Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-16 02:59:40.034 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:50152 10 6452 1 2025-11-16 02:55:01.440 00:06:00.062 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 03:00:40.448 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:45102 10 6452 1 2025-11-16 03:01:40.870 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:41212 10 6452 1 2025-11-16 03:02:41.281 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:60472 10 6452 1 2025-11-16 03:03:09.916 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 03:03:10.077 00:00:00.043 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 03:03:09.986 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 03:03:10.162 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 03:03:09.994 00:00:00.043 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 03:03:41.652 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38542 10 6452 1 2025-11-16 03:04:42.057 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:52150 10 6452 1 2025-11-16 03:00:01.443 00:06:00.058 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 03:05:42.433 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:59254 10 6452 1 2025-11-16 03:06:42.842 00:00:10.349 TCP 1.101.0.1:3000 -> 23.104.0.1:46988 10 6452 1 2025-11-16 03:02:01.442 00:06:00.062 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 03:07:43.227 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:41860 10 6452 1 2025-11-16 03:08:10.200 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 03:08:10.148 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 03:08:10.117 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 03:08:10.114 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 03:08:10.312 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 03:08:43.627 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55624 10 6452 1 2025-11-16 03:09:44.028 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:56018 10 6452 1 2025-11-16 03:10:44.392 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:38206 10 6452 1 2025-11-16 03:11:44.802 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:53324 10 6452 1 2025-11-16 03:07:01.446 00:06:00.057 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 03:12:45.212 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:41882 10 6452 1 2025-11-16 03:13:10.155 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 03:13:10.285 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 03:13:10.171 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 03:13:10.238 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 03:13:10.320 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 03:13:45.577 00:00:10.529 TCP 1.101.0.1:3000 -> 23.104.0.1:54408 10 6452 1 2025-11-16 03:09:01.444 00:06:00.065 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 03:14:46.144 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47320 10 6452 1 2025-11-16 03:15:46.549 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:58674 10 6452 1 2025-11-16 03:16:46.960 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51568 10 6452 1 2025-11-16 03:17:47.364 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39816 10 6452 1 2025-11-16 03:18:10.448 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 03:18:10.148 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 03:18:10.426 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 03:18:10.093 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 03:18:10.365 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 03:18:47.767 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:55960 10 6452 1 2025-11-16 03:14:01.447 00:06:00.060 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 03:19:48.172 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:49406 10 6452 1 2025-11-16 03:20:48.528 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:56934 10 6452 1 2025-11-16 03:16:01.448 00:06:00.062 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 03:21:48.894 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:51624 10 6452 1 2025-11-16 03:22:49.308 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57710 10 6452 1 2025-11-16 03:23:10.528 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 03:23:10.668 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 03:23:10.598 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 03:23:10.314 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 03:23:10.614 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 03:23:49.711 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:46502 10 6452 1 2025-11-16 03:24:50.114 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:39440 10 6452 1 2025-11-16 03:25:50.474 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:59634 10 6452 1 2025-11-16 03:21:01.454 00:06:00.055 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 03:26:50.875 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55360 10 6452 1 2025-11-16 03:27:51.279 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:36734 10 6452 1 2025-11-16 03:23:01.452 00:06:00.060 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 03:28:10.649 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 03:28:10.581 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 03:28:10.541 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 03:28:10.580 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 03:28:10.663 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 03:28:51.688 00:00:10.562 TCP 1.101.0.1:3000 -> 23.104.0.1:55364 10 6452 1 2025-11-16 03:29:52.291 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:48912 10 6452 1 2025-11-16 03:30:52.660 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:58466 10 6452 1 2025-11-16 03:31:53.028 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40296 10 6452 1 2025-11-16 03:32:53.431 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:38334 10 6452 1 2025-11-16 03:28:01.454 00:06:00.055 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 03:33:10.707 00:00:00.032 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 03:33:10.468 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 03:33:10.566 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 03:33:10.383 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 03:33:10.625 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 03:33:53.845 00:00:10.450 TCP 1.101.0.1:3000 -> 23.104.0.1:35182 11 6504 1 2025-11-16 03:30:01.452 00:06:00.062 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 03:34:54.336 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:55128 10 6452 1 2025-11-16 03:35:54.739 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42804 10 6452 1 2025-11-16 03:36:55.143 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56668 10 6452 1 2025-11-16 03:37:55.549 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:37730 10 6452 1 2025-11-16 03:38:10.747 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 03:38:10.728 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 03:38:10.570 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 03:38:10.675 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 03:38:10.664 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 03:38:55.948 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:59818 10 6452 1 2025-11-16 03:35:01.457 00:06:00.055 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 03:39:56.355 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:51394 10 6452 1 2025-11-16 03:40:56.752 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:56964 10 6452 1 2025-11-16 03:37:01.457 00:06:00.060 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 03:41:57.175 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:45404 10 6452 1 2025-11-16 03:42:57.537 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:60352 10 6452 1 2025-11-16 03:43:11.038 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 03:43:11.273 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 03:43:10.856 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 03:43:11.212 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 03:43:11.294 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 03:43:57.903 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:44110 12 6556 1 2025-11-16 03:44:58.311 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:57298 10 6452 1 2025-11-16 03:45:58.722 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:60768 10 6452 1 2025-11-16 03:42:01.464 00:06:00.054 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 03:46:59.132 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34560 10 6452 1 2025-11-16 03:47:59.529 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51338 10 6452 1 2025-11-16 03:48:10.970 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 03:48:10.716 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 03:48:10.851 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 03:48:10.971 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 03:48:11.054 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 03:44:01.462 00:06:00.060 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 03:48:59.929 00:00:10.352 TCP 1.101.0.1:3000 -> 23.104.0.1:43158 10 6452 1 2025-11-16 03:50:00.317 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:47670 10 6452 1 2025-11-16 03:51:00.721 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:45496 10 6452 1 2025-11-16 03:52:01.128 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:39210 10 6452 1 2025-11-16 03:53:11.234 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 03:53:11.257 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 03:53:10.785 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 03:53:01.536 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53276 10 6452 1 2025-11-16 03:53:11.153 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 03:53:11.311 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 03:49:01.467 00:06:00.053 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 03:54:01.936 00:00:10.351 TCP 1.101.0.1:3000 -> 23.104.0.1:39060 10 6452 1 2025-11-16 03:55:02.320 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60170 10 6452 1 2025-11-16 03:51:01.466 00:06:00.058 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 03:56:02.724 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:37764 10 6452 1 2025-11-16 03:57:03.136 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:60982 10 6452 1 2025-11-16 03:58:11.352 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 03:58:11.269 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 03:58:11.267 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 03:58:03.544 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:58008 10 6452 1 2025-11-16 03:58:11.134 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 03:58:11.264 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 Summary: total flows: 136, total bytes: 410581, total packets: 1011, avg bps: 866, avg pps: 0, avg bpp: 406 Time window: 2025-11-16 02:55:01 - 2025-11-16 03:58:13 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0040s User: 0.0008s Wall: 0.0023s flows/second: 58977.0 Runtime: 0.0023s