Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-15 14:58:43.677 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55386 10 6452 1 2025-11-15 14:59:44.106 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60032 10 6452 1 2025-11-15 15:00:44.511 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45644 10 6452 1 2025-11-15 14:56:01.210 00:06:00.071 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-15 15:01:44.910 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:34160 10 6452 1 2025-11-15 14:57:01.209 00:06:00.075 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-15 15:02:55.695 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 15:02:55.688 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 15:02:55.410 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 15:02:55.611 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 15:02:55.614 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 15:02:45.279 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47154 10 6452 1 2025-11-15 15:03:45.680 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:56586 10 6452 1 2025-11-15 15:04:46.108 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:35530 10 6452 1 2025-11-15 15:05:46.470 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:34012 10 6452 1 2025-11-15 15:06:46.839 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:55786 10 6452 1 2025-11-15 15:07:55.788 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 15:07:55.631 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 15:07:55.682 00:00:00.028 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 15:07:55.690 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 15:07:55.766 00:00:00.028 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 15:07:47.261 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56590 10 6452 1 2025-11-15 15:03:01.212 00:06:00.071 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-15 15:08:47.664 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60324 10 6452 1 2025-11-15 15:04:01.210 00:06:00.076 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-15 15:09:48.094 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41888 10 6452 1 2025-11-15 15:10:48.501 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60716 12 6556 1 2025-11-15 15:11:48.903 00:00:10.351 TCP 1.101.0.1:3000 -> 23.104.0.1:46680 10 6452 1 2025-11-15 15:12:55.811 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 15:12:55.732 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 15:12:55.695 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 15:12:55.728 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 15:12:55.734 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 15:12:49.291 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:35748 10 6452 1 2025-11-15 15:13:49.655 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:51764 10 6452 1 2025-11-15 15:14:50.090 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:36276 10 6452 1 2025-11-15 15:10:01.215 00:06:00.070 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-15 15:15:50.467 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:44166 10 6452 1 2025-11-15 15:11:01.212 00:06:00.075 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-15 15:16:50.872 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:46040 10 6452 1 2025-11-15 15:17:56.256 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 15:17:56.343 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 15:17:56.152 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 15:17:56.323 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 15:17:56.234 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 15:17:51.275 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:42028 10 6452 1 2025-11-15 15:18:51.684 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:34546 10 6452 1 2025-11-15 15:19:52.123 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:35724 10 6452 1 2025-11-15 15:20:52.521 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:55074 10 6452 1 2025-11-15 15:21:52.929 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:51770 10 6452 1 2025-11-15 15:17:01.215 00:06:00.070 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-15 15:22:56.052 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 15:22:55.969 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 15:22:56.108 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 15:22:55.988 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 15:22:56.065 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 15:22:53.349 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44174 10 6452 1 2025-11-15 15:18:01.213 00:06:00.077 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-15 15:23:53.759 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:58128 10 6452 1 2025-11-15 15:24:54.184 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40108 10 6452 1 2025-11-15 15:25:54.589 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:59320 10 6452 1 2025-11-15 15:26:54.953 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47658 10 6452 1 2025-11-15 15:27:55.977 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 15:27:55.726 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 15:27:56.067 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 15:27:55.984 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 15:27:56.080 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 15:27:55.359 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:45052 10 6452 1 2025-11-15 15:24:01.219 00:06:00.069 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-15 15:28:55.767 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:48810 10 6452 1 2025-11-15 15:25:01.217 00:06:00.074 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-15 15:29:56.183 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56744 10 6452 1 2025-11-15 15:30:56.595 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34544 10 6452 1 2025-11-15 15:31:56.994 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34684 10 6452 1 2025-11-15 15:32:56.364 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 15:32:56.191 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 15:32:56.206 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 15:32:56.366 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 15:32:56.290 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 15:32:57.411 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44638 10 6452 1 2025-11-15 15:33:57.812 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:50830 10 6452 1 2025-11-15 15:34:58.178 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35094 10 6452 1 2025-11-15 15:31:01.220 00:06:00.069 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-15 15:35:58.579 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:45218 10 6452 1 2025-11-15 15:32:01.219 00:06:00.074 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-15 15:36:59.009 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:40394 10 6452 1 2025-11-15 15:37:56.360 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 15:37:56.203 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 15:37:56.209 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 15:37:56.415 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 15:37:56.293 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 15:37:59.414 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:60662 10 6452 1 2025-11-15 15:38:59.844 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:38530 10 6452 1 2025-11-15 15:40:00.278 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39370 10 6452 1 2025-11-15 15:41:00.681 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41928 10 6452 1 2025-11-15 15:42:01.107 00:00:10.920 TCP 1.101.0.1:3000 -> 23.104.0.1:33602 10 6452 1 2025-11-15 15:42:56.428 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 15:42:56.422 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 15:42:56.392 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 15:42:56.316 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 15:42:56.510 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 15:38:01.223 00:06:00.068 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-15 15:43:02.084 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:42012 10 6452 1 2025-11-15 15:39:01.221 00:06:00.073 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-15 15:44:02.487 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:53258 10 6452 1 2025-11-15 15:45:02.844 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:39990 10 6452 1 2025-11-15 15:46:03.268 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33926 10 6452 1 2025-11-15 15:47:03.672 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:44624 10 6452 1 2025-11-15 15:47:56.764 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 15:47:56.581 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 15:47:56.921 00:00:00.028 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 15:47:56.922 00:00:00.034 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 15:47:57.017 00:00:00.019 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 15:48:04.111 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:37220 10 6452 1 2025-11-15 15:49:04.519 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56654 10 6452 1 2025-11-15 15:45:01.223 00:06:00.069 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-15 15:50:04.922 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:48800 10 6452 1 2025-11-15 15:46:01.223 00:06:00.073 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-15 15:51:05.330 00:00:10.442 TCP 1.101.0.1:3000 -> 23.104.0.1:54308 12 10375 1 2025-11-15 15:52:05.811 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53814 10 6452 1 2025-11-15 15:52:56.538 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 15:52:56.513 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 15:52:56.342 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 15:52:56.594 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 15:52:56.677 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 15:53:06.213 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33170 10 6452 1 2025-11-15 15:54:06.615 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:36676 10 6452 1 2025-11-15 15:55:06.975 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:40636 10 6452 1 2025-11-15 15:56:07.403 00:00:10.447 TCP 1.101.0.1:3000 -> 23.104.0.1:39196 12 10375 1 2025-11-15 15:52:01.226 00:06:00.067 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-15 15:57:07.890 00:00:10.394 TCP 1.101.0.1:3000 -> 23.104.0.1:58484 12 6556 1 2025-11-15 15:57:56.512 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 15:57:56.728 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 15:57:56.493 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 15:57:56.773 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 15:57:56.595 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 15:53:01.225 00:06:00.071 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-15 15:58:08.325 00:00:12.533 TCP 1.101.0.1:3000 -> 23.104.0.1:58168 10 6452 1 Summary: total flows: 138, total bytes: 425792, total packets: 1040, avg bps: 901, avg pps: 0, avg bpp: 409 Time window: 2025-11-15 14:56:01 - 2025-11-15 15:59:01 Total flows processed: 138, passed: 138, Blocks skipped: 0, Bytes read: 14416 Sys: 0.0046s User: 0.0009s Wall: 0.0076s flows/second: 18110.0 Runtime: 0.0076s