Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-16 10:54:01.585 00:06:00.093 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 10:59:12.243 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40058 10 6452 1 2025-11-16 11:00:12.647 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:41870 10 6452 1 2025-11-16 11:01:13.070 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:39190 10 6452 1 2025-11-16 11:02:13.441 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53442 10 6452 1 2025-11-16 11:03:19.896 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 11:03:19.695 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 11:03:19.479 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 11:03:19.815 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 11:03:19.777 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 11:03:13.842 00:00:10.351 TCP 1.101.0.1:3000 -> 23.104.0.1:53912 10 6452 1 2025-11-16 11:04:14.224 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:47492 10 6452 1 2025-11-16 11:00:01.590 00:06:00.086 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 11:05:14.629 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57240 10 6452 1 2025-11-16 11:01:01.587 00:06:00.091 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 11:06:15.033 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:45664 10 6452 1 2025-11-16 11:07:15.443 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39854 10 6452 1 2025-11-16 11:08:19.889 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 11:08:19.805 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 11:08:19.715 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 11:08:19.807 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 11:08:19.609 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 11:08:15.844 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:55308 10 6452 1 2025-11-16 11:09:16.271 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55010 10 6452 1 2025-11-16 11:10:16.670 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53124 10 6452 1 2025-11-16 11:11:17.089 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:52556 10 6452 1 2025-11-16 11:07:01.593 00:06:00.084 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 11:12:17.452 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:42282 12 6556 1 2025-11-16 11:08:01.588 00:06:00.092 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 11:13:20.020 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 11:13:19.937 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 11:13:20.197 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 11:13:19.816 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 11:13:20.158 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 11:13:17.856 00:00:10.409 TCP 1.101.0.1:3000 -> 23.104.0.1:33696 10 6452 1 2025-11-16 11:14:18.304 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:57870 10 6452 1 2025-11-16 11:15:18.687 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:34946 10 6452 1 2025-11-16 11:16:19.112 00:00:10.439 TCP 1.101.0.1:3000 -> 23.104.0.1:39100 12 10369 1 2025-11-16 11:17:19.590 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:33284 10 6452 1 2025-11-16 11:18:20.128 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 11:18:19.749 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 11:18:19.764 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 11:18:20.046 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 11:18:19.941 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 11:18:19.995 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33512 10 6452 1 2025-11-16 11:14:01.592 00:06:00.087 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 11:19:20.400 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34826 10 6452 1 2025-11-16 11:15:01.592 00:06:00.090 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 11:20:20.799 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49034 10 6452 1 2025-11-16 11:21:21.200 00:00:10.658 TCP 1.101.0.1:3000 -> 23.104.0.1:42748 10 6452 1 2025-11-16 11:22:21.896 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:57524 12 6556 1 2025-11-16 11:23:20.184 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 11:23:19.915 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 11:23:20.191 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 11:23:20.076 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 11:23:20.273 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 11:23:22.309 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:55230 10 6452 1 2025-11-16 11:24:22.720 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:35158 10 6452 1 2025-11-16 11:25:23.132 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:47928 10 6452 1 2025-11-16 11:21:01.596 00:06:00.085 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 11:26:23.537 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:38490 10 6452 1 2025-11-16 11:22:01.594 00:06:00.090 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 11:27:23.935 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:40276 10 6452 1 2025-11-16 11:28:20.125 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 11:28:19.924 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 11:28:20.125 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 11:28:20.236 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 11:28:20.207 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 11:28:24.355 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:50108 10 6452 1 2025-11-16 11:29:24.765 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:33980 10 6452 1 2025-11-16 11:30:25.179 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47108 10 6452 1 2025-11-16 11:31:25.582 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:36088 10 6452 1 2025-11-16 11:32:25.946 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:39966 10 6452 1 2025-11-16 11:28:01.596 00:06:00.090 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 11:33:21.497 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 11:33:21.054 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 11:33:21.238 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 11:33:21.415 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 11:33:21.336 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 11:33:26.354 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:40104 10 6452 1 2025-11-16 11:29:01.594 00:06:00.096 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 11:34:26.727 00:00:11.321 TCP 1.101.0.1:3000 -> 23.104.0.1:55852 10 6452 1 2025-11-16 11:35:28.111 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51164 10 6452 1 2025-11-16 11:36:28.512 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:39534 10 6452 1 2025-11-16 11:37:28.925 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:35530 10 6452 1 2025-11-16 11:38:20.415 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 11:38:20.171 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 11:38:20.291 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 11:38:20.334 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 11:38:20.262 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 11:38:29.337 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:52996 10 6452 1 2025-11-16 11:39:29.699 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49176 10 6452 1 2025-11-16 11:35:01.598 00:06:00.090 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 11:40:30.106 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:58174 10 6452 1 2025-11-16 11:36:01.596 00:06:00.095 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 11:41:30.467 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41852 10 6452 1 2025-11-16 11:42:30.867 00:00:10.355 TCP 1.101.0.1:3000 -> 23.104.0.1:45706 10 6452 1 2025-11-16 11:43:20.964 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 11:43:20.789 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 11:43:20.733 00:00:00.031 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 11:43:20.768 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 11:43:20.816 00:00:00.031 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 11:43:31.238 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:44798 11 6504 1 2025-11-16 11:44:31.655 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:37414 10 6452 1 2025-11-16 11:45:32.066 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55628 10 6452 1 2025-11-16 11:46:32.469 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43774 10 6452 1 2025-11-16 11:42:01.599 00:06:00.092 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 11:47:32.876 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48080 10 6452 1 2025-11-16 11:43:01.598 00:06:00.096 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 11:48:20.696 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 11:48:20.655 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 11:48:20.320 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 11:48:20.614 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 11:48:20.474 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 11:48:33.287 00:00:10.652 TCP 1.101.0.1:3000 -> 23.104.0.1:44838 10 6452 1 2025-11-16 11:49:33.973 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:36330 10 6452 1 2025-11-16 11:50:34.335 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:58712 10 6452 1 2025-11-16 11:51:34.737 00:00:10.444 TCP 1.101.0.1:3000 -> 23.104.0.1:33658 12 10375 1 2025-11-16 11:52:35.225 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:54436 10 6452 1 2025-11-16 11:53:20.702 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 11:53:20.548 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 11:53:20.494 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 11:53:20.620 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 11:53:20.736 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 11:53:35.653 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:37320 10 6452 1 2025-11-16 11:49:01.604 00:06:00.092 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 11:54:36.009 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:34998 10 6452 1 2025-11-16 11:50:01.601 00:06:00.097 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 11:55:36.411 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39542 10 6452 1 2025-11-16 11:56:36.819 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:55882 10 6452 1 2025-11-16 11:57:37.194 00:00:10.424 TCP 1.101.0.1:3000 -> 23.104.0.1:58652 10 6452 1 2025-11-16 11:58:20.729 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 11:58:20.646 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 11:58:20.617 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 11:58:20.616 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 11:58:20.699 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 11:58:37.665 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:48542 10 6452 1 Summary: total flows: 137, total bytes: 424977, total packets: 1027, avg bps: 874, avg pps: 0, avg bpp: 413 Time window: 2025-11-16 10:54:01 - 2025-11-16 11:58:48 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0042s User: 0.0021s Wall: 0.0018s flows/second: 74451.9 Runtime: 0.0019s