Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-16 15:59:27.239 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:33176 10 7079 1 2025-11-16 16:00:27.636 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50270 10 7079 1 2025-11-16 16:01:28.060 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:56996 10 7079 1 2025-11-16 15:57:01.680 00:06:00.100 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 16:02:28.495 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36900 10 7079 1 2025-11-16 16:03:25.891 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 16:03:25.960 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 16:03:25.814 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 16:03:25.765 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 16:03:25.848 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 16:03:28.897 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:59238 12 7183 1 2025-11-16 15:59:01.679 00:06:00.106 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 16:04:29.314 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59444 10 7079 1 2025-11-16 16:05:29.718 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:37808 10 7079 1 2025-11-16 16:06:30.127 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:36714 10 7079 1 2025-11-16 16:07:30.535 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:44308 10 7079 1 2025-11-16 16:08:25.795 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 16:08:25.788 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 16:08:25.772 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 16:08:25.798 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 16:08:25.882 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 16:08:30.942 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:36656 10 7079 1 2025-11-16 16:04:01.683 00:06:00.101 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 16:09:31.363 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:57728 10 7079 1 2025-11-16 16:10:31.732 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:34740 12 7183 1 2025-11-16 16:06:01.679 00:06:00.107 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 16:11:32.139 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47602 10 7079 1 2025-11-16 16:12:32.541 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50696 10 7079 1 2025-11-16 16:13:25.874 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 16:13:25.790 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 16:13:25.961 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 16:13:25.919 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 16:13:25.801 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 16:13:32.951 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:44900 10 7079 1 2025-11-16 16:14:33.368 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47210 10 7079 1 2025-11-16 16:15:33.770 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:54406 10 7079 1 2025-11-16 16:11:01.683 00:06:00.101 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 16:16:34.175 00:00:10.444 TCP 1.101.0.1:3000 -> 23.104.0.1:56310 12 10375 1 2025-11-16 16:17:34.658 00:00:10.434 TCP 1.101.0.1:3000 -> 23.104.0.1:49892 10 6452 1 2025-11-16 16:13:01.682 00:06:00.105 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 16:18:26.156 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 16:18:26.138 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 16:18:26.011 00:00:00.039 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 16:18:26.027 00:00:00.028 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 16:18:26.092 00:00:00.040 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 16:18:35.133 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39468 10 6452 1 2025-11-16 16:19:35.534 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59344 10 6452 1 2025-11-16 16:20:35.934 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:41062 10 6452 1 2025-11-16 16:21:36.349 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:37470 10 6452 1 2025-11-16 16:22:36.711 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39676 10 6452 1 2025-11-16 16:18:01.685 00:06:00.101 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 16:23:26.458 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 16:23:26.431 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 16:23:26.378 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 16:23:26.386 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 16:23:26.376 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 16:23:37.113 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35906 10 6452 1 2025-11-16 16:24:37.517 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:46270 10 6452 1 2025-11-16 16:20:01.684 00:06:00.107 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 16:25:37.915 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:45838 10 6452 1 2025-11-16 16:26:38.292 00:00:10.402 TCP 1.101.0.1:3000 -> 23.104.0.1:33048 10 6452 1 2025-11-16 16:27:38.715 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56752 10 6452 1 2025-11-16 16:28:26.127 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 16:28:26.296 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 16:28:26.144 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 16:28:26.256 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 16:28:26.339 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 16:28:39.117 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:53258 10 6452 1 2025-11-16 16:29:39.516 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:53516 10 6452 1 2025-11-16 16:25:01.685 00:06:00.104 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 16:30:39.933 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:38174 10 6452 1 2025-11-16 16:31:40.361 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58912 10 6452 1 2025-11-16 16:27:01.686 00:06:00.106 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 16:32:40.760 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:45266 10 6452 1 2025-11-16 16:33:26.261 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 16:33:26.266 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 16:33:26.059 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 16:33:26.310 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 16:33:26.393 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 16:33:41.172 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:35524 10 6452 1 2025-11-16 16:34:41.534 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:49142 10 6452 1 2025-11-16 16:35:41.942 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:33526 10 6452 1 2025-11-16 16:36:42.355 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:49020 10 6452 1 2025-11-16 16:32:01.688 00:06:00.102 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 16:37:42.718 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:53002 10 6452 1 2025-11-16 16:38:26.543 00:00:00.030 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 16:38:26.207 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 16:38:26.403 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 16:38:26.460 00:00:00.030 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 16:38:26.427 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 16:38:43.140 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:35272 10 6452 1 2025-11-16 16:34:01.687 00:06:00.110 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 16:39:43.534 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56746 10 6452 1 2025-11-16 16:40:43.936 00:00:10.342 TCP 1.101.0.1:3000 -> 23.104.0.1:55646 10 6452 1 2025-11-16 16:41:44.320 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:37210 10 6452 1 2025-11-16 16:42:44.719 00:00:10.356 TCP 1.101.0.1:3000 -> 23.104.0.1:45570 10 6452 1 2025-11-16 16:43:26.482 00:00:00.027 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 16:43:26.342 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 16:43:26.511 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 16:43:26.346 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 16:43:26.428 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 16:43:45.119 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41446 10 6452 1 2025-11-16 16:39:01.692 00:06:00.103 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 16:44:45.526 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:48638 10 6452 1 2025-11-16 16:45:45.889 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:59328 12 6556 1 2025-11-16 16:41:01.688 00:06:00.110 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 16:46:46.317 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:56594 10 6452 1 2025-11-16 16:47:46.683 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:52438 10 6452 1 2025-11-16 16:48:26.622 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 16:48:26.501 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 16:48:26.502 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 16:48:26.570 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 16:48:26.653 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 16:48:47.114 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:47644 10 6452 1 2025-11-16 16:49:47.523 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:33510 10 6452 1 2025-11-16 16:50:47.885 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:33558 12 6556 1 2025-11-16 16:46:01.693 00:06:00.104 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 16:51:48.314 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:52124 10 6452 1 2025-11-16 16:52:48.725 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:58438 10 6452 1 2025-11-16 16:48:01.691 00:06:00.107 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 16:53:26.748 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 16:53:26.757 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 16:53:26.484 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 16:53:26.676 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 16:53:26.759 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 16:53:49.143 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:46090 10 6452 1 2025-11-16 16:54:49.575 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:37296 10 6452 1 2025-11-16 16:55:49.938 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:38694 10 6452 1 2025-11-16 16:56:50.353 00:00:10.699 TCP 1.101.0.1:3000 -> 23.104.0.1:46866 10 6452 1 2025-11-16 16:57:51.126 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:44158 10 6452 1 2025-11-16 16:53:01.696 00:06:00.104 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 16:58:27.264 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 16:58:26.798 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 16:58:26.810 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 16:58:27.107 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 16:58:27.187 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 Summary: total flows: 136, total bytes: 425423, total packets: 1018, avg bps: 914, avg pps: 0, avg bpp: 417 Time window: 2025-11-16 15:57:01 - 2025-11-16 16:59:01 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0043s User: 0.0011s Wall: 0.0021s flows/second: 64121.6 Runtime: 0.0021s