Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-01 12:59:33.654 00:00:17.682 TCP 1.101.0.1:3000 -> 23.104.0.1:50254 12 10369 1 2025-11-01 13:00:41.379 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46294 10 6452 1 2025-11-01 13:01:08.844 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 13:01:08.971 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 13:01:08.856 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 13:01:08.777 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 13:01:08.940 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 13:01:41.785 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58956 10 6452 1 2025-11-01 13:02:42.187 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:33384 10 6452 1 2025-11-01 12:57:53.577 00:06:00.283 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-01 13:03:42.555 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36776 10 6452 1 2025-11-01 12:58:53.580 00:06:00.277 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-01 13:04:42.955 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50894 10 6452 1 2025-11-01 13:05:43.366 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:57648 10 6452 1 2025-11-01 13:06:08.756 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 13:06:08.933 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 13:06:08.807 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 13:06:08.674 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 13:06:08.938 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 13:06:43.769 00:00:10.439 TCP 1.101.0.1:3000 -> 23.104.0.1:33852 10 6452 1 2025-11-01 13:07:44.241 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:44948 10 6452 1 2025-11-01 13:08:44.650 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:35612 10 6452 1 2025-11-01 13:04:53.578 00:06:00.283 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-01 13:09:45.067 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44920 10 6452 1 2025-11-01 13:10:45.475 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60442 10 6452 1 2025-11-01 13:05:53.581 00:06:00.278 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-01 13:11:09.335 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 13:11:09.249 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 13:11:09.402 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 13:11:09.253 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 13:11:09.260 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 13:11:45.875 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53952 10 6452 1 2025-11-01 13:12:46.278 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36942 10 6452 1 2025-11-01 13:13:46.680 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41606 10 6452 1 2025-11-01 13:14:47.104 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:58164 10 6452 1 2025-11-01 13:15:47.507 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:34732 10 6452 1 2025-11-01 13:16:09.161 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 13:16:09.086 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 13:16:09.097 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 13:16:08.918 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 13:16:09.243 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 13:11:53.582 00:06:00.281 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-01 13:16:47.914 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:39632 10 6452 1 2025-11-01 13:12:53.586 00:06:00.275 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-01 13:17:48.325 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:33260 10 6452 1 2025-11-01 13:18:48.763 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:50306 10 6452 1 2025-11-01 13:19:49.194 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:60858 10 6452 1 2025-11-01 13:20:49.604 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:49740 10 6452 1 2025-11-01 13:21:09.364 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 13:21:09.210 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 13:21:09.283 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 13:21:09.103 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 13:21:09.285 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 13:21:50.014 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51390 10 6452 1 2025-11-01 13:22:50.420 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:35408 10 6452 1 2025-11-01 13:18:53.586 00:06:00.279 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-01 13:23:50.828 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49880 10 6452 1 2025-11-01 13:19:53.588 00:06:00.275 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-01 13:24:51.231 00:00:10.398 TCP 1.101.0.1:3000 -> 23.104.0.1:37768 12 10375 1 2025-11-01 13:25:51.670 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47706 10 6452 1 2025-11-01 13:26:09.539 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 13:26:08.967 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 13:26:09.295 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 13:26:09.474 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 13:26:09.378 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 13:26:52.104 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49860 10 6452 1 2025-11-01 13:27:52.505 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:49436 10 6452 1 2025-11-01 13:28:52.864 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:58512 10 6452 1 2025-11-01 13:29:53.273 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:40904 10 6452 1 2025-11-01 13:25:53.588 00:06:00.277 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-01 13:30:53.637 00:00:10.562 TCP 1.101.0.1:3000 -> 23.104.0.1:44224 10 6452 1 2025-11-01 13:31:09.292 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 13:31:09.403 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 13:31:09.359 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 13:31:09.209 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 13:31:09.494 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 13:26:53.593 00:06:00.271 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-01 13:31:54.235 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:36230 10 6452 1 2025-11-01 13:32:54.598 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:35452 10 6452 1 2025-11-01 13:33:54.998 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:57668 10 6452 1 2025-11-01 13:34:55.435 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:49010 10 6452 1 2025-11-01 13:36:09.463 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 13:36:09.592 00:00:00.031 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 13:36:09.466 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 13:36:09.672 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 13:35:55.797 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:59358 10 6452 1 2025-11-01 13:36:09.549 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 13:36:56.205 00:00:10.814 TCP 1.101.0.1:3000 -> 23.104.0.1:56494 10 6452 1 2025-11-01 13:32:53.590 00:06:00.278 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-01 13:37:57.069 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:60088 10 6452 1 2025-11-01 13:33:53.593 00:06:00.274 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-01 13:38:57.474 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:39600 10 6452 1 2025-11-01 13:39:57.847 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:39788 10 6452 1 2025-11-01 13:41:10.109 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 13:41:10.355 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 13:41:10.275 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 13:41:10.109 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 13:40:58.278 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50430 10 6452 1 2025-11-01 13:41:10.359 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 13:41:58.684 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:49260 10 6452 1 2025-11-01 13:42:59.051 00:00:11.802 TCP 1.101.0.1:3000 -> 23.104.0.1:56596 10 6452 1 2025-11-01 13:44:00.893 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:57092 10 6452 1 2025-11-01 13:39:53.594 00:06:00.278 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-01 13:45:01.308 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:58160 10 6452 1 2025-11-01 13:40:53.595 00:06:00.273 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-01 13:46:09.860 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 13:46:09.700 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 13:46:09.642 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 13:46:09.777 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 13:46:09.768 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 13:46:01.707 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:54128 10 6452 1 2025-11-01 13:47:02.125 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49634 10 6452 1 2025-11-01 13:48:02.527 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49876 10 6452 1 2025-11-01 13:49:02.931 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:57946 10 6452 1 2025-11-01 13:50:03.349 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53550 10 6452 1 2025-11-01 13:51:09.838 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 13:51:09.756 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 13:51:09.906 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 13:51:09.754 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 13:51:09.933 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 13:51:03.750 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:41718 10 6452 1 2025-11-01 13:46:53.594 00:06:00.277 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-01 13:52:04.146 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:39716 10 6452 1 2025-11-01 13:47:53.597 00:06:00.273 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-01 13:53:04.508 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:47198 10 6452 1 2025-11-01 13:54:04.888 00:00:10.342 TCP 1.101.0.1:3000 -> 23.104.0.1:42846 10 6452 1 2025-11-01 13:55:05.269 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56208 10 6452 1 2025-11-01 13:56:10.148 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 13:56:10.101 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 13:56:10.341 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 13:56:10.219 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 13:56:10.426 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 13:56:05.670 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:45798 10 6452 1 2025-11-01 13:57:06.028 00:00:10.622 TCP 1.101.0.1:3000 -> 23.104.0.1:47730 10 6452 1 2025-11-01 13:58:06.685 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:58594 10 6452 1 Summary: total flows: 135, total bytes: 417404, total packets: 998, avg bps: 921, avg pps: 0, avg bpp: 418 Time window: 2025-11-01 12:57:53 - 2025-11-01 13:58:17 Total flows processed: 135, passed: 135, Blocks skipped: 0, Bytes read: 14104 Sys: 0.0053s User: 0.0000s Wall: 0.0017s flows/second: 77311.7 Runtime: 0.0018s