Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-16 13:59:28.701 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58872 10 6452 1 2025-11-16 13:55:01.641 00:06:00.096 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 14:00:29.120 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:44888 10 6452 1 2025-11-16 13:56:01.639 00:06:00.100 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 14:01:29.529 00:00:10.439 TCP 1.101.0.1:3000 -> 23.104.0.1:38824 12 10369 1 2025-11-16 14:02:30.007 00:00:10.558 TCP 1.101.0.1:3000 -> 23.104.0.1:34486 10 6452 1 2025-11-16 14:03:23.335 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 14:03:23.259 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 14:03:23.104 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 14:03:23.253 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 14:03:23.251 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 14:03:30.603 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39968 10 6452 1 2025-11-16 14:04:31.010 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:32768 10 6452 1 2025-11-16 14:05:31.412 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35396 10 6452 1 2025-11-16 14:06:31.817 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58682 10 6452 1 2025-11-16 14:02:01.642 00:06:00.096 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 14:07:32.229 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:44106 10 6452 1 2025-11-16 14:03:01.640 00:06:00.102 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 14:08:23.544 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 14:08:23.296 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 14:08:23.542 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 14:08:23.462 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 14:08:23.530 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 14:08:32.592 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39828 10 6452 1 2025-11-16 14:09:32.998 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58146 10 6452 1 2025-11-16 14:10:33.424 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:52086 10 6452 1 2025-11-16 14:11:33.836 00:00:10.406 TCP 1.101.0.1:3000 -> 23.104.0.1:50606 12 10375 1 2025-11-16 14:12:34.281 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:45060 10 6452 1 2025-11-16 14:13:23.368 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 14:13:23.206 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 14:13:23.261 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 14:13:23.491 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 14:13:23.345 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 14:13:34.684 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:56914 10 6452 1 2025-11-16 14:09:01.643 00:06:00.098 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 14:14:35.107 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40712 10 6452 1 2025-11-16 14:10:01.640 00:06:00.103 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 14:15:35.511 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:53126 10 6452 1 2025-11-16 14:16:35.913 00:00:10.440 TCP 1.101.0.1:3000 -> 23.104.0.1:49512 12 10369 1 2025-11-16 14:17:36.396 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:48482 10 6452 1 2025-11-16 14:18:23.693 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 14:18:23.506 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 14:18:23.480 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 14:18:23.611 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 14:18:23.475 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 14:18:36.798 00:00:10.347 TCP 1.101.0.1:3000 -> 23.104.0.1:58280 10 6452 1 2025-11-16 14:19:37.182 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55908 10 6452 1 2025-11-16 14:20:37.584 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:55912 10 6452 1 2025-11-16 14:16:01.646 00:06:00.097 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 14:21:38.003 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:55498 10 6452 1 2025-11-16 14:17:01.642 00:06:00.102 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 14:22:38.410 00:00:10.423 TCP 1.101.0.1:3000 -> 23.104.0.1:35568 10 6452 1 2025-11-16 14:23:23.567 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 14:23:23.642 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 14:23:23.563 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 14:23:23.484 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 14:23:23.549 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 14:23:38.869 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:45686 10 6452 1 2025-11-16 14:24:39.283 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:52054 10 6452 1 2025-11-16 14:25:39.682 00:00:10.463 TCP 1.101.0.1:3000 -> 23.104.0.1:46180 10 6452 1 2025-11-16 14:26:40.187 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:34396 10 6452 1 2025-11-16 14:27:40.594 00:00:10.795 TCP 1.101.0.1:3000 -> 23.104.0.1:46730 10 6452 1 2025-11-16 14:23:01.647 00:06:00.098 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 14:28:23.711 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 14:28:23.788 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 14:28:23.714 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 14:28:23.718 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 14:28:23.796 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 14:28:41.430 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:42090 10 6452 1 2025-11-16 14:24:01.644 00:06:00.102 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 14:29:41.823 