Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-22 06:59:34.191 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53480 10 6452 1 2025-11-22 07:00:34.594 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38502 10 6452 1 2025-11-22 07:01:10.421 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 07:01:10.349 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 07:01:09.716 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 07:01:10.339 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 07:01:10.391 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 07:01:34.998 00:00:10.952 TCP 1.101.0.1:3000 -> 23.104.0.1:43622 10 6452 1 2025-11-22 07:02:36.000 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:46956 10 6452 1 2025-11-22 06:58:04.466 00:06:00.301 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-22 07:03:36.357 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:36808 10 6452 1 2025-11-22 06:59:04.463 00:06:00.308 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-22 07:04:36.759 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:41136 10 6452 1 2025-11-22 07:05:37.170 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:51480 10 6452 1 2025-11-22 07:06:09.753 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 07:06:09.931 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 07:06:09.685 00:00:00.029 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 07:06:09.666 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 07:06:09.895 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 07:06:37.573 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:36240 10 6452 1 2025-11-22 07:07:37.977 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:36312 10 6452 1 2025-11-22 07:08:38.399 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47280 10 6452 1 2025-11-22 07:09:38.804 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:50188 10 6452 1 2025-11-22 07:05:04.469 00:06:00.302 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-22 07:10:39.201 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49542 10 6452 1 2025-11-22 07:11:09.935 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 07:11:09.966 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 07:11:09.995 00:00:00.036 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 07:11:09.993 00:00:00.043 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 07:06:04.466 00:06:00.307 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-22 07:11:10.079 00:00:00.035 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 07:11:39.603 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49334 10 6452 1 2025-11-22 07:12:40.010 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56884 10 6452 1 2025-11-22 07:13:40.412 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:47374 10 6452 1 2025-11-22 07:14:40.813 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:41626 10 6452 1 2025-11-22 07:15:41.179 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42540 10 6452 1 2025-11-22 07:16:10.035 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 07:16:10.075 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 07:16:09.681 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 07:16:09.953 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 07:16:09.957 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 07:16:41.583 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53718 10 6452 1 2025-11-22 07:12:04.473 00:06:00.301 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-22 07:17:41.984 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:43366 10 6452 1 2025-11-22 07:13:04.469 00:06:00.311 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-22 07:18:42.396 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:48154 10 6452 1 2025-11-22 07:19:42.807 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54284 10 6452 1 2025-11-22 07:20:43.219 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:49384 10 6452 1 2025-11-22 07:21:10.907 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 07:21:10.810 00:00:00.030 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 07:21:10.857 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 07:21:10.921 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 07:21:10.940 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 07:21:43.590 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:50660 10 6452 1 2025-11-22 07:22:43.952 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:54600 10 6452 1 2025-11-22 07:23:44.360 00:00:10.860 TCP 1.101.0.1:3000 -> 23.104.0.1:60376 10 6452 1 2025-11-22 07:19:04.476 00:06:00.302 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-22 07:24:45.282 00:00:10.437 TCP 1.101.0.1:3000 -> 23.104.0.1:59540 12 10375 1 2025-11-22 07:20:04.473 00:06:00.309 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-22 07:25:45.759 00:00:10.393 TCP 1.101.0.1:3000 -> 23.104.0.1:44710 10 6452 1 2025-11-22 07:26:10.278 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 07:26:10.499 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 07:26:10.588 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 07:26:10.196 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 07:26:10.492 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 07:26:46.187 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:58952 10 6452 1 2025-11-22 07:27:46.582 00:00:21.789 TCP 1.101.0.1:3000 -> 23.104.0.1:60316 10 6452 1 2025-11-22 07:28:58.429 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:45274 10 6452 1 2025-11-22 07:29:58.835 00:00:10.696 TCP 1.101.0.1:3000 -> 23.104.0.1:54038 10 6452 1 2025-11-22 07:26:04.475 00:06:00.306 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-22 07:31:10.910 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 07:31:10.612 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 07:30:59.567 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60244 10 6452 1 2025-11-22 07:31:10.648 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 07:31:10.826 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 07:31:10.724 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 07:27:04.473 00:06:00.311 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-22 07:31:59.969 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:50800 10 6452 1 2025-11-22 07:33:00.375 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40592 10 6452 1 2025-11-22 07:34:00.775 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:37594 10 6452 1 2025-11-22 07:35:01.186 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54414 10 6452 1 2025-11-22 07:36:10.391 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 07:36:10.528 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 07:36:10.571 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 07:36:10.620 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 07:36:10.656 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 07:36:01.584 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45590 10 6452 1 2025-11-22 07:37:01.984 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:50368 10 6452 1 2025-11-22 07:33:04.480 00:06:00.302 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-22 07:38:02.396 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:38528 10 6452 1 2025-11-22 07:34:04.477 00:06:00.308 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-22 07:39:02.800 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35052 10 6452 1 2025-11-22 07:40:03.202 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:58004 10 6452 1 2025-11-22 07:41:10.801 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 07:41:10.570 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 07:41:10.675 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 07:41:10.717 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 07:41:10.723 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 07:41:03.600 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34820 10 6452 1 2025-11-22 07:42:04.006 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:49580 10 6452 1 2025-11-22 07:43:04.369 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50590 10 6452 1 2025-11-22 07:44:04.768 00:00:10.346 TCP 1.101.0.1:3000 -> 23.104.0.1:33268 10 6452 1 2025-11-22 07:40:04.480 00:06:00.307 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-22 07:45:05.155 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:50754 10 6452 1 2025-11-22 07:46:10.741 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 07:46:10.570 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 07:46:10.744 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 07:46:10.648 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 07:41:04.479 00:06:00.311 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-22 07:46:10.827 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 07:46:05.557 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46558 10 6452 1 2025-11-22 07:47:05.962 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36154 10 6452 1 2025-11-22 07:48:06.370 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:45722 10 6452 1 2025-11-22 07:49:06.771 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:39354 10 6452 1 2025-11-22 07:50:07.186 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60628 10 6452 1 2025-11-22 07:51:10.953 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 07:51:10.793 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 07:51:10.919 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 07:51:10.864 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 07:51:11.004 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 07:51:07.586 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:50876 10 6452 1 2025-11-22 07:47:04.483 00:06:00.306 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-22 07:52:07.956 00:00:10.443 TCP 1.101.0.1:3000 -> 23.104.0.1:35894 10 6452 1 2025-11-22 07:48:04.479 00:06:00.311 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-22 07:53:08.471 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60762 10 6452 1 2025-11-22 07:54:08.876 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:56152 10 6452 1 2025-11-22 07:55:09.253 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58758 10 6452 1 2025-11-22 07:56:10.947 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 07:56:10.879 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 07:56:10.944 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 07:56:11.179 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 07:56:11.029 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 07:56:09.656 00:00:10.463 TCP 1.101.0.1:3000 -> 23.104.0.1:48282 10 6452 1 2025-11-22 07:57:10.174 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39346 10 6452 1 2025-11-22 07:58:10.579 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:50326 10 6452 1 Summary: total flows: 135, total bytes: 413487, total packets: 996, avg bps: 914, avg pps: 0, avg bpp: 415 Time window: 2025-11-22 06:58:04 - 2025-11-22 07:58:20 Total flows processed: 135, passed: 135, Blocks skipped: 0, Bytes read: 14104 Sys: 0.0037s User: 0.0015s Wall: 0.0020s flows/second: 67739.1 Runtime: 0.0020s