Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-23 07:59:10.184 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47782 10 6452 1 2025-11-23 08:00:10.594 00:00:10.446 TCP 1.101.0.1:3000 -> 23.104.0.1:60842 12 10375 1 2025-11-23 07:57:04.935 00:05:00.811 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 08:01:11.110 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:52438 10 6452 1 2025-11-23 08:01:39.883 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 08:01:39.885 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 08:01:39.676 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 08:01:39.825 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 08:01:39.907 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 07:58:04.932 00:05:00.820 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 08:02:11.520 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:36196 10 6452 1 2025-11-23 08:03:11.887 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:58304 12 6556 1 2025-11-23 08:04:12.310 00:00:11.538 TCP 1.101.0.1:3000 -> 23.104.0.1:33222 10 6452 1 2025-11-23 08:05:13.890 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:37394 10 6452 1 2025-11-23 08:06:14.303 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55298 10 6452 1 2025-11-23 08:06:39.890 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 08:06:40.364 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 08:06:40.042 00:00:00.026 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 08:06:40.344 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 08:06:40.280 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 08:03:04.940 00:05:00.810 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 08:07:14.704 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60492 10 6452 1 2025-11-23 08:04:04.936 00:05:00.816 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 08:08:15.114 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:49756 10 6452 1 2025-11-23 08:09:15.475 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:50632 10 6452 1 2025-11-23 08:10:15.874 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:52898 10 6452 1 2025-11-23 08:11:16.281 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:37650 10 6452 1 2025-11-23 08:11:39.807 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 08:11:39.982 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 08:11:40.199 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 08:11:40.251 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 08:11:40.064 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 08:12:16.654 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:53360 10 6452 1 2025-11-23 08:09:04.940 00:05:00.811 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 08:13:17.025 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:44542 10 6452 1 2025-11-23 08:10:04.938 00:05:00.815 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 08:14:17.432 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45214 10 6452 1 2025-11-23 08:15:17.836 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:40136 10 6452 1 2025-11-23 08:16:18.267 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42388 10 6452 1 2025-11-23 08:16:40.703 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 08:16:40.622 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 08:16:40.479 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 08:16:40.707 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 08:16:40.525 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 08:17:18.672 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:50504 10 6452 1 2025-11-23 08:18:19.041 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:35328 10 6452 1 2025-11-23 08:15:04.943 00:05:00.813 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 08:19:19.448 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:47794 10 6452 1 2025-11-23 08:16:04.941 00:05:00.818 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 08:20:19.853 00:00:10.461 TCP 1.101.0.1:3000 -> 23.104.0.1:56824 12 10375 1 2025-11-23 08:21:20.358 00:00:10.406 TCP 1.101.0.1:3000 -> 23.104.0.1:40436 13 6608 1 2025-11-23 08:21:40.296 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 08:21:40.298 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 08:21:40.501 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 08:21:40.295 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 08:21:40.378 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 08:22:20.798 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:36854 10 6452 1 2025-11-23 08:23:21.206 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:51238 10 6452 1 2025-11-23 08:24:21.567 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:51814 10 6452 1 2025-11-23 08:21:04.947 00:05:00.811 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 08:25:21.976 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46834 10 6452 1 2025-11-23 08:22:04.945 00:05:00.817 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 08:26:22.380 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33130 10 6452 1 2025-11-23 08:26:41.438 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 08:26:41.329 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 08:26:41.337 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 08:26:41.338 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 08:26:41.420 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 08:27:22.780 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35530 10 6452 1 2025-11-23 08:28:23.188 00:00:10.356 TCP 1.101.0.1:3000 -> 23.104.0.1:55278 10 6452 1 2025-11-23 08:29:23.583 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53504 10 6452 1 2025-11-23 08:30:23.990 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:58902 10 6452 1 2025-11-23 08:27:04.949 00:05:00.813 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 08:31:24.352 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:41956 10 6452 1 2025-11-23 08:31:40.556 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 08:31:40.555 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 08:31:40.527 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 08:31:40.560 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 08:31:40.643 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 08:28:04.947 00:05:00.818 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 08:32:24.757 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:39518 10 6452 1 2025-11-23 08:33:25.179 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:37408 10 6452 1 2025-11-23 08:34:25.585 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44118 10 6452 1 2025-11-23 08:35:25.986 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:42852 10 6452 1 2025-11-23 08:36:26.402 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57820 10 6452 1 2025-11-23 08:36:40.854 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 08:36:40.772 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 08:36:40.945 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 08:36:40.955 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 08:36:40.807 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 08:33:04.951 00:05:00.811 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 08:37:26.808 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54416 10 6452 1 2025-11-23 08:34:04.949 00:05:00.816 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 08:38:27.214 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:52924 10 6452 1 2025-11-23 08:39:27.611 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51606 10 6452 1 2025-11-23 08:40:28.017 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50240 10 6452 1 2025-11-23 08:41:28.416 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43630 10 6452 1 2025-11-23 08:41:40.726 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 08:41:40.799 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 08:41:40.558 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 08:41:40.900 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 08:41:40.982 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 08:42:28.819 00:00:10.929 TCP 1.101.0.1:3000 -> 23.104.0.1:35412 10 6452 1 2025-11-23 08:39:04.953 00:05:00.811 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 08:43:29.788 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:53024 10 6452 1 2025-11-23 08:40:04.951 00:05:00.816 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 08:44:30.190 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34672 10 6452 1 2025-11-23 08:45:30.593 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:60850 10 6452 1 2025-11-23 08:46:41.029 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 08:46:40.905 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 08:46:31.002 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60738 10 6452 1 2025-11-23 08:46:40.996 00:00:00.032 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 08:46:40.529 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 08:46:40.945 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 08:47:31.407 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51030 10 6452 1 2025-11-23 08:48:31.808 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:49610 10 6452 1 2025-11-23 08:45:04.954 00:05:00.811 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 08:49:32.175 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46198 10 6452 1 2025-11-23 08:46:04.951 00:05:00.816 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 08:50:32.581 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:34500 10 6452 1 2025-11-23 08:51:40.860 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 08:51:40.856 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 08:51:32.943 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:51252 10 6452 1 2025-11-23 08:51:41.021 00:00:00.033 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 08:51:40.893 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 08:51:40.777 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 08:52:33.312 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:33440 10 6452 1 2025-11-23 08:53:33.672 00:00:10.676 TCP 1.101.0.1:3000 -> 23.104.0.1:58988 10 6452 1 2025-11-23 08:54:34.394 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:56892 10 6452 1 2025-11-23 08:51:04.953 00:05:00.813 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 08:55:34.801 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:55888 10 6452 1 2025-11-23 08:52:04.951 00:05:00.819 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 08:56:40.947 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 08:56:40.947 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 08:56:41.188 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 08:56:40.945 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 08:56:41.027 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 08:56:35.221 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:60720 10 6452 1 2025-11-23 08:57:35.642 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:35026 10 6452 1 2025-11-23 08:58:36.045 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:39640 10 6452 1 Summary: total flows: 140, total bytes: 425106, total packets: 1029, avg bps: 918, avg pps: 0, avg bpp: 413 Time window: 2025-11-23 07:57:04 - 2025-11-23 08:58:46 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0038s User: 0.0013s Wall: 0.0023s flows/second: 60238.3 Runtime: 0.0024s