Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-15 10:59:00.124 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40388 10 6452 1 2025-11-15 11:00:00.528 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59452 10 6452 1 2025-11-15 11:01:00.928 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:50072 10 6452 1 2025-11-15 11:02:01.347 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47210 10 6452 1 2025-11-15 11:02:50.801 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 11:02:50.578 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 11:02:50.805 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 11:02:50.916 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 11:02:50.888 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 10:58:01.115 00:06:00.090 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-15 11:03:01.749 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38320 10 6452 1 2025-11-15 10:59:01.113 00:06:00.095 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-15 11:04:02.153 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33672 10 6452 1 2025-11-15 11:05:02.558 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:55218 10 6452 1 2025-11-15 11:06:02.961 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37962 11 6492 1 2025-11-15 11:07:03.363 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:60020 10 6452 1 2025-11-15 11:07:50.863 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 11:07:50.702 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 11:07:50.948 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 11:07:51.161 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 11:07:51.077 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 11:08:03.771 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:43970 10 6452 1 2025-11-15 11:09:04.186 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35668 10 6452 1 2025-11-15 11:05:01.116 00:06:00.094 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-15 11:10:04.591 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:55148 10 6452 1 2025-11-15 11:06:01.114 00:06:00.099 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-15 11:11:05.003 00:00:10.832 TCP 1.101.0.1:3000 -> 23.104.0.1:33674 10 6452 1 2025-11-15 11:12:05.873 00:00:10.458 TCP 1.101.0.1:3000 -> 23.104.0.1:45020 10 6452 1 2025-11-15 11:12:50.898 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 11:12:50.913 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 11:12:50.989 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 11:12:50.994 00:00:00.027 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 11:12:51.071 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 11:13:06.813 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55588 10 6452 1 2025-11-15 11:14:07.216 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39124 10 6452 1 2025-11-15 11:15:07.618 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:44086 10 6452 1 2025-11-15 11:16:08.041 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42156 10 6452 1 2025-11-15 11:12:01.119 00:06:00.094 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-15 11:17:08.445 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:49268 10 6452 1 2025-11-15 11:17:50.880 00:00:00.029 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 11:17:51.158 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 11:17:51.243 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 11:17:51.159 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 11:17:51.326 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 11:13:01.115 00:06:00.104 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-15 11:18:08.806 00:00:10.681 TCP 1.101.0.1:3000 -> 23.104.0.1:41988 10 6452 1 2025-11-15 11:19:09.526 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:38936 10 6452 1 2025-11-15 11:20:09.929 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:44634 10 6452 1 2025-11-15 11:21:10.340 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43912 10 6452 1 2025-11-15 11:22:10.744 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:51280 10 6452 1 2025-11-15 11:22:50.861 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 11:22:50.948 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 11:22:51.133 00:00:00.030 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 11:22:51.108 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 11:22:51.031 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 11:23:11.141 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:59706 10 6452 1 2025-11-15 11:19:01.122 00:06:00.095 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-15 11:24:11.507 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:54464 10 6452 1 2025-11-15 11:20:01.119 00:06:00.100 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-15 11:25:11.877 00:00:10.394 TCP 1.101.0.1:3000 -> 23.104.0.1:41288 10 6452 1 2025-11-15 11:26:12.306 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:57352 10 6452 1 2025-11-15 11:27:12.720 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:53010 10 6452 1 2025-11-15 11:27:51.058 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 11:27:51.247 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 11:27:51.059 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 11:27:51.059 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 11:27:51.143 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 11:28:13.135 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:44254 10 6452 1 2025-11-15 11:29:13.554 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59258 10 6452 1 2025-11-15 11:30:13.956 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:52584 10 6452 1 2025-11-15 11:26:01.124 00:06:00.094 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-15 11:31:14.376 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51852 10 6452 1 2025-11-15 11:27:01.123 00:06:00.099 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-15 11:32:14.788 00:00:10.355 TCP 1.101.0.1:3000 -> 23.104.0.1:47232 10 6452 1 2025-11-15 11:32:51.614 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 11:32:51.529 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 11:32:51.319 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 11:32:51.532 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 11:32:51.343 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 11:33:15.185 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:50000 10 6452 1 2025-11-15 11:34:15.586 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42750 10 6452 1 2025-11-15 11:35:15.992 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:49892 10 6452 1 2025-11-15 11:36:16.397 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41662 10 6452 1 2025-11-15 11:37:16.799 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41140 10 6452 1 2025-11-15 11:37:51.491 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 11:37:51.411 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 11:37:51.202 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 11:37:51.409 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 11:37:51.554 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 11:33:01.126 00:06:00.094 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-15 11:38:17.200 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:51028 10 6452 1 2025-11-15 11:34:01.124 00:06:00.099 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-15 11:39:17.562 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56722 10 6452 1 2025-11-15 11:40:17.964 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:55520 10 6452 1 2025-11-15 11:41:18.379 00:00:10.570 TCP 1.101.0.1:3000 -> 23.104.0.1:56374 10 6452 1 2025-11-15 11:42:18.986 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:39416 10 6452 1 2025-11-15 11:42:51.745 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 11:42:51.546 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 11:42:51.555 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 11:42:51.662 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 11:42:51.575 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 11:43:19.356 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:48824 10 6452 1 2025-11-15 11:44:19.716 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55692 10 6452 1 2025-11-15 11:40:01.133 00:06:00.092 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-15 11:45:20.123 00:00:10.396 TCP 1.101.0.1:3000 -> 23.104.0.1:43682 10 6452 1 2025-11-15 11:41:01.125 00:06:00.103 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-15 11:46:20.581 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:33666 10 6452 1 2025-11-15 11:47:20.996 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:49722 10 6452 1 2025-11-15 11:47:51.827 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 11:47:51.774 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 11:47:51.744 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 11:47:51.804 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 11:47:51.744 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 11:48:21.362 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50976 10 6452 1 2025-11-15 11:49:21.769 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:44438 10 6452 1 2025-11-15 11:50:22.188 00:00:10.772 TCP 1.101.0.1:3000 -> 23.104.0.1:58744 10 6452 1 2025-11-15 11:51:22.991 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41486 10 6452 1 2025-11-15 11:47:01.128 00:06:00.097 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-15 11:52:23.401 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52390 10 6452 1 2025-11-15 11:52:51.810 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 11:52:51.720 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 11:52:51.605 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 11:52:51.727 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 11:52:51.835 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 11:48:01.126 00:06:00.102 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-15 11:53:23.804 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54374 10 6452 1 2025-11-15 11:54:24.211 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:43192 10 6452 1 2025-11-15 11:55:24.571 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57044 10 6452 1 2025-11-15 11:56:24.975 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58712 10 6452 1 2025-11-15 11:57:25.383 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:52444 10 6452 1 2025-11-15 11:57:51.993 00:00:00.026 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 11:57:51.911 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 11:57:51.928 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 11:57:51.667 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 11:57:51.808 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 11:58:25.745 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:34850 10 6452 1 Summary: total flows: 136, total bytes: 416056, total packets: 1005, avg bps: 915, avg pps: 0, avg bpp: 413 Time window: 2025-11-15 10:58:01 - 2025-11-15 11:58:36 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0044s User: 0.0009s Wall: 0.0027s flows/second: 51301.9 Runtime: 0.0027s