Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-09 11:59:40.320 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55048 10 6452 1 2025-11-09 11:59:58.609 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 11:59:58.670 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 11:59:58.669 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 11:59:58.352 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 11:59:58.691 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 12:00:40.724 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:46820 11 6504 1 2025-11-09 12:01:41.145 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:43066 10 6452 1 2025-11-09 12:02:41.544 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:49060 10 6452 1 2025-11-09 11:57:57.716 00:06:00.114 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-09 12:03:41.949 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:59826 10 6452 1 2025-11-09 11:58:57.713 00:06:00.119 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-09 12:04:42.318 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34976 10 6452 1 2025-11-09 12:04:59.037 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 12:04:58.948 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 12:04:58.411 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 12:04:58.954 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 12:04:58.958 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 12:05:42.723 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:60462 10 6452 1 2025-11-09 12:06:43.130 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37558 10 6452 1 2025-11-09 12:07:43.531 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39038 10 6452 1 2025-11-09 12:08:43.930 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:57574 10 6452 1 2025-11-09 12:09:44.357 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:36322 10 6452 1 2025-11-09 12:09:59.044 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 12:09:58.962 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 12:09:58.927 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 12:04:57.718 00:06:00.122 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-09 12:09:58.786 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 12:09:58.517 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 12:10:44.762 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:55836 10 6452 1 2025-11-09 12:05:57.717 00:06:00.124 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-09 12:11:45.133 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48958 10 6452 1 2025-11-09 12:12:45.540 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37658 10 6452 1 2025-11-09 12:13:45.945 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:37318 10 6452 1 2025-11-09 12:14:46.359 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42802 10 6452 1 2025-11-09 12:14:58.945 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 12:14:58.666 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 12:14:58.937 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 12:14:58.896 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 12:14:59.021 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 12:15:46.770 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:39380 10 6452 1 2025-11-09 12:16:47.143 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53962 10 6452 1 2025-11-09 12:11:57.719 00:06:00.120 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-09 12:17:47.550 00:00:10.443 TCP 1.101.0.1:3000 -> 23.104.0.1:50770 12 10375 1 2025-11-09 12:12:57.717 00:06:00.126 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-09 12:18:48.036 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:52678 10 6452 1 2025-11-09 12:19:48.397 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57256 10 6452 1 2025-11-09 12:19:59.173 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 12:19:58.858 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 12:19:59.094 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 12:19:59.020 00:00:00.041 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 12:19:59.177 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 12:20:48.800 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49132 10 6452 1 2025-11-09 12:21:49.208 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:35322 10 6452 1 2025-11-09 12:22:49.573 00:00:10.439 TCP 1.101.0.1:3000 -> 23.104.0.1:57508 12 10369 1 2025-11-09 12:23:50.063 00:00:10.416 TCP 1.101.0.1:3000 -> 23.104.0.1:47798 11 6504 1 2025-11-09 12:18:57.722 00:06:00.122 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-09 12:19:57.721 00:06:00.126 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-09 12:24:59.837 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 12:24:59.433 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 12:24:59.443 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 12:24:59.753 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 12:24:59.583 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 12:24:50.521 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:39386 10 6452 1 2025-11-09 12:25:50.926 00:00:10.345 TCP 1.101.0.1:3000 -> 23.104.0.1:48256 10 6452 1 2025-11-09 12:26:51.312 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:54502 10 6452 1 2025-11-09 12:27:51.712 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35948 10 6452 1 2025-11-09 12:28:52.117 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35752 10 6452 1 2025-11-09 12:29:59.456 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 12:29:59.219 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 12:29:59.257 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 12:29:59.374 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 12:29:59.234 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 12:29:52.520 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:35702 10 6452 1 2025-11-09 12:25:57.728 00:06:00.119 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-09 12:30:52.889 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:58676 10 6452 1 2025-11-09 12:26:57.725 00:06:00.124 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-09 12:31:53.319 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48462 10 6452 1 2025-11-09 12:32:53.718 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:54662 11 6492 1 2025-11-09 12:33:54.127 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38218 10 6452 1 2025-11-09 12:34:59.370 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 12:34:59.326 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 12:34:59.302 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 12:34:59.448 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 12:34:59.383 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 12:34:54.533 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:42232 10 6452 1 2025-11-09 12:35:54.892 00:00:10.431 TCP 1.101.0.1:3000 -> 23.104.0.1:54556 11 6504 1 2025-11-09 12:36:55.369 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:43378 10 6452 1 2025-11-09 12:32:57.734 00:06:00.115 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-09 12:37:55.731 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:55798 10 6452 1 2025-11-09 12:33:57.731 00:06:00.121 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-09 12:38:56.110 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:52782 10 6452 1 2025-11-09 12:39:59.594 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 12:39:59.463 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 12:39:59.434 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 12:39:59.510 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 12:39:59.552 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 12:39:56.508 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:45712 10 6452 1 2025-11-09 12:40:56.868 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50402 10 6452 1 2025-11-09 12:41:57.273 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:45990 10 6452 1 2025-11-09 12:42:57.672 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:46860 10 6452 1 2025-11-09 12:43:58.095 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:55698 10 6452 1 2025-11-09 12:44:59.696 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 12:44:59.533 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 12:44:59.646 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 12:44:59.642 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 12:39:57.737 00:06:00.115 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-09 12:44:59.728 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 12:44:58.548 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:36150 10 6452 1 2025-11-09 12:40:57.735 00:06:00.120 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-09 12:45:58.951 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:44658 10 6452 1 2025-11-09 12:46:59.323 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:46070 10 6452 1 2025-11-09 12:47:59.726 00:00:10.692 TCP 1.101.0.1:3000 -> 23.104.0.1:57986 10 6452 1 2025-11-09 12:49:00.458 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:57390 10 6452 1 2025-11-09 12:49:59.737 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 12:49:59.663 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 12:49:59.317 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 12:49:59.654 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 12:49:59.814 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 12:50:00.863 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:45058 10 6452 1 2025-11-09 12:51:01.278 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:33982 10 6452 1 2025-11-09 12:46:57.750 00:06:00.103 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-09 12:52:01.681 00:00:10.925 TCP 1.101.0.1:3000 -> 23.104.0.1:60162 10 6452 1 2025-11-09 12:47:57.749 00:06:00.108 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-09 12:53:02.651 00:00:10.440 TCP 1.101.0.1:3000 -> 23.104.0.1:54500 12 10375 1 2025-11-09 12:54:03.133 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48472 10 6452 1 2025-11-09 12:54:59.912 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 12:54:59.769 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 12:54:59.727 00:00:00.030 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 12:54:59.829 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 12:54:59.612 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 12:55:03.539 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43186 10 6452 1 2025-11-09 12:56:03.941 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:49126 10 6452 1 2025-11-09 12:57:04.350 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54022 10 6452 1 2025-11-09 12:58:04.747 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50844 10 6452 1 Summary: total flows: 135, total bytes: 421523, total packets: 1004, avg bps: 932, avg pps: 0, avg bpp: 419 Time window: 2025-11-09 11:57:57 - 2025-11-09 12:58:15 Total flows processed: 135, passed: 135, Blocks skipped: 0, Bytes read: 14104 Sys: 0.0046s User: 0.0019s Wall: 0.0024s flows/second: 57252.9 Runtime: 0.0024s