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57876 10 6452 1 2025-11-16 14:30:42.225 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:40860 10 6452 1 2025-11-16 14:31:42.623 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:40208 10 6452 1 2025-11-16 14:32:42.989 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:59214 10 6452 1 2025-11-16 14:33:23.927 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 14:33:23.846 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 14:33:23.530 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 14:33:23.843 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 14:33:23.700 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 14:33:43.362 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:51346 10 6452 1 2025-11-16 14:34:43.760 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:57136 10 6452 1 2025-11-16 14:30:01.651 00:06:00.095 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 14:35:44.187 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:44614 10 6452 1 2025-11-16 14:31:01.648 00:06:00.101 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 14:36:44.546 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:50784 10 6452 1 2025-11-16 14:37:44.909 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:55454 12 6556 1 2025-11-16 14:38:23.951 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 14:38:23.874 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 14:38:23.734 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 14:38:23.867 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 14:38:23.598 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 14:38:45.314 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:43654 10 6452 1 2025-11-16 14:39:45.724 00:00:10.967 TCP 1.101.0.1:3000 -> 23.104.0.1:37088 10 6452 1 2025-11-16 14:40:46.731 00:00:10.425 TCP 1.101.0.1:3000 -> 23.104.0.1:41648 11 6504 1 2025-11-16 14:41:47.197 00:00:10.442 TCP 1.101.0.1:3000 -> 23.104.0.1:42758 12 10375 1 2025-11-16 14:37:01.652 00:06:00.096 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 14:42:47.674 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:58698 10 6452 1 2025-11-16 14:38:01.648 00:06:00.102 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 14:43:23.970 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 14:43:23.884 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 14:43:24.131 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 14:43:23.971 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 14:43:24.217 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 14:43:48.098 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:43274 10 6452 1 2025-11-16 14:44:48.502 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:43098 10 6452 1 2025-11-16 14:45:48.902 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:36986 10 6452 1 2025-11-16 14:46:49.318 00:00:10.420 TCP 1.101.0.1:3000 -> 23.104.0.1:55368 12 10375 1 2025-11-16 14:47:49.787 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34972 10 6452 1 2025-11-16 14:48:24.001 00:00:00.030 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 14:48:24.013 00:00:00.037 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 14:48:23.803 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 14:48:24.005 00:00:00.047 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 14:48:23.885 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 14:48:50.194 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:36286 10 6452 1 2025-11-16 14:44:01.652 00:06:00.098 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 14:49:50.614 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:40338 10 6452 1 2025-11-16 14:45:01.649 00:06:00.104 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 14:50:50.977 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50438 10 6452 1 2025-11-16 14:51:51.381 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:45448 10 6452 1 2025-11-16 14:52:51.790 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:57928 10 6452 1 2025-11-16 14:53:24.202 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 14:53:23.967 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 14:53:24.270 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 14:53:24.004 00:00:00.053 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 14:53:24.354 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 14:53:52.193 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53924 10 6452 1 2025-11-16 14:54:52.591 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:60430 10 6452 1 2025-11-16 14:55:52.994 00:00:11.070 TCP 1.101.0.1:3000 -> 23.104.0.1:43070 10 6452 1 2025-11-16 14:51:01.655 00:06:00.097 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 14:52:01.652 00:06:00.102 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 14:56:54.114 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41170 10 6452 1 2025-11-16 14:57:54.516 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44794 10 6452 1 2025-11-16 14:58:24.457 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 14:58:24.373 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 14:58:24.346 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 14:58:24.374 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 14:58:24.375 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 Summary: total flows: 137, total bytes: 431045, total packets: 1035, avg bps: 906, avg pps: 0, avg bpp: 416 Time window: 2025-11-16 13:55:01 - 2025-11-16 14:58:24 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0050s User: 0.0010s Wall: 0.0014s flows/second: 94884.4 Runtime: 0.0015s