Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-16 11:59:38.103 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55314 10 6452 1 2025-11-16 12:00:38.510 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46838 10 6452 1 2025-11-16 11:56:01.604 00:06:00.092 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 12:01:38.918 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:41742 10 6452 1 2025-11-16 11:57:01.602 00:06:00.097 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 12:02:39.318 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:35050 10 6452 1 2025-11-16 12:03:21.041 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 12:03:20.917 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 12:03:20.959 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 12:03:20.905 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 12:03:21.004 00:00:00.049 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 12:03:39.681 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43802 10 6452 1 2025-11-16 12:04:40.109 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60472 10 6452 1 2025-11-16 12:05:40.516 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59594 10 6452 1 2025-11-16 12:06:40.923 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:50810 10 6452 1 2025-11-16 12:07:41.339 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:51536 10 6452 1 2025-11-16 12:03:01.605 00:06:00.092 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 12:08:21.333 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 12:08:21.134 00:00:00.026 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 12:08:21.277 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 12:08:21.439 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 12:08:21.359 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 12:08:41.700 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52048 10 6452 1 2025-11-16 12:04:01.603 00:06:00.097 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 12:09:42.115 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:54278 10 6452 1 2025-11-16 12:10:42.515 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39250 10 6452 1 2025-11-16 12:11:42.923 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:43910 11 6492 1 2025-11-16 12:12:43.341 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:53828 10 6452 1 2025-11-16 12:13:21.071 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 12:13:20.646 00:00:00.032 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 12:13:20.992 00:00:00.049 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 12:13:20.989 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 12:13:21.095 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 12:13:43.717 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:59498 10 6452 1 2025-11-16 12:14:44.119 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47330 10 6452 1 2025-11-16 12:10:01.606 00:06:00.093 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 12:15:44.523 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:47478 10 6452 1 2025-11-16 12:11:01.604 00:06:00.097 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 12:16:44.922 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:33754 10 6452 1 2025-11-16 12:17:45.306 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54984 10 6452 1 2025-11-16 12:18:21.686 00:00:00.029 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 12:18:21.566 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 12:18:21.471 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 12:18:21.605 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 12:18:21.509 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 12:18:45.706 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:46246 10 6452 1 2025-11-16 12:19:46.080 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:33222 10 6452 1 2025-11-16 12:20:46.442 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:47526 10 6452 1 2025-11-16 12:21:46.855 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:49562 10 6452 1 2025-11-16 12:17:01.611 00:06:00.090 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 12:22:47.278 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:54080 10 6452 1 2025-11-16 12:18:01.609 00:06:00.093 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 12:23:20.866 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 12:23:21.337 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 12:23:21.187 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 12:23:21.255 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 12:23:21.116 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 12:23:47.676 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:47790 10 6452 1 2025-11-16 12:24:48.042 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:55940 10 6452 1 2025-11-16 12:25:48.440 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:36816 10 6452 1 2025-11-16 12:26:48.844 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:60180 10 6452 1 2025-11-16 12:27:49.221 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:49290 10 6452 1 2025-11-16 12:28:21.326 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 12:28:21.193 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 12:28:21.129 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 12:28:21.231 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 12:28:21.212 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 12:28:49.621 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:47706 10 6452 1 2025-11-16 12:24:01.615 00:06:00.088 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 12:29:49.984 00:00:11.163 TCP 1.101.0.1:3000 -> 23.104.0.1:54848 10 6452 1 2025-11-16 12:25:01.612 00:06:00.094 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 12:30:51.183 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:53292 10 6452 1 2025-11-16 12:31:51.545 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:44366 10 6452 1 2025-11-16 12:32:51.951 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41290 10 6452 1 2025-11-16 12:33:21.994 00:00:00.028 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 12:33:21.801 00:00:00.028 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 12:33:21.766 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 12:33:22.101 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 12:33:21.849 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 12:33:52.359 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:32998 10 6452 1 2025-11-16 12:34:52.732 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:42372 10 6452 1 2025-11-16 12:35:53.119 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:57450 10 6452 1 2025-11-16 12:31:01.618 00:06:00.088 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 12:36:53.520 00:00:10.444 TCP 1.101.0.1:3000 -> 23.104.0.1:52622 12 10375 1 2025-11-16 12:32:01.615 00:06:00.093 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 12:37:54.003 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:45896 10 6452 1 2025-11-16 12:38:21.679 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 12:38:21.419 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 12:38:21.362 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 12:38:21.596 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 12:38:21.493 00:00:00.026 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 12:38:54.415 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33534 10 6452 1 2025-11-16 12:39:54.822 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53348 10 6452 1 2025-11-16 12:40:55.223 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:45582 10 6452 1 2025-11-16 12:41:55.641 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:41934 10 6452 1 2025-11-16 12:38:01.619 00:06:00.089 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 12:42:56.052 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54660 10 6452 1 2025-11-16 12:43:21.655 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 12:43:21.503 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 12:43:21.325 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 12:43:21.572 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 12:43:21.389 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 12:39:01.617 00:06:00.095 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 12:43:56.451 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:43290 10 6452 1 2025-11-16 12:44:56.849 00:00:10.351 TCP 1.101.0.1:3000 -> 23.104.0.1:39908 10 6452 1 2025-11-16 12:45:57.235 00:00:10.399 TCP 1.101.0.1:3000 -> 23.104.0.1:40772 10 6452 1 2025-11-16 12:46:57.667 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:51130 10 6452 1 2025-11-16 12:47:58.103 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:57130 10 6452 1 2025-11-16 12:48:21.797 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 12:48:21.759 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 12:48:21.744 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 12:48:21.799 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 12:48:21.827 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 12:48:58.516 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:60396 10 6452 1 2025-11-16 12:45:01.623 00:06:00.088 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 12:49:58.924 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:57406 10 6452 1 2025-11-16 12:46:01.619 00:06:00.097 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 12:50:59.291 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:33286 10 6452 1 2025-11-16 12:51:59.695 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47940 10 6452 1 2025-11-16 12:53:00.118 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:60538 10 6452 1 2025-11-16 12:53:21.796 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 12:53:21.763 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 12:53:21.731 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 12:53:21.737 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 12:53:21.814 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 12:54:00.481 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:34348 10 6452 1 2025-11-16 12:55:00.883 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:39860 12 6556 1 2025-11-16 12:56:01.306 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:53428 10 6452 1 2025-11-16 12:52:01.623 00:06:00.093 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 12:57:01.671 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41216 10 6452 1 2025-11-16 12:53:01.622 00:06:00.097 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 12:58:02.103 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:56698 10 6452 1 2025-11-16 12:58:22.114 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 12:58:21.969 00:00:00.036 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 12:58:22.191 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 12:58:22.204 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 12:58:22.275 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 Summary: total flows: 137, total bytes: 415353, total packets: 1027, avg bps: 879, avg pps: 0, avg bpp: 404 Time window: 2025-11-16 11:56:01 - 2025-11-16 12:59:01 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0041s User: 0.0010s Wall: 0.0021s flows/second: 65708.4 Runtime: 0.0021s