Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-22 16:59:26.932 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:40146 10 6452 1 2025-11-22 17:00:27.357 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37760 10 6452 1 2025-11-22 16:57:04.639 00:05:00.480 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-22 17:01:21.760 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 17:01:21.702 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 17:01:21.712 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 17:01:21.689 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 17:01:21.772 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 17:01:27.758 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:35844 10 6452 1 2025-11-22 16:58:04.635 00:05:00.507 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-22 17:02:28.135 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48830 10 6452 1 2025-11-22 17:03:28.538 00:00:10.491 TCP 1.101.0.1:3000 -> 23.104.0.1:46438 10 6452 1 2025-11-22 17:04:29.079 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:49396 10 6452 1 2025-11-22 17:05:29.479 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58768 10 6452 1 2025-11-22 17:06:21.959 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 17:06:21.956 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 17:06:21.780 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 17:06:21.840 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 17:06:21.923 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 17:06:29.877 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:56532 10 6452 1 2025-11-22 17:03:04.641 00:05:00.495 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-22 17:07:30.277 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:53978 10 6452 1 2025-11-22 17:04:04.640 00:05:00.500 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-22 17:08:30.684 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:34952 10 6452 1 2025-11-22 17:09:31.102 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:47950 10 6452 1 2025-11-22 17:10:31.496 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:35162 10 6452 1 2025-11-22 17:11:22.463 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 17:11:22.387 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 17:11:22.381 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 17:11:22.375 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 17:11:22.372 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 17:11:31.905 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:41384 12 6556 1 2025-11-22 17:12:32.313 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:36244 10 6452 1 2025-11-22 17:09:04.642 00:05:00.495 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-22 17:13:32.715 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:58744 10 6452 1 2025-11-22 17:10:04.639 00:05:00.500 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-22 17:14:33.129 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:45800 10 6452 1 2025-11-22 17:15:33.526 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:60984 10 6452 1 2025-11-22 17:16:22.235 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 17:16:22.114 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 17:16:22.173 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 17:16:22.187 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 17:16:22.269 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 17:16:33.897 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:45962 12 6556 1 2025-11-22 17:17:34.319 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60872 10 6452 1 2025-11-22 17:18:34.720 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:42966 10 6452 1 2025-11-22 17:15:04.643 00:05:00.494 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-22 17:19:35.120 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46930 10 6452 1 2025-11-22 17:16:04.641 00:05:00.499 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-22 17:20:35.522 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:39070 10 6452 1 2025-11-22 17:21:22.224 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 17:21:22.143 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 17:21:22.080 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 17:21:22.141 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 17:21:22.119 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 17:21:35.956 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:38880 10 6452 1 2025-11-22 17:22:36.322 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:39764 10 6452 1 2025-11-22 17:23:36.732 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:52348 10 6452 1 2025-11-22 17:24:37.145 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:57992 10 6452 1 2025-11-22 17:21:04.650 00:05:00.494 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-22 17:25:37.554 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:50306 10 6452 1 2025-11-22 17:22:04.648 00:05:00.499 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-22 17:26:22.273 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 17:26:22.109 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 17:26:22.203 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 17:26:22.120 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 17:26:22.192 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 17:26:37.992 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:45804 10 6452 1 2025-11-22 17:27:38.404 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39744 10 6452 1 2025-11-22 17:28:38.812 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49508 10 6452 1 2025-11-22 17:29:39.226 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:54746 10 6452 1 2025-11-22 17:30:39.591 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:43528 10 6452 1 2025-11-22 17:27:04.651 00:05:00.494 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-22 17:31:22.454 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 17:31:22.279 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 17:31:22.247 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 17:31:22.582 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 17:31:22.329 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 17:31:39.995 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38222 10 6452 1 2025-11-22 17:28:04.648 00:05:00.499 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-22 17:32:40.410 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51808 10 6452 1 2025-11-22 17:33:40.813 00:00:10.890 TCP 1.101.0.1:3000 -> 23.104.0.1:38298 10 6452 1 2025-11-22 17:34:41.750 00:00:10.442 TCP 1.101.0.1:3000 -> 23.104.0.1:46712 14 10479 1 2025-11-22 17:35:42.230 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45898 10 6452 1 2025-11-22 17:36:22.658 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 17:36:22.463 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 17:36:22.531 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 17:36:22.213 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 17:36:22.575 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 17:36:42.630 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:46440 10 6452 1 2025-11-22 17:33:04.653 00:05:00.493 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-22 17:37:42.995 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:40562 10 6452 1 2025-11-22 17:34:04.651 00:05:00.498 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-22 17:38:43.401 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:45998 10 6452 1 2025-11-22 17:39:43.816 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40336 10 6452 1 2025-11-22 17:40:44.217 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51580 10 6452 1 2025-11-22 17:41:22.641 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 17:41:22.608 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 17:41:22.487 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 17:41:22.394 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 17:41:22.558 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 17:41:44.622 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:60148 10 6452 1 2025-11-22 17:42:45.034 00:00:10.422 TCP 1.101.0.1:3000 -> 23.104.0.1:46780 10 6452 1 2025-11-22 17:39:04.655 00:05:00.494 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-22 17:43:45.491 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:53212 10 6452 1 2025-11-22 17:40:04.654 00:05:00.499 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-22 17:44:45.852 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:52436 10 6452 1 2025-11-22 17:45:46.274 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33402 10 6452 1 2025-11-22 17:46:23.055 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 17:46:23.076 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 17:46:23.060 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 17:46:23.210 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 17:46:23.141 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 17:46:46.681 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41236 10 6452 1 2025-11-22 17:47:47.109 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:34628 10 6452 1 2025-11-22 17:48:47.521 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59284 10 6452 1 2025-11-22 17:45:04.656 00:05:00.494 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-22 17:49:47.926 00:00:10.343 TCP 1.101.0.1:3000 -> 23.104.0.1:58900 10 6452 1 2025-11-22 17:46:04.653 00:05:00.499 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-22 17:50:48.312 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41466 10 6452 1 2025-11-22 17:51:22.955 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 17:51:22.541 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 17:51:22.834 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 17:51:22.834 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 17:51:22.916 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 17:51:48.718 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:53112 10 6452 1 2025-11-22 17:52:49.138 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49214 10 6452 1 2025-11-22 17:53:49.544 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:56438 10 6452 1 2025-11-22 17:54:49.925 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60314 10 6452 1 2025-11-22 17:51:04.657 00:05:00.506 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-22 17:55:50.340 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:49380 10 6452 1 2025-11-22 17:52:04.655 00:05:00.502 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-22 17:56:22.804 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 17:56:22.786 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 17:56:22.893 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 17:56:22.936 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 17:56:23.019 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 17:56:50.751 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57268 10 6452 1 2025-11-22 17:57:51.154 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:40586 10 6452 1 Summary: total flows: 139, total bytes: 414783, total packets: 1018, avg bps: 907, avg pps: 0, avg bpp: 407 Time window: 2025-11-22 16:57:04 - 2025-11-22 17:58:01 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0045s User: 0.0018s Wall: 0.0024s flows/second: 58010.8 Runtime: 0.0024s