Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-10 05:59:31.182 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:45424 10 6452 1 2025-11-10 06:00:20.329 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-10 06:00:20.138 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-10 06:00:20.233 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-10 06:00:20.182 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-10 06:00:20.246 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-10 06:00:31.583 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36314 10 6452 1 2025-11-10 06:01:31.985 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:53998 10 6452 1 2025-11-10 06:02:32.359 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43784 10 6452 1 2025-11-10 05:57:58.332 00:06:00.001 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 497 1 2025-11-10 05:57:58.323 00:06:00.013 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-10 06:03:32.761 00:00:10.640 TCP 1.101.0.1:3000 -> 23.104.0.1:45428 10 6452 1 2025-11-10 06:04:33.436 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:47344 10 6452 1 2025-11-10 06:05:20.139 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-10 06:05:20.356 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-10 06:05:20.442 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-10 06:05:20.422 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-10 06:05:20.505 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-10 06:05:33.842 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:36482 10 6452 1 2025-11-10 06:06:34.271 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:46090 10 6452 1 2025-11-10 06:07:34.676 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:56564 10 6452 1 2025-11-10 06:08:35.036 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:50092 10 6452 1 2025-11-10 06:09:35.434 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:35876 10 6452 1 2025-11-10 06:04:58.332 00:06:00.000 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 497 1 2025-11-10 06:04:58.323 00:06:00.012 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-10 06:10:20.568 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-10 06:10:20.698 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-10 06:10:20.372 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-10 06:10:20.695 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-10 06:10:20.777 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-10 06:10:35.801 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55554 10 6452 1 2025-11-10 06:11:36.208 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48332 10 6452 1 2025-11-10 06:12:36.610 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:55662 10 6452 1 2025-11-10 06:13:36.971 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:34690 10 6452 1 2025-11-10 06:14:37.394 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:56796 10 6452 1 2025-11-10 06:15:20.776 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-10 06:15:20.570 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-10 06:15:20.576 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-10 06:15:20.394 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-10 06:15:20.694 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-10 06:15:37.810 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:42400 10 6452 1 2025-11-10 06:16:38.213 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33292 10 6452 1 2025-11-10 06:11:58.334 00:06:00.005 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-10 06:11:58.337 00:05:59.998 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 497 1 2025-11-10 06:17:38.618 00:00:10.356 TCP 1.101.0.1:3000 -> 23.104.0.1:35148 10 6452 1 2025-11-10 06:18:39.015 00:00:10.445 TCP 1.101.0.1:3000 -> 23.104.0.1:34150 12 10375 1 2025-11-10 06:19:39.501 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:43840 10 6452 1 2025-11-10 06:20:20.769 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-10 06:20:20.687 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-10 06:20:20.621 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-10 06:20:20.536 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-10 06:20:20.686 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-10 06:20:39.905 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:48214 10 6452 1 2025-11-10 06:21:40.318 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:33222 10 6452 1 2025-11-10 06:22:40.681 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:39028 10 6452 1 2025-11-10 06:23:41.102 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51478 10 6452 1 2025-11-10 06:18:58.350 00:06:00.002 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 497 1 2025-11-10 06:18:58.332 00:06:00.022 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-10 06:24:41.508 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:59950 10 6452 1 2025-11-10 06:25:20.688 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-10 06:25:20.932 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-10 06:25:20.587 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-10 06:25:20.855 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-10 06:25:20.939 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-10 06:25:41.914 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:51130 10 6452 1 2025-11-10 06:26:42.277 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33298 10 6452 1 2025-11-10 06:27:42.686 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:33106 10 6452 1 2025-11-10 06:28:43.115 00:00:10.440 TCP 1.101.0.1:3000 -> 23.104.0.1:58736 10 6452 1 2025-11-10 06:29:43.595 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:50380 10 6452 1 