Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-16 17:54:01.711 00:06:00.114 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 17:59:26.482 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:48844 10 6452 1 2025-11-16 18:00:26.843 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:34352 10 6452 1 2025-11-16 18:01:27.262 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39962 10 6452 1 2025-11-16 18:02:27.663 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:48598 10 6452 1 2025-11-16 18:03:27.932 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 18:03:27.758 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 18:03:28.050 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 18:03:27.921 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 18:03:28.132 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 18:03:28.076 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:52230 10 6452 1 2025-11-16 18:04:28.433 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40658 10 6452 1 2025-11-16 18:00:01.714 00:06:00.110 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 18:05:28.835 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:34628 10 6452 1 2025-11-16 18:01:01.712 00:06:00.114 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 18:06:29.257 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57912 10 6452 1 2025-11-16 18:07:29.660 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:42706 10 6452 1 2025-11-16 18:08:28.529 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 18:08:28.250 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 18:08:28.013 00:00:00.035 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 18:08:28.448 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 18:08:27.940 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 18:08:30.091 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:34262 10 6452 1 2025-11-16 18:09:30.456 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41110 10 6452 1 2025-11-16 18:10:30.863 00:00:10.342 TCP 1.101.0.1:3000 -> 23.104.0.1:59764 10 6452 1 2025-11-16 18:11:31.239 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46546 10 6452 1 2025-11-16 18:07:01.715 00:06:00.111 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 18:12:31.641 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:56414 10 6452 1 2025-11-16 18:08:01.713 00:06:00.116 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 18:13:28.337 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 18:13:28.250 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 18:13:28.226 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 18:13:28.255 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 18:13:28.242 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 18:13:32.009 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42228 10 6452 1 2025-11-16 18:14:32.409 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35642 10 6452 1 2025-11-16 18:15:32.811 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:51724 10 6452 1 2025-11-16 18:16:33.175 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:50998 10 6452 1 2025-11-16 18:17:33.580 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:52654 10 6452 1 2025-11-16 18:18:28.451 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 18:18:28.368 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 18:18:28.314 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 18:18:28.369 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 18:18:28.299 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 18:18:33.995 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41120 10 6452 1 2025-11-16 18:14:01.718 00:06:00.109 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 18:19:34.397 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:42998 10 6452 1 2025-11-16 18:15:01.717 00:06:00.114 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 18:20:34.804 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:43136 10 6452 1 2025-11-16 18:21:35.216 00:00:10.400 TCP 1.101.0.1:3000 -> 23.104.0.1:53196 12 10375 1 2025-11-16 18:22:35.655 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54052 10 6452 1 2025-11-16 18:23:28.572 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 18:23:28.505 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 18:23:28.335 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 18:23:28.488 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 18:23:28.405 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 18:23:36.064 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59276 10 6452 1 2025-11-16 18:24:36.470 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:54318 10 6452 1 2025-11-16 18:25:36.838 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:47342 10 6452 1 2025-11-16 18:21:01.721 00:06:00.110 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 18:26:37.255 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:59602 10 6452 1 2025-11-16 18:22:01.717 00:06:00.116 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 18:27:37.628 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57958 10 6452 1 2025-11-16 18:28:28.501 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 18:28:28.381 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 18:28:28.333 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 18:28:28.215 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 18:28:28.415 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 18:28:38.035 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56602 10 6452 1 2025-11-16 18:29:38.454 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:35354 10 6452 1 2025-11-16 18:30:38.854 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:48712 10 6452 1 2025-11-16 18:31:39.278 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60874 10 6452 1 2025-11-16 18:32:39.681 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:50126 10 6452 1 2025-11-16 18:28:01.724 00:06:00.109 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 18:33:28.466 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 18:33:28.589 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 18:33:28.718 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 18:33:28.471 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 18:33:28.801 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 18:33:40.108 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53774 10 6452 1 2025-11-16 18:29:01.720 00:06:00.114 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 18:34:40.512 00:00:10.568 TCP 1.101.0.1:3000 -> 23.104.0.1:60586 10 6452 1 2025-11-16 18:35:41.126 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35328 10 6452 1 2025-11-16 18:36:41.527 00:00:10.403 TCP 1.101.0.1:3000 -> 23.104.0.1:48224 12 10375 1 2025-11-16 18:37:41.968 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:44388 10 6452 1 2025-11-16 18:38:28.805 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 18:38:28.783 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 18:38:28.689 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 18:38:28.723 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 18:38:28.653 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 18:38:42.332 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:54936 10 6452 1 2025-11-16 18:39:42.743 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60648 10 6452 1 2025-11-16 18:35:01.727 00:06:00.107 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 18:40:43.148 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43908 10 6452 1 2025-11-16 18:36:01.724 00:06:00.112 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 18:41:43.552 00:00:10.403 TCP 1.101.0.1:3000 -> 23.104.0.1:36308 12 10375 1 2025-11-16 18:42:43.996 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38286 10 6452 1 2025-11-16 18:43:29.245 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 18:43:29.032 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 18:43:28.835 00:00:00.030 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 18:43:29.163 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 18:43:28.794 00:00:00.026 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 18:43:44.401 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33906 10 6452 1 2025-11-16 18:44:44.803 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:53048 10 6452 1 2025-11-16 18:45:45.170 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39514 10 6452 1 2025-11-16 18:46:45.581 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:33464 10 6452 1 2025-11-16 18:42:01.726 00:06:00.107 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 18:47:45.987 00:00:10.529 TCP 1.101.0.1:3000 -> 23.104.0.1:60220 10 6452 1 2025-11-16 18:43:01.726 00:06:00.112 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 18:48:28.987 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 18:48:28.896 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 18:48:28.758 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 18:48:28.906 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 18:48:28.848 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 18:48:46.555 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:47842 10 6452 1 2025-11-16 18:49:46.956 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50812 10 6452 1 2025-11-16 18:50:47.362 00:00:10.685 TCP 1.101.0.1:3000 -> 23.104.0.1:32990 10 6452 1 2025-11-16 18:51:48.113 00:00:10.560 TCP 1.101.0.1:3000 -> 23.104.0.1:54866 10 6452 1 2025-11-16 18:52:48.705 00:00:19.163 TCP 1.101.0.1:3000 -> 23.104.0.1:39000 10 6452 1 2025-11-16 18:53:29.654 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 18:53:29.050 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 18:53:29.684 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 18:53:29.168 00:00:00.027 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 18:53:29.767 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 18:49:01.729 00:06:00.109 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 18:53:57.912 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:34370 10 6452 1 2025-11-16 18:50:01.727 00:06:00.114 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 18:54:58.325 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50258 10 6452 1 2025-11-16 18:55:58.731 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:41130 10 6452 1 2025-11-16 18:56:59.145 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:60194 10 6452 1 2025-11-16 18:57:59.507 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50602 10 6452 1 2025-11-16 18:58:29.197 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 18:58:28.902 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 18:58:29.129 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 18:58:29.114 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 18:58:28.901 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 Summary: total flows: 136, total bytes: 422194, total packets: 1014, avg bps: 873, avg pps: 0, avg bpp: 416 Time window: 2025-11-16 17:54:01 - 2025-11-16 18:58:29 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0055s User: 0.0011s Wall: 0.0020s flows/second: 68412.7 Runtime: 0.0020s