Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-01 18:59:27.110 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:48416 10 6452 1 2025-11-01 18:54:53.682 00:06:00.284 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-01 19:00:27.519 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57074 10 6452 1 2025-11-01 18:55:53.684 00:06:00.279 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-01 19:01:16.155 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 19:01:16.001 00:00:00.041 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 19:01:16.158 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 19:01:16.092 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 19:01:16.241 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 19:01:27.926 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:47752 10 6452 1 2025-11-01 19:02:28.334 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:36252 10 6452 1 2025-11-01 19:03:28.748 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42534 10 6452 1 2025-11-01 19:04:29.151 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:55482 10 6452 1 2025-11-01 19:05:29.527 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50102 10 6452 1 2025-11-01 19:06:16.530 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 19:06:16.169 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 19:06:16.117 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 19:06:16.448 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 19:06:16.022 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 19:06:29.931 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:59340 10 6452 1 2025-11-01 19:01:53.684 00:06:00.284 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-01 19:07:30.358 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:59906 10 6452 1 2025-11-01 19:02:53.686 00:06:00.280 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-01 19:08:30.718 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:50764 10 6452 1 2025-11-01 19:09:31.114 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38628 10 6452 1 2025-11-01 19:10:31.520 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:54860 10 6452 1 2025-11-01 19:11:16.254 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 19:11:16.269 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 19:11:16.365 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 19:11:16.258 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 19:11:16.447 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 19:11:31.878 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:54928 10 6452 1 2025-11-01 19:12:32.284 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:37398 10 6452 1 2025-11-01 19:13:32.700 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44258 10 6452 1 2025-11-01 19:08:53.685 00:06:00.284 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-01 19:14:33.108 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:49766 10 6452 1 2025-11-01 19:09:53.688 00:06:00.279 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-01 19:15:33.507 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52616 10 6452 1 2025-11-01 19:16:16.294 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 19:16:16.397 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 19:16:16.512 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 19:16:16.520 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 19:16:16.595 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 19:16:33.908 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:45370 10 6452 1 2025-11-01 19:17:34.311 00:00:10.497 TCP 1.101.0.1:3000 -> 23.104.0.1:45652 10 6452 1 2025-11-01 19:18:34.846 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:57532 10 6452 1 2025-11-01 19:19:35.264 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49188 10 6452 1 2025-11-01 19:20:35.673 00:00:17.419 TCP 1.101.0.1:3000 -> 23.104.0.1:55846 10 6452 1 2025-11-01 19:15:53.690 00:06:00.281 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-01 19:21:16.522 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 19:21:16.552 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 19:21:16.439 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 19:21:16.580 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 19:21:16.331 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 19:21:43.138 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:32900 10 6452 1 2025-11-01 19:16:53.690 00:06:00.278 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-01 19:22:43.537 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:60282 10 6452 1 2025-11-01 19:23:43.936 00:00:11.014 TCP 1.101.0.1:3000 -> 23.104.0.1:44484 10 6452 1 2025-11-01 19:24:44.985 00:00:10.439 TCP 1.101.0.1:3000 -> 23.104.0.1:38938 12 10369 1 2025-11-01 19:25:45.467 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:53792 10 6452 1 2025-11-01 19:26:16.539 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 19:26:16.653 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 19:26:16.584 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 19:26:16.457 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 19:26:16.754 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 19:26:45.866 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58496 10 6452 1 2025-11-01 19:22:53.688 00:06:00.285 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-01 19:27:46.274 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39432 10 6452 1 2025-11-01 19:23:53.692 00:06:00.281 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-01 19:28:46.674 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34160 10 6452 1 2025-11-01 19:29:47.110 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41024 10 6452 1 2025-11-01 19:30:47.514 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:37256 10 6452 1 2025-11-01 19:31:16.813 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 19:31:16.681 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 19:31:16.805 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 19:31:16.730 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 19:31:16.578 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 19:31:47.914 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58750 10 6452 1 2025-11-01 19:32:48.319 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:54820 10 6452 1 2025-11-01 19:33:48.719 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:47818 10 6452 1 2025-11-01 19:29:53.691 00:06:00.286 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-01 19:34:49.148 00:00:10.401 TCP 1.101.0.1:3000 -> 23.104.0.1:52798 13 13955 1 2025-11-01 19:30:53.694 00:06:00.280 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-01 19:35:49.587 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47006 10 6452 1 2025-11-01 19:36:16.822 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 19:36:16.891 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 19:36:16.662 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 19:36:16.739 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 19:36:16.729 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 19:36:49.991 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:36564 10 6452 1 2025-11-01 19:37:50.401 00:00:10.522 TCP 1.101.0.1:3000 -> 23.104.0.1:35076 10 6452 1 2025-11-01 19:38:50.963 00:00:10.344 TCP 1.101.0.1:3000 -> 23.104.0.1:33458 10 6452 1 2025-11-01 19:39:51.345 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55132 10 6452 1 2025-11-01 19:40:51.750 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:57464 10 6452 1 2025-11-01 19:41:17.011 00:00:00.032 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 19:41:17.001 00:00:00.032 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 19:41:17.045 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 19:41:16.917 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 19:41:17.127 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 19:36:53.692 00:06:00.284 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-01 19:41:52.178 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:40312 10 6452 1 2025-11-01 19:37:53.695 00:06:00.278 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-01 19:42:52.576 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34948 10 6452 1 2025-11-01 19:43:52.973 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:41302 10 6452 1 2025-11-01 19:44:53.383 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:36766 10 6452 1 2025-11-01 19:45:53.753 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:55130 10 6452 1 2025-11-01 19:46:17.047 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 19:46:17.064 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 19:46:16.945 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 19:46:16.943 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 19:46:17.028 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 19:46:54.120 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35836 10 6452 1 2025-11-01 19:47:54.548 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49970 10 6452 1 2025-11-01 19:43:53.692 00:06:00.287 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-01 19:48:54.951 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:32916 10 6452 1 2025-11-01 19:44:53.696 00:06:00.282 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-01 19:49:55.357 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:59298 10 6452 1 2025-11-01 19:50:55.771 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:46048 10 6452 1 2025-11-01 19:51:17.091 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 19:51:17.002 00:00:00.042 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 19:51:17.139 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 19:51:16.976 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 19:51:17.222 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 19:51:56.184 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:39402 10 6452 1 2025-11-01 19:52:56.553 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46104 10 6452 1 2025-11-01 19:53:56.958 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45924 10 6452 1 2025-11-01 19:54:57.356 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:58812 12 6556 1 2025-11-01 19:50:53.695 00:06:00.286 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-01 19:55:57.754 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:45786 10 6452 1 2025-11-01 19:56:17.224 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 19:56:17.291 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 19:56:17.233 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 19:56:17.232 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 19:56:17.306 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 19:51:53.695 00:06:00.282 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-01 19:56:58.174 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:44788 10 6452 1 2025-11-01 19:57:58.571 00:00:11.095 TCP 1.101.0.1:3000 -> 23.104.0.1:54172 10 6452 1 Summary: total flows: 137, total bytes: 422810, total packets: 1029, avg bps: 891, avg pps: 0, avg bpp: 410 Time window: 2025-11-01 18:54:53 - 2025-11-01 19:58:09 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0030s User: 0.0023s Wall: 0.0025s flows/second: 55331.7 Runtime: 0.0025s