Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-15 15:59:10.924 00:00:10.394 TCP 1.101.0.1:3000 -> 23.104.0.1:46068 13 6608 1 2025-11-15 16:00:11.355 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:59930 10 6452 1 2025-11-15 16:01:11.755 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:55020 10 6452 1 2025-11-15 16:02:12.154 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:41202 10 6452 1 2025-11-15 16:02:56.695 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 16:02:56.837 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 16:02:56.662 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 16:02:56.612 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 16:02:56.801 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 16:03:12.520 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:59102 10 6452 1 2025-11-15 15:59:01.228 00:06:00.069 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-15 16:04:12.882 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:44388 10 6452 1 2025-11-15 16:00:01.225 00:06:00.074 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-15 16:05:13.294 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51378 10 6452 1 2025-11-15 16:06:13.699 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:40580 10 6452 1 2025-11-15 16:07:14.113 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:36052 10 6452 1 2025-11-15 16:07:56.841 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 16:07:56.602 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 16:07:56.839 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 16:07:56.765 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 16:07:56.922 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 16:08:14.478 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33802 10 6452 1 2025-11-15 16:09:14.882 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41216 10 6452 1 2025-11-15 16:10:15.284 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49736 10 6452 1 2025-11-15 16:06:01.231 00:06:00.069 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-15 16:11:15.687 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55374 10 6452 1 2025-11-15 16:07:01.228 00:06:00.075 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-15 16:12:16.112 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:44674 10 6452 1 2025-11-15 16:12:57.017 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 16:12:56.930 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 16:12:56.882 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 16:12:56.933 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 16:12:56.978 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 16:13:16.474 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:49098 10 6452 1 2025-11-15 16:14:16.873 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53788 10 6452 1 2025-11-15 16:15:17.279 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:34374 10 6452 1 2025-11-15 16:16:17.685 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47240 10 6452 1 2025-11-15 16:17:18.113 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:59820 10 6452 1 2025-11-15 16:17:57.130 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 16:17:57.212 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 16:17:56.899 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 16:17:57.048 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 16:17:56.958 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 16:13:01.233 00:06:00.068 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-15 16:18:18.480 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56436 10 6452 1 2025-11-15 16:14:01.229 00:06:00.074 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-15 16:19:18.887 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:43338 10 6452 1 2025-11-15 16:20:19.263 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57600 10 6452 1 2025-11-15 16:21:19.670 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51480 10 6452 1 2025-11-15 16:22:20.101 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56408 10 6452 1 2025-11-15 16:22:57.200 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 16:22:57.057 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 16:22:57.259 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 16:22:57.148 00:00:00.028 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 16:22:57.340 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 16:23:20.506 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:40826 10 6452 1 2025-11-15 16:24:20.922 00:00:10.709 TCP 1.101.0.1:3000 -> 23.104.0.1:52912 10 6452 1 2025-11-15 16:20:01.236 00:06:00.065 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-15 16:25:21.680 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:42038 10 6452 1 2025-11-15 16:21:01.234 00:06:00.071 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-15 16:26:22.108 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49524 10 6452 1 2025-11-15 16:27:22.512 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:36928 10 6452 1 2025-11-15 16:27:57.569 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 16:27:57.485 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 16:27:57.413 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 16:27:57.488 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 16:27:57.557 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 16:28:22.914 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59966 10 6452 1 2025-11-15 16:29:23.316 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59316 10 6452 1 2025-11-15 16:30:23.723 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:42986 10 6452 1 2025-11-15 16:31:24.135 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:59080 10 6452 1 2025-11-15 16:27:01.237 00:06:00.067 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-15 16:32:24.542 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:46514 10 6452 1 2025-11-15 16:32:57.374 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 16:32:57.293 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 16:32:57.183 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 16:32:57.277 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 16:32:57.479 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 16:28:01.235 00:06:00.072 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-15 16:33:24.909 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:35862 10 6452 1 2025-11-15 16:34:25.320 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52156 10 6452 1 2025-11-15 16:35:25.725 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:54744 10 6452 1 2025-11-15 16:36:26.140 00:00:10.687 TCP 1.101.0.1:3000 -> 23.104.0.1:46978 10 6452 1 2025-11-15 16:37:26.864 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:47762 10 6452 1 2025-11-15 16:37:57.443 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 16:37:57.472 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 16:37:57.448 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 16:37:57.451 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 16:37:57.530 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 16:38:27.284 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55438 10 6452 1 2025-11-15 16:34:01.239 00:06:00.067 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-15 16:39:27.684 00:00:10.515 TCP 1.101.0.1:3000 -> 23.104.0.1:58302 10 6452 1 2025-11-15 16:35:01.236 00:06:00.072 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-15 16:40:28.241 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40830 10 6452 1 2025-11-15 16:41:28.647 00:00:10.403 TCP 1.101.0.1:3000 -> 23.104.0.1:54690 12 10375 1 2025-11-15 16:42:29.115 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:39556 10 6452 1 2025-11-15 16:42:57.756 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 16:42:57.654 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 16:42:57.790 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 16:42:57.695 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 16:42:57.874 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 16:43:29.475 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55870 10 6452 1 2025-11-15 16:44:29.881 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55594 10 6452 1 2025-11-15 16:45:30.284 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59080 10 6452 1 2025-11-15 16:41:01.240 00:06:00.073 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-15 16:46:30.688 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:55196 10 6452 1 2025-11-15 16:42:01.238 00:06:00.079 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-15 16:47:31.105 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37080 10 6452 1 2025-11-15 16:47:57.791 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 16:47:57.760 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 16:47:57.537 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 16:47:57.526 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 16:47:57.620 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 16:48:31.505 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:54560 10 6452 1 2025-11-15 16:49:31.913 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43128 10 6452 1 2025-11-15 16:50:32.314 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45444 10 6452 1 2025-11-15 16:51:32.719 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:57608 10 6452 1 2025-11-15 16:52:33.120 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:52194 10 6452 1 2025-11-15 16:52:57.894 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 16:52:57.789 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 16:52:57.514 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 16:52:57.794 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 16:52:57.658 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 16:48:01.253 00:06:00.062 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-15 16:53:33.533 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:55068 10 6452 1 2025-11-15 16:49:01.251 00:06:00.068 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-15 16:54:33.935 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:48014 10 6452 1 2025-11-15 16:55:34.359 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41912 10 6452 1 2025-11-15 16:56:34.762 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:54492 10 6452 1 2025-11-15 16:57:35.185 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47832 10 6452 1 2025-11-15 16:57:58.073 00:00:00.054 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 16:57:57.991 00:00:00.055 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 16:57:57.945 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 16:57:57.940 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 16:57:57.887 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 16:58:35.588 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41166 10 6452 1 Summary: total flows: 136, total bytes: 420095, total packets: 1009, avg bps: 937, avg pps: 0, avg bpp: 416 Time window: 2025-11-15 15:59:01 - 2025-11-15 16:58:45 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0035s User: 0.0018s Wall: 0.0021s flows/second: 63906.0 Runtime: 0.0021s