Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-06 04:58:52.108 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:52126 10 6452 1 2025-11-06 04:59:52.528 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:55486 10 6452 1 2025-11-06 04:55:56.056 00:06:00.161 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-06 05:00:52.901 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:57100 10 6452 1 2025-11-06 05:01:53.321 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:34582 10 6452 1 2025-11-06 04:57:56.053 00:06:00.167 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-06 05:02:53.687 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:44062 10 6452 1 2025-11-06 05:03:23.803 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-06 05:03:23.657 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-06 05:03:23.469 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 05:03:23.720 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 05:03:23.547 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-06 05:03:54.069 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:33438 10 6452 1 2025-11-06 05:04:54.433 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:59244 10 6452 1 2025-11-06 05:05:54.800 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:53696 10 6452 1 2025-11-06 05:06:55.181 00:00:10.446 TCP 1.101.0.1:3000 -> 23.104.0.1:37504 12 10369 1 2025-11-06 05:02:56.056 00:06:00.162 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-06 05:07:55.667 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:45724 10 6452 1 2025-11-06 05:08:23.867 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-06 05:08:23.611 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-06 05:08:23.811 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 05:08:23.784 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 05:08:23.785 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-06 05:08:56.041 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38102 10 6452 1 2025-11-06 05:04:56.054 00:06:00.166 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-06 05:09:56.447 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:55842 10 6452 1 2025-11-06 05:10:56.816 00:00:10.772 TCP 1.101.0.1:3000 -> 23.104.0.1:57028 10 6452 1 2025-11-06 05:11:57.629 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37404 10 6452 1 2025-11-06 05:12:58.032 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:53038 10 6452 1 2025-11-06 05:13:24.217 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 05:13:24.387 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-06 05:13:24.475 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-06 05:13:24.308 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 05:13:24.299 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-06 05:13:58.441 00:00:10.418 TCP 1.101.0.1:3000 -> 23.104.0.1:53450 11 6504 1 2025-11-06 05:09:56.057 00:06:00.160 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-06 05:14:58.899 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:39430 12 6556 1 2025-11-06 05:15:59.320 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52020 10 6452 1 2025-11-06 05:11:56.057 00:06:00.164 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-06 05:16:59.746 00:00:10.350 TCP 1.101.0.1:3000 -> 23.104.0.1:46158 10 6452 1 2025-11-06 05:18:00.141 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:56706 10 6452 1 2025-11-06 05:18:23.926 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-06 05:18:23.853 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 05:18:23.821 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 05:18:23.924 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-06 05:18:23.903 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-06 05:19:00.513 00:00:10.342 TCP 1.101.0.1:3000 -> 23.104.0.1:49998 10 6452 1 2025-11-06 05:20:00.892 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:55274 12 6556 1 2025-11-06 05:21:01.318 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:34584 10 6452 1 2025-11-06 05:16:56.063 00:06:00.158 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-06 05:22:01.679 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:51900 10 6452 1 2025-11-06 05:23:02.113 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48112 10 6452 1 2025-11-06 05:23:24.205 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-06 05:23:24.179 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-06 05:23:24.002 00:00:00.033 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 05:23:24.122 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 05:23:23.989 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-06 05:18:56.059 00:06:00.163 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-06 05:24:02.522 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40510 10 6452 1 2025-11-06 05:25:02.917 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:54364 10 6452 1 2025-11-06 05:26:03.320 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45486 10 6452 1 2025-11-06 05:27:03.722 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:49144 10 6452 1 2025-11-06 05:28:04.133 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:57910 10 6452 1 2025-11-06 05:28:24.364 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-06 05:28:24.282 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 05:28:24.231 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-06 05:28:24.294 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-06 05:28:24.117 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 05:23:56.065 00:06:00.157 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-06 05:29:04.505 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:59196 10 6452 1 2025-11-06 05:30:04.909 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:44378 10 6452 1 2025-11-06 05:25:56.060 00:06:00.163 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-06 05:31:05.275 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:59408 10 6452 1 2025-11-06 05:32:05.636 00:00:10.431 TCP 1.101.0.1:3000 -> 23.104.0.1:34666 12 10375 1 2025-11-06 05:33:06.110 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:46084 10 6452 1 2025-11-06 05:33:24.726 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-06 05:33:24.652 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-06 05:33:24.189 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 05:33:24.643 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 05:33:24.653 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-06 05:34:06.515 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42908 10 6452 1 2025-11-06 05:35:06.928 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:36834 10 6452 1 2025-11-06 05:30:56.065 00:06:00.159 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-06 05:36:07.341 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:42858 12 6556 1 2025-11-06 05:37:07.747 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37914 10 6452 1 2025-11-06 05:32:56.062 00:06:00.166 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-06 05:38:08.149 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:56452 10 6452 1 2025-11-06 05:38:24.366 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-06 05:38:24.404 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 05:38:24.356 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 05:38:24.466 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-06 05:38:24.440 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-06 05:39:08.511 00:00:10.641 TCP 1.101.0.1:3000 -> 23.104.0.1:37718 10 6452 1 2025-11-06 05:40:09.190 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:41736 10 6452 1 2025-11-06 05:41:09.595 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44966 10 6452 1 2025-11-06 05:42:10.002 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51286 10 6452 1 2025-11-06 05:37:56.065 00:06:00.161 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-06 05:43:10.404 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51716 10 6452 1 2025-11-06 05:43:24.594 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-06 05:43:24.398 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 05:43:24.588 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 05:43:24.543 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-06 05:43:24.672 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-06 05:44:10.809 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41766 10 6452 1 2025-11-06 05:39:56.063 00:06:00.167 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-06 05:45:11.217 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37470 10 6452 1 2025-11-06 05:46:11.616 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:38030 10 6452 1 2025-11-06 05:47:12.035 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:34612 10 6452 1 2025-11-06 05:48:24.662 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-06 05:48:24.658 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 05:48:24.705 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 05:48:24.534 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-06 05:48:12.451 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41902 10 6452 1 2025-11-06 05:48:24.789 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-06 05:49:12.858 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:49100 10 6452 1 2025-11-06 05:44:56.067 00:06:00.162 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-06 05:50:13.278 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:34434 10 6452 1 2025-11-06 05:51:13.680 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:40666 10 6452 1 2025-11-06 05:46:56.064 00:06:00.167 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-06 05:52:14.120 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:32924 10 6452 1 2025-11-06 05:53:24.717 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-06 05:53:24.705 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-06 05:53:24.554 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 05:53:24.635 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 05:53:24.806 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-06 05:53:14.527 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:48316 10 6452 1 2025-11-06 05:54:14.933 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:33714 10 6452 1 2025-11-06 05:55:15.353 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60108 10 6452 1 2025-11-06 05:56:15.754 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:34756 10 6452 1 2025-11-06 05:51:56.070 00:06:00.161 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-06 05:57:16.166 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36572 10 6452 1 2025-11-06 05:58:24.873 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-06 05:58:24.800 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-06 05:58:24.741 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 05:58:24.790 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 05:58:24.794 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-06 05:58:16.570 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:51910 10 6452 1 Summary: total flows: 137, total bytes: 425081, total packets: 1029, avg bps: 906, avg pps: 0, avg bpp: 413 Time window: 2025-11-06 04:55:56 - 2025-11-06 05:58:26 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0091s User: 0.0020s Wall: 0.0043s flows/second: 32114.2 Runtime: 0.0043s