Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-09 08:59:21.358 00:00:10.539 TCP 1.101.0.1:3000 -> 23.104.0.1:55216 10 6452 1 2025-11-09 08:59:54.936 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 08:59:55.115 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 08:59:55.315 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 08:59:55.249 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 08:59:55.399 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 09:00:21.939 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:41976 10 6452 1 2025-11-09 08:55:57.650 00:06:00.088 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-09 09:01:22.357 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:59614 10 6452 1 2025-11-09 08:56:57.648 00:06:00.093 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-09 09:02:22.724 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:52584 10 6452 1 2025-11-09 09:03:23.134 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:38360 10 6452 1 2025-11-09 09:04:23.543 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45480 10 6452 1 2025-11-09 09:04:55.438 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 09:04:55.380 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 09:04:55.285 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 09:04:55.327 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 09:04:55.411 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 09:05:23.959 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46584 10 6452 1 2025-11-09 09:06:24.365 00:00:10.410 TCP 1.101.0.1:3000 -> 23.104.0.1:40538 11 6504 1 2025-11-09 09:07:24.816 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:38928 12 6556 1 2025-11-09 09:02:57.653 00:06:00.086 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-09 09:08:25.227 00:00:10.439 TCP 1.101.0.1:3000 -> 23.104.0.1:35546 12 10369 1 2025-11-09 09:03:57.651 00:06:00.096 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-09 09:09:25.704 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60292 10 6452 1 2025-11-09 09:09:55.348 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 09:09:55.368 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 09:09:55.329 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 09:09:55.228 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 09:09:55.267 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 09:10:26.111 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:57460 10 6452 1 2025-11-09 09:11:26.472 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:39100 10 6452 1 2025-11-09 09:12:26.841 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:39970 10 6452 1 2025-11-09 09:13:27.268 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:53216 10 6452 1 2025-11-09 09:14:27.631 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:53678 10 6452 1 2025-11-09 09:14:55.448 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 09:14:55.288 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 09:09:57.656 00:06:00.090 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-09 09:14:55.363 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 09:14:55.318 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 09:14:55.366 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 09:15:28.040 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:39724 10 6452 1 2025-11-09 09:10:57.654 00:06:00.095 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-09 09:16:28.407 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55182 10 6452 1 2025-11-09 09:17:28.805 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:53764 10 6452 1 2025-11-09 09:18:29.220 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:33122 10 6452 1 2025-11-09 09:19:29.587 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59946 10 6452 1 2025-11-09 09:19:55.586 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 09:19:55.679 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 09:19:55.664 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 09:19:55.719 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 09:19:55.802 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 09:20:29.994 00:00:10.997 TCP 1.101.0.1:3000 -> 23.104.0.1:51058 10 6452 1 2025-11-09 09:21:31.028 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:51050 10 6452 1 2025-11-09 09:16:57.658 00:06:00.090 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-09 09:22:31.428 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:56258 10 6452 1 2025-11-09 09:17:57.656 00:06:00.096 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-09 09:23:31.830 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:46300 10 6452 1 2025-11-09 09:24:32.258 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:42148 10 6452 1 2025-11-09 09:24:55.344 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 09:24:55.588 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 09:24:55.786 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 09:24:55.523 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 09:24:55.427 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 09:25:32.663 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:49736 10 6452 1 2025-11-09 09:26:33.109 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38690 10 6452 1 2025-11-09 09:27:33.512 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:52550 10 6452 1 2025-11-09 09:28:33.878 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:50806 10 6452 1 2025-11-09 09:23:57.667 00:06:00.085 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-09 09:29:34.285 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:52420 10 6452 1 2025-11-09 09:29:55.701 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 09:29:55.496 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 09:29:55.416 00:00:00.026 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 09:29:55.496 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 09:29:55.578 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 09:24:57.667 00:06:00.088 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-09 09:30:34.646 00:00:10.344 TCP 1.101.0.1:3000 -> 23.104.0.1:45402 10 6452 1 2025-11-09 09:31:35.040 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:52046 10 6452 1 2025-11-09 09:32:35.444 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:60808 10 6452 1 2025-11-09 09:33:35.861 00:00:15.274 TCP 1.101.0.1:3000 -> 23.104.0.1:41038 10 6452 1 2025-11-09 09:34:41.188 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:40466 10 6452 1 2025-11-09 09:34:55.814 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 09:34:55.998 00:00:00.027 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 09:34:55.549 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 09:34:55.571 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 09:34:55.731 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 09:35:41.550 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:33116 10 6452 1 2025-11-09 09:30:57.672 00:06:00.102 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-09 09:36:41.912 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:32944 10 6452 1 2025-11-09 09:31:57.670 00:06:00.107 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-09 09:37:42.274 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57630 10 6452 1 2025-11-09 09:38:42.681 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:47438 10 6452 1 2025-11-09 09:39:43.107 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37774 10 6452 1 2025-11-09 09:39:56.071 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 09:39:56.090 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 09:39:56.093 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 09:39:56.064 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 09:39:56.146 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 09:40:43.507 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58754 10 6452 1 2025-11-09 09:41:43.910 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:44962 10 6452 1 2025-11-09 09:42:44.315 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:36316 10 6452 1 2025-11-09 09:37:57.673 00:06:00.105 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-09 09:38:57.670 00:06:00.108 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-09 09:43:44.685 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55524 10 6452 1 2025-11-09 09:44:56.177 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 09:44:56.010 00:00:00.043 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 09:44:45.103 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60922 10 6452 1 2025-11-09 09:44:56.092 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 09:44:55.993 00:00:00.036 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 09:44:56.094 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 09:45:45.505 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:42936 11 6492 1 2025-11-09 09:46:45.906 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:47646 10 6452 1 2025-11-09 09:47:46.268 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55792 10 6452 1 2025-11-09 09:48:46.674 00:00:11.010 TCP 1.101.0.1:3000 -> 23.104.0.1:39344 10 6452 1 2025-11-09 09:49:56.272 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 09:49:56.190 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 09:49:56.132 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 09:49:47.726 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:44900 10 6452 1 2025-11-09 09:44:57.675 00:06:00.103 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-09 09:49:55.923 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 09:49:56.067 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 09:45:57.671 00:06:00.108 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-09 09:50:48.135 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:40526 12 6556 1 2025-11-09 09:51:48.540 00:00:10.706 TCP 1.101.0.1:3000 -> 23.104.0.1:59808 10 6452 1 2025-11-09 09:52:49.280 00:00:10.401 TCP 1.101.0.1:3000 -> 23.104.0.1:54546 12 10375 1 2025-11-09 09:53:49.721 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:60854 10 6452 1 2025-11-09 09:54:56.129 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 09:54:56.219 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 09:54:56.072 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 09:54:56.260 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 09:54:56.343 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 09:54:50.144 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39394 10 6452 1 2025-11-09 09:55:50.545 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:48672 12 6556 1 2025-11-09 09:51:57.678 00:06:00.101 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-09 09:56:50.955 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:42228 10 6452 1 2025-11-09 09:52:57.676 00:06:00.106 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-09 09:57:51.359 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:33002 10 6452 1 Summary: total flows: 137, total bytes: 419530, total packets: 1034, avg bps: 887, avg pps: 0, avg bpp: 405 Time window: 2025-11-09 08:55:57 - 2025-11-09 09:58:57 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0040s User: 0.0010s Wall: 0.0021s flows/second: 64498.8 Runtime: 0.0021s