Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-09 01:59:18.997 00:00:11.100 TCP 1.101.0.1:3000 -> 23.104.0.1:36924 10 6452 1 2025-11-09 01:59:46.723 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 01:59:46.641 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 01:59:46.587 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 01:59:46.687 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 01:59:46.313 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 02:00:20.134 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58300 10 6452 1 2025-11-09 01:55:57.483 00:06:00.123 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-09 02:01:20.536 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38282 10 6452 1 2025-11-09 01:56:57.481 00:06:00.128 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-09 02:02:20.940 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:35146 10 6452 1 2025-11-09 02:03:21.371 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:51016 10 6452 1 2025-11-09 02:04:21.788 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:53490 10 6452 1 2025-11-09 02:04:46.906 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 02:04:46.752 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 02:04:46.681 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 02:04:46.907 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 02:04:46.765 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 02:05:22.199 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57894 10 6452 1 2025-11-09 02:06:22.600 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59326 10 6452 1 2025-11-09 02:07:23.004 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:45526 10 6452 1 2025-11-09 02:02:57.486 00:06:00.123 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-09 02:08:23.369 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:55064 10 6452 1 2025-11-09 02:03:57.484 00:06:00.126 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-09 02:09:23.777 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:42168 10 6452 1 2025-11-09 02:09:46.965 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 02:09:46.826 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 02:09:46.737 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 02:09:46.838 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 02:09:46.820 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 02:10:24.183 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:58644 10 6452 1 2025-11-09 02:11:24.594 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:51312 10 6452 1 2025-11-09 02:12:25.010 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:49888 10 6452 1 2025-11-09 02:13:25.417 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:52554 10 6452 1 2025-11-09 02:14:25.777 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:38010 10 6452 1 2025-11-09 02:14:47.076 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 02:14:46.920 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 02:14:47.109 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 02:14:47.047 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 02:14:47.193 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 02:09:57.489 00:06:00.121 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-09 02:15:26.190 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:42592 10 6452 1 2025-11-09 02:10:57.487 00:06:00.125 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-09 02:16:26.604 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:43182 10 6452 1 2025-11-09 02:17:27.051 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:46464 10 6452 1 2025-11-09 02:18:27.474 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45978 10 6452 1 2025-11-09 02:19:27.882 00:00:10.351 TCP 1.101.0.1:3000 -> 23.104.0.1:33178 10 6452 1 2025-11-09 02:19:47.071 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 02:19:47.003 00:00:00.032 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 02:19:46.960 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 02:19:47.124 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 02:19:47.043 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 02:20:28.268 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43714 10 6452 1 2025-11-09 02:21:28.673 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55630 10 6452 1 2025-11-09 02:16:57.493 00:06:00.119 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-09 02:22:29.099 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40142 10 6452 1 2025-11-09 02:17:57.487 00:06:00.126 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-09 02:23:29.504 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:44548 10 6452 1 2025-11-09 02:24:29.905 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:41818 10 6452 1 2025-11-09 02:24:46.950 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 02:24:46.965 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 02:24:47.232 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 02:24:47.189 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 02:24:47.317 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 02:25:30.313 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:38810 10 6452 1 2025-11-09 02:26:30.678 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:54726 10 6452 1 2025-11-09 02:27:31.039 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:39566 10 6452 1 2025-11-09 02:28:31.461 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52612 10 6452 1 2025-11-09 02:23:57.493 00:06:00.118 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-09 02:29:31.864 00:00:10.863 TCP 1.101.0.1:3000 -> 23.104.0.1:37172 10 6452 1 2025-11-09 02:29:47.662 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 02:29:47.367 00:00:00.029 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 02:29:47.806 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 02:29:47.661 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 02:29:47.888 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 02:24:57.492 00:06:00.123 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-09 02:30:32.768 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:39898 10 6452 1 2025-11-09 02:31:33.191 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:58422 10 6452 1 2025-11-09 02:32:33.599 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:56308 10 6452 1 2025-11-09 02:33:34.006 00:00:10.436 TCP 1.101.0.1:3000 -> 23.104.0.1:38428 12 10375 1 2025-11-09 02:34:34.479 00:00:10.418 TCP 1.101.0.1:3000 -> 23.104.0.1:36568 11 6504 1 2025-11-09 02:34:47.387 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 02:34:47.230 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 02:34:47.392 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 02:34:47.457 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 02:34:47.474 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 02:35:34.940 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:44486 10 6452 1 2025-11-09 02:30:57.496 00:06:00.123 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-09 02:36:35.359 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34588 10 6452 1 2025-11-09 02:31:57.493 00:06:00.127 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-09 02:37:35.765 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:34954 10 6452 1 2025-11-09 02:38:36.195 00:00:13.560 TCP 1.101.0.1:3000 -> 23.104.0.1:55550 10 6452 1 2025-11-09 02:39:47.378 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 02:39:47.296 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 02:39:47.451 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 02:39:39.794 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44324 10 6452 1 2025-11-09 02:39:47.566 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 02:39:47.370 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 02:40:40.199 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:40234 10 6452 1 2025-11-09 02:41:40.603 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47016 10 6452 1 2025-11-09 02:42:41.008 00:00:10.437 TCP 1.101.0.1:3000 -> 23.104.0.1:56230 12 10369 1 2025-11-09 02:37:57.497 00:06:00.121 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-09 02:43:41.476 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:35334 10 6452 1 2025-11-09 02:38:57.494 00:06:00.128 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-09 02:44:47.694 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 02:44:47.546 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 02:44:47.522 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 02:44:47.638 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 02:44:47.604 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 02:44:41.884 00:00:10.422 TCP 1.101.0.1:3000 -> 23.104.0.1:59968 12 6556 1 2025-11-09 02:45:42.339 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:54284 10 6452 1 2025-11-09 02:46:42.699 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:44344 10 6452 1 2025-11-09 02:47:43.110 00:00:10.438 TCP 1.101.0.1:3000 -> 23.104.0.1:37828 12 10375 1 2025-11-09 02:48:43.589 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59050 10 6452 1 2025-11-09 02:49:47.584 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 02:49:47.757 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 02:49:47.621 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 02:49:47.807 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 02:49:47.839 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 02:49:43.993 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:55106 10 6452 1 2025-11-09 02:44:57.500 00:06:00.120 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-09 02:50:44.411 00:00:10.616 TCP 1.101.0.1:3000 -> 23.104.0.1:44210 10 6452 1 2025-11-09 02:45:57.496 00:06:00.126 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-09 02:51:45.111 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:53984 10 6452 1 2025-11-09 02:52:45.473 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:40232 10 6452 1 2025-11-09 02:53:45.883 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:47396 10 6452 1 2025-11-09 02:54:47.913 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 02:54:47.902 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 02:54:47.844 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 02:54:47.830 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 02:54:48.046 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 02:54:46.251 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59002 10 6452 1 2025-11-09 02:55:46.657 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55048 10 6452 1 2025-11-09 02:56:47.091 00:00:10.644 TCP 1.101.0.1:3000 -> 23.104.0.1:56444 10 6452 1 2025-11-09 02:51:57.500 00:06:00.121 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-09 02:52:57.498 00:06:00.125 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-09 02:57:47.771 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:42474 10 6452 1 Summary: total flows: 137, total bytes: 423205, total packets: 1031, avg bps: 895, avg pps: 0, avg bpp: 410 Time window: 2025-11-09 01:55:57 - 2025-11-09 02:58:57 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0046s User: 0.0009s Wall: 0.0022s flows/second: 61463.2 Runtime: 0.0022s