Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-16 10:59:12.243 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40058 10 6452 1 2025-11-16 11:00:12.648 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:41870 10 6452 1 2025-11-16 10:56:01.587 00:06:00.088 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 11:01:13.071 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:39190 10 6452 1 2025-11-16 11:02:13.441 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53442 10 6452 1 2025-11-16 10:58:01.587 00:06:00.092 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 11:03:19.693 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 11:03:19.776 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 11:03:19.478 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 11:03:19.814 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 11:03:19.897 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 11:03:13.840 00:00:10.352 TCP 1.101.0.1:3000 -> 23.104.0.1:53912 10 6452 1 2025-11-16 11:04:14.223 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:47492 10 6452 1 2025-11-16 11:05:14.630 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57240 10 6452 1 2025-11-16 11:06:15.033 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:45664 10 6452 1 2025-11-16 11:07:15.442 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39854 10 6452 1 2025-11-16 11:03:01.590 00:06:00.087 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 11:08:19.714 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 11:08:19.806 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 11:08:19.804 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 11:08:19.608 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 11:08:19.889 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 11:08:15.842 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:55308 10 6452 1 2025-11-16 11:09:16.269 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55010 10 6452 1 2025-11-16 11:05:01.588 00:06:00.092 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 11:10:16.673 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53124 10 6452 1 2025-11-16 11:11:17.089 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:52556 10 6452 1 2025-11-16 11:12:17.450 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:42282 12 6556 1 2025-11-16 11:13:19.936 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 11:13:19.815 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 11:13:20.019 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 11:13:20.195 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 11:13:20.156 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 11:13:17.857 00:00:10.409 TCP 1.101.0.1:3000 -> 23.104.0.1:33696 10 6452 1 2025-11-16 11:14:18.304 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:57870 10 6452 1 2025-11-16 11:10:01.592 00:06:00.086 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 11:15:18.687 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:34946 10 6452 1 2025-11-16 11:16:19.111 00:00:10.440 TCP 1.101.0.1:3000 -> 23.104.0.1:39100 12 10369 1 2025-11-16 11:12:01.590 00:06:00.091 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 11:17:19.591 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:33284 10 6452 1 2025-11-16 11:18:19.748 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 11:18:19.941 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 11:18:19.764 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 11:18:20.045 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 11:18:20.129 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 11:18:19.994 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33512 10 6452 1 2025-11-16 11:19:20.400 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34826 10 6452 1 2025-11-16 11:20:20.800 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:49034 10 6452 1 2025-11-16 11:21:21.199 00:00:10.659 TCP 1.101.0.1:3000 -> 23.104.0.1:42748 10 6452 1 2025-11-16 11:17:01.594 00:06:00.086 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 11:22:21.896 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:57524 12 6556 1 2025-11-16 11:23:19.915 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 11:23:20.273 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 11:23:20.184 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 11:23:20.076 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 11:23:20.191 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 11:23:22.310 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:55230 10 6452 1 2025-11-16 11:19:01.593 00:06:00.090 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 11:24:22.721 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:35158 10 6452 1 2025-11-16 11:25:23.131 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:47928 10 6452 1 2025-11-16 11:26:23.536 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:38490 10 6452 1 2025-11-16 11:27:23.935 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:40276 10 6452 1 2025-11-16 11:28:19.924 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 11:28:20.208 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 11:28:20.125 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 11:28:20.236 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 11:28:20.125 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 11:28:24.355 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:50108 10 6452 1 2025-11-16 11:24:01.596 00:06:00.088 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 11:29:24.766 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:33980 10 6452 1 2025-11-16 11:30:25.179 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47108 10 6452 1 2025-11-16 11:26:01.594 00:06:00.094 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 11:31:25.581 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:36088 10 6452 1 2025-11-16 11:32:25.944 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:39966 10 6452 1 2025-11-16 11:33:21.497 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 11:33:21.335 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 11:33:21.237 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 11:33:21.414 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 11:33:21.053 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 11:33:26.356 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:40104 10 6452 1 2025-11-16 11:34:26.727 00:00:11.321 TCP 1.101.0.1:3000 -> 23.104.0.1:55852 10 6452 1 2025-11-16 11:35:28.111 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51164 10 6452 1 2025-11-16 11:31:01.597 00:06:00.090 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 11:36:28.514 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39534 10 6452 1 2025-11-16 11:37:28.925 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:35530 10 6452 1 2025-11-16 11:33:01.594 00:06:00.096 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 11:38:20.415 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 11:38:20.169 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 11:38:20.260 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 11:38:20.290 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 11:38:20.332 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 11:38:29.336 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:52996 10 6452 1 2025-11-16 11:39:29.700 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49176 10 6452 1 2025-11-16 11:40:30.106 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:58174 10 6452 1 2025-11-16 11:41:30.467 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41852 10 6452 1 2025-11-16 11:42:30.868 00:00:10.355 TCP 1.101.0.1:3000 -> 23.104.0.1:45706 10 6452 1 2025-11-16 11:38:01.599 00:06:00.092 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 11:43:20.965 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 11:43:20.768 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 11:43:20.789 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 11:43:20.734 00:00:00.031 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 11:43:20.816 00:00:00.031 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 11:43:31.237 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:44798 11 6504 1 2025-11-16 11:44:31.654 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:37414 10 6452 1 2025-11-16 11:40:01.597 00:06:00.097 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 11:45:32.065 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55628 10 6452 1 2025-11-16 11:46:32.468 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43774 10 6452 1 2025-11-16 11:47:32.877 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48080 10 6452 1 2025-11-16 11:48:20.696 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 11:48:20.654 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 11:48:20.473 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 11:48:20.319 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 11:48:20.613 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 11:48:33.286 00:00:10.653 TCP 1.101.0.1:3000 -> 23.104.0.1:44838 10 6452 1 2025-11-16 11:49:33.973 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:36330 10 6452 1 2025-11-16 11:45:01.603 00:06:00.091 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 11:50:34.334 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:58712 10 6452 1 2025-11-16 11:51:34.738 00:00:10.444 TCP 1.101.0.1:3000 -> 23.104.0.1:33658 12 10375 1 2025-11-16 11:47:01.601 00:06:00.097 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 11:52:35.225 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:54436 10 6452 1 2025-11-16 11:53:20.702 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 11:53:20.548 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 11:53:20.736 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 11:53:20.493 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 11:53:20.619 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 11:53:35.653 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:37320 10 6452 1 2025-11-16 11:54:36.009 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:34998 10 6452 1 2025-11-16 11:55:36.411 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39542 10 6452 1 2025-11-16 11:56:36.819 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:55882 10 6452 1 2025-11-16 11:52:01.605 00:06:00.091 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 11:57:37.194 00:00:10.423 TCP 1.101.0.1:3000 -> 23.104.0.1:58652 10 6452 1 2025-11-16 11:58:20.700 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 11:58:20.729 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 11:58:20.616 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 11:58:20.646 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 11:58:20.617 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 11:58:37.665 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:48542 10 6452 1 Summary: total flows: 137, total bytes: 424977, total packets: 1027, avg bps: 902, avg pps: 0, avg bpp: 413 Time window: 2025-11-16 10:56:01 - 2025-11-16 11:58:48 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0038s User: 0.0019s Wall: 0.0019s flows/second: 70984.5 Runtime: 0.0020s