Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-08 23:59:19.344 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:44610 10 6452 1 2025-11-08 23:59:44.136 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-08 23:59:44.215 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-08 23:59:44.193 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-08 23:59:44.007 00:00:00.047 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-08 23:59:44.089 00:00:00.047 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 00:00:19.743 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48826 10 6452 1 2025-11-09 00:01:20.146 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33600 12 6556 1 2025-11-08 23:56:57.442 00:06:00.093 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-09 00:02:20.547 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:57892 10 6452 1 2025-11-08 23:57:57.440 00:06:00.098 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-09 00:03:20.945 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:42796 10 6452 1 2025-11-09 00:04:21.354 00:00:11.011 TCP 1.101.0.1:3000 -> 23.104.0.1:53666 10 6452 1 2025-11-09 00:04:44.390 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 00:04:44.223 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 00:04:43.998 00:00:00.046 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 00:04:44.221 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 00:04:44.304 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 00:05:22.400 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:39404 10 6452 1 2025-11-09 00:06:22.814 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:57392 10 6452 1 2025-11-09 00:07:23.186 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:47168 10 6452 1 2025-11-09 00:08:23.582 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:59132 10 6452 1 2025-11-09 00:03:57.444 00:06:00.092 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-09 00:09:23.946 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:38978 10 6452 1 2025-11-09 00:09:44.707 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 00:09:44.782 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 00:09:44.554 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 00:09:44.624 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 00:09:44.696 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 00:04:57.441 00:06:00.098 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-09 00:10:24.359 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38016 10 6452 1 2025-11-09 00:11:24.760 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:33016 10 6452 1 2025-11-09 00:12:25.166 00:00:10.356 TCP 1.101.0.1:3000 -> 23.104.0.1:51470 10 6452 1 2025-11-09 00:13:25.562 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:48984 10 6452 1 2025-11-09 00:14:25.926 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:55482 10 6452 1 2025-11-09 00:14:44.433 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 00:14:44.728 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 00:14:44.504 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 00:14:44.481 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 00:14:44.587 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 00:15:26.349 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:42618 10 6452 1 2025-11-09 00:10:57.446 00:06:00.092 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-09 00:16:26.748 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59474 10 6452 1 2025-11-09 00:11:57.443 00:06:00.097 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-09 00:17:27.153 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41544 10 6452 1 2025-11-09 00:18:27.557 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:36566 10 6452 1 2025-11-09 00:19:27.958 00:00:10.619 TCP 1.101.0.1:3000 -> 23.104.0.1:40932 10 6452 1 2025-11-09 00:19:44.557 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 00:19:44.458 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 00:19:44.548 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 00:19:44.680 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 00:19:44.542 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 00:20:28.611 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:40816 10 6452 1 2025-11-09 00:21:29.026 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:45106 10 6452 1 2025-11-09 00:22:29.433 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:44258 10 6452 1 2025-11-09 00:17:57.448 00:06:00.097 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-09 00:23:29.800 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:45034 10 6452 1 2025-11-09 00:18:57.446 00:06:00.102 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-09 00:24:44.763 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 00:24:44.723 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 00:24:44.674 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 00:24:44.654 00:00:00.030 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 00:24:44.679 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 00:24:30.207 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49210 10 6452 1 2025-11-09 00:25:30.609 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:53002 10 6452 1 2025-11-09 00:26:31.020 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:35650 10 6452 1 2025-11-09 00:27:31.380 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:34106 10 6452 1 2025-11-09 00:28:31.746 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:43680 10 6452 1 2025-11-09 00:29:32.129 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:39470 10 6452 1 2025-11-09 00:29:45.497 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 00:29:45.193 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 00:29:45.378 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 00:29:45.227 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 00:29:45.415 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 00:24:57.456 00:06:00.091 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-09 00:30:32.494 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:57334 10 6452 1 2025-11-09 00:25:57.451 00:06:00.099 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-09 00:31:32.904 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:39660 12 6556 1 2025-11-09 00:32:33.311 00:00:11.427 TCP 1.101.0.1:3000 -> 23.104.0.1:38918 16 14396 1 2025-11-09 00:33:34.770 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:58172 10 6452 1 2025-11-09 00:34:44.946 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 00:34:44.741 00:00:00.026 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 00:34:44.868 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 00:34:44.918 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 00:34:44.863 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 00:34:35.190 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:34918 10 6452 1 2025-11-09 00:35:35.592 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:43486 10 6452 1 2025-11-09 00:36:35.993 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:33422 10 6452 1 2025-11-09 00:31:57.456 00:06:00.093 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-09 00:37:36.397 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:39098 10 6452 1 2025-11-09 00:32:57.454 00:06:00.097 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-09 00:38:36.798 00:00:10.625 TCP 1.101.0.1:3000 -> 23.104.0.1:54464 10 6452 1 2025-11-09 00:39:44.919 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 00:39:44.738 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 00:39:44.877 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 00:39:45.086 00:00:00.041 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 00:39:37.460 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42790 10 6452 1 2025-11-09 00:39:45.004 00:00:00.040 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 00:40:37.864 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:40382 10 6452 1 2025-11-09 00:41:38.282 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45416 10 6452 1 2025-11-09 00:42:38.689 00:00:10.700 TCP 1.101.0.1:3000 -> 23.104.0.1:48152 10 6452 1 2025-11-09 00:43:39.421 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33498 10 6452 1 2025-11-09 00:38:57.458 00:06:00.093 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-09 00:44:44.797 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 00:44:45.208 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 00:44:45.076 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 00:44:45.062 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 00:44:45.125 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 00:44:39.823 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57462 10 6452 1 2025-11-09 00:39:57.456 00:06:00.098 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-09 00:45:40.224 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:32918 10 6452 1 2025-11-09 00:46:40.619 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40838 10 6452 1 2025-11-09 00:47:41.021 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:42526 10 6452 1 2025-11-09 00:48:41.385 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48418 10 6452 1 2025-11-09 00:49:45.136 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 00:49:45.060 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 00:49:45.144 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 00:49:45.249 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 00:49:45.218 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 00:49:41.788 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:52062 10 6452 1 2025-11-09 00:50:42.208 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:39310 10 6452 1 2025-11-09 00:45:57.460 00:06:00.091 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-09 00:51:42.568 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:50732 10 6452 1 2025-11-09 00:46:57.457 00:06:00.096 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-09 00:52:42.977 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:53300 10 6452 1 2025-11-09 00:53:43.339 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56646 10 6452 1 2025-11-09 00:54:45.877 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 00:54:45.626 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 00:54:45.858 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 00:54:45.645 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 00:54:45.794 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 00:54:43.746 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59530 10 6452 1 2025-11-09 00:55:44.152 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:55402 10 6452 1 2025-11-09 00:56:44.559 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:40892 10 6452 1 2025-11-09 00:52:57.462 00:06:00.092 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-09 00:57:44.962 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:48046 10 6452 1 Summary: total flows: 136, total bytes: 418577, total packets: 1018, avg bps: 900, avg pps: 0, avg bpp: 411 Time window: 2025-11-08 23:56:57 - 2025-11-09 00:58:57 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0020s User: 0.0030s Wall: 0.0021s flows/second: 65603.8 Runtime: 0.0021s