Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-06 13:58:41.912 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:32908 10 6452 1 2025-11-06 13:59:42.315 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:48598 10 6452 1 2025-11-06 13:54:56.213 00:06:00.163 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-06 14:00:42.724 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:41754 10 6452 1 2025-11-06 14:01:43.112 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52714 10 6452 1 2025-11-06 13:56:56.211 00:06:00.169 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-06 14:02:43.509 00:00:10.411 TCP 1.101.0.1:3000 -> 23.104.0.1:36420 11 6504 1 2025-11-06 14:03:34.922 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-06 14:03:34.969 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-06 14:03:34.689 00:00:00.028 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 14:03:34.840 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 14:03:34.835 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-06 14:03:43.961 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:43612 10 6452 1 2025-11-06 14:04:44.366 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50734 10 6452 1 2025-11-06 14:05:44.766 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:41838 10 6452 1 2025-11-06 14:06:45.178 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55734 10 6452 1 2025-11-06 14:01:56.214 00:06:00.164 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-06 14:07:45.581 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44104 12 6556 1 2025-11-06 14:08:34.580 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-06 14:08:34.483 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-06 14:08:34.526 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 14:08:34.497 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 14:08:34.506 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-06 14:08:45.985 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:47970 10 6452 1 2025-11-06 14:03:56.215 00:06:00.168 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-06 14:09:46.345 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37064 10 6452 1 2025-11-06 14:10:46.747 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:34770 10 6452 1 2025-11-06 14:11:47.149 00:00:10.440 TCP 1.101.0.1:3000 -> 23.104.0.1:36802 12 10369 1 2025-11-06 14:12:47.625 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:56368 10 6452 1 2025-11-06 14:13:34.793 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-06 14:13:34.820 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-06 14:13:34.775 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 14:13:34.711 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 14:13:34.598 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-06 14:13:48.014 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:45706 10 6452 1 2025-11-06 14:08:56.218 00:06:00.163 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-06 14:14:48.423 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:33256 10 6452 1 2025-11-06 14:15:48.781 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35356 10 6452 1 2025-11-06 14:10:56.214 00:06:00.169 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-06 14:16:49.184 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45422 10 6452 1 2025-11-06 14:17:49.588 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46352 10 6452 1 2025-11-06 14:18:35.004 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-06 14:18:34.958 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-06 14:18:34.600 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 14:18:34.922 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 14:18:34.961 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-06 14:18:49.988 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:34180 10 6452 1 2025-11-06 14:19:50.419 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49798 10 6452 1 2025-11-06 14:15:56.218 00:06:00.166 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-06 14:20:50.828 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:45480 10 6452 1 2025-11-06 14:21:51.239 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:48616 10 6452 1 2025-11-06 14:17:56.217 00:06:00.170 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-06 14:22:51.603 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:34210 10 6452 1 2025-11-06 14:23:35.230 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-06 14:23:35.006 00:00:00.034 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-06 14:23:34.916 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 14:23:35.147 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 14:23:34.906 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-06 14:23:51.964 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:44372 10 6452 1 2025-11-06 14:24:52.325 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54270 10 6452 1 2025-11-06 14:25:52.728 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46020 10 6452 1 2025-11-06 14:26:53.136 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:58322 10 6452 1 2025-11-06 14:22:56.218 00:06:00.165 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-06 14:27:53.534 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:57136 10 6452 1 2025-11-06 14:28:35.212 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-06 14:28:34.954 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-06 14:28:35.181 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 14:28:35.131 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 14:28:35.199 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-06 14:28:53.942 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:53304 10 6452 1 2025-11-06 14:24:56.217 00:06:00.171 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-06 14:29:54.355 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:46150 10 6452 1 2025-11-06 14:30:54.764 00:00:10.921 TCP 1.101.0.1:3000 -> 23.104.0.1:57692 10 6452 1 2025-11-06 14:31:55.726 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:42804 10 6452 1 2025-11-06 14:32:56.139 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:34554 10 6452 1 2025-11-06 14:33:34.980 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-06 14:33:34.993 00:00:00.044 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 14:33:35.203 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 14:33:35.209 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-06 14:33:35.285 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-06 14:33:56.519 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:48316 10 6452 1 2025-11-06 14:29:56.221 00:06:00.167 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-06 14:34:56.876 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:56750 10 6452 1 2025-11-06 14:35:57.243 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:50772 10 6452 1 2025-11-06 14:31:56.219 00:06:00.172 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-06 14:36:57.653 00:00:10.395 TCP 1.101.0.1:3000 -> 23.104.0.1:53216 10 6452 1 2025-11-06 14:37:58.107 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:34180 10 6452 1 2025-11-06 14:38:35.211 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-06 14:38:35.288 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-06 14:38:34.861 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 14:38:35.129 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 14:38:35.286 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-06 14:38:58.516 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:56508 10 6452 1 2025-11-06 14:39:58.886 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:56802 12 6556 1 2025-11-06 14:40:59.308 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58524 10 6452 1 2025-11-06 14:36:56.225 00:06:00.164 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-06 14:41:59.710 00:00:10.399 TCP 1.101.0.1:3000 -> 23.104.0.1:39348 12 10375 1 2025-11-06 14:43:00.158 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:42466 12 6556 1 2025-11-06 14:43:35.373 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-06 14:43:35.228 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-06 14:43:35.326 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 14:43:35.291 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 14:43:35.292 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-06 14:38:56.222 00:06:00.170 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-06 14:44:00.569 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:38746 10 6452 1 2025-11-06 14:45:00.966 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:56928 10 6452 1 2025-11-06 14:46:01.375 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60872 10 6452 1 2025-11-06 14:47:01.791 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:58552 10 6452 1 2025-11-06 14:48:02.200 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:45252 10 6452 1 2025-11-06 14:48:35.505 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-06 14:48:35.604 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 14:48:35.694 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 14:48:35.679 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-06 14:48:35.778 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-06 14:43:56.227 00:06:00.167 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-06 14:49:02.606 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:49214 10 6452 1 2025-11-06 14:50:03.013 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:45554 10 6452 1 2025-11-06 14:45:56.224 00:06:00.172 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-06 14:51:03.421 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:37642 10 6452 1 2025-11-06 14:52:03.823 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:37588 10 6452 1 2025-11-06 14:53:04.235 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44268 10 6452 1 2025-11-06 14:53:35.530 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-06 14:53:35.648 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-06 14:53:35.332 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 14:53:35.449 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 14:53:35.544 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-06 14:54:04.642 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:46576 10 6452 1 2025-11-06 14:55:05.017 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:57442 10 6452 1 2025-11-06 14:50:56.229 00:06:00.166 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-06 14:56:05.425 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54822 10 6452 1 2025-11-06 14:57:05.825 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45464 10 6452 1 2025-11-06 14:52:56.227 00:06:00.171 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-06 14:58:06.233 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50932 10 6452 1 2025-11-06 14:58:35.564 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-06 14:58:35.635 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 14:58:35.565 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 14:58:35.689 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-06 14:58:35.649 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 Summary: total flows: 138, total bytes: 425942, total packets: 1043, avg bps: 887, avg pps: 0, avg bpp: 408 Time window: 2025-11-06 13:54:56 - 2025-11-06 14:58:56 Total flows processed: 138, passed: 138, Blocks skipped: 0, Bytes read: 14416 Sys: 0.0034s User: 0.0014s Wall: 0.0024s flows/second: 58525.2 Runtime: 0.0024s