Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-08 09:58:50.265 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57264 10 6452 1 2025-11-08 09:59:27.405 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-08 09:59:27.318 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-08 09:59:27.558 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-08 09:59:27.333 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-08 09:59:27.641 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-08 09:59:50.670 00:00:10.516 TCP 1.101.0.1:3000 -> 23.104.0.1:40516 10 6452 1 2025-11-08 10:00:51.224 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60660 10 6452 1 2025-11-08 09:56:57.165 00:06:00.099 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-08 10:01:51.626 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:34746 10 6452 1 2025-11-08 09:57:57.164 00:06:00.102 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-08 10:02:52.029 00:00:21.329 TCP 1.101.0.1:3000 -> 23.104.0.1:60632 10 6452 1 2025-11-08 10:04:03.420 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60938 10 6452 1 2025-11-08 10:04:27.563 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-08 10:04:27.478 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-08 10:04:27.337 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-08 10:04:27.524 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-08 10:04:27.609 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-08 10:05:03.827 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:43120 10 6452 1 2025-11-08 10:06:04.226 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56292 10 6452 1 2025-11-08 10:07:04.633 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:53266 10 6452 1 2025-11-08 10:08:05.028 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:48940 10 6452 1 2025-11-08 10:03:57.167 00:06:00.097 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-08 10:09:05.391 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49130 10 6452 1 2025-11-08 10:09:27.560 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-08 10:09:27.479 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-08 10:09:27.482 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-08 10:09:27.553 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-08 10:09:27.409 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-08 10:04:57.164 00:06:00.103 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-08 10:10:05.793 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:40316 10 6452 1 2025-11-08 10:11:06.200 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:33184 10 6452 1 2025-11-08 10:12:06.605 00:00:10.571 TCP 1.101.0.1:3000 -> 23.104.0.1:42166 10 6452 1 2025-11-08 10:13:07.208 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:57202 10 6452 1 2025-11-08 10:14:07.570 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:42036 12 6556 1 2025-11-08 10:14:27.439 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-08 10:14:27.642 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-08 10:14:27.537 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-08 10:14:27.693 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-08 10:14:27.620 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-08 10:15:07.980 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55792 10 6452 1 2025-11-08 10:10:57.170 00:06:00.095 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-08 10:16:08.389 00:00:10.393 TCP 1.101.0.1:3000 -> 23.104.0.1:50938 10 6452 1 2025-11-08 10:11:57.168 00:06:00.101 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-08 10:17:08.847 00:00:10.393 TCP 1.101.0.1:3000 -> 23.104.0.1:52856 10 6452 1 2025-11-08 10:18:09.274 00:00:11.377 TCP 1.101.0.1:3000 -> 23.104.0.1:51082 10 6452 1 2025-11-08 10:19:10.701 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58276 10 6452 1 2025-11-08 10:19:27.861 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-08 10:19:27.394 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-08 10:19:27.780 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-08 10:19:27.719 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-08 10:19:27.660 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-08 10:20:11.116 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:51310 10 6452 1 2025-11-08 10:21:11.524 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:33702 10 6452 1 2025-11-08 10:22:11.924 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:38834 10 6452 1 2025-11-08 10:17:57.173 00:06:00.092 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-08 10:23:12.352 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:38674 10 6452 1 2025-11-08 10:18:57.171 00:06:00.098 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-08 10:24:12.714 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:40126 10 6452 1 2025-11-08 10:24:27.648 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-08 10:24:27.656 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-08 10:24:27.647 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-08 10:24:27.654 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-08 10:24:27.736 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-08 10:25:13.107 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:45488 10 6452 1 2025-11-08 10:26:13.515 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:32862 10 6452 1 2025-11-08 10:27:13.920 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:57252 10 6452 1 2025-11-08 10:28:14.329 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39160 10 6452 1 2025-11-08 10:29:27.938 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-08 10:29:14.734 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:42676 10 6452 1 2025-11-08 