Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-23 04:58:45.281 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:56580 10 6452 1 2025-11-23 04:59:45.642 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:57314 10 6452 1 2025-11-23 05:00:46.067 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45440 10 6452 1 2025-11-23 04:57:04.872 00:05:00.741 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 05:01:36.176 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 05:01:36.261 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 05:01:36.260 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 05:01:36.188 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 05:01:36.270 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 05:01:46.468 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:53254 10 6452 1 2025-11-23 04:58:04.871 00:05:00.747 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 05:02:46.835 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:44046 10 6452 1 2025-11-23 05:03:47.256 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:57842 10 6452 1 2025-11-23 05:04:47.668 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:39406 10 6452 1 2025-11-23 05:05:48.032 00:00:10.708 TCP 1.101.0.1:3000 -> 23.104.0.1:47054 10 6452 1 2025-11-23 05:06:36.366 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 05:06:36.314 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 05:06:36.323 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 05:06:36.368 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 05:06:36.449 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 05:06:48.782 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:57760 10 6452 1 2025-11-23 05:03:04.873 00:05:00.743 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 05:07:49.187 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38330 10 6452 1 2025-11-23 05:04:04.871 00:05:00.749 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 05:08:49.590 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:56856 10 6452 1 2025-11-23 05:09:49.969 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:49154 10 6452 1 2025-11-23 05:10:50.381 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:40684 10 6452 1 2025-11-23 05:11:36.498 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 05:11:36.328 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 05:11:36.023 00:00:00.030 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 05:11:36.499 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 05:11:36.582 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 05:11:50.790 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:42158 10 6452 1 2025-11-23 05:12:51.204 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44358 10 6452 1 2025-11-23 05:09:04.876 00:05:00.742 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 05:13:51.606 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47292 10 6452 1 2025-11-23 05:10:04.874 00:05:00.746 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 05:14:52.006 00:00:10.435 TCP 1.101.0.1:3000 -> 23.104.0.1:37262 12 10375 1 2025-11-23 05:15:52.478 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:43156 10 6452 1 2025-11-23 05:16:36.599 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 05:16:36.425 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 05:16:36.284 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 05:16:36.517 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 05:16:36.518 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 05:16:52.880 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:51458 10 6452 1 2025-11-23 05:17:53.291 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:40978 10 6452 1 2025-11-23 05:18:53.692 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:37328 10 6452 1 2025-11-23 05:15:04.877 00:05:00.744 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 05:19:54.071 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:41572 10 6452 1 2025-11-23 05:16:04.875 00:05:00.748 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 05:20:54.435 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:56358 10 6452 1 2025-11-23 05:21:36.560 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 05:21:37.099 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 05:21:36.568 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 05:21:36.290 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 05:21:36.642 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 05:21:54.834 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:44590 10 6452 1 2025-11-23 05:22:55.246 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:41924 10 6452 1 2025-11-23 05:23:55.652 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46256 10 6452 1 2025-11-23 05:24:56.065 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:49036 10 6452 1 2025-11-23 05:21:04.879 00:05:00.744 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 05:25:56.466 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:58400 10 6452 1 2025-11-23 05:22:04.877 00:05:00.749 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 05:26:36.729 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 05:26:36.722 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 05:26:36.589 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 05:26:36.654 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 05:26:36.737 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 05:26:56.829 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:40118 10 6452 1 2025-11-23 05:27:57.189 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49136 10 6452 1 2025-11-23 05:28:57.590 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:43820 10 6452 1 2025-11-23 05:29:57.952 00:00:10.422 TCP 1.101.0.1:3000 -> 23.104.0.1:33866 11 6504 1 2025-11-23 05:27:04.881 00:05:00.744 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 05:30:58.415 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49212 10 6452 1 2025-11-23 05:31:36.704 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 05:31:36.798 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 05:31:36.615 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 05:31:36.813 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 05:31:36.621 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 05:31:58.821 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53330 10 6452 1 2025-11-23 05:28:04.879 00:05:00.749 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 05:32:59.227 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:37826 10 6452 1 2025-11-23 05:33:59.637 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:57714 10 6452 1 2025-11-23 05:35:00.021 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40112 10 6452 1 2025-11-23 05:36:00.424 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:43370 10 6452 1 2025-11-23 05:36:36.964 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 05:36:36.910 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 05:36:36.838 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 05:36:36.906 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 05:36:36.921 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 05:33:04.882 00:05:00.748 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 05:37:00.816 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:40420 10 6452 1 2025-11-23 05:34:04.880 00:05:00.753 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 05:38:01.247 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48456 10 6452 1 2025-11-23 05:39:01.655 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55668 10 6452 1 2025-11-23 05:40:02.072 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58200 10 6452 1 2025-11-23 05:41:02.476 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47324 10 6452 1 2025-11-23 05:41:37.056 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 05:41:37.176 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 05:41:37.090 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 05:41:37.134 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 05:41:37.217 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 05:42:02.877 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58306 10 6452 1 2025-11-23 05:39:04.883 00:05:00.750 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 05:43:03.279 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:53910 10 6452 1 2025-11-23 05:40:04.881 00:05:00.755 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 05:44:03.684 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:50382 10 6452 1 2025-11-23 05:45:04.110 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:53706 11 6504 1 2025-11-23 05:46:04.533 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48312 10 6452 1 2025-11-23 05:46:38.186 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 05:46:38.099 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 05:46:38.155 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 05:46:37.876 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 05:46:38.103 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 05:47:04.942 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:49328 10 6452 1 2025-11-23 05:48:05.357 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:39490 10 6452 1 2025-11-23 05:45:04.885 00:05:00.753 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 05:49:05.761 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:51290 10 6452 1 2025-11-23 05:46:04.882 00:05:00.767 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 05:50:06.176 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:48788 10 6452 1 2025-11-23 05:51:06.592 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:37700 10 6452 1 2025-11-23 05:51:37.359 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 05:51:37.167 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 05:51:37.354 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 05:51:37.250 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 05:51:37.333 00:00:00.027 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 05:52:06.999 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:53918 10 6452 1 2025-11-23 05:53:07.399 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:50752 10 6452 1 2025-11-23 05:54:07.806 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:39918 10 6452 1 2025-11-23 05:51:04.890 00:05:00.761 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 05:55:08.212 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:52884 10 6452 1 2025-11-23 05:52:04.886 00:05:00.766 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 05:56:08.568 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53590 10 6452 1 2025-11-23 05:56:37.249 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 05:56:37.166 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 05:56:37.423 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 05:56:37.152 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 05:56:37.377 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 05:57:08.976 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:50460 10 6452 1 2025-11-23 05:58:09.386 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41364 10 6452 1 Summary: total flows: 140, total bytes: 421027, total packets: 1024, avg bps: 916, avg pps: 0, avg bpp: 411 Time window: 2025-11-23 04:57:04 - 2025-11-23 05:58:19 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0053s User: 0.0009s Wall: 0.0017s flows/second: 81965.7 Runtime: 0.0017s