Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-02 15:59:09.297 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:36430 10 6452 1 2025-11-02 16:00:09.699 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:45798 10 6452 1 2025-11-02 16:01:10.066 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:39002 10 6452 1 2025-11-02 16:01:41.464 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 16:01:41.205 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 16:01:41.335 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 16:01:41.382 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 16:01:41.383 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 15:56:54.098 00:06:00.341 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-02 16:02:10.428 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:34622 10 6452 1 2025-11-02 16:03:10.792 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:35232 10 6452 1 2025-11-02 15:58:54.101 00:06:00.336 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-02 16:04:11.210 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:56934 10 6452 1 2025-11-02 16:05:11.582 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51468 10 6452 1 2025-11-02 16:06:11.992 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56268 10 6452 1 2025-11-02 16:06:41.663 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 16:06:41.558 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 16:06:41.667 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 16:06:41.308 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 16:06:41.749 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 16:07:12.393 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50264 10 6452 1 2025-11-02 16:08:12.811 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:48930 10 6452 1 2025-11-02 16:03:54.099 00:06:00.342 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-02 16:09:13.215 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:53128 10 6452 1 2025-11-02 16:10:13.571 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50610 10 6452 1 2025-11-02 16:05:54.100 00:06:00.337 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-02 16:11:13.969 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:35768 10 6452 1 2025-11-02 16:11:41.926 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 16:11:41.599 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 16:11:41.596 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 16:11:41.842 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 16:11:41.747 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 16:12:14.388 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48792 10 6452 1 2025-11-02 16:13:14.794 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:46348 10 6452 1 2025-11-02 16:14:15.203 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36038 10 6452 1 2025-11-02 16:15:15.604 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:54648 10 6452 1 2025-11-02 16:10:54.098 00:06:00.345 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-02 16:16:16.006 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:47512 10 6452 1 2025-11-02 16:16:41.515 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 16:16:41.818 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 16:16:41.606 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 16:16:41.772 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 16:16:41.688 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 16:17:16.420 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:39656 10 6452 1 2025-11-02 16:12:54.102 00:06:00.340 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-02 16:18:16.795 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:42502 10 6452 1 2025-11-02 16:19:17.202 00:00:10.899 TCP 1.101.0.1:3000 -> 23.104.0.1:38446 10 6452 1 2025-11-02 16:20:18.141 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35620 10 6452 1 2025-11-02 16:21:18.540 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:49150 10 6452 1 2025-11-02 16:21:41.825 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 16:21:41.604 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 16:21:41.558 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 16:21:41.742 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 16:21:41.743 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 16:22:18.946 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:44468 10 6452 1 2025-11-02 16:17:54.102 00:06:00.345 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-02 16:23:19.372 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:43394 10 6452 1 2025-11-02 16:24:19.791 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:33018 10 6452 1 2025-11-02 16:19:54.104 00:06:00.340 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-02 16:25:20.200 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41860 10 6452 1 2025-11-02 16:26:20.603 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:33130 10 6452 1 2025-11-02 16:26:42.162 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 16:26:41.888 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 16:26:42.041 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 16:26:42.079 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 16:26:42.125 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 16:27:21.003 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:49572 10 6452 1 2025-11-02 16:28:21.406 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41244 10 6452 1 2025-11-02 16:29:21.809 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:50280 10 6452 1 2025-11-02 16:24:54.101 00:06:00.345 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-02 16:30:22.217 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57890 10 6452 1 2025-11-02 16:31:22.619 00:00:10.689 TCP 1.101.0.1:3000 -> 23.104.0.1:60756 10 6452 1 2025-11-02 16:31:42.053 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 16:31:41.980 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 16:31:42.092 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 16:31:42.010 00:00:00.031 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 16:31:42.175 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 16:26:54.106 00:06:00.340 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-02 16:32:23.342 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:50252 10 6452 1 2025-11-02 16:33:23.703 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41250 10 6452 1 2025-11-02 16:34:24.114 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:53928 10 6452 1 2025-11-02 16:35:24.514 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58322 10 6452 1 2025-11-02 16:36:24.927 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:58162 10 6452 1 2025-11-02 16:36:41.972 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 16:36:42.001 00:00:00.042 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 16:36:41.859 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 16:36:41.973 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 16:36:41.942 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 16:31:54.104 00:06:00.345 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-02 16:37:25.337 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:43666 10 6452 1 2025-11-02 16:38:25.742 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:47692 10 6452 1 2025-11-02 16:33:54.106 00:06:00.341 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-02 16:39:26.152 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:45304 10 6452 1 2025-11-02 16:40:26.558 00:00:10.396 TCP 1.101.0.1:3000 -> 23.104.0.1:42568 12 10369 1 2025-11-02 16:41:27.009 00:00:10.465 TCP 1.101.0.1:3000 -> 23.104.0.1:52708 10 6452 1 2025-11-02 16:41:42.256 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 16:41:42.176 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 16:41:42.155 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 16:41:42.174 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 16:41:42.109 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 16:42:27.513 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:37468 10 6452 1 2025-11-02 16:43:27.879 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58966 10 6452 1 2025-11-02 16:38:54.106 00:06:00.344 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-02 16:44:28.282 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:37350 10 6452 1 2025-11-02 16:45:28.680 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:45488 10 6452 1 2025-11-02 16:40:54.108 00:06:00.340 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-02 16:46:29.113 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:41310 10 6452 1 2025-11-02 16:46:42.349 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 16:46:42.246 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 16:46:42.297 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 16:46:42.297 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 16:46:42.380 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 16:47:29.477 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:33930 10 6452 1 2025-11-02 16:48:29.897 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:44162 10 6452 1 2025-11-02 16:49:30.269 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:51706 10 6452 1 2025-11-02 16:50:30.697 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41108 10 6452 1 2025-11-02 16:45:54.105 00:06:00.347 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-02 16:51:42.725 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 16:51:42.474 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 16:51:42.566 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 16:51:42.724 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 16:51:31.111 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:41194 10 6452 1 2025-11-02 16:51:42.649 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 16:52:31.526 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:35058 10 6452 1 2025-11-02 16:47:54.108 00:06:00.342 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-02 16:53:31.923 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:59058 10 6452 1 2025-11-02 16:54:32.332 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54970 10 6452 1 2025-11-02 16:55:32.737 00:00:10.439 TCP 1.101.0.1:3000 -> 23.104.0.1:54074 12 10375 1 2025-11-02 16:56:42.850 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-02 16:56:42.499 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 16:56:33.215 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39014 10 6452 1 2025-11-02 16:56:42.540 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 16:56:42.768 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-02 16:56:42.300 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 16:57:33.617 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47320 10 6452 1 2025-11-02 16:52:54.106 00:06:00.347 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-02 16:58:34.022 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:35824 10 6452 1 Summary: total flows: 137, total bytes: 424717, total packets: 1022, avg bps: 913, avg pps: 0, avg bpp: 415 Time window: 2025-11-02 15:56:54 - 2025-11-02 16:58:54 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0050s User: 0.0013s Wall: 0.0018s flows/second: 75064.6 Runtime: 0.0018s