Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-16 09:58:47.478 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44378 10 6452 1 2025-11-16 09:59:47.882 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:38766 10 6452 1 2025-11-16 09:55:01.571 00:06:00.076 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 10:00:48.251 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:41802 10 6452 1 2025-11-16 10:01:48.650 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:42770 10 6452 1 2025-11-16 10:02:49.066 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56962 10 6452 1 2025-11-16 10:03:18.433 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 10:03:18.495 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 10:03:18.380 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 10:03:18.434 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 10:03:18.517 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 10:03:49.466 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47730 10 6452 1 2025-11-16 10:04:49.866 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:41072 10 6452 1 2025-11-16 10:00:01.576 00:06:00.069 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 10:05:50.273 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53564 10 6452 1 2025-11-16 10:02:01.574 00:06:00.081 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 10:06:50.680 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49698 10 6452 1 2025-11-16 10:07:51.114 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:38742 10 6452 1 2025-11-16 10:08:18.719 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 10:08:18.595 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 10:08:18.536 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 10:08:18.572 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 10:08:18.636 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 10:08:51.521 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:57376 10 6452 1 2025-11-16 10:09:51.891 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:38172 10 6452 1 2025-11-16 10:10:52.317 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:42514 10 6452 1 2025-11-16 10:07:01.577 00:06:00.078 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 10:11:52.686 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:41914 11 6504 1 2025-11-16 10:12:53.114 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:38832 10 6452 1 2025-11-16 10:13:18.630 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 10:13:18.625 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 10:13:18.768 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 10:13:18.525 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 10:13:18.607 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 10:09:01.574 00:06:00.084 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 10:13:53.519 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39726 10 6452 1 2025-11-16 10:14:53.921 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:49938 10 6452 1 2025-11-16 10:15:54.323 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:34700 10 6452 1 2025-11-16 10:16:54.727 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:51612 10 6452 1 2025-11-16 10:17:55.133 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49350 10 6452 1 2025-11-16 10:18:18.716 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 10:18:18.649 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 10:18:18.685 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 10:18:18.775 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 10:18:18.857 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 10:14:01.578 00:06:00.078 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 10:18:55.533 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58390 10 6452 1 2025-11-16 10:19:55.941 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:51088 10 6452 1 2025-11-16 10:16:01.578 00:06:00.083 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 10:20:56.356 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:49286 10 6452 1 2025-11-16 10:21:56.722 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:37790 10 6452 1 2025-11-16 10:22:57.105 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:35418 10 6452 1 2025-11-16 10:23:18.788 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 10:23:18.861 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 10:23:18.521 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 10:23:18.909 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 10:23:18.992 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 10:23:57.515 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56732 10 6452 1 2025-11-16 10:24:57.919 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:58698 10 6452 1 2025-11-16 10:21:01.580 00:06:00.079 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 10:25:58.331 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53654 10 6452 1 2025-11-16 10:26:58.741 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:45426 10 6452 1 2025-11-16 10:23:01.577 00:06:00.083 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 10:27:59.147 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:47958 10 6452 1 2025-11-16 10:28:19.180 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 10:28:19.168 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 10:28:19.254 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 10:28:19.166 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 10:28:19.097 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 10:28:59.565 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40574 10 6452 1 2025-11-16 10:29:59.973 00:00:10.405 TCP 1.101.0.1:3000 -> 23.104.0.1:49880 10 6452 1 2025-11-16 10:31:00.428 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:37286 10 6452 1 2025-11-16 10:32:00.847 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:54800 10 6452 1 2025-11-16 10:28:01.581 00:06:00.088 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 10:33:01.277 00:00:10.929 TCP 1.101.0.1:3000 -> 23.104.0.1:42240 10 6452 1 2025-11-16 10:33:19.622 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 10:33:19.578 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 10:33:19.533 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 10:33:19.617 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 10:33:19.701 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 10:34:02.241 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:41398 10 6452 1 2025-11-16 10:30:01.580 00:06:00.092 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 10:35:02.648 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48808 10 6452 1 2025-11-16 10:36:03.058 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:45820 10 6452 1 2025-11-16 10:37:03.426 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:50460 10 6452 1 2025-11-16 10:38:03.791 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50728 10 6452 1 2025-11-16 10:38:19.192 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 10:38:19.103 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 10:38:19.160 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 10:38:18.963 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 10:38:19.111 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 10:39:04.193 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:46468 10 6452 1 2025-11-16 10:35:01.582 00:06:00.088 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 10:40:04.556 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:37186 10 6452 1 2025-11-16 10:41:04.918 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:36926 10 6452 1 2025-11-16 10:37:01.580 00:06:00.093 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 10:42:05.318 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56768 10 6452 1 2025-11-16 10:43:19.046 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 10:43:19.114 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 10:43:05.724 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:37518 10 6452 1 2025-11-16 10:43:19.284 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 10:43:19.176 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 10:43:19.367 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 10:44:06.132 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58566 10 6452 1 2025-11-16 10:45:06.542 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:58258 10 6452 1 2025-11-16 10:46:06.946 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:49652 10 6452 1 2025-11-16 10:42:01.584 00:06:00.089 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 10:47:07.376 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:44938 10 6452 1 2025-11-16 10:48:19.267 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 10:48:19.366 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 10:48:19.217 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 10:48:19.528 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 10:48:07.775 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:42634 10 6452 1 2025-11-16 10:48:19.611 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 10:44:01.583 00:06:00.092 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 10:49:08.184 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:41682 10 6452 1 2025-11-16 10:50:08.587 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44468 10 6452 1 2025-11-16 10:51:08.989 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:46178 10 6452 1 2025-11-16 10:52:09.354 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:50938 10 6452 1 2025-11-16 10:53:19.348 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 10:53:19.449 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 10:53:19.372 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 10:53:19.254 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 10:53:19.264 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 10:53:09.754 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:40578 10 6452 1 2025-11-16 10:49:01.587 00:06:00.088 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 10:54:10.172 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53846 10 6452 1 2025-11-16 10:55:10.579 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38480 10 6452 1 2025-11-16 10:51:01.585 00:06:00.093 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 10:56:10.982 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:53116 10 6452 1 2025-11-16 10:57:11.356 00:00:10.403 TCP 1.101.0.1:3000 -> 23.104.0.1:36502 12 10375 1 2025-11-16 10:58:19.686 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 10:58:19.555 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 10:58:19.418 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 10:58:19.602 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 10:58:19.564 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 10:58:11.797 00:00:10.409 TCP 1.101.0.1:3000 -> 23.104.0.1:44924 10 6452 1 Summary: total flows: 137, total bytes: 420852, total packets: 1021, avg bps: 885, avg pps: 0, avg bpp: 412 Time window: 2025-11-16 09:55:01 - 2025-11-16 10:58:22 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0031s User: 0.0020s Wall: 0.0037s flows/second: 37156.1 Runtime: 0.0037s