Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-01 09:59:00.969 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:40112 10 6452 1 2025-11-01 10:00:01.374 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46340 10 6452 1 2025-11-01 09:55:53.520 00:06:00.258 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-01 10:01:05.320 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 10:01:05.277 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 10:01:05.012 00:00:00.040 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 10:01:05.012 00:00:00.040 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 10:01:05.094 00:00:00.041 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 10:01:01.776 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:40078 12 6556 1 2025-11-01 09:56:53.524 00:06:00.253 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-01 10:02:02.183 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:59748 10 6452 1 2025-11-01 10:03:02.590 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40252 10 6452 1 2025-11-01 10:04:02.991 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55030 10 6452 1 2025-11-01 10:05:03.393 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:40982 10 6452 1 2025-11-01 10:06:05.459 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 10:06:05.475 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 10:06:05.259 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 10:06:05.376 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 10:06:05.236 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 10:06:03.757 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:47728 10 6452 1 2025-11-01 10:07:04.121 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35340 10 6452 1 2025-11-01 10:02:53.521 00:06:00.262 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-01 10:08:04.524 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:46318 11 6504 1 2025-11-01 10:03:53.527 00:06:00.254 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-01 10:09:04.948 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:43258 10 6452 1 2025-11-01 10:10:05.366 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:41788 10 6452 1 2025-11-01 10:11:05.778 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 10:11:05.643 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 10:11:05.449 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 10:11:05.695 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 10:11:05.634 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 10:11:05.777 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:34018 10 6452 1 2025-11-01 10:12:06.215 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:41640 10 6452 1 2025-11-01 10:13:06.581 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:57004 10 6452 1 2025-11-01 10:14:06.949 00:00:10.404 TCP 1.101.0.1:3000 -> 23.104.0.1:54018 12 10375 1 2025-11-01 10:09:53.522 00:06:00.263 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-01 10:15:07.392 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:49008 10 6452 1 2025-11-01 10:10:53.525 00:06:00.258 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-01 10:16:05.648 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 10:16:05.621 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 10:16:05.770 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 10:16:05.699 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 10:16:05.853 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 10:16:07.757 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:48764 10 6452 1 2025-11-01 10:17:08.180 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:49998 10 6452 1 2025-11-01 10:18:08.589 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:44028 10 6452 1 2025-11-01 10:19:08.952 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58202 10 6452 1 2025-11-01 10:20:09.359 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:44106 10 6452 1 2025-11-01 10:21:05.877 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 10:21:05.504 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 10:21:05.400 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 10:21:05.793 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 10:21:05.600 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 10:21:09.763 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:60478 10 6452 1 2025-11-01 10:16:53.522 00:06:00.265 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-01 10:22:10.174 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36296 10 6452 1 2025-11-01 10:17:53.525 00:06:00.262 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-01 10:23:10.580 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:43302 10 6452 1 2025-11-01 10:24:10.981 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51806 10 6452 1 2025-11-01 10:25:11.387 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:48650 10 6452 1 2025-11-01 10:26:05.619 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 10:26:05.391 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 10:26:05.626 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 10:26:05.699 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 10:26:05.710 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 10:26:11.750 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:51512 10 6452 1 2025-11-01 10:27:12.120 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38180 10 6452 1 2025-11-01 10:28:12.521 00:00:10.814 TCP 1.101.0.1:3000 -> 23.104.0.1:56392 10 6452 1 2025-11-01 10:23:53.526 00:06:00.266 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-01 10:29:13.377 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55864 10 6452 1 2025-11-01 10:24:53.528 00:06:00.261 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-01 10:30:13.785 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:52370 10 6452 1 2025-11-01 10:31:05.657 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 10:31:05.789 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 10:31:05.657 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 10:31:05.921 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 10:31:05.740 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 10:31:14.239 00:00:10.672 TCP 1.101.0.1:3000 -> 23.104.0.1:51728 10 6452 1 2025-11-01 10:32:14.952 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:59266 10 6452 1 2025-11-01 10:33:15.367 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:43314 10 6452 1 2025-11-01 10:34:15.779 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:54648 10 6452 1 2025-11-01 10:35:16.196 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42966 10 6452 1 2025-11-01 10:30:53.528 00:06:00.264 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-01 10:36:05.770 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 10:36:05.911 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 10:36:05.608 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 10:36:05.687 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 10:36:05.915 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 10:36:16.598 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:42470 10 6452 1 2025-11-01 10:31:53.530 00:06:00.259 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-01 10:37:17.003 00:00:10.482 TCP 1.101.0.1:3000 -> 23.104.0.1:50916 10 6452 1 2025-11-01 10:38:17.520 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:40614 10 6452 1 2025-11-01 10:39:17.927 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:35482 10 6452 1 2025-11-01 10:40:18.337 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:54944 10 6452 1 2025-11-01 10:41:06.119 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 10:41:06.057 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 10:41:06.165 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 10:41:05.981 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 10:41:06.202 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 10:41:18.742 00:00:10.756 TCP 1.101.0.1:3000 -> 23.104.0.1:47242 10 6452 1 2025-11-01 10:42:19.531 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36432 10 6452 1 2025-11-01 10:37:53.531 00:06:00.263 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-01 10:43:19.931 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36180 10 6452 1 2025-11-01 10:38:53.534 00:06:00.257 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-01 10:44:20.335 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:56764 10 6452 1 2025-11-01 10:45:20.742 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:40208 10 6452 1 2025-11-01 10:46:06.109 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 10:46:05.978 00:00:00.032 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 10:46:06.222 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 10:46:06.102 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 10:46:06.306 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 10:46:21.155 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:57318 10 6452 1 2025-11-01 10:47:21.563 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41484 10 6452 1 2025-11-01 10:48:21.968 00:00:10.629 TCP 1.101.0.1:3000 -> 23.104.0.1:54192 10 6452 1 2025-11-01 10:49:22.650 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:43280 10 6452 1 2025-11-01 10:44:53.535 00:06:00.272 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-01 10:50:23.064 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49952 10 6452 1 2025-11-01 10:45:53.538 00:06:00.267 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-01 10:51:05.956 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 10:51:06.303 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 10:51:06.220 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 10:51:06.371 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 10:51:06.455 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 10:51:23.463 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:38436 10 6452 1 2025-11-01 10:52:23.820 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59158 10 6452 1 2025-11-01 10:53:24.223 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60530 10 6452 1 2025-11-01 10:54:24.625 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:48836 10 6452 1 2025-11-01 10:55:24.987 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:40244 10 6452 1 2025-11-01 10:56:06.359 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 10:56:06.295 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 10:56:06.464 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 10:56:06.468 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 10:56:06.550 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 10:56:25.353 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:36902 10 6452 1 2025-11-01 10:51:53.536 00:06:00.274 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-01 10:57:25.753 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60686 10 6452 1 2025-11-01 10:52:53.541 00:06:00.269 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-01 10:58:26.154 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41792 10 6452 1 Summary: total flows: 138, total bytes: 421817, total packets: 1037, avg bps: 892, avg pps: 0, avg bpp: 406 Time window: 2025-11-01 09:55:53 - 2025-11-01 10:58:53 Total flows processed: 138, passed: 138, Blocks skipped: 0, Bytes read: 14416 Sys: 0.0049s User: 0.0010s Wall: 0.0013s flows/second: 107826.7 Runtime: 0.0013s