Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-22 17:58:51.558 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:56156 10 6452 1 2025-11-22 17:59:51.959 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45152 10 6452 1 2025-11-22 18:00:52.370 00:00:10.636 TCP 1.101.0.1:3000 -> 23.104.0.1:36758 10 6452 1 2025-11-22 17:57:04.659 00:05:00.496 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-22 18:01:22.945 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 18:01:22.908 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 18:01:22.869 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 18:01:22.870 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 18:01:22.951 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 18:01:53.071 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57216 10 6452 1 2025-11-22 17:58:04.659 00:05:00.499 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-22 18:02:53.475 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35438 10 6452 1 2025-11-22 18:03:53.881 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:43414 10 6452 1 2025-11-22 18:04:54.244 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39938 10 6452 1 2025-11-22 18:05:54.656 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:37740 10 6452 1 2025-11-22 18:06:23.345 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 18:06:23.232 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 18:06:23.159 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 18:06:23.089 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 18:06:23.428 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 18:03:04.663 00:05:00.494 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-22 18:06:55.073 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:53976 10 6452 1 2025-11-22 18:07:55.494 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:36726 10 6452 1 2025-11-22 18:04:04.661 00:05:00.500 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-22 18:08:55.899 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:44948 10 6452 1 2025-11-22 18:09:56.333 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:38962 10 6452 1 2025-11-22 18:10:56.733 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:37566 10 6452 1 2025-11-22 18:11:23.365 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 18:11:23.314 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 18:11:23.100 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 18:11:23.220 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 18:11:23.301 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 18:11:57.113 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:50918 10 6452 1 2025-11-22 18:09:04.665 00:05:00.509 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-22 18:12:57.514 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:43414 10 6452 1 2025-11-22 18:10:04.662 00:05:00.510 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-22 18:13:57.920 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:52912 10 6452 1 2025-11-22 18:14:58.319 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49902 10 6452 1 2025-11-22 18:15:58.726 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:48384 10 6452 1 2025-11-22 18:16:23.292 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 18:16:23.383 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 18:16:23.327 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 18:16:23.385 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 18:16:23.468 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 18:16:59.135 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:34402 10 6452 1 2025-11-22 18:17:59.503 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35248 10 6452 1 2025-11-22 18:15:04.666 00:05:00.507 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-22 18:18:59.909 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:58688 10 6452 1 2025-11-22 18:16:04.665 00:05:00.511 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-22 18:20:00.315 00:00:10.438 TCP 1.101.0.1:3000 -> 23.104.0.1:40246 12 10375 1 2025-11-22 18:21:00.791 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:38364 10 6452 1 2025-11-22 18:21:23.295 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 18:21:23.364 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 18:21:23.212 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 18:21:23.450 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 18:21:23.532 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 18:22:01.195 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47664 10 6452 1 2025-11-22 18:23:01.599 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:44836 10 6452 1 2025-11-22 18:24:02.014 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45472 10 6452 1 2025-11-22 18:21:04.667 00:05:00.507 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-22 18:25:02.416 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36734 10 6452 1 2025-11-22 18:22:04.665 00:05:00.512 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-22 18:26:02.821 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:57790 10 6452 1 2025-11-22 18:26:23.614 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 18:26:23.605 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 18:26:23.673 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 18:26:23.613 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 18:26:23.696 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 18:27:03.202 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56226 10 6452 1 2025-11-22 18:28:03.606 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55144 10 6452 1 2025-11-22 18:29:04.005 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:40848 10 6452 1 2025-11-22 18:30:04.376 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:44916 10 6452 1 2025-11-22 18:27:04.668 00:05:00.507 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-22 18:31:04.791 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:43450 10 6452 1 2025-11-22 18:31:23.644 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 18:31:23.324 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 18:31:23.611 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 18:31:23.547 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 18:31:23.693 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 18:28:04.666 00:05:00.512 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-22 18:32:05.203 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:32866 10 6452 1 2025-11-22 18:33:05.603 00:00:10.416 TCP 1.101.0.1:3000 -> 23.104.0.1:39842 11 6504 1 2025-11-22 18:34:06.063 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:45642 10 6452 1 2025-11-22 18:35:06.490 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57380 10 6452 1 2025-11-22 18:36:06.899 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:38644 10 6452 1 2025-11-22 18:36:23.636 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 18:36:23.718 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 18:36:23.673 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 18:36:23.716 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 18:36:23.799 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 18:33:04.670 00:05:00.506 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-22 18:37:07.274 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:52910 10 6452 1 2025-11-22 18:34:04.669 00:05:00.511 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-22 18:38:07.640 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:41610 10 6452 1 2025-11-22 18:39:08.012 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49018 10 6452 1 2025-11-22 18:40:08.424 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:49616 10 6452 1 2025-11-22 18:41:08.830 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:51498 10 6452 1 2025-11-22 18:41:23.874 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 18:41:23.851 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 18:41:23.844 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 18:41:23.796 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 18:41:23.792 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 18:42:09.196 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:45462 10 6452 1 2025-11-22 18:39:04.673 00:05:00.509 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-22 18:43:09.603 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54622 10 6452 1 2025-11-22 18:40:04.671 00:05:00.514 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-22 18:44:10.011 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:45400 10 6452 1 2025-11-22 18:45:10.388 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:57732 10 6452 1 2025-11-22 18:46:24.324 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 18:46:24.197 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 18:46:24.083 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 18:46:23.984 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 18:46:24.242 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 18:46:10.797 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:42320 10 6452 1 2025-11-22 18:47:11.209 00:00:10.438 TCP 1.101.0.1:3000 -> 23.104.0.1:44274 10 6452 1 2025-11-22 18:48:11.686 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:53764 10 6452 1 2025-11-22 18:45:04.674 00:05:00.510 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-22 18:49:12.054 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:51748 10 6452 1 2025-11-22 18:46:04.670 00:05:00.516 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-22 18:50:12.417 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:42540 10 6452 1 2025-11-22 18:51:23.918 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 18:51:24.077 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 18:51:23.930 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 18:51:23.997 00:00:00.029 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 18:51:12.819 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:49692 10 6452 1 2025-11-22 18:51:24.080 00:00:00.028 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 18:52:13.227 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57920 10 6452 1 2025-11-22 18:53:13.626 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:50586 10 6452 1 2025-11-22 18:54:14.033 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49884 10 6452 1 2025-11-22 18:51:04.676 00:05:00.509 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-22 18:55:14.438 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38624 10 6452 1 2025-11-22 18:52:04.674 00:05:00.513 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-22 18:56:24.136 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 18:56:24.049 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 18:56:24.045 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 18:56:23.952 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 18:56:24.053 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 18:56:14.841 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:34708 10 6452 1 2025-11-22 18:57:15.250 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52176 10 6452 1 2025-11-22 18:58:15.653 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:48410 10 6452 1 Summary: total flows: 140, total bytes: 420975, total packets: 1023, avg bps: 914, avg pps: 0, avg bpp: 411 Time window: 2025-11-22 17:57:04 - 2025-11-22 18:58:25 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0053s User: 0.0009s Wall: 0.0018s flows/second: 77314.4 Runtime: 0.0018s