Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-17 06:59:32.599 00:00:10.903 TCP 1.101.0.1:3000 -> 23.104.0.1:52450 10 6452 1 2025-11-17 06:56:01.966 00:05:00.142 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-17 07:00:33.541 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:57788 10 6452 1 2025-11-17 07:01:33.966 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:44728 10 6452 1 2025-11-17 07:02:34.366 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42984 10 6452 1 2025-11-17 06:59:01.964 00:05:00.148 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-17 07:03:44.132 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 07:03:44.050 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 07:03:43.628 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 07:03:43.925 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 07:03:43.800 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 07:03:34.774 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:48702 10 6452 1 2025-11-17 07:04:35.183 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:53978 10 6452 1 2025-11-17 07:05:35.581 00:00:10.416 TCP 1.101.0.1:3000 -> 23.104.0.1:55938 11 6504 1 2025-11-17 07:02:01.967 00:05:00.143 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-17 07:06:36.061 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:51310 10 6452 1 2025-11-17 07:07:36.429 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:42530 10 6452 1 2025-11-17 07:08:43.953 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 07:08:43.863 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 07:08:43.934 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 07:08:43.761 00:00:00.028 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 07:08:43.870 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 07:08:36.824 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:37490 10 6452 1 2025-11-17 07:05:01.966 00:05:00.147 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-17 07:09:37.195 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:37530 10 6452 1 2025-11-17 07:10:37.594 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:48514 10 6452 1 2025-11-17 07:11:37.994 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:43704 10 6452 1 2025-11-17 07:08:01.969 00:05:00.142 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-17 07:12:38.404 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45696 10 6452 1 2025-11-17 07:13:44.007 00:00:00.034 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 07:13:43.888 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 07:13:43.805 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 07:13:43.893 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 07:13:43.976 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 07:13:38.804 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:60326 10 6452 1 2025-11-17 07:14:39.209 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:47450 10 6452 1 2025-11-17 07:11:01.968 00:05:00.147 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-17 07:15:39.567 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46134 10 6452 1 2025-11-17 07:16:39.968 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42570 10 6452 1 2025-11-17 07:17:40.370 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:38732 10 6452 1 2025-11-17 07:14:01.969 00:05:00.142 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-17 07:18:43.998 00:00:00.037 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 07:18:43.935 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 07:18:43.959 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 07:18:43.710 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 07:18:43.792 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 07:18:40.735 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:35596 10 6452 1 2025-11-17 07:19:41.114 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56110 10 6452 1 2025-11-17 07:20:41.519 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:34386 10 6452 1 2025-11-17 07:17:01.966 00:05:00.149 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-17 07:21:41.954 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:34392 10 6452 1 2025-11-17 07:22:42.364 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48502 10 6452 1 2025-11-17 07:23:44.184 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 07:23:44.111 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 07:23:43.851 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 07:23:43.920 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 07:23:44.003 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 07:23:42.763 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:56810 10 6452 1 2025-11-17 07:20:01.970 00:05:00.143 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-17 07:24:43.175 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48784 10 6452 1 2025-11-17 07:25:43.582 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:38678 10 6452 1 2025-11-17 07:26:43.944 00:00:10.469 TCP 1.101.0.1:3000 -> 23.104.0.1:49442 12 10375 1 2025-11-17 07:23:01.967 00:05:00.149 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-17 07:27:44.469 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:60450 10 6452 1 2025-11-17 07:28:44.192 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 07:28:44.185 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 07:28:44.234 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 07:28:44.108 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 07:28:44.109 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 07:28:44.870 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:44550 10 6452 1 2025-11-17 07:29:45.280 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60824 10 6452 1 2025-11-17 07:26:01.970 00:05:00.144 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-17 07:30:45.684 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:53606 10 6452 1 2025-11-17 07:31:46.057 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:48466 10 6452 1 2025-11-17 07:32:46.432 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38010 10 6452 1 2025-11-17 07:29:01.969 00:05:00.148 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-17 07:33:44.481 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 07:33:44.226 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 07:33:44.289 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 07:33:44.314 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 07:33:44.397 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 07:33:46.836 00:00:10.346 TCP 1.101.0.1:3000 -> 23.104.0.1:40944 10 6452 1 2025-11-17 07:34:47.216 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42878 10 6452 1 2025-11-17 07:35:47.613 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:55268 10 6452 1 2025-11-17 07:32:01.973 00:05:00.143 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-17 07:36:48.023 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40646 10 6452 1 2025-11-17 07:37:48.426 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:47206 10 6452 1 2025-11-17 07:38:44.404 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 07:38:44.400 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 07:38:44.340 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 07:38:44.094 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 07:38:44.322 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 07:38:48.826 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:41858 10 6452 1 2025-11-17 07:35:01.970 00:05:00.152 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-17 07:39:49.227 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:47958 10 6452 1 2025-11-17 07:40:49.626 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58918 10 6452 1 2025-11-17 07:38:01.976 00:05:00.146 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-17 07:41:50.034 00:00:10.396 TCP 1.101.0.1:3000 -> 23.104.0.1:41482 12 10375 1 2025-11-17 07:42:50.470 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51786 10 6452 1 2025-11-17 07:43:44.524 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 07:43:44.667 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 07:43:44.428 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 07:43:44.514 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 07:43:44.596 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 07:43:50.872 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45996 10 6452 1 2025-11-17 07:44:51.276 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46848 10 6452 1 2025-11-17 07:41:01.974 00:05:00.152 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-17 07:45:51.684 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51160 10 6452 1 2025-11-17 07:46:52.104 00:00:10.436 TCP 1.101.0.1:3000 -> 23.104.0.1:56650 12 10375 1 2025-11-17 07:44:01.977 00:05:00.147 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-17 07:47:52.582 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:32908 10 6452 1 2025-11-17 07:48:44.763 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 07:48:44.775 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 07:48:44.682 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 07:48:44.779 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 07:48:44.681 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 07:48:52.981 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:48474 10 6452 1 2025-11-17 07:49:53.406 00:00:10.671 TCP 1.101.0.1:3000 -> 23.104.0.1:52524 10 6452 1 2025-11-17 07:50:54.128 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:52300 10 6452 1 2025-11-17 07:47:01.975 00:05:00.152 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-17 07:51:54.528 00:00:10.440 TCP 1.101.0.1:3000 -> 23.104.0.1:56410 12 10375 1 2025-11-17 07:52:55.010 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40678 10 6452 1 2025-11-17 07:53:44.711 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 07:53:44.756 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 07:53:44.511 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 07:53:44.646 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 07:53:44.728 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 07:50:01.977 00:05:00.147 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-17 07:53:55.420 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:52030 10 6452 1 2025-11-17 07:54:55.788 00:00:10.850 TCP 1.101.0.1:3000 -> 23.104.0.1:45362 10 6452 1 2025-11-17 07:55:56.687 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:43092 10 6452 1 2025-11-17 07:53:01.977 00:05:00.153 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-17 07:56:57.110 00:00:10.838 TCP 1.101.0.1:3000 -> 23.104.0.1:58286 10 6452 1 2025-11-17 07:57:57.995 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51552 10 6452 1 2025-11-17 07:58:44.758 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 07:58:44.763 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 07:58:44.882 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 07:58:44.758 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 07:58:44.846 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 Summary: total flows: 139, total bytes: 426292, total packets: 1019, avg bps: 906, avg pps: 0, avg bpp: 418 Time window: 2025-11-17 06:56:01 - 2025-11-17 07:58:44 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0025s User: 0.0025s Wall: 0.0020s flows/second: 68036.9 Runtime: 0.0021s