Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-04 06:59:15.359 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45350 10 6661 1 2025-11-04 07:00:15.762 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:60842 10 6661 1 2025-11-04 06:56:54.931 00:05:00.376 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-04 07:01:16.186 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:55062 10 6661 1 2025-11-04 07:02:28.391 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-04 07:02:28.307 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-04 07:02:28.271 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 07:02:16.586 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:56788 10 6661 1 2025-11-04 07:02:28.309 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 07:02:28.157 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-04 06:58:54.933 00:05:00.372 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-04 07:03:16.944 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:53512 10 6661 1 2025-11-04 07:04:17.314 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:44384 10 6661 1 2025-11-04 07:05:17.726 00:00:10.555 TCP 1.101.0.1:3000 -> 23.104.0.1:47710 10 6661 1 2025-11-04 07:06:18.313 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46552 10 6661 1 2025-11-04 07:02:54.932 00:05:00.375 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-04 07:07:28.488 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-04 07:07:18.715 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:38112 10 6661 1 2025-11-04 07:07:28.343 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 07:07:28.187 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 07:07:28.440 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-04 07:07:28.269 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-04 07:08:19.117 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:38640 10 6661 1 2025-11-04 07:04:54.935 00:05:00.370 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-04 07:09:19.502 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:59404 10 6661 1 2025-11-04 07:10:19.910 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:40240 10 6661 1 2025-11-04 07:11:20.321 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50908 10 6661 1 2025-11-04 07:12:28.739 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-04 07:12:28.566 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-04 07:12:28.352 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 07:12:28.657 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 07:12:28.563 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-04 07:12:20.726 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:59832 10 6661 1 2025-11-04 07:08:54.933 00:05:00.375 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-04 07:13:21.145 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39560 10 6661 1 2025-11-04 07:14:21.552 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55810 10 6661 1 2025-11-04 07:10:54.936 00:05:00.370 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-04 07:15:21.958 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56186 10 6661 1 2025-11-04 07:16:22.363 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:40342 10 6661 1 2025-11-04 07:17:28.581 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-04 07:17:28.544 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 07:17:28.682 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 07:17:28.582 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-04 07:17:28.764 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-04 07:17:22.773 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54474 10 6661 1 2025-11-04 07:18:23.177 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:44906 10 6661 1 2025-11-04 07:14:54.935 00:05:00.374 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-04 07:19:23.590 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35002 10 6661 1 2025-11-04 07:20:23.994 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:39746 10 6661 1 2025-11-04 07:16:54.939 00:05:00.368 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-04 07:21:24.402 00:00:10.435 TCP 1.101.0.1:3000 -> 23.104.0.1:34764 12 10375 1 2025-11-04 07:22:28.907 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-04 07:22:28.678 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-04 07:22:28.681 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 07:22:28.825 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 07:22:28.673 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-04 07:22:24.879 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38998 10 6452 1 2025-11-04 07:23:25.279 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:42324 10 6452 1 2025-11-04 07:24:25.651 00:00:10.423 TCP 1.101.0.1:3000 -> 23.104.0.1:41260 11 6504 1 2025-11-04 07:20:54.941 00:05:00.370 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-04 07:25:26.111 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:58524 10 6452 1 2025-11-04 07:26:26.517 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55196 10 6452 1 2025-11-04 07:22:54.943 00:05:00.366 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-04 07:27:28.973 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-04 07:27:28.833 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-04 07:27:28.567 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 07:27:28.889 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 07:27:28.892 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-04 07:27:26.920 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46288 10 6452 1 2025-11-04 07:28:27.323 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:47880 10 6452 1 2025-11-04 07:29:27.743 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42930 10 6452 1 2025-11-04 07:30:28.146 00:00:11.161 TCP 1.101.0.1:3000 -> 23.104.0.1:33380 10 6452 1 2025-11-04 07:26:54.944 00:05:00.368 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-04 07:31:29.352 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:33884 10 6452 1 2025-11-04 07:32:29.005 00:00:00.047 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-04 07:32:28.666 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 07:32:28.857 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 07:32:28.858 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-04 07:32:28.939 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-04 07:32:29.715 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:46544 10 6452 1 2025-11-04 07:28:54.948 00:05:00.364 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-04 07:33:30.151 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57102 10 6452 1 2025-11-04 07:34:30.558 00:00:10.356 TCP 1.101.0.1:3000 -> 23.104.0.1:51712 10 6452 1 2025-11-04 07:35:30.954 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:34988 10 6452 1 2025-11-04 07:36:31.322 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41992 10 6452 1 2025-11-04 07:32:54.946 00:05:00.369 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-04 07:37:29.235 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-04 07:37:28.951 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-04 07:37:29.172 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 07:37:29.153 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 07:37:28.873 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-04 07:37:31.725 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:44848 10 6452 1 2025-11-04 07:38:32.134 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:33618 10 6452 1 2025-11-04 07:34:54.948 00:05:00.365 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-04 07:39:32.549 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:53942 10 6452 1 2025-11-04 07:40:32.913 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38106 10 6452 1 2025-11-04 07:41:33.320 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43572 10 6452 1 2025-11-04 07:42:29.283 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-04 07:42:29.165 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-04 07:42:28.784 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 07:42:29.201 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 07:42:29.204 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-04 07:42:33.726 00:00:10.434 TCP 1.101.0.1:3000 -> 23.104.0.1:55610 11 6504 1 2025-11-04 07:38:54.948 00:05:00.368 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-04 07:43:34.203 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:35144 10 6452 1 2025-11-04 07:44:34.564 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:41344 10 6452 1 2025-11-04 07:40:54.951 00:05:00.364 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-04 07:45:34.966 00:00:16.445 TCP 1.101.0.1:3000 -> 23.104.0.1:56550 10 6452 1 2025-11-04 07:46:41.452 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59772 10 6452 1 2025-11-04 07:47:29.481 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-04 07:47:29.185 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-04 07:47:29.014 00:00:00.040 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 07:47:29.398 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 07:47:29.347 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-04 07:47:41.855 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:42190 10 6452 1 2025-11-04 07:44:54.948 00:05:00.370 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-04 07:48:42.271 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36112 10 6452 1 2025-11-04 07:49:42.680 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49000 10 6452 1 2025-11-04 07:46:54.953 00:05:00.364 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-04 07:50:43.110 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:43796 10 6452 1 2025-11-04 07:51:43.479 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45514 10 6452 1 2025-11-04 07:52:29.528 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-04 07:52:29.349 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-04 07:52:28.955 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 07:52:29.445 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 07:52:29.507 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-04 07:52:43.883 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:34756 10 6452 1 2025-11-04 07:53:44.245 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40882 10 6452 1 2025-11-04 07:54:44.648 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39560 10 6452 1 2025-11-04 07:50:54.950 00:05:00.370 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-04 07:55:45.062 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41574 10 6452 1 2025-11-04 07:56:45.465 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:42882 10 6452 1 2025-11-04 07:52:54.953 00:05:00.364 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-04 07:57:29.510 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-04 07:57:29.328 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 07:57:29.541 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-04 07:57:29.315 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-04 07:57:29.623 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-04 07:57:45.873 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:42018 10 6452 1 Summary: total flows: 139, total bytes: 419173, total packets: 1014, avg bps: 915, avg pps: 0, avg bpp: 413 Time window: 2025-11-04 06:56:54 - 2025-11-04 07:57:56 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0039s User: 0.0016s Wall: 0.0023s flows/second: 60566.0 Runtime: 0.0023s