Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-09 22:59:23.809 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:50744 10 6452 1 2025-11-09 23:00:12.302 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 23:00:12.161 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 23:00:12.184 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 23:00:12.220 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 23:00:12.228 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 23:00:24.214 00:00:10.892 TCP 1.101.0.1:3000 -> 23.104.0.1:40098 10 6452 1 2025-11-09 23:01:25.159 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:40728 10 6452 1 2025-11-09 23:02:25.559 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42248 10 6452 1 2025-11-09 22:57:58.086 00:06:00.056 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-09 22:57:58.083 00:06:00.061 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-09 23:03:25.964 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52540 10 6452 1 2025-11-09 23:04:26.365 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:52100 10 6452 1 2025-11-09 23:05:11.876 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 23:05:11.798 00:00:00.028 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 23:05:12.123 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 23:05:12.210 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 23:05:12.206 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 23:05:26.761 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:35206 10 6452 1 2025-11-09 23:06:27.173 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:42582 10 6452 1 2025-11-09 23:07:27.584 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59756 10 6452 1 2025-11-09 23:08:27.986 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:38510 10 6452 1 2025-11-09 23:09:28.388 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:58278 10 6452 1 2025-11-09 23:04:58.086 00:06:00.057 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-09 23:04:58.083 00:06:00.062 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-09 23:10:12.174 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 23:10:12.145 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 23:10:11.923 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 23:10:12.091 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 23:10:12.009 00:00:00.045 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 23:10:28.757 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:54654 10 6452 1 2025-11-09 23:11:29.169 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:34824 10 6452 1 2025-11-09 23:12:29.571 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:57046 10 6452 1 2025-11-09 23:13:29.934 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:45338 10 6452 1 2025-11-09 23:14:30.356 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38218 10 6452 1 2025-11-09 23:15:12.345 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 23:15:12.287 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 23:15:12.279 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 23:15:12.262 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 23:15:12.184 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 23:15:30.756 00:00:10.342 TCP 1.101.0.1:3000 -> 23.104.0.1:40808 10 6452 1 2025-11-09 23:16:31.144 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42422 10 6452 1 2025-11-09 23:11:58.088 00:06:00.059 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-09 23:11:58.086 00:06:00.065 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-09 23:17:31.544 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50532 10 6452 1 2025-11-09 23:18:31.949 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:34154 10 6452 1 2025-11-09 23:19:32.356 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44970 10 6452 1 2025-11-09 23:20:12.086 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 23:20:12.301 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 23:20:12.350 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 23:20:12.276 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 23:20:12.433 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 23:20:32.757 00:00:10.348 TCP 1.101.0.1:3000 -> 23.104.0.1:48698 10 6452 1 2025-11-09 23:21:33.129 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:47664 10 6452 1 2025-11-09 23:22:33.485 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:57678 10 6452 1 2025-11-09 23:23:33.890 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:60032 10 6452 1 2025-11-09 23:18:58.091 00:06:00.060 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-09 23:18:58.094 00:06:00.055 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-09 23:24:34.316 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:37244 10 6452 1 2025-11-09 23:25:12.330 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 23:25:12.490 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 23:25:12.367 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 23:25:12.247 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 23:25:12.423 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 23:25:34.676 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:36768 10 6452 1 2025-11-09 23:26:35.101 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:48614 10 6452 1 2025-11-09 23:27:35.460 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51166 10 6452 1 2025-11-09 23:28:35.860 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:46472 10 6452 1 2025-11-09 23:29:36.274 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51560 10 6452 1 2025-11-09 23:30:12.494 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 23:30:12.441 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 23:30:12.701 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 23:30:12.628 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 23:30:12.783 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 23:30:36.680 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:37630 10 6452 1 2025-11-09 23:25:58.095 00:06:00.055 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-09 23:25:58.094 00:06:00.059 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-09 23:31:37.107 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:56968 10 6452 1 2025-11-09 23:32:37.516 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54142 10 6452 1 2025-11-09 23:33:37.917 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33988 10 6452 1 2025-11-09 23:34:38.320 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36422 10 6452 1 2025-11-09 23:35:12.700 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 23:35:12.606 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 23:35:12.853 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 23:35:12.699 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 23:35:12.937 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 23:35:38.725 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:39498 10 6452 1 2025-11-09 23:36:39.135 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:54404 10 6452 1 2025-11-09 23:37:39.536 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34382 10 6452 1 2025-11-09 23:32:58.094 00:06:00.059 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-09 23:32:58.097 00:06:00.054 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-09 23:38:39.941 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:46492 10 6452 1 2025-11-09 23:39:40.357 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39866 10 6452 1 2025-11-09 23:40:12.674 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 23:40:12.746 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 23:40:12.800 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 23:40:12.593 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 23:40:12.747 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 23:40:40.765 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:50030 10 6452 1 2025-11-09 23:41:41.183 00:00:20.293 TCP 1.101.0.1:3000 -> 23.104.0.1:55344 10 6452 1 2025-11-09 23:42:51.568 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:60606 10 6452 1 2025-11-09 23:43:51.974 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:45740 10 6452 1 2025-11-09 23:39:58.100 00:06:00.055 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-09 23:39:58.102 00:06:00.050 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-09 23:44:52.347 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:40618 10 6452 1 2025-11-09 23:45:12.923 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 23:45:12.911 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 23:45:12.927 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 23:45:12.889 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 23:45:13.010 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 23:45:52.703 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:58294 10 6452 1 2025-11-09 23:46:53.067 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:52706 10 6452 1 2025-11-09 23:47:53.468 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:57114 10 6452 1 2025-11-09 23:48:53.865 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:51864 10 6452 1 2025-11-09 23:49:54.275 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:52156 10 6452 1 2025-11-09 23:50:12.699 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 23:50:12.846 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 23:50:12.913 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 23:50:12.958 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 23:50:12.995 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 23:50:54.677 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:42214 10 6452 1 2025-11-09 23:46:58.106 00:06:00.048 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-09 23:46:58.103 00:06:00.053 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-09 23:51:55.098 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:43980 10 6452 1 2025-11-09 23:52:55.506 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57852 10 6452 1 2025-11-09 23:53:55.910 00:00:10.627 TCP 1.101.0.1:3000 -> 23.104.0.1:40058 10 6452 1 2025-11-09 23:54:56.574 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:54286 10 6452 1 2025-11-09 23:55:13.479 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-09 23:55:13.396 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 23:55:13.631 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-09 23:55:13.421 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-09 23:55:13.593 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-09 23:55:56.976 00:00:10.343 TCP 1.101.0.1:3000 -> 23.104.0.1:55062 10 6452 1 2025-11-09 23:56:57.357 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55728 10 6452 1 2025-11-09 23:57:57.757 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:43790 10 6452 1 Summary: total flows: 135, total bytes: 409564, total packets: 994, avg bps: 907, avg pps: 0, avg bpp: 412 Time window: 2025-11-09 22:57:58 - 2025-11-09 23:58:08 Total flows processed: 135, passed: 135, Blocks skipped: 0, Bytes read: 14104 Sys: 0.0043s User: 0.0009s Wall: 0.0015s flows/second: 90539.0 Runtime: 0.0015s