Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-17 10:59:15.557 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:32884 10 6452 1 2025-11-17 11:00:15.958 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:45098 10 6452 1 2025-11-17 11:01:16.366 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:38870 10 6452 1 2025-11-17 10:57:02.066 00:06:00.130 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-17 11:02:16.730 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:53020 10 6452 1 2025-11-17 11:03:17.144 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:33698 10 6452 1 2025-11-17 11:03:48.736 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 11:03:48.692 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 11:03:48.434 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 11:03:48.604 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 11:03:48.652 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 10:59:02.064 00:06:00.135 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-17 11:04:17.511 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:33056 10 6452 1 2025-11-17 11:05:17.921 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:41638 10 6452 1 2025-11-17 11:06:18.333 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:35036 10 6452 1 2025-11-17 11:07:18.729 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:39322 10 6452 1 2025-11-17 11:08:19.142 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:34018 10 6452 1 2025-11-17 11:08:48.623 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 11:08:48.544 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 11:08:48.666 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 11:08:48.483 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 11:08:48.539 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 11:04:02.068 00:06:00.137 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-17 11:09:19.560 00:00:10.832 TCP 1.101.0.1:3000 -> 23.104.0.1:38504 10 6452 1 2025-11-17 11:10:20.431 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:40718 10 6452 1 2025-11-17 11:06:02.065 00:06:00.143 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-17 11:11:20.835 00:00:10.394 TCP 1.101.0.1:3000 -> 23.104.0.1:53012 10 6452 1 2025-11-17 11:12:21.268 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:45332 10 6452 1 2025-11-17 11:13:21.673 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:35484 10 6452 1 2025-11-17 11:13:48.636 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 11:13:48.414 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 11:13:48.789 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 11:13:48.795 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 11:13:48.874 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 11:14:22.099 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:60106 10 6452 1 2025-11-17 11:15:22.508 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:35192 10 6452 1 2025-11-17 11:11:02.068 00:06:00.141 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-17 11:16:22.907 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:39024 12 6556 1 2025-11-17 11:17:23.314 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:40044 10 6452 1 2025-11-17 11:13:02.068 00:06:00.145 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-17 11:18:23.719 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:33714 10 6452 1 2025-11-17 11:18:49.026 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 11:18:48.795 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 11:18:48.942 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 11:18:48.958 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 11:18:48.943 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 11:19:24.133 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:42378 10 6452 1 2025-11-17 11:20:24.532 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43818 10 6452 1 2025-11-17 11:21:24.934 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:38382 10 6452 1 2025-11-17 11:22:25.369 00:00:10.452 TCP 1.101.0.1:3000 -> 23.104.0.1:55448 13 14164 1 2025-11-17 11:18:02.074 00:06:00.138 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-17 11:23:25.863 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:38162 10 6661 1 2025-11-17 11:23:48.766 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 11:23:48.774 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 11:23:48.817 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 11:23:48.911 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 11:23:48.994 00:00:00.027 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 11:24:26.281 00:00:10.393 TCP 1.101.0.1:3000 -> 23.104.0.1:33008 10 6661 1 2025-11-17 11:20:02.073 00:06:00.143 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-17 11:25:26.710 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:53190 10 6661 1 2025-11-17 11:26:27.096 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48278 10 6661 1 2025-11-17 11:27:27.510 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:42288 10 6661 1 2025-11-17 11:28:27.872 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37572 12 6765 1 2025-11-17 11:28:48.857 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 11:28:48.991 00:00:00.047 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 11:28:48.771 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 11:28:48.710 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 11:28:48.939 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 11:29:28.280 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48134 10 6661 1 2025-11-17 11:25:02.075 00:06:00.137 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-17 11:30:28.682 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:41934 10 6661 1 2025-11-17 11:31:29.107 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57460 10 6661 1 2025-11-17 11:27:02.075 00:06:00.144 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-17 11:32:29.514 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56932 10 6661 1 2025-11-17 11:33:49.067 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 11:33:29.912 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41522 12 6765 1 2025-11-17 11:33:48.980 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 11:33:48.969 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 11:33:49.188 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 11:33:48.984 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 11:34:30.314 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:46430 10 6661 1 2025-11-17 11:35:30.680 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:54946 10 6661 1 2025-11-17 11:36:31.109 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52396 10 6661 1 2025-11-17 11:32:02.075 00:06:00.141 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-17 11:37:31.516 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:48094 10 6661 1 2025-11-17 11:38:31.919 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:45468 10 6661 1 2025-11-17 11:38:49.112 00:00:00.030 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 11:38:49.276 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 11:38:49.167 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 11:38:49.205 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 11:38:49.288 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 11:34:02.074 00:06:00.145 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-17 11:39:32.296 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:37034 10 6661 1 2025-11-17 11:40:32.657 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:54202 10 6661 1 2025-11-17 11:41:33.068 00:00:10.916 TCP 1.101.0.1:3000 -> 23.104.0.1:43540 10 6661 1 2025-11-17 11:42:34.030 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:58356 10 6661 1 2025-11-17 11:43:34.429 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51942 10 6661 1 2025-11-17 11:43:49.405 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 11:43:49.237 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 11:43:49.168 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 11:43:49.197 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 11:43:49.322 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 11:39:02.077 00:06:00.143 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-17 11:44:34.831 00:00:10.751 TCP 1.101.0.1:3000 -> 23.104.0.1:50614 10 6661 1 2025-11-17 11:45:35.620 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:57702 10 6661 1 2025-11-17 11:41:02.075 00:06:00.148 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-17 11:46:35.984 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:40608 10 6661 1 2025-11-17 11:47:36.390 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:33274 10 6661 1 2025-11-17 11:48:36.800 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35274 10 6661 1 2025-11-17 11:48:49.298 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 11:48:49.229 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 11:48:49.290 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 11:48:49.380 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 11:48:49.373 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 11:49:37.204 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:55140 10 6661 1 2025-11-17 11:50:37.622 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:57278 10 6661 1 2025-11-17 11:46:02.079 00:06:00.148 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-17 11:51:38.022 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60972 10 6661 1 2025-11-17 11:52:38.423 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52806 10 6661 1 2025-11-17 11:48:02.076 00:06:00.152 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-17 11:53:49.400 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 11:53:49.323 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 11:53:49.274 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 11:53:38.829 00:00:10.342 TCP 1.101.0.1:3000 -> 23.104.0.1:39688 10 6661 1 2025-11-17 11:53:49.467 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 11:53:49.549 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 11:54:39.239 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41794 10 6661 1 2025-11-17 11:55:39.653 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:50338 10 6661 1 2025-11-17 11:56:40.099 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:39992 10 6661 1 2025-11-17 11:57:40.501 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:57770 10 6661 1 2025-11-17 11:53:02.081 00:06:00.146 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-17 11:58:49.584 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 11:58:49.586 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 11:58:49.329 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 11:58:49.591 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 11:58:49.674 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 Summary: total flows: 136, total bytes: 425764, total packets: 1017, avg bps: 915, avg pps: 0, avg bpp: 418 Time window: 2025-11-17 10:57:02 - 2025-11-17 11:59:02 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0049s User: 0.0010s Wall: 0.0022s flows/second: 61989.3 Runtime: 0.0022s