10:29:27.943 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-08 10:29:28.097 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-08 10:29:28.088 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-08 10:29:28.170 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-08 10:24:57.174 00:06:00.094 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-08 10:30:15.143 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:34508 10 6452 1 2025-11-08 10:25:57.172 00:06:00.099 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-08 10:31:15.547 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:48322 10 6452 1 2025-11-08 10:32:15.953 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:54322 10 6452 1 2025-11-08 10:33:16.365 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:43640 10 6452 1 2025-11-08 10:34:28.012 00:00:00.037 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-08 10:34:28.012 00:00:00.037 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-08 10:34:27.950 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-08 10:34:16.768 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:53880 10 6452 1 2025-11-08 10:34:27.907 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-08 10:34:27.990 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-08 10:35:17.144 00:00:10.495 TCP 1.101.0.1:3000 -> 23.104.0.1:45176 10 6452 1 2025-11-08 10:36:17.685 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39106 10 6452 1 2025-11-08 10:31:57.175 00:06:00.095 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-08 10:37:18.122 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46544 10 6452 1 2025-11-08 10:32:57.173 00:06:00.101 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-08 10:38:18.521 00:00:10.440 TCP 1.101.0.1:3000 -> 23.104.0.1:42888 12 10375 1 2025-11-08 10:39:28.115 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-08 10:39:28.111 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-08 10:39:28.167 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-08 10:39:19.004 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41106 10 6452 1 2025-11-08 10:39:27.979 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-08 10:39:28.061 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-08 10:40:19.407 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46848 10 6452 1 2025-11-08 10:41:19.805 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:42204 10 6452 1 2025-11-08 10:42:20.177 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36650 10 6452 1 2025-11-08 10:43:20.583 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:38252 10 6452 1 2025-11-08 10:38:57.177 00:06:00.094 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-08 10:44:28.511 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-08 10:44:28.314 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-08 10:44:28.552 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-08 10:44:28.381 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-08 10:44:28.430 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-08 10:44:20.944 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:59938 10 6452 1 2025-11-08 10:39:57.174 00:06:00.099 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-08 10:45:21.374 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53254 10 6452 1 2025-11-08 10:46:21.779 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37546 10 6452 1 2025-11-08 10:47:22.187 00:00:13.387 TCP 1.101.0.1:3000 -> 23.104.0.1:42064 10 6452 1 2025-11-08 10:48:25.649 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60304 10 6452 1 2025-11-08 10:49:28.472 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-08 10:49:28.190 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-08 10:49:28.259 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-08 10:49:28.355 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-08 10:49:28.343 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-08 10:49:26.062 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:42964 10 6452 1 2025-11-08 10:50:26.466 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:34366 10 6452 1 2025-11-08 10:45:57.180 00:06:00.093 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-08 10:51:26.825 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39322 10 6452 1 2025-11-08 10:46:57.178 00:06:00.097 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-08 10:52:27.237 00:00:10.432 TCP 1.101.0.1:3000 -> 23.104.0.1:55872 10 6452 1 2025-11-08 10:53:27.702 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47562 10 6452 1 2025-11-08 10:54:28.752 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-08 10:54:28.812 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-08 10:54:28.753 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-08 10:54:28.758 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-08 10:54:28.840 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-08 10:54:28.112 00:00:10.549 TCP 1.101.0.1:3000 -> 23.104.0.1:45252 10 6452 1 2025-11-08 10:55:28.697 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58460 10 6452 1 2025-11-08 10:56:29.110 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:40726 10 6452 1 2025-11-08 10:57:29.508 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59108 10 6452 1 2025-11-08 10:52:57.180 00:06:00.092 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-08 10:58:29.912 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35084 10 6452 1 Summary: total flows: 137, total bytes: 420904, total packets: 1022, avg bps: 905, avg pps: 0, avg bpp: 411 Time window: 2025-11-08 09:56:57 - 2025-11-08 10:58:57 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0024s User: 0.0024s Wall: 0.0019s flows/second: 72261.0 Runtime: 0.0019s