Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-16 06:59:19.362 00:00:18.307 TCP 1.101.0.1:3000 -> 23.104.0.1:40492 10 6452 1 2025-11-16 07:00:27.739 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:37338 10 6452 1 2025-11-16 07:01:28.148 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:32906 10 6452 1 2025-11-16 07:02:28.512 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49686 10 6452 1 2025-11-16 06:58:01.516 00:06:00.064 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 07:03:14.903 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 07:03:14.898 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 07:03:14.819 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 07:03:14.676 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 07:03:14.820 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 07:03:28.914 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54016 10 6452 1 2025-11-16 07:04:29.323 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:52856 10 6452 1 2025-11-16 07:00:01.515 00:06:00.068 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 07:05:29.732 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:50934 10 6452 1 2025-11-16 07:06:30.141 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47366 10 6452 1 2025-11-16 07:07:30.547 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40776 10 6452 1 2025-11-16 07:08:14.708 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 07:08:14.970 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 07:08:14.820 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 07:08:14.952 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 07:08:14.903 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 07:08:30.949 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:33654 10 6452 1 2025-11-16 07:09:31.364 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:55090 10 6452 1 2025-11-16 07:05:01.524 00:06:00.060 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 07:10:31.733 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:41284 10 6452 1 2025-11-16 07:11:32.143 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:33006 10 6452 1 2025-11-16 07:07:01.522 00:06:00.065 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 07:12:32.541 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42042 10 6452 1 2025-11-16 07:13:14.824 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 07:13:14.829 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 07:13:14.865 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 07:13:14.929 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 07:13:15.012 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 07:13:32.944 00:00:10.398 TCP 1.101.0.1:3000 -> 23.104.0.1:56996 10 6452 1 2025-11-16 07:14:33.393 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:55164 10 6452 1 2025-11-16 07:15:33.820 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50968 10 6452 1 2025-11-16 07:16:34.228 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:49130 10 6452 1 2025-11-16 07:12:01.526 00:06:00.058 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 07:17:34.644 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36812 10 6452 1 2025-11-16 07:18:14.975 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 07:18:14.982 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 07:18:15.051 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 07:18:14.983 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 07:18:15.067 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 07:18:35.055 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:52960 10 6452 1 2025-11-16 07:14:01.525 00:06:00.063 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 07:19:35.465 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48900 10 6452 1 2025-11-16 07:20:35.868 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:39918 10 6452 1 2025-11-16 07:21:36.237 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54416 10 6452 1 2025-11-16 07:22:36.642 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56022 10 6452 1 2025-11-16 07:23:15.659 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 07:23:15.368 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 07:23:15.379 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 07:23:15.564 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 07:23:15.577 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 07:23:37.041 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40620 10 6452 1 2025-11-16 07:19:01.527 00:06:00.060 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 07:24:37.443 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:41814 10 6452 1 2025-11-16 07:25:37.808 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:59786 10 6452 1 2025-11-16 07:21:01.525 00:06:00.064 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 07:26:38.214 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:40320 10 6452 1 2025-11-16 07:27:38.620 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:43178 10 6452 1 2025-11-16 07:28:15.323 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 07:28:15.375 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 07:28:15.353 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 07:28:15.249 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 07:28:15.332 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 07:28:39.026 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36630 10 6452 1 2025-11-16 07:29:39.430 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33242 10 6452 1 2025-11-16 07:30:39.836 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:40522 10 6452 1 2025-11-16 07:26:01.530 00:06:00.058 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 07:31:40.258 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:39390 10 6452 1 2025-11-16 07:32:40.666 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:38522 10 6452 1 2025-11-16 07:28:01.530 00:06:00.062 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 07:33:15.328 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 07:33:15.427 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 07:33:15.251 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 07:33:15.278 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 07:33:15.243 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 07:33:41.099 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:43944 10 6452 1 2025-11-16 07:34:41.503 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56912 10 6452 1 2025-11-16 07:35:41.902 00:00:10.348 TCP 1.101.0.1:3000 -> 23.104.0.1:57308 10 6452 1 2025-11-16 07:36:42.318 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45530 10 6452 1 2025-11-16 07:37:42.728 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:59246 10 6452 1 2025-11-16 07:33:01.531 00:06:00.058 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 07:38:15.716 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 07:38:15.685 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 07:38:15.635 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 07:38:15.635 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 07:38:15.632 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 07:38:43.138 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:58894 10 6452 1 2025-11-16 07:39:43.506 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:47538 10 6452 1 2025-11-16 07:35:01.530 00:06:00.062 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 07:40:43.910 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57726 10 6452 1 2025-11-16 07:41:44.308 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43374 10 6452 1 2025-11-16 07:42:44.716 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:45868 10 6452 1 2025-11-16 07:43:15.685 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 07:43:15.684 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 07:43:15.680 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 07:43:15.738 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 07:43:15.821 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 07:43:45.110 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59974 10 6452 1 2025-11-16 07:44:45.515 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:48448 10 6452 1 2025-11-16 07:40:01.533 00:06:00.058 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 07:45:45.928 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:36110 10 6452 1 2025-11-16 07:46:46.335 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33334 10 6452 1 2025-11-16 07:42:01.531 00:06:00.064 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 07:47:46.741 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:45380 11 6492 1 2025-11-16 07:48:15.997 00:00:00.045 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 07:48:15.808 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 07:48:15.780 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 07:48:15.806 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 07:48:15.892 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 07:48:47.144 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:36730 10 6452 1 2025-11-16 07:49:47.555 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56948 10 6452 1 2025-11-16 07:50:47.962 00:00:10.535 TCP 1.101.0.1:3000 -> 23.104.0.1:53924 10 6452 1 2025-11-16 07:51:48.546 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:51030 10 6452 1 2025-11-16 07:47:01.534 00:06:00.059 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 07:52:48.903 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:53302 10 6452 1 2025-11-16 07:53:15.741 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 07:53:15.660 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 07:53:15.649 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 07:53:15.913 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 07:53:15.997 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 07:53:49.316 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48866 10 6452 1 2025-11-16 07:49:01.532 00:06:00.066 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 07:54:49.718 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:38430 10 6452 1 2025-11-16 07:55:50.133 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:50112 10 6452 1 2025-11-16 07:56:50.531 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:35932 10 6452 1 2025-11-16 07:57:50.938 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:39374 10 6452 1 2025-11-16 07:58:16.189 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 07:58:16.202 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 07:58:15.917 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 07:58:16.196 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 07:58:16.280 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 Summary: total flows: 135, total bytes: 409604, total packets: 995, avg bps: 906, avg pps: 0, avg bpp: 411 Time window: 2025-11-16 06:58:01 - 2025-11-16 07:58:16 Total flows processed: 135, passed: 135, Blocks skipped: 0, Bytes read: 14104 Sys: 0.0074s User: 0.0000s Wall: 0.0020s flows/second: 66772.5 Runtime: 0.0021s