Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-16 23:59:03.510 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:49502 10 6452 1 2025-11-16 23:55:01.834 00:06:00.127 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-17 00:00:03.923 00:00:12.663 TCP 1.101.0.1:3000 -> 23.104.0.1:58840 10 6452 1 2025-11-17 00:01:06.622 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56078 10 6452 1 2025-11-17 00:02:07.021 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:35454 10 6452 1 2025-11-17 00:03:07.421 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34202 10 6452 1 2025-11-17 00:03:35.334 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 00:03:35.181 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 00:03:35.235 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 00:03:35.299 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 00:03:35.319 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 00:04:07.823 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:49606 10 6452 1 2025-11-17 00:00:01.836 00:06:00.123 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-17 00:05:08.231 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:35474 10 6452 1 2025-11-17 00:06:08.639 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60850 10 6452 1 2025-11-17 00:02:01.834 00:06:00.128 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-17 00:07:09.041 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57084 10 6452 1 2025-11-17 00:08:09.444 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:46374 10 6452 1 2025-11-17 00:08:36.043 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 00:08:35.922 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 00:08:35.944 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 00:08:36.196 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 00:08:36.278 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 00:09:09.842 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:58280 10 6452 1 2025-11-17 00:10:10.218 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39106 10 6452 1 2025-11-17 00:11:10.621 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:33346 10 6452 1 2025-11-17 00:07:01.837 00:06:00.123 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-17 00:12:11.055 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56542 10 6452 1 2025-11-17 00:13:11.467 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:36992 10 6452 1 2025-11-17 00:13:35.427 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 00:13:35.244 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 00:13:35.452 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 00:13:35.513 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 00:13:35.597 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 00:09:01.834 00:06:00.128 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-17 00:14:11.900 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:33848 12 6556 1 2025-11-17 00:15:12.307 00:00:10.414 TCP 1.101.0.1:3000 -> 23.104.0.1:52350 11 6504 1 2025-11-17 00:16:12.764 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:48334 10 6452 1 2025-11-17 00:17:13.187 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:51664 10 6452 1 2025-11-17 00:18:13.546 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:37968 10 6452 1 2025-11-17 00:18:35.704 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 00:18:35.544 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 00:18:35.671 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 00:18:35.378 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 00:18:35.621 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 00:14:01.838 00:06:00.124 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-17 00:19:13.943 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:42608 10 6452 1 2025-11-17 00:20:14.317 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:38914 10 6452 1 2025-11-17 00:16:01.836 00:06:00.129 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-17 00:21:14.682 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:60720 10 6452 1 2025-11-17 00:22:15.039 00:00:10.438 TCP 1.101.0.1:3000 -> 23.104.0.1:34172 12 10369 1 2025-11-17 00:23:15.518 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:36234 10 6452 1 2025-11-17 00:23:35.478 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 00:23:35.718 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 00:23:35.598 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 00:23:35.648 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 00:23:35.732 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 00:24:15.881 00:00:10.399 TCP 1.101.0.1:3000 -> 23.104.0.1:60192 10 6452 1 2025-11-17 00:25:16.310 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56448 10 6452 1 2025-11-17 00:21:01.841 00:06:00.124 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-17 00:26:16.713 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:34104 10 6452 1 2025-11-17 00:27:17.115 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:57200 10 6452 1 2025-11-17 00:23:01.838 00:06:00.129 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-17 00:28:17.530 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48624 10 6452 1 2025-11-17 00:28:36.079 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 00:28:36.142 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 00:28:36.093 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 00:28:36.070 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 00:28:36.154 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 00:29:17.939 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:44256 10 6452 1 2025-11-17 00:30:18.356 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:49346 10 6452 1 2025-11-17 00:31:18.759 00:00:10.342 TCP 1.101.0.1:3000 -> 23.104.0.1:35102 10 6452 1 2025-11-17 00:32:19.142 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:46738 10 6452 1 2025-11-17 00:28:01.844 00:06:00.121 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-17 00:33:19.548 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49328 10 6452 1 2025-11-17 00:33:35.881 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 00:33:35.970 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 00:33:35.886 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 00:33:35.747 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 00:33:35.799 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 00:34:19.946 00:00:11.045 TCP 1.101.0.1:3000 -> 23.104.0.1:37142 10 6452 1 2025-11-17 00:30:01.842 00:06:00.128 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-17 00:35:21.032 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:46034 10 6452 1 2025-11-17 00:36:21.439 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:34884 10 6452 1 2025-11-17 00:37:21.849 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:43160 10 6452 1 2025-11-17 00:38:22.274 00:00:10.872 TCP 1.101.0.1:3000 -> 23.104.0.1:45852 10 6452 1 2025-11-17 00:38:36.115 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 00:38:36.065 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 00:38:35.881 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 00:38:36.034 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 00:38:36.117 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 00:39:23.180 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57008 10 6452 1 2025-11-17 00:35:01.845 00:06:00.124 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-17 00:40:23.584 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:59354 10 6452 1 2025-11-17 00:41:24.001 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:59026 10 6452 1 2025-11-17 00:37:01.845 00:06:00.127 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-17 00:42:24.402 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:52636 10 6452 1 2025-11-17 00:43:36.159 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 00:43:24.810 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:40830 10 6452 1 2025-11-17 00:43:35.783 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 00:43:36.005 00:00:00.047 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 00:43:36.097 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 00:43:36.181 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 00:44:25.185 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:45238 10 6452 1 2025-11-17 00:45:25.618 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45218 10 6452 1 2025-11-17 00:46:26.021 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:54500 10 6452 1 2025-11-17 00:42:01.848 00:06:00.122 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-17 00:47:26.429 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:50860 10 6452 1 2025-11-17 00:48:36.336 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 00:48:36.326 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 00:48:26.798 00:00:10.347 TCP 1.101.0.1:3000 -> 23.104.0.1:44644 10 6452 1 2025-11-17 00:48:36.368 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 00:48:36.257 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 00:48:36.253 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 00:44:01.846 00:06:00.128 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-17 00:49:27.190 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:53288 10 6452 1 2025-11-17 00:50:27.594 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:33488 10 6452 1 2025-11-17 00:51:28.010 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:53000 10 6452 1 2025-11-17 00:52:28.371 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:48580 10 6452 1 2025-11-17 00:53:36.782 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 00:53:36.637 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 00:53:36.675 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 00:53:36.784 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 00:53:28.769 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58686 12 6556 1 2025-11-17 00:53:36.866 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 00:49:01.851 00:06:00.121 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-17 00:54:29.172 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:51324 10 6452 1 2025-11-17 00:55:29.574 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:33664 10 6452 1 2025-11-17 00:51:01.849 00:06:00.126 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-17 00:56:29.974 00:00:10.491 TCP 1.101.0.1:3000 -> 23.104.0.1:33170 10 6452 1 2025-11-17 00:57:30.500 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:58224 10 6452 1 2025-11-17 00:58:36.520 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 00:58:36.496 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 00:58:36.262 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 00:58:36.177 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 00:58:36.437 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 00:58:30.907 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:43614 12 6556 1 Summary: total flows: 137, total bytes: 421158, total packets: 1027, avg bps: 882, avg pps: 0, avg bpp: 410 Time window: 2025-11-16 23:55:01 - 2025-11-17 00:58:41 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0030s User: 0.0015s Wall: 0.0021s flows/second: 65208.8 Runtime: 0.0021s