Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-16 04:59:29.330 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:37668 10 6452 1 2025-11-16 05:00:29.692 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59168 10 6452 1 2025-11-16 04:56:01.488 00:06:00.052 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 05:01:30.113 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:59870 10 6452 1 2025-11-16 04:57:01.485 00:06:00.058 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 05:02:30.471 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:43554 10 6452 1 2025-11-16 05:03:12.544 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 05:03:12.291 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 05:03:12.373 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 05:03:12.543 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 05:03:12.457 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 05:03:30.901 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:38258 12 6556 1 2025-11-16 05:04:31.322 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54456 10 6452 1 2025-11-16 05:05:31.723 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:42200 10 6452 1 2025-11-16 05:06:32.135 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:54568 10 6452 1 2025-11-16 05:07:32.547 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54776 10 6452 1 2025-11-16 05:03:01.488 00:06:00.055 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 05:08:12.442 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 05:08:12.434 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 05:08:12.571 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 05:08:12.347 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 05:08:12.654 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 05:08:32.958 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:34980 10 6452 1 2025-11-16 05:04:01.487 00:06:00.061 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 05:09:33.329 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40142 10 6452 1 2025-11-16 05:10:33.731 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:37560 10 6452 1 2025-11-16 05:11:34.110 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:56464 10 6452 1 2025-11-16 05:12:34.480 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48410 10 6452 1 2025-11-16 05:13:12.557 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 05:13:12.485 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 05:13:12.680 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 05:13:12.558 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 05:13:12.763 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 05:13:34.889 00:00:10.634 TCP 1.101.0.1:3000 -> 23.104.0.1:56384 12 6556 1 2025-11-16 05:14:35.571 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:43902 10 6452 1 2025-11-16 05:10:01.491 00:06:00.055 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 05:15:35.929 00:00:10.393 TCP 1.101.0.1:3000 -> 23.104.0.1:43070 10 6452 1 2025-11-16 05:11:01.487 00:06:00.061 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 05:16:36.364 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:43378 10 6452 1 2025-11-16 05:17:36.770 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:33736 10 6452 1 2025-11-16 05:18:12.633 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 05:18:12.809 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 05:18:12.482 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 05:18:12.549 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 05:18:12.813 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 05:18:37.191 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:58986 10 6452 1 2025-11-16 05:19:37.588 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:53622 10 6452 1 2025-11-16 05:20:37.997 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55364 10 6452 1 2025-11-16 05:21:38.404 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46068 10 6452 1 2025-11-16 05:17:01.498 00:06:00.050 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 05:22:38.807 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:36940 10 6452 1 2025-11-16 05:18:01.489 00:06:00.065 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 05:23:12.643 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 05:23:12.856 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 05:23:12.659 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 05:23:12.561 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 05:23:12.752 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 05:23:39.208 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:48584 10 6452 1 2025-11-16 05:24:39.576 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:50532 10 6452 1 2025-11-16 05:25:39.960 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52164 10 6452 1 2025-11-16 05:26:40.367 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:47580 10 6452 1 2025-11-16 05:27:40.728 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:58894 10 6452 1 2025-11-16 05:28:12.988 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 05:28:12.851 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 05:28:12.918 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 05:28:12.905 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 05:28:12.675 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 05:28:41.132 00:00:10.424 TCP 1.101.0.1:3000 -> 23.104.0.1:58774 11 6504 1 2025-11-16 05:24:01.491 00:06:00.061 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 05:29:41.595 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:36592 10 6452 1 2025-11-16 05:25:01.489 00:06:00.065 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 05:30:42.008 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51796 10 6452 1 2025-11-16 05:31:42.417 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34832 10 6452 1 2025-11-16 05:32:42.820 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51510 10 6452 1 2025-11-16 05:33:13.019 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 05:33:12.994 00:00:00.041 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 05:33:12.895 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 05:33:12.934 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 05:33:12.934 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 05:33:43.226 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38164 10 6452 1 2025-11-16 05:34:43.633 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:32826 10 6452 1 2025-11-16 05:35:44.032 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56840 10 6452 1 2025-11-16 05:31:01.495 00:06:00.057 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 05:36:44.435 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48742 10 6452 1 2025-11-16 05:32:01.497 00:06:00.059 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 05:37:44.833 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:45214 10 6452 1 2025-11-16 05:38:12.945 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 05:38:13.426 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 05:38:12.962 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 05:38:12.862 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 05:38:12.857 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 05:38:45.209 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49508 10 6452 1 2025-11-16 05:39:45.608 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35224 10 6452 1 2025-11-16 05:40:46.009 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:49690 10 6452 1 2025-11-16 05:41:46.427 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:55754 10 6452 1 2025-11-16 05:42:46.833 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:47582 10 6452 1 2025-11-16 05:38:01.497 00:06:00.060 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 05:43:13.233 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 05:43:12.986 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 05:43:13.230 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 05:43:12.983 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 05:43:13.313 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 05:43:47.239 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:44292 10 6452 1 2025-11-16 05:39:01.494 00:06:00.065 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 05:44:47.647 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:44164 10 6452 1 2025-11-16 05:45:48.062 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:40400 10 6452 1 2025-11-16 05:46:48.473 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35084 10 6452 1 2025-11-16 05:47:48.878 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38116 10 6452 1 2025-11-16 05:48:13.258 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 05:48:13.115 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 05:48:13.176 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 05:48:13.430 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 05:48:13.337 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 05:48:49.290 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:35658 10 6452 1 2025-11-16 05:49:49.691 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47550 10 6452 1 2025-11-16 05:45:01.499 00:06:00.059 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 05:50:50.111 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:35304 10 6452 1 2025-11-16 05:46:01.497 00:06:00.067 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 05:51:50.508 00:00:10.608 TCP 1.101.0.1:3000 -> 23.104.0.1:43800 10 6452 1 2025-11-16 05:52:51.155 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:54440 10 6452 1 2025-11-16 05:53:13.900 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 05:53:13.770 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 05:53:13.812 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 05:53:13.857 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 05:53:13.895 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 05:53:51.564 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:40836 10 6452 1 2025-11-16 05:54:51.972 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:57352 10 6452 1 2025-11-16 05:55:52.388 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50846 10 6452 1 2025-11-16 05:56:52.792 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38940 10 6452 1 2025-11-16 05:52:01.499 00:06:00.064 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 05:53:01.498 00:06:00.069 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 05:57:53.201 00:00:10.420 TCP 1.101.0.1:3000 -> 23.104.0.1:56494 11 6504 1 2025-11-16 05:58:13.605 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 05:58:13.646 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 05:58:13.657 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 05:58:13.535 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 05:58:13.739 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 Summary: total flows: 137, total bytes: 411598, total packets: 1028, avg bps: 871, avg pps: 0, avg bpp: 400 Time window: 2025-11-16 04:56:01 - 2025-11-16 05:59:01 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0020s User: 0.0030s Wall: 0.0023s flows/second: 60429.0 Runtime: 0.0023s