2025-11-10 06:30:21.085 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-10 06:30:20.664 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-10 06:30:21.087 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-10 06:30:20.868 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-10 06:30:21.168 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-10 06:30:44.002 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:42712 10 6452 1 2025-11-10 06:25:58.352 00:06:00.001 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 497 1 2025-11-10 06:25:58.334 00:06:00.021 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-10 06:31:44.401 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:54352 10 6452 1 2025-11-10 06:32:44.768 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:51144 10 6452 1 2025-11-10 06:33:45.187 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:45676 10 6452 1 2025-11-10 06:34:45.582 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60982 10 6452 1 2025-11-10 06:35:21.129 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-10 06:35:20.949 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-10 06:35:20.843 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-10 06:35:20.889 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-10 06:35:20.973 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-10 06:35:45.988 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:55728 10 6452 1 2025-11-10 06:36:46.352 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44646 10 6452 1 2025-11-10 06:32:58.353 00:06:00.002 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 497 1 2025-11-10 06:37:46.758 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:57114 10 6452 1 2025-11-10 06:32:58.336 00:06:00.022 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-10 06:38:47.185 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39108 10 6452 1 2025-11-10 06:39:47.584 00:00:10.449 TCP 1.101.0.1:3000 -> 23.104.0.1:46198 10 6452 1 2025-11-10 06:40:21.278 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-10 06:40:21.205 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-10 06:40:21.104 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-10 06:40:20.854 00:00:00.032 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-10 06:40:21.196 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-10 06:40:48.110 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43780 10 6452 1 2025-11-10 06:41:48.518 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:43264 10 6452 1 2025-11-10 06:42:48.918 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39680 10 6452 1 2025-11-10 06:43:49.321 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:34002 10 6452 1 2025-11-10 06:39:58.338 00:06:00.027 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-10 06:39:58.361 00:06:00.001 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 497 1 2025-11-10 06:44:49.726 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:51514 10 6452 1 2025-11-10 06:45:21.263 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-10 06:45:21.349 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-10 06:45:21.192 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-10 06:45:21.262 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-10 06:45:21.345 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-10 06:45:50.140 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42514 10 6452 1 2025-11-10 06:46:50.542 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:37612 10 6452 1 2025-11-10 06:47:50.902 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:34140 10 6452 1 2025-11-10 06:48:51.274 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:48672 10 6452 1 2025-11-10 06:49:51.682 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:55384 10 6452 1 2025-11-10 06:50:21.835 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-10 06:50:21.755 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-10 06:50:21.652 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-10 06:50:21.752 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-10 06:50:21.751 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-10 06:50:52.112 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59980 10 6452 1 2025-11-10 06:46:58.343 00:06:00.025 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-10 06:46:58.363 00:06:00.002 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 497 1 2025-11-10 06:51:52.519 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:39984 10 6452 1 2025-11-10 06:52:52.932 00:00:10.407 TCP 1.101.0.1:3000 -> 23.104.0.1:37114 13 6608 1 2025-11-10 06:53:53.378 00:00:10.414 TCP 1.101.0.1:3000 -> 23.104.0.1:46876 11 6504 1 2025-11-10 06:54:53.831 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:35228 10 6452 1 2025-11-10 06:55:21.486 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-10 06:55:21.406 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-10 06:55:21.423 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-10 06:55:21.132 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-10 06:55:21.214 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-10 06:55:54.244 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:50678 10 6452 1 2025-11-10 06:56:54.603 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:44168 10 6452 1 2025-11-10 06:57:55.016 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:43272 10 6452 1 Summary: total flows: 135, total bytes: 410783, total packets: 944, avg bps: 911, avg pps: 0, avg bpp: 435 Time window: 2025-11-10 05:57:58 - 2025-11-10 06:58:05 Total flows processed: 135, passed: 135, Blocks skipped: 0, Bytes read: 14104 Sys: 0.0031s User: 0.0010s Wall: 0.0022s flows/second: 61036.0 Runtime: 0.0022s