Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-06 21:58:59.424 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:40672 10 6452 1 2025-11-06 21:59:59.836 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:41472 12 6556 1 2025-11-06 22:01:00.265 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:33088 10 6452 1 2025-11-06 22:02:00.621 00:00:10.961 TCP 1.101.0.1:3000 -> 23.104.0.1:34348 12 10369 1 2025-11-06 21:57:56.356 00:06:00.181 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-06 22:03:01.618 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39172 10 6452 1 2025-11-06 22:03:44.275 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-06 22:03:44.228 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 22:03:44.391 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 22:03:44.270 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-06 22:03:44.475 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-06 22:04:02.021 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57130 10 6452 1 2025-11-06 21:59:56.354 00:06:00.188 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-06 22:05:02.420 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:59422 10 6452 1 2025-11-06 22:06:02.838 00:00:10.398 TCP 1.101.0.1:3000 -> 23.104.0.1:46916 10 6452 1 2025-11-06 22:07:03.281 00:00:10.565 TCP 1.101.0.1:3000 -> 23.104.0.1:33958 10 6452 1 2025-11-06 22:08:03.885 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:51746 10 6452 1 2025-11-06 22:08:44.311 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-06 22:08:44.381 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-06 22:08:44.043 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 22:08:44.229 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 22:08:44.294 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-06 22:09:04.301 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:35862 10 6452 1 2025-11-06 22:04:56.357 00:06:00.185 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-06 22:10:04.705 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:59846 10 6452 1 2025-11-06 22:11:05.096 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54044 10 6452 1 2025-11-06 22:06:56.354 00:06:00.190 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-06 22:12:05.503 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:55260 10 6452 1 2025-11-06 22:13:05.857 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:51038 10 6452 1 2025-11-06 22:13:44.214 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-06 22:13:44.229 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 22:13:44.429 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 22:13:44.284 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-06 22:13:44.512 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-06 22:14:06.276 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55882 10 6452 1 2025-11-06 22:15:06.679 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:53590 10 6452 1 2025-11-06 22:16:07.108 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:42976 10 6452 1 2025-11-06 22:11:56.365 00:06:00.180 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-06 22:17:07.510 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42960 10 6452 1 2025-11-06 22:18:07.911 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50292 10 6452 1 2025-11-06 22:18:44.519 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-06 22:18:44.500 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-06 22:18:44.515 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 22:18:44.437 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 22:18:44.339 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-06 22:13:56.362 00:06:00.185 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-06 22:19:08.319 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38870 10 6452 1 2025-11-06 22:20:08.727 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:42244 10 6452 1 2025-11-06 22:21:09.134 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:33084 10 6452 1 2025-11-06 22:22:09.495 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38994 10 6452 1 2025-11-06 22:23:09.905 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:36090 10 6452 1 2025-11-06 22:23:44.898 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-06 22:23:44.817 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 22:23:44.894 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 22:23:44.667 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-06 22:23:44.976 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-06 22:18:56.365 00:06:00.181 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-06 22:24:10.277 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47524 10 6452 1 2025-11-06 22:25:10.690 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51064 10 6452 1 2025-11-06 22:20:56.362 00:06:00.187 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-06 22:26:11.111 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:40378 10 6452 1 2025-11-06 22:27:11.470 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:53786 10 6452 1 2025-11-06 22:28:11.868 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:53196 10 6452 1 2025-11-06 22:28:44.580 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-06 22:28:44.538 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 22:28:44.659 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 22:28:44.710 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-06 22:28:44.742 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-06 22:29:12.236 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:33356 10 6452 1 2025-11-06 22:30:12.611 00:00:10.417 TCP 1.101.0.1:3000 -> 23.104.0.1:35770 10 6452 1 2025-11-06 22:25:56.368 00:06:00.182 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-06 22:31:13.072 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54202 10 6452 1 2025-11-06 22:32:13.476 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:45994 10 6452 1 2025-11-06 22:27:56.366 00:06:00.186 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-06 22:33:13.880 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:39170 10 6452 1 2025-11-06 22:33:44.766 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-06 22:33:44.495 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 22:33:44.681 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 22:33:44.676 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-06 22:33:44.764 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-06 22:34:14.278 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:46018 10 6452 1 2025-11-06 22:35:14.683 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:59552 10 6452 1 2025-11-06 22:36:15.040 00:00:10.991 TCP 1.101.0.1:3000 -> 23.104.0.1:60882 10 6452 1 2025-11-06 22:37:16.094 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52684 10 6452 1 2025-11-06 22:32:56.370 00:06:00.183 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-06 22:38:16.493 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:38276 10 6452 1 2025-11-06 22:38:45.313 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-06 22:38:45.168 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 22:38:45.222 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 22:38:45.229 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-06 22:38:45.305 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-06 22:39:16.896 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:56692 10 6452 1 2025-11-06 22:34:56.371 00:06:00.184 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-06 22:40:17.324 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:34018 10 6452 1 2025-11-06 22:41:17.686 00:00:10.416 TCP 1.101.0.1:3000 -> 23.104.0.1:50266 10 6452 1 2025-11-06 22:42:18.141 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56096 10 6452 1 2025-11-06 22:43:18.546 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38376 10 6452 1 2025-11-06 22:43:45.019 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-06 22:43:44.935 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-06 22:43:44.809 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 22:43:44.936 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 22:43:44.933 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-06 22:44:18.949 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:38508 10 6452 1 2025-11-06 22:39:56.376 00:06:00.180 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-06 22:45:19.365 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51842 10 6452 1 2025-11-06 22:46:19.764 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:50732 10 6452 1 2025-11-06 22:41:56.373 00:06:00.187 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-06 22:47:20.130 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:57502 10 6452 1 2025-11-06 22:48:20.537 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:60794 10 6452 1 2025-11-06 22:48:44.973 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-06 22:48:45.096 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-06 22:48:44.994 00:00:00.046 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 22:48:44.891 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 22:48:44.893 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-06 22:49:20.902 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:58230 10 6452 1 2025-11-06 22:50:21.305 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59522 10 6452 1 2025-11-06 22:51:21.709 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:54782 10 6452 1 2025-11-06 22:46:56.393 00:06:00.168 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-06 22:52:22.111 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:54644 11 6504 1 2025-11-06 22:53:22.535 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47134 10 6452 1 2025-11-06 22:53:45.271 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-06 22:53:45.249 00:00:00.020 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-06 22:53:44.810 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 22:53:45.187 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 22:53:45.180 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-06 22:48:56.392 00:06:00.172 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-06 22:54:22.930 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:57976 10 6452 1 2025-11-06 22:55:23.311 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52664 10 6452 1 2025-11-06 22:56:23.711 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:50944 10 6452 1 2025-11-06 22:57:24.127 00:00:10.439 TCP 1.101.0.1:3000 -> 23.104.0.1:41662 12 10369 1 2025-11-06 22:58:24.604 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:53336 10 6452 1 2025-11-06 22:58:45.524 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-06 22:58:45.441 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-06 22:58:45.126 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 22:58:45.441 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-06 22:58:45.389 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 Summary: total flows: 136, total bytes: 424006, total packets: 1011, avg bps: 929, avg pps: 0, avg bpp: 419 Time window: 2025-11-06 21:57:56 - 2025-11-06 22:58:45 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0029s User: 0.0019s Wall: 0.0017s flows/second: 80432.2 Runtime: 0.0017s