Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-09 16:58:47.726 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40522 10 6452 1 2025-11-09 16:59:48.132 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:43712 10 6452 1 2025-11-09 17:00:04.681 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 17:00:04.599 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 17:00:04.560 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 17:00:04.599 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 17:00:04.721 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 17:00:48.574 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44908 10 6452 1 2025-11-09 17:01:48.979 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:44326 10 6452 1 2025-11-09 17:02:49.383 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33678 10 6452 1 2025-11-09 16:58:57.914 00:06:00.053 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-09 17:03:49.785 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59792 10 6452 1 2025-11-09 17:04:50.187 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47158 10 6452 1 2025-11-09 16:59:57.914 00:06:00.056 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-09 17:05:04.921 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 17:05:04.842 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 17:05:04.752 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 17:05:04.838 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 17:05:04.960 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 17:05:50.595 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40822 10 6452 1 2025-11-09 17:06:51.007 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50624 10 6452 1 2025-11-09 17:07:51.415 00:00:10.441 TCP 1.101.0.1:3000 -> 23.104.0.1:59564 12 10375 1 2025-11-09 17:08:51.896 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:36960 10 6452 1 2025-11-09 17:05:57.915 00:05:00.085 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-09 17:10:05.183 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 17:10:04.996 00:00:00.040 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 17:09:52.315 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39160 10 6452 1 2025-11-09 17:10:05.194 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 17:10:05.113 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 17:10:05.277 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 17:06:57.912 00:05:00.091 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-09 17:10:52.722 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:42742 10 6452 1 2025-11-09 17:11:53.132 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53750 10 6452 1 2025-11-09 17:12:53.539 00:00:10.721 TCP 1.101.0.1:3000 -> 23.104.0.1:49476 10 6452 1 2025-11-09 17:13:54.298 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45370 10 6452 1 2025-11-09 17:15:05.157 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 17:15:04.932 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 17:15:05.075 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 17:15:04.937 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 17:14:54.700 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:38666 10 6452 1 2025-11-09 17:15:04.824 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 17:11:57.916 00:05:00.085 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-09 17:15:55.110 00:00:10.680 TCP 1.101.0.1:3000 -> 23.104.0.1:39624 10 6452 1 2025-11-09 17:12:57.914 00:05:00.116 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-09 17:16:55.828 00:00:10.353 TCP 1.101.0.1:3000 -> 23.104.0.1:46390 10 6452 1 2025-11-09 17:17:56.220 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:37824 10 6452 1 2025-11-09 17:18:56.625 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42354 10 6452 1 2025-11-09 17:20:05.088 00:00:00.032 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 17:20:05.098 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 17:20:05.178 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 17:20:05.005 00:00:00.030 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 17:20:05.105 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 17:19:57.027 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35806 10 6452 1 2025-11-09 17:20:57.432 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57578 10 6452 1 2025-11-09 17:17:57.919 00:05:00.106 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-09 17:21:57.837 00:00:10.347 TCP 1.101.0.1:3000 -> 23.104.0.1:38022 10 6452 1 2025-11-09 17:18:57.917 00:05:00.116 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-09 17:22:58.238 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:32778 10 6452 1 2025-11-09 17:23:58.644 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47308 10 6452 1 2025-11-09 17:25:05.559 00:00:00.015 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 17:25:05.456 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 17:25:05.172 00:00:00.027 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 17:25:05.465 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 17:25:05.472 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 17:24:59.064 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:37184 10 6452 1 2025-11-09 17:25:59.423 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:46692 10 6452 1 2025-11-09 17:26:59.816 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:34348 10 6452 1 2025-11-09 17:23:57.921 00:05:00.112 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-09 17:28:00.230 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41608 12 6556 1 2025-11-09 17:24:57.919 00:05:00.116 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-09 17:29:00.637 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:39176 10 6452 1 2025-11-09 17:30:05.409 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 17:30:05.140 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 17:30:05.409 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 17:30:05.355 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 17:30:05.492 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 17:30:01.058 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51582 10 6452 1 2025-11-09 17:31:01.461 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43700 10 6452 1 2025-11-09 17:32:01.864 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:33066 10 6452 1 2025-11-09 17:33:02.231 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38896 10 6452 1 2025-11-09 17:29:57.923 00:05:00.112 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-09 17:34:02.634 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:44180 10 6452 1 2025-11-09 17:35:05.318 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 17:35:05.360 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 17:35:05.431 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 17:35:05.394 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 17:30:57.921 00:05:00.117 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-09 17:35:05.514 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 17:35:02.994 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:43808 10 6452 1 2025-11-09 17:36:03.406 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:36126 10 6452 1 2025-11-09 17:37:03.772 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:39036 10 6452 1 2025-11-09 17:38:04.181 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:47582 10 6452 1 2025-11-09 17:39:04.547 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56302 10 6452 1 2025-11-09 17:35:57.923 00:05:00.114 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-09 17:40:05.463 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 17:40:05.832 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 17:40:05.343 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 17:40:05.381 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 17:40:05.395 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 17:40:04.954 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:55190 10 6452 1 2025-11-09 17:36:57.922 00:05:00.118 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-09 17:41:05.367 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:44390 10 6452 1 2025-11-09 17:42:05.769 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:47276 10 6452 1 2025-11-09 17:43:06.194 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38272 10 6452 1 2025-11-09 17:44:06.598 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52258 10 6452 1 2025-11-09 17:45:05.601 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 17:45:05.516 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 17:45:05.351 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 17:45:05.519 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 17:45:05.407 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 17:45:06.998 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35704 10 6452 1 2025-11-09 17:41:57.928 00:05:00.111 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-09 17:46:07.398 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:37152 10 6452 1 2025-11-09 17:42:57.927 00:05:00.115 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-09 17:47:07.800 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:38770 10 6452 1 2025-11-09 17:48:08.210 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:60418 10 6452 1 2025-11-09 17:49:08.614 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:36212 10 6452 1 2025-11-09 17:50:05.793 00:00:00.027 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 17:50:05.647 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 17:50:05.584 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 17:50:05.710 00:00:00.027 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 17:50:05.799 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 17:50:09.020 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:56118 10 6452 1 2025-11-09 17:51:09.387 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:39520 10 6452 1 2025-11-09 17:47:57.930 00:05:00.116 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-09 17:52:09.795 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58300 10 6452 1 2025-11-09 17:48:57.928 00:05:00.120 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-09 17:53:10.201 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50560 10 6452 1 2025-11-09 17:54:10.605 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33206 10 6452 1 2025-11-09 17:55:05.745 00:00:00.026 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 17:55:05.635 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 17:55:05.737 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 17:55:06.088 00:00:00.034 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 17:55:06.006 00:00:00.033 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 17:55:11.008 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:45762 10 6452 1 2025-11-09 17:56:11.406 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:37542 10 6452 1 2025-11-09 17:57:11.772 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:50444 10 6452 1 2025-11-09 17:53:57.932 00:05:00.116 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-09 17:58:12.144 00:00:11.037 TCP 1.101.0.1:3000 -> 23.104.0.1:44196 10 6452 1 Summary: total flows: 139, total bytes: 420535, total packets: 1016, avg bps: 931, avg pps: 0, avg bpp: 413 Time window: 2025-11-09 16:58:47 - 2025-11-09 17:58:58 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0021s User: 0.0031s Wall: 0.0013s flows/second: 109464.6 Runtime: 0.0013s