Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-15 08:58:56.216 00:00:10.699 TCP 1.101.0.1:3000 -> 23.104.0.1:42518 10 6452 1 2025-11-15 08:59:56.953 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:48148 10 6452 1 2025-11-15 09:00:57.369 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:36480 10 6452 1 2025-11-15 09:01:57.783 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45286 10 6452 1 2025-11-15 09:02:48.358 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 09:02:48.402 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 09:02:48.346 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 09:02:48.275 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 09:02:48.274 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 09:02:58.189 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59872 10 6452 1 2025-11-15 08:59:01.063 00:06:00.106 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-15 09:03:58.598 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:40582 10 6452 1 2025-11-15 09:00:01.060 00:06:00.111 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-15 09:04:58.996 00:00:10.425 TCP 1.101.0.1:3000 -> 23.104.0.1:38306 11 6504 1 2025-11-15 09:05:59.462 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:40250 10 6452 1 2025-11-15 09:06:59.872 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:52112 10 6452 1 2025-11-15 09:07:48.326 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 09:07:48.351 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 09:07:48.432 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 09:07:48.507 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 09:07:48.515 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 09:08:00.278 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50168 10 6452 1 2025-11-15 09:09:00.680 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:44202 10 6452 1 2025-11-15 09:10:01.054 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:44704 10 6452 1 2025-11-15 09:06:01.064 00:06:00.108 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-15 09:11:01.459 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59828 10 6452 1 2025-11-15 09:07:01.062 00:06:00.112 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-15 09:12:01.865 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:51826 10 6452 1 2025-11-15 09:12:48.568 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 09:12:48.569 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 09:12:48.528 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 09:12:48.565 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 09:12:48.610 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 09:13:02.284 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:48360 10 6452 1 2025-11-15 09:14:02.691 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44910 10 6452 1 2025-11-15 09:15:03.122 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:42260 10 6452 1 2025-11-15 09:16:03.572 00:00:10.396 TCP 1.101.0.1:3000 -> 23.104.0.1:38564 12 10375 1 2025-11-15 09:17:04.005 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44506 10 6452 1 2025-11-15 09:17:49.824 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 09:17:49.725 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 09:17:49.737 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 09:17:49.811 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 09:17:49.808 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 09:13:01.070 00:06:00.104 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-15 09:18:04.405 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42760 10 6452 1 2025-11-15 09:14:01.062 00:06:00.114 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-15 09:19:04.806 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:50996 10 6452 1 2025-11-15 09:20:05.214 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54548 10 6452 1 2025-11-15 09:21:05.642 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50726 10 6452 1 2025-11-15 09:22:06.065 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57776 10 6452 1 2025-11-15 09:22:48.664 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 09:22:48.602 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 09:22:48.772 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 09:22:48.725 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 09:22:48.857 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 09:23:06.471 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:32822 10 6452 1 2025-11-15 09:24:06.872 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56804 10 6452 1 2025-11-15 09:20:01.067 00:06:00.109 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-15 09:25:07.277 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:46482 10 6452 1 2025-11-15 09:21:01.064 00:06:00.115 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-15 09:26:07.697 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:57972 10 6452 1 2025-11-15 09:27:08.062 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:33606 10 6452 1 2025-11-15 09:27:48.953 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 09:27:48.972 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 09:27:48.825 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 09:27:48.888 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 09:27:48.907 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 09:28:08.427 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60594 10 6452 1 2025-11-15 09:29:08.832 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:34998 10 6452 1 2025-11-15 09:30:09.230 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:33460 12 6556 1 2025-11-15 09:31:09.637 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38068 10 6452 1 2025-11-15 09:27:01.074 00:06:00.106 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-15 09:32:10.046 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:56986 10 6452 1 2025-11-15 09:32:48.786 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 09:32:48.686 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 09:32:48.942 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 09:32:48.994 00:00:00.043 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 09:32:49.026 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 09:28:01.070 00:06:00.112 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-15 09:33:10.415 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:50904 10 6452 1 2025-11-15 09:34:10.849 00:00:10.447 TCP 1.101.0.1:3000 -> 23.104.0.1:49944 11 6504 1 2025-11-15 09:35:11.332 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:50958 10 6452 1 2025-11-15 09:36:11.725 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:33018 10 6452 1 2025-11-15 09:37:12.110 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37046 10 6452 1 2025-11-15 09:37:49.526 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 09:37:49.204 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 09:37:49.470 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 09:37:49.401 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 09:37:49.553 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 09:38:12.512 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45018 10 6452 1 2025-11-15 09:34:01.077 00:06:00.106 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-15 09:39:12.916 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46500 10 6452 1 2025-11-15 09:35:01.073 00:06:00.112 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-15 09:40:13.326 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:34616 10 6452 1 2025-11-15 09:41:13.728 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:43824 10 6452 1 2025-11-15 09:42:14.140 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:39802 10 6452 1 2025-11-15 09:42:49.416 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 09:42:49.058 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 09:42:49.097 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 09:42:49.332 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 09:42:49.146 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 09:43:14.503 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33202 10 6452 1 2025-11-15 09:44:14.906 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35688 10 6452 1 2025-11-15 09:45:15.309 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:58444 10 6452 1 2025-11-15 09:41:01.076 00:06:00.107 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-15 09:46:15.670 00:00:18.269 TCP 1.101.0.1:3000 -> 23.104.0.1:42244 10 6452 1 2025-11-15 09:42:01.075 00:06:00.111 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-15 09:47:23.982 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:57748 10 6452 1 2025-11-15 09:47:49.416 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 09:47:49.338 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 09:47:49.299 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 09:47:49.335 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 09:47:49.341 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 09:48:24.387 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53260 10 6452 1 2025-11-15 09:49:24.791 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:57926 10 6452 1 2025-11-15 09:50:25.150 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49254 10 6452 1 2025-11-15 09:51:25.552 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:49292 10 6452 1 2025-11-15 09:52:25.951 00:00:10.751 TCP 1.101.0.1:3000 -> 23.104.0.1:44938 10 6452 1 2025-11-15 09:52:49.426 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 09:52:49.397 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 09:52:49.362 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 09:52:49.469 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 09:52:49.445 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 09:48:01.086 00:06:00.097 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-15 09:53:26.743 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48264 10 6452 1 2025-11-15 09:49:01.082 00:06:00.105 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-15 09:54:27.147 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33438 10 6452 1 2025-11-15 09:55:27.545 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:41908 10 6452 1 2025-11-15 09:56:27.949 00:00:11.247 TCP 1.101.0.1:3000 -> 23.104.0.1:57018 10 6452 1 2025-11-15 09:57:29.238 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:43478 10 6452 1 2025-11-15 09:57:49.835 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 09:57:49.751 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 09:57:49.764 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 09:57:49.752 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 09:57:49.826 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 09:58:29.649 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:57626 10 6452 1 Summary: total flows: 136, total bytes: 420147, total packets: 1010, avg bps: 937, avg pps: 0, avg bpp: 415 Time window: 2025-11-15 08:58:56 - 2025-11-15 09:58:40 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0081s User: 0.0010s Wall: 0.0021s flows/second: 65611.4 Runtime: 0.0021s