Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-16 13:59:28.700 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58872 10 6452 1 2025-11-16 14:00:29.120 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:44888 10 6452 1 2025-11-16 14:01:29.528 00:00:10.440 TCP 1.101.0.1:3000 -> 23.104.0.1:38824 12 10369 1 2025-11-16 14:02:30.008 00:00:10.558 TCP 1.101.0.1:3000 -> 23.104.0.1:34486 10 6452 1 2025-11-16 13:58:01.642 00:06:00.095 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 14:03:23.334 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 14:03:23.257 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 14:03:23.249 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 14:03:23.103 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 14:03:23.252 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 14:03:30.603 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39968 10 6452 1 2025-11-16 14:04:31.010 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:32768 10 6452 1 2025-11-16 14:00:01.640 00:06:00.101 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 14:05:31.411 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35396 10 6452 1 2025-11-16 14:06:31.817 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58682 10 6452 1 2025-11-16 14:07:32.230 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:44106 10 6452 1 2025-11-16 14:08:23.544 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 14:08:23.542 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 14:08:23.462 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 14:08:23.296 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 14:08:23.531 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 14:08:32.593 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39828 10 6452 1 2025-11-16 14:09:32.998 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:58146 10 6452 1 2025-11-16 14:05:01.642 00:06:00.098 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 14:10:33.423 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:52086 10 6452 1 2025-11-16 14:11:33.836 00:00:10.406 TCP 1.101.0.1:3000 -> 23.104.0.1:50606 12 10375 1 2025-11-16 14:07:01.641 00:06:00.103 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 14:12:34.281 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45060 10 6452 1 2025-11-16 14:13:23.344 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 14:13:23.368 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 14:13:23.491 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 14:13:23.207 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 14:13:23.262 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 14:13:34.685 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:56914 10 6452 1 2025-11-16 14:14:35.108 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40712 10 6452 1 2025-11-16 14:15:35.511 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:53126 10 6452 1 2025-11-16 14:16:35.912 00:00:10.441 TCP 1.101.0.1:3000 -> 23.104.0.1:49512 12 10369 1 2025-11-16 14:12:01.643 00:06:00.098 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 14:17:36.396 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48482 10 6452 1 2025-11-16 14:18:23.505 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 14:18:23.474 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 14:18:23.479 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 14:18:23.610 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 14:18:23.692 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 14:18:36.799 00:00:10.347 TCP 1.101.0.1:3000 -> 23.104.0.1:58280 10 6452 1 2025-11-16 14:14:01.643 00:06:00.103 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 14:19:37.181 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55908 10 6452 1 2025-11-16 14:20:37.585 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:55912 10 6452 1 2025-11-16 14:21:38.003 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:55498 10 6452 1 2025-11-16 14:22:38.411 00:00:10.423 TCP 1.101.0.1:3000 -> 23.104.0.1:35568 10 6452 1 2025-11-16 14:23:23.567 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 14:23:23.642 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 14:23:23.549 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 14:23:23.564 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 14:23:23.485 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 14:23:38.869 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:45686 10 6452 1 2025-11-16 14:19:01.646 00:06:00.097 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 14:24:39.283 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:52054 10 6452 1 2025-11-16 14:25:39.681 00:00:10.463 TCP 1.101.0.1:3000 -> 23.104.0.1:46180 10 6452 1 2025-11-16 14:21:01.644 00:06:00.103 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 14:26:40.185 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:34396 10 6452 1 2025-11-16 14:27:40.592 00:00:10.795 TCP 1.101.0.1:3000 -> 23.104.0.1:46730 10 6452 1 2025-11-16 14:28:23.717 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 14:28:23.787 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 14:28:23.713 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 14:28:23.710 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 14:28:23.795 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 14:28:41.432 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:42090 10 6452 1 2025-11-16 14:29:41.823 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57876 10 6452 1 2025-11-16 14:30:42.225 