Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-05 18:59:04.791 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45036 10 6452 1 2025-11-05 18:55:55.813 00:05:00.221 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-05 19:00:05.201 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:60810 10 6452 1 2025-11-05 19:01:05.607 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35860 10 6452 1 2025-11-05 19:02:06.011 00:00:10.442 TCP 1.101.0.1:3000 -> 23.104.0.1:53216 12 10375 1 2025-11-05 19:03:11.809 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-05 19:03:11.724 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-05 19:03:11.290 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-05 19:03:11.727 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-05 19:03:11.595 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-05 19:03:06.490 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:32986 10 6452 1 2025-11-05 18:59:55.814 00:05:00.225 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-05 19:04:06.851 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:33074 10 6452 1 2025-11-05 19:05:07.271 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51266 10 6452 1 2025-11-05 19:01:55.816 00:05:00.223 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-05 19:06:07.676 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:33336 10 6452 1 2025-11-05 19:07:08.102 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41226 10 6452 1 2025-11-05 19:08:11.775 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-05 19:08:11.605 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-05 19:08:11.801 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-05 19:08:11.691 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-05 19:08:11.506 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-05 19:08:08.510 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45198 10 6452 1 2025-11-05 19:09:08.915 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:52698 10 6452 1 2025-11-05 19:05:55.815 00:05:00.229 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-05 19:10:09.300 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:60856 10 6452 1 2025-11-05 19:11:09.667 00:00:10.345 TCP 1.101.0.1:3000 -> 23.104.0.1:46412 10 6452 1 2025-11-05 19:07:55.820 00:05:00.221 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-05 19:12:10.034 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:43280 10 6452 1 2025-11-05 19:13:12.152 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-05 19:13:11.875 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-05 19:13:11.825 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-05 19:13:12.069 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-05 19:13:11.605 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-05 19:13:10.401 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49140 10 6452 1 2025-11-05 19:14:10.806 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58664 10 6452 1 2025-11-05 19:15:11.208 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:55206 10 6452 1 2025-11-05 19:11:55.819 00:05:00.225 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-05 19:16:11.572 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50616 10 6452 1 2025-11-05 19:17:11.976 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:56872 10 6452 1 2025-11-05 19:13:55.822 00:05:00.220 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-05 19:18:12.090 00:00:00.029 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-05 19:18:11.909 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-05 19:18:12.014 00:00:00.041 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-05 19:18:12.009 00:00:00.028 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-05 19:18:12.012 00:00:00.040 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-05 19:18:12.392 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33896 10 6452 1 2025-11-05 19:19:12.790 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:49236 10 6452 1 2025-11-05 19:20:13.159 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:51226 10 6452 1 2025-11-05 19:21:13.527 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:42694 10 6452 1 2025-11-05 19:17:55.821 00:05:00.226 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-05 19:22:13.931 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:60018 10 6452 1 2025-11-05 19:23:12.157 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-05 19:23:12.133 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-05 19:23:12.113 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-05 19:23:12.001 00:00:00.040 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-05 19:23:12.195 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-05 19:23:14.351 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:45902 10 6452 1 2025-11-05 19:19:55.823 00:05:00.221 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-05 19:24:14.757 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:44228 10 6452 1 2025-11-05 19:25:15.130 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44884 10 6452 1 2025-11-05 19:26:15.536 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:52848 10 6452 1 2025-11-05 19:27:15.904 00:00:11.028 TCP 1.101.0.1:3000 -> 23.104.0.1:52640 10 6452 1 2025-11-05 19:23:55.821 00:05:00.227 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-05 19:28:12.112 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-05 19:28:11.838 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-05 19:28:12.108 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-05 19:28:12.207 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-05 19:28:12.191 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-05 19:28:16.972 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:59584 10 6452 1 2025-11-05 19:29:17.395 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:43332 10 