Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-04 02:59:02.954 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41536 10 6452 1 2025-11-04 03:00:03.367 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:41574 10 6452 1 2025-11-04 02:56:54.841 00:05:00.394 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-04 03:01:03.738 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49536 10 6452 1 2025-11-04 03:02:04.145 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:38902 10 6452 1 2025-11-04 03:02:23.620 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-04 03:02:23.426 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 03:02:23.571 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 03:02:23.382 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-04 03:02:23.654 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-04 02:58:54.843 00:05:00.389 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-04 03:03:04.548 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38662 10 6452 1 2025-11-04 03:04:04.952 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38576 10 6452 1 2025-11-04 03:05:05.354 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36760 10 6452 1 2025-11-04 03:06:05.766 00:00:10.454 TCP 1.101.0.1:3000 -> 23.104.0.1:52064 12 10375 1 2025-11-04 03:02:54.841 00:05:00.395 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-04 03:07:06.255 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35190 10 6452 1 2025-11-04 03:07:23.666 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 03:07:23.731 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 03:07:23.667 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-04 03:07:23.735 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-04 03:07:23.815 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-04 03:08:06.659 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54060 10 6452 1 2025-11-04 03:04:54.845 00:05:00.391 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-04 03:09:07.071 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50396 10 6452 1 2025-11-04 03:10:07.476 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:42354 10 6452 1 2025-11-04 03:11:07.883 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:45958 10 6452 1 2025-11-04 03:12:08.286 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:40606 10 6452 1 2025-11-04 03:12:24.204 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-04 03:12:23.699 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 03:12:23.637 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 03:12:23.602 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-04 03:12:23.718 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-04 03:08:54.844 00:05:00.396 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-04 03:13:08.655 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33900 10 6452 1 2025-11-04 03:14:09.074 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:50998 10 6452 1 2025-11-04 03:10:54.846 00:05:00.391 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-04 03:15:09.436 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:34496 10 6452 1 2025-11-04 03:16:09.839 00:00:10.395 TCP 1.101.0.1:3000 -> 23.104.0.1:56332 10 6452 1 2025-11-04 03:17:23.683 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-04 03:17:23.649 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 03:17:23.680 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 03:17:23.871 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-04 03:17:23.763 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-04 03:17:10.274 00:00:20.092 TCP 1.101.0.1:3000 -> 23.104.0.1:49402 10 6452 1 2025-11-04 03:18:20.458 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41982 10 6452 1 2025-11-04 03:14:54.843 00:05:00.396 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-04 03:19:20.855 00:00:10.705 TCP 1.101.0.1:3000 -> 23.104.0.1:37162 10 6452 1 2025-11-04 03:20:21.602 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:35088 10 6452 1 2025-11-04 03:16:54.847 00:05:00.391 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-04 03:21:22.005 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:43146 10 6452 1 2025-11-04 03:22:23.904 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-04 03:22:23.711 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 03:22:23.783 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 03:22:23.860 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-04 03:22:23.865 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-04 03:22:22.367 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60026 10 6452 1 2025-11-04 03:23:22.767 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:60512 10 6452 1 2025-11-04 03:24:23.188 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:36940 10 6452 1 2025-11-04 03:20:54.851 00:05:00.390 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-04 03:25:23.590 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43050 10 6452 1 2025-11-04 03:26:23.991 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:54080 10 6452 1 2025-11-04 03:22:54.853 00:05:00.385 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-04 03:27:23.961 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-04 03:27:23.793 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 03:27:23.950 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 03:27:23.956 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-04 03:27:24.033 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-04 03:27:24.358 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:47286 10 6452 1 2025-11-04 03:28:24.758 00:00:10.342 TCP 1.101.0.1:3000 -> 23.104.0.1:55052 10 6452 1 2025-11-04 03:29:25.132 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:54798 10 6452 1 