Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-16 21:59:14.734 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:54608 10 6452 1 2025-11-16 22:00:15.145 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53924 10 6452 1 2025-11-16 22:01:15.551 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60328 10 6452 1 2025-11-16 22:02:15.958 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60798 10 6452 1 2025-11-16 21:58:01.798 00:06:00.128 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 22:03:32.899 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 22:03:16.370 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41102 10 6452 1 2025-11-16 22:03:32.871 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 22:03:32.745 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 22:03:32.817 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 22:03:32.744 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 21:59:01.797 00:06:00.131 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 22:04:16.772 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:59462 10 6452 1 2025-11-16 22:05:17.144 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35724 10 6452 1 2025-11-16 22:06:17.545 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:37942 10 6452 1 2025-11-16 22:07:17.905 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:36016 12 6556 1 2025-11-16 22:08:18.311 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47330 10 6452 1 2025-11-16 22:08:33.356 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 22:08:33.161 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 22:08:33.083 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 22:08:33.273 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 22:08:33.000 00:00:00.041 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 22:09:18.722 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:49988 10 6452 1 2025-11-16 22:05:01.802 00:06:00.125 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 22:10:19.109 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:32986 10 6452 1 2025-11-16 22:06:01.804 00:06:00.126 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 22:11:19.511 00:00:10.356 TCP 1.101.0.1:3000 -> 23.104.0.1:56302 10 6452 1 2025-11-16 22:12:19.908 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:57362 10 6452 1 2025-11-16 22:13:20.316 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59502 10 6452 1 2025-11-16 22:13:33.081 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 22:13:32.958 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 22:13:33.081 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 22:13:32.979 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 22:13:33.163 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 22:14:20.725 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:54520 10 6452 1 2025-11-16 22:15:21.140 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:42998 10 6452 1 2025-11-16 22:16:21.502 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:40780 10 6452 1 2025-11-16 22:12:01.806 00:06:00.121 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 22:17:21.900 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:55806 10 6452 1 2025-11-16 22:13:01.805 00:06:00.126 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 22:18:33.162 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 22:18:33.123 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 22:18:33.105 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 22:18:22.274 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:45958 10 6452 1 2025-11-16 22:18:33.080 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 22:18:33.173 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 22:19:22.641 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58990 10 6452 1 2025-11-16 22:20:23.040 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:53944 10 6452 1 2025-11-16 22:21:23.443 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:41284 10 6452 1 2025-11-16 22:22:23.802 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51092 10 6452 1 2025-11-16 22:23:33.260 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 22:23:32.950 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 22:23:32.981 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 22:23:33.179 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 22:23:33.321 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 22:23:24.213 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48404 10 6452 1 2025-11-16 22:19:01.809 00:06:00.122 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 22:24:24.619 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:59668 10 6452 1 2025-11-16 22:20:01.806 00:06:00.127 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 22:25:25.041 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37360 10 6452 1 2025-11-16 22:26:25.445 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40862 10 6452 1 2025-11-16 22:27:25.848 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:48646 10 6452 1 2025-11-16 22:28:33.346 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 22:28:33.264 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 22:28:33.319 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 22:28:33.263 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 22:28:33.267 00:00:00.037 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 22:28:26.274 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:45880 10 6452 1 2025-11-16 22:29:26.701 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47884 10 6452 1 2025-11-16 22:30:27.111 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:35902 10 6452 1 2025-11-16 22:26:01.810 00:06:00.122 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 22:31:27.476 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:45454 10 6452 1 2025-11-16 22:27:01.807 00:06:00.127 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 22:32:27.884 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:40286 10 6452 1 2025-11-16 22:33:33.526 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 22:33:33.666 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 22:33:33.541 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 22:33:33.508 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 22:33:33.624 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 22:33:28.250 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:55656 10 6452 1 2025-11-16 22:34:28.660 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:32960 10 6452 1 2025-11-16 22:35:29.072 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:37994 10 6452 1 2025-11-16 22:36:29.432 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45672 10 6452 1 2025-11-16 22:37:29.836 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:51082 10 6452 1 2025-11-16 22:33:01.812 00:06:00.123 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 22:38:33.727 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 22:38:33.429 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 22:38:33.679 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 22:38:33.565 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 22:38:33.761 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 22:38:30.260 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:41232 10 6452 1 2025-11-16 22:34:01.810 00:06:00.129 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 22:39:30.628 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:57814 10 6452 1 2025-11-16 22:40:30.997 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:34382 10 6452 1 2025-11-16 22:41:31.396 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41956 10 6452 1 2025-11-16 22:42:31.797 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:54970 10 6452 1 2025-11-16 22:43:33.723 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 22:43:33.712 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 22:43:33.596 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 22:43:33.640 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 22:43:33.573 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 22:43:32.197 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40502 10 6452 1 2025-11-16 22:44:32.602 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:35910 10 6452 1 2025-11-16 22:40:01.814 00:06:00.123 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 22:45:33.007 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:43158 10 6452 1 2025-11-16 22:41:01.813 00:06:00.127 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 22:46:33.407 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:60760 10 6452 1 2025-11-16 22:47:33.807 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37174 10 6452 1 2025-11-16 22:48:33.691 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 22:48:33.784 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 22:48:33.367 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 22:48:33.608 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 22:48:33.601 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 22:48:34.210 00:00:10.433 TCP 1.101.0.1:3000 -> 23.104.0.1:40060 10 6452 1 2025-11-16 22:49:34.675 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:44348 10 6452 1 2025-11-16 22:50:35.037 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44972 10 6452 1 2025-11-16 22:51:35.445 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:49452 10 6452 1 2025-11-16 22:47:01.817 00:06:00.122 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-16 22:52:35.848 00:00:10.394 TCP 1.101.0.1:3000 -> 23.104.0.1:60648 10 6452 1 2025-11-16 22:48:01.816 00:06:00.126 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-16 22:53:33.897 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 22:53:33.957 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 22:53:33.900 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 22:53:33.849 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 22:53:33.982 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 22:53:36.279 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57178 10 6452 1 2025-11-16 22:54:36.682 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:45876 10 6452 1 2025-11-16 22:55:37.051 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:60228 10 6452 1 2025-11-16 22:56:37.462 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41642 10 6452 1 2025-11-16 22:57:37.862 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:40300 10 6452 1 2025-11-16 22:58:34.145 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-16 22:58:33.729 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-16 22:58:33.877 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 22:58:34.062 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-16 22:58:33.867 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-16 22:58:38.283 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41200 10 6452 1 Summary: total flows: 136, total bytes: 416120, total packets: 1006, avg bps: 912, avg pps: 0, avg bpp: 413 Time window: 2025-11-16 21:58:01 - 2025-11-16 22:58:48 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0049s User: 0.0010s Wall: 0.0018s flows/second: 77011.7 Runtime: 0.0018s