6452 1 2025-11-05 19:25:55.825 00:05:00.226 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-05 19:30:17.826 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47984 10 6452 1 2025-11-05 19:31:18.233 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:55146 10 6452 1 2025-11-05 19:32:18.593 00:00:10.442 TCP 1.101.0.1:3000 -> 23.104.0.1:58944 12 10369 1 2025-11-05 19:33:12.441 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-05 19:33:12.364 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-05 19:33:12.078 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-05 19:33:12.359 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-05 19:33:12.406 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-05 19:33:19.098 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47164 10 6452 1 2025-11-05 19:29:55.822 00:05:00.232 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-05 19:34:19.498 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:52584 10 6452 1 2025-11-05 19:35:19.900 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:47832 10 6452 1 2025-11-05 19:31:55.827 00:05:00.227 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-05 19:36:20.318 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:57114 10 6452 1 2025-11-05 19:37:20.677 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:49000 10 6452 1 2025-11-05 19:38:12.445 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-05 19:38:12.221 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-05 19:38:12.449 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-05 19:38:12.275 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-05 19:38:12.531 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-05 19:38:21.038 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44728 10 6452 1 2025-11-05 19:39:21.438 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:33912 10 6452 1 2025-11-05 19:35:55.826 00:05:00.231 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-05 19:40:21.835 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:56438 10 6452 1 2025-11-05 19:41:22.260 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:41372 10 6452 1 2025-11-05 19:37:55.829 00:05:00.226 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-05 19:42:22.618 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:50148 10 6452 1 2025-11-05 19:43:12.549 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-05 19:43:12.513 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-05 19:43:12.476 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-05 19:43:12.556 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-05 19:43:12.559 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-05 19:43:23.024 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:54420 10 6452 1 2025-11-05 19:44:23.387 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37452 10 6452 1 2025-11-05 19:45:23.793 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:59652 10 6452 1 2025-11-05 19:41:55.826 00:05:00.232 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-05 19:46:24.154 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54184 10 6452 1 2025-11-05 19:47:24.556 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:56954 10 6452 1 2025-11-05 19:43:55.829 00:05:00.226 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-05 19:48:12.526 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-05 19:48:12.360 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-05 19:48:12.427 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-05 19:48:12.520 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-05 19:48:12.510 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-05 19:48:24.959 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:43820 10 6452 1 2025-11-05 19:49:25.364 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51350 10 6452 1 2025-11-05 19:50:25.766 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:51116 10 6452 1 2025-11-05 19:51:26.192 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53272 10 6452 1 2025-11-05 19:47:55.828 00:05:00.231 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-05 19:52:26.592 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59730 10 6452 1 2025-11-05 19:53:12.869 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-05 19:53:12.675 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-05 19:53:12.315 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-05 19:53:12.788 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-05 19:53:12.752 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-05 19:53:26.995 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:51498 10 6452 1 2025-11-05 19:49:55.831 00:05:00.226 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-05 19:54:27.403 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46610 10 6452 1 2025-11-05 19:55:27.811 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:47950 10 6452 1 2025-11-05 19:56:28.196 00:00:10.349 TCP 1.101.0.1:3000 -> 23.104.0.1:53124 10 6452 1 2025-11-05 19:57:28.581 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:39570 10 6452 1 2025-11-05 19:53:55.831 00:05:00.228 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-05 19:58:12.906 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-05 19:58:12.906 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-05 19:58:12.703 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-05 19:58:12.825 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-05 19:58:12.814 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-05 19:58:28.991 00:00:10.780 TCP 1.101.0.1:3000 -> 23.104.0.1:47432 10 6452 1 Summary: total flows: 140, total bytes: 424840, total packets: 1024, avg bps: 899, avg pps: 0, avg bpp: 414 Time window: 2025-11-05 18:55:55 - 2025-11-05 19:58:56 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0034s User: 0.0017s Wall: 0.0018s flows/second: 78116.6 Runtime: 0.0018s