Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-22 15:59:02.591 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:47172 10 6661 1 2025-11-22 16:00:02.950 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:49772 10 6661 1 2025-11-22 15:57:04.628 00:05:00.458 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-22 16:01:03.368 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58530 10 6661 1 2025-11-22 16:01:20.287 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 16:01:20.665 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 16:01:20.502 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 16:01:20.555 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 16:01:20.639 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 15:58:04.626 00:05:00.463 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-22 16:02:03.775 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55344 10 6661 1 2025-11-22 16:03:04.180 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:44460 10 6661 1 2025-11-22 16:04:04.539 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:34528 10 6661 1 2025-11-22 16:05:04.902 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:50686 10 6661 1 2025-11-22 16:06:05.320 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:57044 10 6661 1 2025-11-22 16:06:20.604 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 16:06:20.598 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 16:06:20.334 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 16:06:20.610 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 16:06:20.693 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 16:03:04.628 00:05:00.458 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-22 16:07:05.720 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:43536 10 6661 1 2025-11-22 16:04:04.627 00:05:00.463 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-22 16:08:06.148 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:54258 10 6661 1 2025-11-22 16:09:06.560 00:00:10.400 TCP 1.101.0.1:3000 -> 23.104.0.1:57456 12 10578 1 2025-11-22 16:10:06.995 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33938 10 6661 1 2025-11-22 16:11:07.401 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:33844 10 6661 1 2025-11-22 16:11:20.748 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 16:11:20.944 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 16:11:20.809 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 16:11:20.741 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 16:11:20.824 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 16:12:07.817 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35522 10 6661 1 2025-11-22 16:09:04.630 00:05:00.460 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-22 16:13:08.221 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:40688 10 6661 1 2025-11-22 16:10:04.626 00:05:00.466 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-22 16:14:08.621 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:51770 10 6661 1 2025-11-22 16:15:09.026 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:38630 10 6661 1 2025-11-22 16:16:09.433 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:59746 10 6661 1 2025-11-22 16:16:20.838 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 16:16:20.758 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 16:16:20.766 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 16:16:20.755 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 16:16:20.757 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 16:17:09.801 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:58866 10 6661 1 2025-11-22 16:18:10.205 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60956 10 6661 1 2025-11-22 16:15:04.632 00:05:00.459 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-22 16:19:10.599 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53240 10 6661 1 2025-11-22 16:16:04.628 00:05:00.465 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-22 16:20:11.004 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:45464 10 6661 1 2025-11-22 16:21:21.187 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 16:21:20.763 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 16:21:20.989 00:00:00.037 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 16:21:11.370 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48484 10 6661 1 2025-11-22 16:21:21.122 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 16:21:21.072 00:00:00.036 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 16:22:11.769 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:39212 10 6661 1 2025-11-22 16:23:12.180 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:54038 10 6661 1 2025-11-22 16:24:12.597 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43192 10 6661 1 2025-11-22 16:21:04.631 00:05:00.466 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-22 16:25:13.007 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:34898 10 6661 1 2025-11-22 16:22:04.630 00:05:00.471 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-22 16:26:21.319 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 16:26:21.237 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 16:26:13.444 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45930 10 6661 1 2025-11-22 16:26:20.785 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 16:26:21.181 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 16:26:20.943 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 16:27:13.848 00:00:10.351 TCP 1.101.0.1:3000 -> 23.104.0.1:58526 10 6661 1 2025-11-22 16:28:14.236 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:52448 10 6661 1 2025-11-22 16:29:14.631 00:00:10.443 TCP 1.101.0.1:3000 -> 23.104.0.1:35078 12 10369 1 2025-11-22 16:30:15.113 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:45276 10 6452 1 2025-11-22 16:27:04.632 00:05:00.466 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-22 16:31:20.977 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 16:31:21.102 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 16:31:20.774 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 16:31:21.171 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 16:31:21.253 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 16:31:15.473 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:41764 10 6452 1 2025-11-22 16:28:04.631 00:05:00.471 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-22 16:32:15.837 00:00:10.607 TCP 1.101.0.1:3000 -> 23.104.0.1:51260 10 6452 1 2025-11-22 16:33:16.480 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43684 10 6452 1 2025-11-22 16:34:16.879 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33052 10 6452 1 2025-11-22 16:35:17.282 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:42242 10 6452 1 2025-11-22 16:36:21.403 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 16:36:21.241 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 16:36:21.486 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 16:36:20.925 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 16:36:21.320 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 16:36:17.690 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36014 10 6452 1 2025-11-22 16:33:04.635 00:05:00.467 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-22 16:37:18.113 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:56130 10 6452 1 2025-11-22 16:34:04.632 00:05:00.472 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-22 16:38:18.522 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:32982 10 6452 1 2025-11-22 16:39:18.921 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35740 10 6452 1 2025-11-22 16:40:19.315 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:54264 10 6452 1 2025-11-22 16:41:21.443 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 16:41:21.353 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 16:41:21.353 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 16:41:21.275 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 16:41:21.437 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 16:41:19.692 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:53256 10 6452 1 2025-11-22 16:42:20.113 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:40630 10 6452 1 2025-11-22 16:39:04.635 00:05:00.468 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-22 16:43:20.479 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:39334 10 6452 1 2025-11-22 16:40:04.632 00:05:00.473 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-22 16:44:20.841 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:45058 10 6452 1 2025-11-22 16:45:21.217 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:52376 10 6452 1 2025-11-22 16:46:21.434 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 16:46:21.521 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 16:46:21.153 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 16:46:21.351 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 16:46:21.522 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 16:46:21.613 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:59482 10 6452 1 2025-11-22 16:47:22.013 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:35856 10 6452 1 2025-11-22 16:48:22.381 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44590 10 6452 1 2025-11-22 16:45:04.636 00:05:00.478 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-22 16:49:22.785 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:39576 10 6452 1 2025-11-22 16:46:04.633 00:05:00.483 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-22 16:50:23.196 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37584 10 6452 1 2025-11-22 16:51:21.703 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 16:51:21.246 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 16:51:21.704 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 16:51:21.648 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 16:51:21.788 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 16:51:23.602 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:46282 10 6452 1 2025-11-22 16:52:24.013 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:37234 10 6452 1 2025-11-22 16:53:24.374 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:40712 10 6452 1 2025-11-22 16:54:24.785 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55538 10 6452 1 2025-11-22 16:51:04.637 00:05:00.478 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-22 16:55:25.185 00:00:10.399 TCP 1.101.0.1:3000 -> 23.104.0.1:44132 10 6452 1 2025-11-22 16:52:04.635 00:05:00.483 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-22 16:56:21.987 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 16:56:21.903 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 16:56:21.716 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 16:56:21.762 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 16:56:21.905 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 16:56:25.633 00:00:10.410 TCP 1.101.0.1:3000 -> 23.104.0.1:43344 11 6504 1 2025-11-22 16:57:26.114 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:32982 10 6452 1 2025-11-22 16:58:26.527 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:42404 10 6452 1 Summary: total flows: 140, total bytes: 431156, total packets: 1025, avg bps: 934, avg pps: 0, avg bpp: 420 Time window: 2025-11-22 15:57:04 - 2025-11-22 16:58:36 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0041s User: 0.0020s Wall: 0.0021s flows/second: 66546.1 Runtime: 0.0021s