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:40860 10 6452 1 2025-11-16 14:26:01.648 00:06:00.097 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 14:31:42.623 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:40208 10 6452 1 2025-11-16 14:32:42.988 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:59214 10 6452 1 2025-11-16 14:28:01.646 00:06:00.101 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 14:33:23.927 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 14:33:23.847 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 14:33:23.701 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 14:33:23.531 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 14:33:23.844 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 14:33:43.362 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:51346 10 6452 1 2025-11-16 14:34:43.761 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:57136 10 6452 1 2025-11-16 14:35:44.187 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:44614 10 6452 1 2025-11-16 14:36:44.546 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:50784 10 6452 1 2025-11-16 14:37:44.909 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:55454 12 6556 1 2025-11-16 14:33:01.651 00:06:00.095 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 14:38:23.951 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 14:38:23.874 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 14:38:23.598 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 14:38:23.734 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 14:38:23.867 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 14:38:45.316 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43654 10 6452 1 2025-11-16 14:39:45.724 00:00:10.966 TCP 1.101.0.1:3000 -> 23.104.0.1:37088 10 6452 1 2025-11-16 14:35:01.650 00:06:00.102 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 14:40:46.731 00:00:10.425 TCP 1.101.0.1:3000 -> 23.104.0.1:41648 11 6504 1 2025-11-16 14:41:47.197 00:00:10.442 TCP 1.101.0.1:3000 -> 23.104.0.1:42758 12 10375 1 2025-11-16 14:42:47.673 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:58698 10 6452 1 2025-11-16 14:43:24.217 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 14:43:23.971 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 14:43:23.885 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 14:43:24.131 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 14:43:23.970 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 14:43:48.099 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:43274 10 6452 1 2025-11-16 14:44:48.503 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:43098 10 6452 1 2025-11-16 14:40:01.651 00:06:00.097 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 14:45:48.903 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:36986 10 6452 1 2025-11-16 14:46:49.318 00:00:10.420 TCP 1.101.0.1:3000 -> 23.104.0.1:55368 12 10375 1 2025-11-16 14:42:01.648 00:06:00.103 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 14:47:49.787 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34972 10 6452 1 2025-11-16 14:48:24.001 00:00:00.030 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 14:48:24.005 00:00:00.047 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 14:48:24.013 00:00:00.036 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 14:48:23.802 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 14:48:23.886 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 14:48:50.194 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:36286 10 6452 1 2025-11-16 14:49:50.614 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:40338 10 6452 1 2025-11-16 14:50:50.976 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50438 10 6452 1 2025-11-16 14:51:51.380 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:45448 10 6452 1 2025-11-16 14:47:01.653 00:06:00.097 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 14:52:51.790 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:57928 10 6452 1 2025-11-16 14:53:24.203 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 14:53:24.004 00:00:00.054 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 14:53:23.968 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 14:53:24.270 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 14:53:24.353 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 14:53:52.193 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53924 10 6452 1 2025-11-16 14:49:01.651 00:06:00.102 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 14:54:52.591 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:60430 10 6452 1 2025-11-16 14:55:52.994 00:00:11.069 TCP 1.101.0.1:3000 -> 23.104.0.1:43070 10 6452 1 2025-11-16 14:56:54.115 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41170 10 6452 1 2025-11-16 14:57:54.516 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44794 10 6452 1 2025-11-16 14:58:24.456 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 14:58:24.374 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 14:58:24.375 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 14:58:24.346 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 14:58:24.374 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 Summary: total flows: 135, total bytes: 429323, total packets: 1007, avg bps: 948, avg pps: 0, avg bpp: 426 Time window: 2025-11-16 13:58:01 - 2025-11-16 14:58:24 Total flows processed: 135, passed: 135, Blocks skipped: 0, Bytes read: 14104 Sys: 0.0051s User: 0.0000s Wall: 0.0021s flows/second: 64689.9 Runtime: 0.0021s