Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-04 05:59:36.505 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:59700 10 6661 1 2025-11-04 06:00:36.919 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:55510 10 6661 1 2025-11-04 05:56:54.909 00:05:00.383 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-04 06:01:37.322 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:37296 10 6661 1 2025-11-04 06:02:27.120 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-04 06:02:27.184 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 06:02:27.120 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 06:02:27.123 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-04 06:02:27.202 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-04 06:02:37.744 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50370 10 6661 1 2025-11-04 05:58:54.912 00:05:00.377 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-04 06:03:38.147 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:57674 10 6661 1 2025-11-04 06:04:38.551 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:45360 10 6661 1 2025-11-04 06:05:38.950 00:00:10.421 TCP 1.101.0.1:3000 -> 23.104.0.1:54726 11 6713 1 2025-11-04 06:06:39.410 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:45422 10 6661 1 2025-11-04 06:02:54.910 00:05:00.382 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-04 06:07:27.217 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-04 06:07:27.004 00:00:00.039 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-04 06:07:27.215 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 06:07:27.135 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 06:07:27.123 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-04 06:07:39.824 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:34650 10 6661 1 2025-11-04 06:08:40.221 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:32860 10 6661 1 2025-11-04 06:04:54.914 00:05:00.376 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-04 06:09:40.629 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:58010 10 6661 1 2025-11-04 06:10:41.051 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:48200 10 6661 1 2025-11-04 06:11:41.480 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:45824 10 6661 1 2025-11-04 06:12:27.465 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-04 06:12:27.182 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 06:12:27.359 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 06:12:27.423 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-04 06:12:27.441 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-04 06:08:54.913 00:05:00.379 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-04 06:12:41.891 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40712 10 6661 1 2025-11-04 06:13:42.296 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56108 10 6661 1 2025-11-04 06:14:42.702 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:55636 10 6661 1 2025-11-04 06:10:54.917 00:05:00.375 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-04 06:15:43.112 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:45050 10 6661 1 2025-11-04 06:16:43.481 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:48342 10 6661 1 2025-11-04 06:17:27.214 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-04 06:17:27.505 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-04 06:17:27.346 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 06:17:27.131 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 06:17:27.456 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-04 06:17:43.848 00:00:10.344 TCP 1.101.0.1:3000 -> 23.104.0.1:38600 10 6661 1 2025-11-04 06:18:44.230 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47212 10 6661 1 2025-11-04 06:14:54.915 00:05:00.379 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-04 06:19:44.634 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:39972 10 6661 1 2025-11-04 06:20:45.037 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:58128 10 6661 1 2025-11-04 06:16:54.918 00:05:00.375 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-04 06:21:45.452 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:60226 10 6661 1 2025-11-04 06:22:28.039 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-04 06:22:28.062 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-04 06:22:27.565 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 06:22:27.955 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 06:22:28.108 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-04 06:22:45.852 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:35732 10 6661 1 2025-11-04 06:23:46.278 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:54630 10 6661 1 2025-11-04 06:24:46.641 00:00:14.230 TCP 1.101.0.1:3000 -> 23.104.0.1:54206 10 6661 1 2025-11-04 06:20:54.917 00:05:00.381 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-04 06:25:50.920 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:47012 10 6661 1 2025-11-04 06:22:54.919 00:05:00.376 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-04 06:26:51.284 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48160 10 6661 1 2025-11-04 06:27:27.586 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-04 06:27:27.653 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 06:27:27.490 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 06:27:27.699 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-04 06:27:27.574 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-04 06:27:51.689 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59612 10 6661 1 2025-11-04 06:28:52.103 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:52796 10 6661 1 2025-11-04 06:29:52.504 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50026 10 6661 1 2025-11-04 06:26:54.916 00:05:00.383 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-04 06:30:52.911 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55690 10 6661 1 2025-11-04 06:31:53.319 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:48200 10 6661 1 2025-11-04 06:32:27.828 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-04 06:32:27.654 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-04 06:32:27.687 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 06:32:27.743 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 06:32:27.924 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-04 06:28:54.921 00:05:00.376 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-04 06:32:53.723 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:39326 10 6661 1 2025-11-04 06:33:54.128 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:35822 10 6661 1 2025-11-04 06:34:54.541 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:56070 10 6661 1 2025-11-04 06:35:54.905 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34118 10 6661 1 2025-11-04 06:32:54.920 00:05:00.382 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-04 06:36:55.309 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36594 10 6661 1 2025-11-04 06:37:27.683 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-04 06:37:27.834 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 06:37:27.971 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 06:37:27.836 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-04 06:37:28.053 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-04 06:37:55.711 00:00:10.641 TCP 1.101.0.1:3000 -> 23.104.0.1:35848 10 6661 1 2025-11-04 06:34:54.923 00:05:00.376 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-04 06:38:56.391 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:41864 10 6661 1 2025-11-04 06:39:56.755 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:44918 10 6661 1 2025-11-04 06:40:57.170 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60968 10 6661 1 2025-11-04 06:41:57.569 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38828 10 6661 1 2025-11-04 06:42:28.131 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-04 06:42:27.962 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-04 06:42:27.791 00:00:00.027 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 06:42:28.048 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 06:42:27.962 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-04 06:38:54.921 00:05:00.383 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-04 06:42:57.973 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:42034 10 6661 1 2025-11-04 06:43:58.358 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:49818 10 6661 1 2025-11-04 06:40:54.925 00:05:00.377 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-04 06:44:58.779 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47892 10 6661 1 2025-11-04 06:45:59.183 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:60040 10 6661 1 2025-11-04 06:46:59.563 00:00:10.343 TCP 1.101.0.1:3000 -> 23.104.0.1:51144 10 6661 1 2025-11-04 06:47:28.119 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-04 06:47:27.955 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 06:47:27.968 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 06:47:28.070 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-04 06:47:28.051 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-04 06:47:59.956 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:42034 10 6661 1 2025-11-04 06:44:54.923 00:05:00.382 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-04 06:49:00.362 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:59032 10 6661 1 2025-11-04 06:50:00.723 00:00:21.333 TCP 1.101.0.1:3000 -> 23.104.0.1:34834 10 6661 1 2025-11-04 06:46:54.927 00:05:00.376 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-04 06:51:12.114 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:39430 10 6661 1 2025-11-04 06:52:12.479 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57816 10 6661 1 2025-11-04 06:52:28.201 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-04 06:52:28.068 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 06:52:28.159 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 06:52:27.988 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-04 06:52:28.242 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-04 06:53:12.882 00:00:10.397 TCP 1.101.0.1:3000 -> 23.104.0.1:41432 10 6661 1 2025-11-04 06:54:13.288 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49624 10 6661 1 2025-11-04 06:50:54.928 00:05:00.377 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-04 06:55:13.689 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:59100 10 6661 1 2025-11-04 06:56:14.109 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33114 10 6661 1 2025-11-04 06:52:54.931 00:05:00.372 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-04 06:57:14.512 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:48290 10 6661 1 2025-11-04 06:57:28.623 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-04 06:57:28.487 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-04 06:57:28.048 00:00:00.035 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 06:57:28.541 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 06:57:28.244 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-04 06:58:14.932 00:00:10.396 TCP 1.101.0.1:3000 -> 23.104.0.1:43304 10 6661 1 Summary: total flows: 139, total bytes: 422931, total packets: 1011, avg bps: 916, avg pps: 0, avg bpp: 418 Time window: 2025-11-04 05:56:54 - 2025-11-04 06:58:25 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0043s User: 0.0007s Wall: 0.0025s flows/second: 55849.1 Runtime: 0.0025s