Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-15 17:59:01.766 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:42142 10 6452 1 2025-11-15 18:00:02.182 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:57320 10 6452 1 2025-11-15 18:01:02.589 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:37530 10 6452 1 2025-11-15 18:02:03.019 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:59396 10 6452 1 2025-11-15 18:02:58.968 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 18:02:58.822 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 18:02:58.843 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 18:02:58.843 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 18:02:58.926 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 17:58:01.273 00:06:00.064 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-15 18:03:03.423 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:54948 10 6452 1 2025-11-15 17:59:01.272 00:06:00.068 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-15 18:04:03.831 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:46888 10 6452 1 2025-11-15 18:05:04.239 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58966 10 6452 1 2025-11-15 18:06:04.644 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:57472 11 6492 1 2025-11-15 18:07:05.052 00:00:10.413 TCP 1.101.0.1:3000 -> 23.104.0.1:50272 11 6504 1 2025-11-15 18:07:59.290 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 18:07:59.252 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 18:07:59.287 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 18:07:59.215 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 18:07:59.380 00:00:00.011 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 18:08:05.506 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:52792 10 6452 1 2025-11-15 18:09:05.869 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:40946 10 6452 1 2025-11-15 18:05:01.276 00:06:00.062 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-15 18:10:06.274 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:59594 10 6452 1 2025-11-15 18:06:01.273 00:06:00.068 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-15 18:11:06.701 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:56480 10 6452 1 2025-11-15 18:12:07.109 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:36842 10 6452 1 2025-11-15 18:12:59.257 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 18:12:59.303 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 18:12:59.253 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 18:12:59.260 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 18:12:59.337 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 18:13:07.517 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:35422 10 6452 1 2025-11-15 18:14:07.920 00:00:10.877 TCP 1.101.0.1:3000 -> 23.104.0.1:42210 10 6452 1 2025-11-15 18:15:08.843 00:00:10.397 TCP 1.101.0.1:3000 -> 23.104.0.1:50610 10 6452 1 2025-11-15 18:16:09.287 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38694 10 6452 1 2025-11-15 18:12:01.279 00:06:00.062 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-15 18:17:09.694 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:60176 10 6452 1 2025-11-15 18:17:59.526 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 18:17:59.497 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 18:17:59.468 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 18:17:59.443 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 18:17:59.442 00:00:00.031 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 18:13:01.275 00:06:00.068 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-15 18:18:10.108 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:56006 10 6452 1 2025-11-15 18:19:10.510 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:44786 10 6452 1 2025-11-15 18:20:10.911 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57686 10 6452 1 2025-11-15 18:21:11.313 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:45338 10 6452 1 2025-11-15 18:22:11.681 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60378 10 6452 1 2025-11-15 18:22:59.633 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 18:22:59.590 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 18:22:59.638 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 18:22:59.703 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 18:22:59.723 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 18:23:12.103 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46586 10 6452 1 2025-11-15 18:19:01.281 00:06:00.061 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-15 18:24:12.505 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:40606 10 6452 1 2025-11-15 18:20:01.278 00:06:00.068 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-15 18:25:12.870 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:53548 10 6452 1 2025-11-15 18:26:13.237 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60368 10 6452 1 2025-11-15 18:27:13.638 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:58832 10 6452 1 2025-11-15 18:27:59.587 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 18:27:59.641 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 18:27:59.673 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 18:27:59.490 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 18:27:59.755 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 18:28:14.014 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54800 10 6452 1 2025-11-15 18:29:14.416 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:46838 10 6452 1 2025-11-15 18:30:14.815 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:35336 10 6452 1 2025-11-15 18:26:01.280 00:06:00.063 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-15 18:31:15.219 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57112 10 6452 1 2025-11-15 18:27:01.279 00:06:00.068 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-15 18:32:15.629 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:52976 10 6452 1 2025-11-15 18:32:59.745 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 18:32:59.746 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 18:32:59.641 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 18:32:59.639 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 18:32:59.829 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 18:33:16.038 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57616 10 6452 1 2025-11-15 18:34:16.440 00:00:10.399 TCP 1.101.0.1:3000 -> 23.104.0.1:60300 10 6452 1 2025-11-15 18:35:16.878 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47300 10 6452 1 2025-11-15 18:36:17.284 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:53490 10 6452 1 2025-11-15 18:37:17.647 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:32864 10 6452 1 2025-11-15 18:38:00.377 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 18:38:00.296 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 18:38:00.135 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 18:38:00.294 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 18:38:00.243 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 18:33:01.282 00:06:00.068 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-15 18:38:18.054 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48722 10 6452 1 2025-11-15 18:34:01.280 00:06:00.073 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-15 18:39:18.455 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:54878 10 6452 1 2025-11-15 18:40:18.817 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52750 10 6452 1 2025-11-15 18:41:19.218 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:35214 10 6452 1 2025-11-15 18:42:19.617 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:48580 10 6452 1 2025-11-15 18:42:59.760 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 18:43:00.095 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 18:42:59.847 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 18:43:00.009 00:00:00.041 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 18:42:59.931 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 18:43:20.023 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:60918 10 6452 1 2025-11-15 18:44:20.419 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:45504 10 6452 1 2025-11-15 18:40:01.284 00:06:00.073 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-15 18:45:20.821 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56374 10 6452 1 2025-11-15 18:41:01.283 00:06:00.075 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-15 18:46:21.224 00:00:10.441 TCP 1.101.0.1:3000 -> 23.104.0.1:56722 12 10369 1 2025-11-15 18:47:21.707 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38260 10 6452 1 2025-11-15 18:47:59.899 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 18:47:59.926 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 18:48:00.146 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 18:47:59.989 00:00:00.052 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 18:48:00.228 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 18:48:22.114 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:41990 10 6452 1 2025-11-15 18:49:22.525 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:53540 10 6452 1 2025-11-15 18:50:22.924 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:44238 10 6452 1 2025-11-15 18:51:23.321 00:00:24.249 TCP 1.101.0.1:3000 -> 23.104.0.1:34474 10 6452 1 2025-11-15 18:47:01.286 00:06:00.073 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-15 18:52:37.608 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54492 10 6452 1 2025-11-15 18:53:00.312 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 18:53:00.231 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 18:53:00.245 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 18:53:00.228 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 18:53:00.274 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 18:48:01.282 00:06:00.078 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-15 18:53:38.014 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:53466 10 6452 1 2025-11-15 18:54:38.412 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:34504 10 6452 1 2025-11-15 18:55:38.774 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:41442 10 6452 1 2025-11-15 18:56:39.143 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:34058 10 6452 1 2025-11-15 18:57:39.550 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34830 10 6452 1 2025-11-15 18:58:00.493 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 18:58:00.439 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 18:58:00.366 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 18:58:00.410 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 18:58:00.076 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 18:58:39.955 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:40130 10 6452 1 Summary: total flows: 136, total bytes: 420025, total packets: 1008, avg bps: 920, avg pps: 0, avg bpp: 416 Time window: 2025-11-15 17:58:01 - 2025-11-15 18:58:50 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0035s User: 0.0017s Wall: 0.0028s flows/second: 48883.8 Runtime: 0.0028s