Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-15 12:58:51.553 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49572 10 6452 1 2025-11-15 12:59:51.954 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:38788 10 6452 1 2025-11-15 13:00:52.356 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:52014 10 6452 1 2025-11-15 13:01:52.720 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:36766 10 6452 1 2025-11-15 12:57:01.157 00:06:00.083 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-15 13:02:53.355 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 13:02:53.271 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 13:02:53.196 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 13:02:53.272 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 13:02:53.373 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 12:58:01.155 00:06:00.088 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-15 13:02:53.143 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45804 10 6452 1 2025-11-15 13:03:53.545 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:53426 10 6452 1 2025-11-15 13:04:53.946 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:59238 10 6452 1 2025-11-15 13:05:54.325 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:35942 10 6452 1 2025-11-15 13:06:54.685 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:48740 10 6452 1 2025-11-15 13:07:53.243 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 13:07:53.237 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 13:07:52.925 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 13:07:53.161 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 13:07:53.177 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 13:07:55.117 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:59090 10 6452 1 2025-11-15 13:08:55.523 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:60400 10 6452 1 2025-11-15 13:04:01.160 00:06:00.087 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-15 13:05:01.157 00:06:00.090 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-15 13:09:55.926 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:43494 10 6452 1 2025-11-15 13:10:56.348 00:00:10.443 TCP 1.101.0.1:3000 -> 23.104.0.1:52918 12 10369 1 2025-11-15 13:11:56.831 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56252 10 6452 1 2025-11-15 13:12:53.411 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 13:12:53.081 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 13:12:53.451 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 13:12:53.450 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 13:12:53.533 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 13:12:57.227 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:60648 10 6452 1 2025-11-15 13:13:57.590 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:47918 10 6452 1 2025-11-15 13:14:57.954 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:48350 10 6452 1 2025-11-15 13:11:01.160 00:06:00.085 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-15 13:15:58.361 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57870 10 6452 1 2025-11-15 13:12:01.158 00:06:00.093 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-15 13:16:58.781 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:49272 10 6452 1 2025-11-15 13:17:53.548 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 13:17:53.254 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 13:17:53.212 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 13:17:53.467 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 13:17:53.567 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 13:17:59.189 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50808 10 6452 1 2025-11-15 13:18:59.593 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60352 10 6452 1 2025-11-15 13:19:59.995 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46934 10 6452 1 2025-11-15 13:21:00.398 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:34078 10 6452 1 2025-11-15 13:22:00.759 00:00:10.659 TCP 1.101.0.1:3000 -> 23.104.0.1:52338 10 6452 1 2025-11-15 13:22:53.673 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 13:22:53.513 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 13:22:53.760 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 13:22:53.672 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 13:22:53.843 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 13:18:01.163 00:06:00.087 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-15 13:23:01.456 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:50178 10 6452 1 2025-11-15 13:19:01.161 00:06:00.091 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-15 13:24:01.851 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:56054 10 6452 1 2025-11-15 13:25:02.274 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38086 10 6452 1 2025-11-15 13:26:02.677 00:00:10.610 TCP 1.101.0.1:3000 -> 23.104.0.1:43010 10 6452 1 2025-11-15 13:27:03.328 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:34202 10 6452 1 2025-11-15 13:27:53.529 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 13:27:53.576 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 13:27:53.614 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 13:27:53.536 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 13:27:53.698 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 13:28:03.734 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:58524 10 6452 1 2025-11-15 13:29:04.143 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:53496 10 6452 1 2025-11-15 13:25:01.164 00:06:00.088 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-15 13:30:04.505 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48696 10 6452 1 2025-11-15 13:26:01.161 00:06:00.095 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-15 13:31:04.908 00:00:10.466 TCP 1.101.0.1:3000 -> 23.104.0.1:46476 12 10375 1 2025-11-15 13:32:05.413 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:59458 10 6452 1 2025-11-15 13:32:53.837 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 13:32:53.753 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 13:32:53.587 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 13:32:53.755 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 13:32:53.616 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 13:33:05.823 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:57592 10 6452 1 2025-11-15 13:34:06.188 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:56978 10 6452 1 2025-11-15 13:35:06.611 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49292 10 6452 1 2025-11-15 13:36:07.015 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39432 10 6452 1 2025-11-15 13:32:01.168 00:06:00.086 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-15 13:37:07.415 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:36276 10 6452 1 2025-11-15 13:37:53.985 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 13:37:53.692 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 13:37:53.866 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 13:37:53.570 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 13:37:53.949 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 13:33:01.165 00:06:00.091 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-15 13:38:07.822 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38026 10 6452 1 2025-11-15 13:39:08.225 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54574 10 6452 1 2025-11-15 13:40:08.625 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:47846 10 6452 1 2025-11-15 13:41:08.984 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:55336 10 6452 1 2025-11-15 13:42:09.393 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:46972 10 6452 1 2025-11-15 13:42:53.995 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 13:42:53.861 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 13:42:53.748 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 13:42:53.912 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 13:42:53.864 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 13:43:09.755 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45654 10 6452 1 2025-11-15 13:39:01.167 00:06:00.088 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-15 13:44:10.152 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55846 10 6452 1 2025-11-15 13:40:01.165 00:06:00.094 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-15 13:45:10.556 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:51440 10 6452 1 2025-11-15 13:46:10.941 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:57806 10 6452 1 2025-11-15 13:47:11.361 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:45812 10 6452 1 2025-11-15 13:47:54.203 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 13:47:54.175 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 13:47:53.911 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 13:47:54.122 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 13:47:54.118 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 13:48:11.767 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:44892 10 6452 1 2025-11-15 13:49:12.189 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:32770 10 6452 1 2025-11-15 13:50:12.597 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:47318 10 6452 1 2025-11-15 13:46:01.170 00:06:00.088 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-15 13:51:12.963 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42088 10 6452 1 2025-11-15 13:47:01.166 00:06:00.093 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-15 13:52:13.366 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59542 10 6452 1 2025-11-15 13:52:54.236 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 13:52:53.985 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 13:52:54.153 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 13:52:53.948 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 13:52:54.293 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 13:53:13.773 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:32940 10 6452 1 2025-11-15 13:54:14.144 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:37946 10 6452 1 2025-11-15 13:55:14.542 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42522 10 6452 1 2025-11-15 13:56:14.944 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:57976 10 6452 1 2025-11-15 13:57:15.358 00:00:10.590 TCP 1.101.0.1:3000 -> 23.104.0.1:57660 10 6452 1 2025-11-15 13:57:54.235 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 13:57:53.863 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 13:57:54.068 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 13:57:54.241 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 13:57:54.152 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 13:53:01.184 00:06:00.075 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-15 13:58:15.987 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:47768 10 6452 1 Summary: total flows: 137, total bytes: 424717, total packets: 1022, avg bps: 913, avg pps: 0, avg bpp: 415 Time window: 2025-11-15 12:57:01 - 2025-11-15 13:59:01 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0040s User: 0.0020s Wall: 0.0017s flows/second: 80978.0 Runtime: 0.0017s