Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-09 10:59:16.227 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:39394 10 6452 1 2025-11-09 10:59:57.428 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 10:59:57.264 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 10:59:57.086 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 10:59:57.345 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 10:59:57.266 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 10:54:57.700 00:06:00.100 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-09 11:00:16.587 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:59114 10 6452 1 2025-11-09 10:55:57.698 00:06:00.105 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-09 11:01:16.998 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:53696 10 6452 1 2025-11-09 11:02:17.366 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:47920 10 6452 1 2025-11-09 11:03:17.733 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57108 10 6452 1 2025-11-09 11:04:18.138 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:42616 10 6452 1 2025-11-09 11:04:57.982 00:00:00.034 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 11:04:57.843 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 11:04:57.457 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 11:04:57.899 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 11:04:57.845 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 11:05:18.538 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:37898 10 6452 1 2025-11-09 11:06:18.902 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:41532 10 6452 1 2025-11-09 11:01:57.702 00:06:00.104 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-09 11:07:19.315 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:54388 10 6452 1 2025-11-09 11:02:57.699 00:06:00.108 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-09 11:08:19.720 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38020 10 6452 1 2025-11-09 11:09:20.123 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:47430 10 6452 1 2025-11-09 11:09:57.616 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 11:09:57.326 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 11:09:57.738 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 11:09:57.418 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 11:09:57.822 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 11:10:20.530 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:59950 10 6452 1 2025-11-09 11:11:20.896 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:55986 10 6452 1 2025-11-09 11:12:21.308 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38312 10 6452 1 2025-11-09 11:13:21.711 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:52458 12 6556 1 2025-11-09 11:08:57.704 00:06:00.102 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-09 11:14:22.118 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39924 10 6452 1 2025-11-09 11:09:57.702 00:06:00.109 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-09 11:14:57.890 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 11:14:57.559 00:00:00.031 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 11:14:57.817 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 11:14:57.808 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 11:14:57.687 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 11:15:22.524 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36508 10 6452 1 2025-11-09 11:16:22.923 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:43244 10 6452 1 2025-11-09 11:17:23.331 00:00:10.577 TCP 1.101.0.1:3000 -> 23.104.0.1:41826 10 6452 1 2025-11-09 11:18:23.950 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:59972 10 6452 1 2025-11-09 11:19:24.355 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:40178 10 6452 1 2025-11-09 11:19:57.752 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 11:19:57.897 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 11:19:57.743 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 11:19:57.743 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 11:19:57.826 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 11:20:24.712 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:38430 10 6452 1 2025-11-09 11:15:57.707 00:06:00.103 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-09 11:21:25.119 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:38020 10 6452 1 2025-11-09 11:16:57.704 00:06:00.110 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-09 11:22:25.532 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34166 10 6452 1 2025-11-09 11:23:25.933 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:46186 10 6452 1 2025-11-09 11:24:26.365 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:51358 10 6452 1 2025-11-09 11:24:58.712 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 11:24:58.579 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 11:24:58.525 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 11:24:58.630 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 11:24:58.576 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 11:25:26.772 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:51570 10 6452 1 2025-11-09 11:26:27.178 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35664 10 6452 1 2025-11-09 11:27:27.581 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:40098 10 6452 1 2025-11-09 11:22:57.707 00:06:00.104 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-09 11:28:27.998 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45668 10 6452 1 2025-11-09 11:23:57.706 00:06:00.112 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-09 11:29:28.403 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:54116 10 6452 1 2025-11-09 11:29:58.018 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 11:29:57.935 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 11:29:58.172 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 11:29:57.837 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 11:29:57.622 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 11:30:28.808 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49810 10 6452 1 2025-11-09 11:31:29.212 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:47232 10 6452 1 2025-11-09 11:32:29.625 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:56046 10 6452 1 2025-11-09 11:33:30.032 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:48044 10 6452 1 2025-11-09 11:34:30.439 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36380 10 6452 1 2025-11-09 11:34:58.219 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 11:34:58.060 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 11:34:58.145 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 11:34:58.137 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 11:34:58.064 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 11:29:57.710 00:06:00.105 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-09 11:35:30.845 00:00:10.346 TCP 1.101.0.1:3000 -> 23.104.0.1:47672 10 6452 1 2025-11-09 11:30:57.707 00:06:00.111 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-09 11:36:31.225 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57850 10 6452 1 2025-11-09 11:37:31.627 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:53254 10 6452 1 2025-11-09 11:38:32.029 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:41368 10 6452 1 2025-11-09 11:39:32.389 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46780 10 6452 1 2025-11-09 11:39:58.281 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 11:39:58.224 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 11:39:58.396 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 11:39:58.203 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 11:39:58.479 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 11:40:32.791 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:33740 10 6452 1 2025-11-09 11:41:33.150 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:58864 10 6452 1 2025-11-09 11:36:57.711 00:06:00.111 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-09 11:42:33.554 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:46010 10 6452 1 2025-11-09 11:37:57.710 00:06:00.114 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-09 11:43:33.917 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:32778 10 6452 1 2025-11-09 11:44:34.322 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39182 10 6452 1 2025-11-09 11:44:58.369 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 11:44:58.188 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 11:44:58.199 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 11:44:58.287 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 11:44:58.360 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 11:45:34.727 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41896 10 6452 1 2025-11-09 11:46:35.138 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:52866 10 6452 1 2025-11-09 11:47:35.502 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58998 10 6452 1 2025-11-09 11:48:35.906 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:47470 10 6452 1 2025-11-09 11:43:57.714 00:06:00.110 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-09 11:49:36.279 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47184 10 6452 1 2025-11-09 11:44:57.710 00:06:00.114 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-09 11:49:58.421 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 11:49:58.465 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 11:49:58.413 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 11:49:58.340 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 11:49:58.251 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 11:50:36.712 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34698 10 6452 1 2025-11-09 11:51:37.114 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:42558 10 6452 1 2025-11-09 11:52:37.479 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:52338 10 6452 1 2025-11-09 11:53:37.844 00:00:10.409 TCP 1.101.0.1:3000 -> 23.104.0.1:59598 10 6452 1 2025-11-09 11:54:38.266 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:58094 11 6492 1 2025-11-09 11:54:58.573 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 11:54:58.532 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 11:54:58.278 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 11:54:58.620 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 11:54:58.362 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 11:55:38.677 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44206 10 6452 1 2025-11-09 11:50:57.713 00:06:00.111 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-09 11:56:39.107 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33818 10 6452 1 2025-11-09 11:51:57.712 00:06:00.116 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-09 11:57:39.511 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52050 10 6452 1 2025-11-09 11:58:39.917 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53376 10 6452 1 Summary: total flows: 138, total bytes: 417882, total packets: 1035, avg bps: 872, avg pps: 0, avg bpp: 403 Time window: 2025-11-09 10:54:57 - 2025-11-09 11:58:50 Total flows processed: 138, passed: 138, Blocks skipped: 0, Bytes read: 14416 Sys: 0.0036s User: 0.0018s Wall: 0.0024s flows/second: 56858.0 Runtime: 0.0024s