Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-06 21:58:59.422 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:40672 10 6452 1 2025-11-06 21:59:59.837 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:41472 12 6556 1 2025-11-06 22:01:00.264 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:33088 10 6452 1 2025-11-06 22:02:00.620 00:00:10.961 TCP 1.101.0.1:3000 -> 23.104.0.1:34348 12 10369 1 2025-11-06 21:57:56.355 00:06:00.182 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-06 22:03:01.617 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39172 10 6452 1 2025-11-06 22:03:44.275 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-06 22:03:44.270 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-06 22:03:44.228 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 22:03:44.391 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 22:03:44.475 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-06 22:04:02.020 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57130 10 6452 1 2025-11-06 21:59:56.352 00:06:00.188 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-06 22:05:02.421 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:59422 10 6452 1 2025-11-06 22:06:02.839 00:00:10.398 TCP 1.101.0.1:3000 -> 23.104.0.1:46916 10 6452 1 2025-11-06 22:07:03.280 00:00:10.566 TCP 1.101.0.1:3000 -> 23.104.0.1:33958 10 6452 1 2025-11-06 22:08:03.884 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:51746 10 6452 1 2025-11-06 22:08:44.311 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-06 22:08:44.229 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 22:08:44.381 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-06 22:08:44.295 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-06 22:08:44.043 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 22:09:04.300 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:35862 10 6452 1 2025-11-06 22:04:56.356 00:06:00.185 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-06 22:10:04.704 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:59846 10 6452 1 2025-11-06 22:11:05.096 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54044 10 6452 1 2025-11-06 22:06:56.355 00:06:00.190 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-06 22:12:05.502 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:55260 10 6452 1 2025-11-06 22:13:05.857 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:51038 10 6452 1 2025-11-06 22:13:44.512 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-06 22:13:44.214 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-06 22:13:44.284 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-06 22:13:44.229 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 22:13:44.429 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 22:14:06.277 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55882 10 6452 1 2025-11-06 22:15:06.679 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:53590 10 6452 1 2025-11-06 22:16:07.108 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:42976 10 6452 1 2025-11-06 22:11:56.365 00:06:00.180 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-06 22:17:07.510 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42960 10 6452 1 2025-11-06 22:18:07.910 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50292 10 6452 1 2025-11-06 22:18:44.515 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 22:18:44.437 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 22:18:44.500 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-06 22:18:44.339 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-06 22:18:44.520 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-06 22:13:56.363 00:06:00.185 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-06 22:19:08.318 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:38870 10 6452 1 2025-11-06 22:20:08.728 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:42244 10 6452 1 2025-11-06 22:21:09.133 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:33084 10 6452 1 2025-11-06 22:22:09.494 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38994 10 6452 1 2025-11-06 22:23:09.905 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:36090 10 6452 1 2025-11-06 22:23:44.898 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-06 22:23:44.666 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-06 22:23:44.816 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 22:23:44.893 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 22:23:44.976 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-06 22:18:56.366 00:06:00.181 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-06 22:24:10.276 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:47524 10 6452 1 2025-11-06 22:25:10.691 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51064 10 6452 1 2025-11-06 22:20:56.364 00:06:00.187 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-06 22:26:11.111 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:40378 10 6452 1 2025-11-06 22:27:11.471 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53786 10 6452 1 2025-11-06 22:28:11.867 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:53196 10 6452 1 2025-11-06 22:28:44.742 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-06 22:28:44.581 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-06 22:28:44.711 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-06 22:28:44.539 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 22:28:44.660 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 22:29:12.235 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:33356 10 6452 1 2025-11-06 22:30:12.612 00:00:10.416 TCP 1.101.0.1:3000 -> 23.104.0.1:35770 10 6452 1 2025-11-06 22:25:56.367 00:06:00.182 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-06 22:31:13.072 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54202 10 6452 1 2025-11-06 22:32:13.476 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:45994 10 6452 1 2025-11-06 22:27:56.366 00:06:00.186 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-06 22:33:13.879 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:39170 10 6452 1 2025-11-06 22:33:44.763 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-06 22:33:44.765 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-06 22:33:44.675 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-06 22:33:44.494 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 22:33:44.680 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 22:34:14.278 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:46018 10 6452 1 2025-11-06 22:35:14.683 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:59552 10 6452 1 2025-11-06 22:36:15.040 00:00:10.991 TCP 1.101.0.1:3000 -> 23.104.0.1:60882 10 6452 1 2025-11-06 22:37:16.093 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52684 10 6452 1 2025-11-06 22:32:56.369 00:06:00.183 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-06 22:38:16.493 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:38276 10 6452 1 2025-11-06 22:38:45.313 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-06 22:38:45.229 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-06 22:38:45.168 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 22:38:45.222 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 22:38:45.306 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-06 22:39:16.897 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:56692 10 6452 1 2025-11-06 22:34:56.372 00:06:00.184 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-06 22:40:17.324 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:34018 10 6452 1 2025-11-06 22:41:17.686 00:00:10.416 TCP 1.101.0.1:3000 -> 23.104.0.1:50266 10 6452 1 2025-11-06 22:42:18.142 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56096 10 6452 1 2025-11-06 22:43:18.546 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38376 10 6452 1 2025-11-06 22:43:44.935 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-06 22:43:44.933 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-06 22:43:44.809 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 22:43:44.936 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 22:43:45.020 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-06 22:44:18.948 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:38508 10 6452 1 2025-11-06 22:39:56.376 00:06:00.180 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-06 22:45:19.365 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51842 10 6452 1 2025-11-06 22:46:19.764 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:50732 10 6452 1 2025-11-06 22:41:56.373 00:06:00.187 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-06 22:47:20.129 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:57502 10 6452 1 2025-11-06 22:48:20.537 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:60794 10 6452 1 2025-11-06 22:48:44.972 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-06 22:48:44.892 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-06 22:48:44.889 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 22:48:45.095 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-06 22:48:44.994 00:00:00.045 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 22:49:20.901 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:58230 10 6452 1 2025-11-06 22:50:21.305 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59522 10 6452 1 2025-11-06 22:51:21.709 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:54782 10 6452 1 2025-11-06 22:46:56.393 00:06:00.169 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-06 22:52:22.112 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:54644 11 6504 1 2025-11-06 22:53:22.533 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47134 10 6452 1 2025-11-06 22:53:44.812 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 22:53:45.272 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-06 22:53:45.250 00:00:00.020 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-06 22:53:45.181 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-06 22:53:45.188 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 22:48:56.392 00:06:00.172 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-06 22:54:22.932 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:57976 10 6452 1 2025-11-06 22:55:23.309 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52664 10 6452 1 2025-11-06 22:56:23.711 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:50944 10 6452 1 2025-11-06 22:57:24.128 00:00:10.438 TCP 1.101.0.1:3000 -> 23.104.0.1:41662 12 10369 1 2025-11-06 22:58:24.603 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:53336 10 6452 1 2025-11-06 22:58:45.389 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-06 22:58:45.126 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 22:58:45.441 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 22:58:45.441 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-06 22:58:45.526 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 Summary: total flows: 136, total bytes: 424006, total packets: 1011, avg bps: 929, avg pps: 0, avg bpp: 419 Time window: 2025-11-06 21:57:56 - 2025-11-06 22:58:45 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0051s User: 0.0000s Wall: 0.0029s flows/second: 47551.3 Runtime: 0.0029s