Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-16 01:59:13.953 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50754 10 6452 1 2025-11-16 02:00:14.360 00:00:10.410 TCP 1.101.0.1:3000 -> 23.104.0.1:37474 11 6504 1 2025-11-16 02:01:14.811 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:49348 10 6452 1 2025-11-16 01:57:01.431 00:06:00.048 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 02:02:15.217 00:00:10.917 TCP 1.101.0.1:3000 -> 23.104.0.1:43490 10 6452 1 2025-11-16 02:03:08.748 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 02:03:08.752 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 02:03:08.608 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 02:03:08.689 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 02:03:08.772 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 02:03:16.185 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33354 10 6452 1 2025-11-16 01:59:01.430 00:06:00.053 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 02:04:16.586 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:49384 10 6452 1 2025-11-16 02:05:16.982 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56334 10 6452 1 2025-11-16 02:06:17.392 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:37500 10 6452 1 2025-11-16 02:07:17.749 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54874 10 6452 1 2025-11-16 02:08:08.977 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 02:08:08.687 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 02:08:08.857 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 02:08:08.608 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 02:08:08.893 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 02:08:18.150 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:48478 10 6452 1 2025-11-16 02:04:01.433 00:06:00.050 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 02:09:18.514 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:58142 10 6452 1 2025-11-16 02:10:18.923 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:33498 10 6452 1 2025-11-16 02:06:01.431 00:06:00.055 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 02:11:19.336 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39336 10 6452 1 2025-11-16 02:12:19.742 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:54754 10 6452 1 2025-11-16 02:13:09.148 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 02:13:08.670 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 02:13:08.741 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 02:13:09.033 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 02:13:08.823 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 02:13:20.150 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60342 10 6452 1 2025-11-16 02:14:20.556 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:48974 10 6452 1 2025-11-16 02:15:20.952 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:53444 10 6452 1 2025-11-16 02:11:01.435 00:06:00.049 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 02:16:21.365 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:39032 10 6452 1 2025-11-16 02:17:21.770 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:38356 10 6452 1 2025-11-16 02:13:01.432 00:06:00.059 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 02:18:09.493 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 02:18:09.322 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 02:18:09.410 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 02:18:09.156 00:00:00.026 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 02:18:09.410 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 02:18:22.135 00:00:10.653 TCP 1.101.0.1:3000 -> 23.104.0.1:39878 10 6452 1 2025-11-16 02:19:22.826 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:50340 10 6452 1 2025-11-16 02:20:23.230 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57480 10 6452 1 2025-11-16 02:21:23.633 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:59692 10 6452 1 2025-11-16 02:22:24.032 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:60746 10 6452 1 2025-11-16 02:18:01.435 00:06:00.055 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 02:23:09.199 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 02:23:09.111 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 02:23:09.223 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 02:23:09.032 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 02:23:09.117 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 02:23:24.393 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:54886 10 6452 1 2025-11-16 02:24:24.801 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:56150 10 6452 1 2025-11-16 02:20:01.433 00:06:00.060 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 02:25:25.168 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:53672 10 6452 1 2025-11-16 02:26:25.570 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:33706 10 6452 1 2025-11-16 02:27:25.977 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:43118 10 6452 1 2025-11-16 02:28:09.304 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 02:28:09.437 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 02:28:09.316 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 02:28:09.312 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 02:28:09.394 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 02:28:26.393 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:38738 10 6452 1 2025-11-16 02:29:26.806 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:44854 10 6452 1 2025-11-16 02:25:01.435 00:06:00.055 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 02:30:27.210 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:39646 10 6452 1 2025-11-16 02:31:27.575 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43232 10 6452 1 2025-11-16 02:27:01.435 00:06:00.060 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 02:32:27.978 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:43344 10 6452 1 2025-11-16 02:33:09.490 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 02:33:09.374 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 02:33:09.250 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 02:33:09.453 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 02:33:09.332 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 02:33:28.347 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:57320 10 6452 1 2025-11-16 02:34:28.773 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:59084 10 6452 1 2025-11-16 02:35:29.144 00:00:10.643 TCP 1.101.0.1:3000 -> 23.104.0.1:38980 10 6452 1 2025-11-16 02:36:29.825 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56066 10 6452 1 2025-11-16 02:32:01.436 00:06:00.057 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 02:37:30.222 00:00:10.419 TCP 1.101.0.1:3000 -> 23.104.0.1:42578 11 6504 1 2025-11-16 02:38:09.419 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 02:38:09.550 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 02:38:09.597 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 02:38:09.386 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 02:38:09.337 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 02:38:30.680 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:43870 10 6452 1 2025-11-16 02:34:01.435 00:06:00.062 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 02:39:31.109 00:00:10.994 TCP 1.101.0.1:3000 -> 23.104.0.1:58066 10 6452 1 2025-11-16 02:40:32.139 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:45870 10 6452 1 2025-11-16 02:41:32.547 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36610 10 6452 1 2025-11-16 02:42:32.952 00:00:10.356 TCP 1.101.0.1:3000 -> 23.104.0.1:36522 10 6452 1 2025-11-16 02:43:09.768 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 02:43:09.691 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 02:43:09.655 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 02:43:09.686 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 02:43:09.621 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 02:43:33.316 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:34824 10 6452 1 2025-11-16 02:39:01.440 00:06:00.055 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 02:44:33.676 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:50516 10 6452 1 2025-11-16 02:45:34.108 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:52376 10 6452 1 2025-11-16 02:41:01.438 00:06:00.060 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 02:46:34.507 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54436 10 6452 1 2025-11-16 02:47:34.915 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46580 10 6452 1 2025-11-16 02:48:09.606 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 02:48:09.617 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 02:48:09.722 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 02:48:09.736 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 02:48:09.688 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 02:48:35.320 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:55542 10 6452 1 2025-11-16 02:49:35.730 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:46936 10 6452 1 2025-11-16 02:50:36.140 00:00:10.664 TCP 1.101.0.1:3000 -> 23.104.0.1:49260 10 6452 1 2025-11-16 02:46:01.441 00:06:00.056 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 02:51:36.843 00:00:10.346 TCP 1.101.0.1:3000 -> 23.104.0.1:52994 10 6452 1 2025-11-16 02:52:37.227 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:36946 10 6452 1 2025-11-16 02:48:01.438 00:06:00.061 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 02:53:09.689 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 02:53:09.833 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 02:53:09.625 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 02:53:09.896 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 02:53:09.976 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 02:53:37.626 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:36188 10 6452 1 2025-11-16 02:54:38.021 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46656 10 6452 1 2025-11-16 02:55:38.460 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:41894 10 6452 1 2025-11-16 02:56:38.858 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:57350 10 6452 1 2025-11-16 02:57:39.267 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:37918 10 6452 1 2025-11-16 02:53:01.442 00:06:00.057 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 02:58:09.943 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 02:58:09.730 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 02:58:10.095 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 02:58:10.095 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 02:58:10.027 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 02:58:39.630 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:34568 10 6452 1 Summary: total flows: 137, total bytes: 416981, total packets: 1020, avg bps: 896, avg pps: 0, avg bpp: 408 Time window: 2025-11-16 01:57:01 - 2025-11-16 02:59:01 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0040s User: 0.0010s Wall: 0.0019s flows/second: 71953.4 Runtime: 0.0019s