Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-15 09:59:30.052 00:00:10.997 TCP 1.101.0.1:3000 -> 23.104.0.1:44316 10 6452 1 2025-11-15 09:55:01.085 00:06:00.100 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-15 10:00:31.103 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:48400 10 6452 1 2025-11-15 09:56:01.084 00:06:00.105 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-15 10:01:31.498 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:37060 10 6452 1 2025-11-15 10:02:31.860 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:44546 10 6452 1 2025-11-15 10:02:49.518 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 10:02:49.469 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 10:02:49.752 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 10:02:49.425 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 10:02:49.836 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 10:03:32.282 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46346 10 6452 1 2025-11-15 10:04:32.682 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:40910 10 6452 1 2025-11-15 10:05:33.041 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38564 10 6452 1 2025-11-15 10:06:33.446 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:55748 10 6452 1 2025-11-15 10:02:01.089 00:06:00.098 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-15 10:07:49.699 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 10:07:33.845 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:38206 10 6452 1 2025-11-15 10:07:49.504 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 10:07:49.547 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 10:07:49.618 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 10:07:49.683 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 10:03:01.087 00:06:00.103 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-15 10:08:34.271 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41638 10 6452 1 2025-11-15 10:09:34.674 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:52838 10 6452 1 2025-11-15 10:10:35.103 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:60588 10 6452 1 2025-11-15 10:11:35.510 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:37088 10 6452 1 2025-11-15 10:12:49.729 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 10:12:49.776 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 10:12:35.920 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:50312 10 6452 1 2025-11-15 10:12:49.741 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 10:12:49.820 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 10:12:49.823 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 10:13:36.348 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51652 10 6452 1 2025-11-15 10:09:01.091 00:06:00.098 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-15 10:14:36.754 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46506 10 6452 1 2025-11-15 10:10:01.089 00:06:00.103 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-15 10:15:37.177 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:34536 10 6452 1 2025-11-15 10:16:37.588 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:45712 10 6452 1 2025-11-15 10:17:49.987 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 10:17:49.878 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 10:17:50.067 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 10:17:49.684 00:00:00.031 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 10:17:38.001 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57506 10 6452 1 2025-11-15 10:17:50.150 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 10:18:38.403 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55554 12 6556 1 2025-11-15 10:19:38.808 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:45370 10 6452 1 2025-11-15 10:20:39.213 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:56238 10 6452 1 2025-11-15 10:16:01.094 00:06:00.098 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-15 10:21:39.621 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:45376 10 6452 1 2025-11-15 10:17:01.092 00:06:00.103 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-15 10:22:39.985 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54280 10 6452 1 2025-11-15 10:22:50.639 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 10:22:49.728 00:00:00.027 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 10:22:50.624 00:00:00.027 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 10:22:50.629 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 10:22:50.707 00:00:00.026 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 10:23:40.392 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:43528 10 6452 1 2025-11-15 10:24:40.804 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60440 10 6452 1 2025-11-15 10:25:41.208 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57112 10 6452 1 2025-11-15 10:26:41.606 00:00:11.000 TCP 1.101.0.1:3000 -> 23.104.0.1:34732 10 6452 1 2025-11-15 10:27:50.158 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 10:27:50.120 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 10:27:49.988 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 10:27:50.076 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 10:27:50.070 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 10:27:42.648 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36668 10 6452 1 2025-11-15 10:23:01.095 00:06:00.101 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-15 10:28:43.055 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:45106 10 6452 1 2025-11-15 10:24:01.092 00:06:00.107 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-15 10:29:43.416 00:00:10.906 TCP 1.101.0.1:3000 -> 23.104.0.1:53650 10 6452 1 2025-11-15 10:30:44.357 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:60574 10 6452 1 2025-11-15 10:31:44.761 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:54022 10 6452 1 2025-11-15 10:32:50.219 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 10:32:49.779 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 10:32:50.106 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 10:32:50.226 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 10:32:50.189 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 10:32:45.173 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:59492 10 6452 1 2025-11-15 10:33:45.576 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:57932 10 6452 1 2025-11-15 10:34:45.936 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:47716 10 6452 1 2025-11-15 10:30:01.113 00:06:00.086 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-15 10:35:46.359 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:50664 10 6452 1 2025-11-15 10:31:01.098 00:06:00.103 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-15 10:36:46.770 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:60430 10 6452 1 2025-11-15 10:37:50.437 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 10:37:50.277 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 10:37:50.336 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 10:37:50.338 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 10:37:50.421 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 10:37:47.138 00:00:10.601 TCP 1.101.0.1:3000 -> 23.104.0.1:50904 10 6452 1 2025-11-15 10:38:47.780 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33236 10 6452 1 2025-11-15 10:39:48.196 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35372 10 6452 1 2025-11-15 10:40:48.592 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59778 10 6452 1 2025-11-15 10:41:48.993 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:37262 10 6452 1 2025-11-15 10:37:01.104 00:06:00.098 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-15 10:42:49.992 00:00:00.039 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 10:42:50.304 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 10:42:50.383 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 10:42:50.317 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 10:42:50.387 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 10:42:49.412 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:59368 10 6452 1 2025-11-15 10:38:01.106 00:06:00.097 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-15 10:43:49.823 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:39510 10 6452 1 2025-11-15 10:44:50.192 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59776 10 6452 1 2025-11-15 10:45:50.596 00:00:10.441 TCP 1.101.0.1:3000 -> 23.104.0.1:43092 12 10369 1 2025-11-15 10:46:51.094 00:00:14.581 TCP 1.101.0.1:3000 -> 23.104.0.1:35118 10 6452 1 2025-11-15 10:47:50.521 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 10:47:50.450 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 10:47:50.213 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 10:47:50.438 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 10:47:50.505 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 10:47:55.715 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:60838 10 6452 1 2025-11-15 10:44:01.113 00:06:00.089 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-15 10:48:56.121 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60224 10 6452 1 2025-11-15 10:45:01.109 00:06:00.095 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-15 10:49:56.524 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:36436 10 6452 1 2025-11-15 10:50:56.881 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53690 10 6452 1 2025-11-15 10:51:57.293 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58118 10 6452 1 2025-11-15 10:52:50.598 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 10:52:50.185 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 10:52:50.524 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 10:52:50.442 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 10:52:50.608 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 10:52:57.700 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42800 10 6452 1 2025-11-15 10:53:58.113 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50626 10 6452 1 2025-11-15 10:54:58.517 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:48562 10 6452 1 2025-11-15 10:51:01.114 00:06:00.089 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-15 10:55:58.919 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52906 10 6452 1 2025-11-15 10:52:01.111 00:06:00.095 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-15 10:56:59.332 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:43836 10 6452 1 2025-11-15 10:57:50.933 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 10:57:50.534 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 10:57:50.814 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 10:57:50.930 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 10:57:50.895 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 10:57:59.705 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54700 10 6452 1 Summary: total flows: 137, total bytes: 415307, total packets: 1026, avg bps: 876, avg pps: 0, avg bpp: 404 Time window: 2025-11-15 09:55:01 - 2025-11-15 10:58:10 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0044s User: 0.0007s Wall: 0.0037s flows/second: 37512.7 Runtime: 0.0037s