Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-16 07:58:51.361 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43846 10 6452 1 2025-11-16 07:59:51.768 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:54804 10 6452 1 2025-11-16 08:00:52.175 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:53354 10 6452 1 2025-11-16 08:01:52.537 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:48352 10 6452 1 2025-11-16 08:02:52.934 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:51872 10 6452 1 2025-11-16 07:58:01.538 00:06:00.060 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 08:03:15.968 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 08:03:15.827 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 08:03:15.912 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 08:03:15.695 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 08:03:15.993 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 08:03:53.356 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:41058 10 6452 1 2025-11-16 07:59:01.535 00:06:00.066 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 08:04:53.759 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:53544 10 6452 1 2025-11-16 08:05:54.183 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:42396 10 6452 1 2025-11-16 08:06:54.600 00:00:10.446 TCP 1.101.0.1:3000 -> 23.104.0.1:47292 12 10375 1 2025-11-16 08:07:55.111 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51848 10 6452 1 2025-11-16 08:08:16.285 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 08:08:16.294 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 08:08:16.224 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 08:08:16.417 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 08:08:16.306 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 08:08:55.515 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:36404 10 6452 1 2025-11-16 08:05:01.538 00:06:00.065 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 08:09:55.919 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45900 10 6452 1 2025-11-16 08:06:01.535 00:06:00.070 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 08:10:56.321 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:59674 10 6452 1 2025-11-16 08:11:56.685 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:60580 10 6452 1 2025-11-16 08:12:57.113 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:53174 10 6452 1 2025-11-16 08:13:15.902 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 08:13:16.151 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 08:13:16.209 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 08:13:16.146 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 08:13:16.293 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 08:13:57.511 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:49776 10 6452 1 2025-11-16 08:14:57.873 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:42756 10 6452 1 2025-11-16 08:15:58.278 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39686 10 6452 1 2025-11-16 08:12:01.541 00:06:00.062 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 08:16:58.679 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:42732 10 6452 1 2025-11-16 08:13:01.538 00:06:00.070 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 08:18:15.915 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 08:17:59.109 00:00:14.334 TCP 1.101.0.1:3000 -> 23.104.0.1:36682 10 6452 1 2025-11-16 08:18:16.569 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 08:18:16.407 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 08:18:16.488 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 08:18:16.400 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 08:19:03.494 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:32810 10 6452 1 2025-11-16 08:20:03.903 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:54496 12 6556 1 2025-11-16 08:21:04.308 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:56264 10 6452 1 2025-11-16 08:22:04.719 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:45906 10 6452 1 2025-11-16 08:23:05.116 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37694 10 6452 1 2025-11-16 08:23:16.370 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 08:23:16.206 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 08:23:16.435 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 08:23:16.376 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 08:23:16.517 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 08:19:01.541 00:06:00.068 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 08:24:05.520 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41458 10 6452 1 2025-11-16 08:20:01.538 00:06:00.074 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 08:25:05.923 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:58500 10 6452 1 2025-11-16 08:26:06.300 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42516 10 6452 1 2025-11-16 08:27:06.703 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36752 11 6492 1 2025-11-16 08:28:16.518 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 08:28:07.112 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57140 10 6452 1 2025-11-16 08:28:16.568 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 08:28:16.279 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 08:28:16.435 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 08:28:16.438 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 08:29:07.511 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36910 10 6452 1 2025-11-16 08:30:07.913 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:56222 10 6452 1 2025-11-16 08:26:01.544 00:06:00.069 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 08:31:08.326 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:39358 10 6452 1 2025-11-16 08:27:01.541 00:06:00.075 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 08:32:08.754 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:55268 10 6452 1 2025-11-16 08:33:16.748 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 08:33:16.609 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 08:33:16.663 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 08:33:16.664 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 08:33:16.747 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 08:33:09.125 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:56972 10 6452 1 2025-11-16 08:34:09.533 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:58856 11 6504 1 2025-11-16 08:35:09.953 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:52116 10 6452 1 2025-11-16 08:36:10.359 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51392 10 6452 1 2025-11-16 08:37:10.761 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:35404 10 6452 1 2025-11-16 08:33:01.544 00:06:00.071 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 08:38:17.163 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 08:38:16.848 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 08:38:16.931 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 08:38:17.081 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 08:38:16.841 00:00:00.026 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 08:38:11.133 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45750 10 6452 1 2025-11-16 08:34:01.542 00:06:00.076 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 08:39:11.543 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:54638 10 6452 1 2025-11-16 08:40:11.954 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:34358 10 6452 1 2025-11-16 08:41:12.364 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47434 10 6452 1 2025-11-16 08:42:12.765 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:39348 10 6452 1 2025-11-16 08:43:16.865 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 08:43:16.824 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 08:43:16.748 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 08:43:16.783 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 08:43:16.705 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 08:43:13.181 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:39614 10 6452 1 2025-11-16 08:44:13.612 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:35968 10 6452 1 2025-11-16 08:40:01.547 00:06:00.070 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 08:45:14.019 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42718 10 6452 1 2025-11-16 08:41:01.545 00:06:00.075 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 08:46:14.422 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59782 10 6452 1 2025-11-16 08:47:14.826 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35922 10 6452 1 2025-11-16 08:48:16.908 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 08:48:16.848 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 08:48:16.905 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 08:48:16.970 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 08:48:16.989 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 08:48:15.229 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:39182 10 6452 1 2025-11-16 08:49:15.587 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:41900 10 6452 1 2025-11-16 08:50:15.963 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35910 10 6452 1 2025-11-16 08:51:16.362 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:60618 10 6452 1 2025-11-16 08:47:01.552 00:06:00.068 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 08:52:16.724 00:00:10.456 TCP 1.101.0.1:3000 -> 23.104.0.1:45044 12 6556 1 2025-11-16 08:48:01.550 00:06:00.072 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 08:53:17.857 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 08:53:17.722 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 08:53:17.764 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 08:53:17.901 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 08:53:17.847 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 08:53:17.214 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:58294 10 6452 1 2025-11-16 08:54:17.613 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:57864 10 6452 1 2025-11-16 08:55:17.976 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53994 10 6452 1 2025-11-16 08:56:18.382 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50156 10 6452 1 2025-11-16 08:57:18.785 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:41332 10 6452 1 2025-11-16 08:58:17.323 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 08:58:16.964 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 08:58:16.900 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 08:58:17.241 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 08:58:16.974 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 08:58:19.213 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:54746 10 6452 1 Summary: total flows: 136, total bytes: 420239, total packets: 1012, avg bps: 926, avg pps: 0, avg bpp: 415 Time window: 2025-11-16 07:58:01 - 2025-11-16 08:58:29 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0044s User: 0.0011s Wall: 0.0025s flows/second: 54181.7 Runtime: 0.0025s