2025-11-04 03:30:25.528 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:51628 10 6452 1 2025-11-04 03:26:54.853 00:05:00.389 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-04 03:31:25.897 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:41582 10 6452 1 2025-11-04 03:32:24.341 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-04 03:32:24.258 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 03:32:24.078 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-04 03:32:24.194 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-04 03:32:24.309 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 03:32:26.273 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59042 10 6452 1 2025-11-04 03:28:54.857 00:05:00.385 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-04 03:33:26.684 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:58546 10 6452 1 2025-11-04 03:34:27.114 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:58554 10 6452 1 2025-11-04 03:35:27.506 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:52428 10 6452 1 2025-11-04 03:36:27.910 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:43284 10 6452 1 2025-11-04 03:32:54.857 00:05:00.387 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-04 03:37:24.371 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-04 03:37:24.226 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-04 03:37:24.288 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 03:37:24.288 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 03:37:24.125 00:00:00.030 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-04 03:37:28.320 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54978 10 6452 1 2025-11-04 03:38:28.725 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:39050 10 6452 1 2025-11-04 03:34:54.861 00:05:00.381 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-04 03:39:29.156 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:54756 10 6452 1 2025-11-04 03:40:29.524 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:38396 10 6452 1 2025-11-04 03:41:29.935 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:44216 10 6452 1 2025-11-04 03:42:24.242 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-04 03:42:23.865 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 03:42:24.302 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 03:42:24.233 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-04 03:42:24.387 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-04 03:42:30.320 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41962 10 6452 1 2025-11-04 03:38:54.860 00:05:00.386 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-04 03:43:30.718 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:60162 10 6452 1 2025-11-04 03:44:31.128 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:33080 10 6452 1 2025-11-04 03:40:54.862 00:05:00.382 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-04 03:45:31.538 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57102 10 6452 1 2025-11-04 03:46:31.941 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:57882 10 6452 1 2025-11-04 03:47:24.472 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-04 03:47:24.375 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 03:47:24.422 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 03:47:24.465 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-04 03:47:24.505 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-04 03:47:32.350 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53930 10 6452 1 2025-11-04 03:48:32.754 00:00:10.342 TCP 1.101.0.1:3000 -> 23.104.0.1:37532 10 6452 1 2025-11-04 03:44:54.859 00:05:00.387 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-04 03:49:33.137 00:00:19.202 TCP 1.101.0.1:3000 -> 23.104.0.1:55960 10 6452 1 2025-11-04 03:50:42.372 00:00:10.514 TCP 1.101.0.1:3000 -> 23.104.0.1:50992 14 14298 1 2025-11-04 03:46:54.862 00:05:00.383 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-04 03:51:42.929 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:38290 10 6452 1 2025-11-04 03:52:24.866 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-04 03:52:24.786 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-04 03:52:24.212 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 03:52:24.783 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 03:52:24.703 00:00:00.035 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-04 03:52:43.356 00:00:11.040 TCP 1.101.0.1:3000 -> 23.104.0.1:55110 10 6452 1 2025-11-04 03:53:44.437 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:59006 10 6452 1 2025-11-04 03:54:44.804 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:60820 10 6452 1 2025-11-04 03:50:54.862 00:05:00.389 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-04 03:55:45.209 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:49880 10 6452 1 2025-11-04 03:52:54.864 00:05:00.384 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-04 03:56:45.622 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55626 10 6452 1 2025-11-04 03:57:24.579 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-04 03:57:24.289 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 03:57:24.577 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 03:57:24.719 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-04 03:57:24.661 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-04 03:57:46.029 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38032 10 6452 1 Summary: total flows: 139, total bytes: 422317, total packets: 1016, avg bps: 922, avg pps: 0, avg bpp: 415 Time window: 2025-11-04 02:56:54 - 2025-11-04 03:57:56 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0052s User: 0.0009s Wall: 0.0016s flows/second: 85011.4 Runtime: 0.0016s