s