Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-17 01:58:57.786 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41718 10 6452 1 2025-11-17 01:59:58.187 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:40412 10 6452 1 2025-11-17 01:56:01.867 00:06:00.121 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-17 02:00:58.591 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49796 10 6452 1 2025-11-17 01:57:01.864 00:06:00.126 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-17 02:01:58.997 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:39068 10 6452 1 2025-11-17 02:02:59.404 00:00:10.589 TCP 1.101.0.1:3000 -> 23.104.0.1:43522 10 6452 1 2025-11-17 02:03:37.982 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 02:03:37.943 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 02:03:37.932 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 02:03:37.930 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 02:03:38.016 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 02:04:00.036 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:54998 10 6452 1 2025-11-17 02:05:00.402 00:00:14.220 TCP 1.101.0.1:3000 -> 23.104.0.1:41234 10 6452 1 2025-11-17 02:06:04.677 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:41534 10 6452 1 2025-11-17 02:07:05.108 00:00:10.772 TCP 1.101.0.1:3000 -> 23.104.0.1:35178 10 6452 1 2025-11-17 02:03:01.868 00:06:00.121 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-17 02:08:05.916 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:37370 10 6452 1 2025-11-17 02:08:37.690 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 02:08:37.792 00:00:00.030 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 02:08:37.871 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 02:08:37.607 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 02:08:37.715 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 02:04:01.865 00:06:00.127 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-17 02:09:06.284 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39376 10 6452 1 2025-11-17 02:10:06.691 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:54976 10 6452 1 2025-11-17 02:11:07.065 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:39424 10 6452 1 2025-11-17 02:12:07.477 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:41670 10 6452 1 2025-11-17 02:13:07.884 00:00:10.343 TCP 1.101.0.1:3000 -> 23.104.0.1:51868 10 6452 1 2025-11-17 02:13:38.076 00:00:00.035 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 02:13:37.848 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 02:13:37.704 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 02:13:37.994 00:00:00.035 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 02:13:37.770 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 02:14:08.266 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:53642 10 6452 1 2025-11-17 02:10:01.870 00:06:00.121 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-17 02:15:08.626 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:36942 10 6452 1 2025-11-17 02:11:01.870 00:06:00.124 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-17 02:16:08.989 00:00:14.977 TCP 1.101.0.1:3000 -> 23.104.0.1:44336 10 6452 1 2025-11-17 02:17:14.025 00:00:10.445 TCP 1.101.0.1:3000 -> 23.104.0.1:38332 12 10375 1 2025-11-17 02:18:14.507 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:42156 10 6452 1 2025-11-17 02:18:38.006 00:00:00.027 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 02:18:37.868 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 02:18:37.772 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 02:18:37.848 00:00:00.030 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 02:18:37.855 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 02:19:14.907 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:36000 10 6452 1 2025-11-17 02:20:15.317 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:38688 10 6452 1 2025-11-17 02:21:15.684 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43574 10 6452 1 2025-11-17 02:17:01.876 00:06:00.116 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-17 02:22:16.108 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54884 10 6452 1 2025-11-17 02:18:01.875 00:06:00.122 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-17 02:23:16.516 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:37788 10 6452 1 2025-11-17 02:23:38.008 00:00:00.045 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 02:23:37.896 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 02:23:38.189 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 02:23:38.132 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 02:23:38.270 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 02:24:16.876 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57030 10 6452 1 2025-11-17 02:25:17.278 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51064 10 6452 1 2025-11-17 02:26:17.687 00:00:10.704 TCP 1.101.0.1:3000 -> 23.104.0.1:44944 10 6452 1 2025-11-17 02:27:18.430 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59560 10 6452 1 2025-11-17 02:28:18.834 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:43198 10 6452 1 2025-11-17 02:28:38.086 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 02:28:37.964 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 02:28:37.945 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 02:28:38.169 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 02:28:38.030 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 02:24:01.879 00:06:00.117 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-17 02:29:19.255 00:00:10.597 TCP 1.101.0.1:3000 -> 23.104.0.1:53328 12 6556 1 2025-11-17 02:25:01.876 00:06:00.123 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-17 02:30:19.883 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:56942 10 6452 1 2025-11-17 02:31:20.314 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41750 10 6452 1 2025-11-17 02:32:20.714 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:34632 10 6452 1 2025-11-17 02:33:21.120 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58280 10 6452 1 2025-11-17 02:33:38.228 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 02:33:38.174 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 02:33:38.303 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 02:33:38.245 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 02:33:38.386 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 02:34:21.530 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:49568 10 6452 1 2025-11-17 02:35:21.942 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:55550 10 6452 1 2025-11-17 02:32:01.885 00:05:00.117 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-17 02:31:01.889 00:06:00.110 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-17 02:36:22.325 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36222 10 6452 1 2025-11-17 02:37:22.736 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:49798 10 6452 1 2025-11-17 02:38:38.376 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 02:38:23.112 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43422 10 6452 1 2025-11-17 02:38:38.303 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 02:38:38.444 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 02:38:38.294 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 02:38:38.205 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 02:39:23.518 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:36774 10 6452 1 2025-11-17 02:40:23.903 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:33256 12 6556 1 2025-11-17 02:41:24.342 00:00:15.388 TCP 1.101.0.1:3000 -> 23.104.0.1:50612 10 6452 1 2025-11-17 02:38:01.891 00:05:00.109 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-17 02:38:01.887 00:05:00.115 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-17 02:42:29.789 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:44858 10 6452 1 2025-11-17 02:43:38.596 00:00:00.026 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 02:43:38.406 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 02:43:38.443 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 02:43:38.515 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 02:43:38.518 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 02:43:30.151 00:00:10.739 TCP 1.101.0.1:3000 -> 23.104.0.1:35320 10 6452 1 2025-11-17 02:44:30.929 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:59076 10 6452 1 2025-11-17 02:45:31.338 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35374 10 6452 1 2025-11-17 02:46:31.742 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:53478 10 6452 1 2025-11-17 02:47:32.148 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49426 10 6452 1 2025-11-17 02:44:01.890 00:05:00.114 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-17 02:44:01.892 00:05:00.109 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-17 02:48:38.491 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 02:48:38.416 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 02:48:38.528 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 02:48:38.409 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 02:48:38.516 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 02:48:32.549 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45206 10 6452 1 2025-11-17 02:49:32.948 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:54144 10 6452 1 2025-11-17 02:50:33.354 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33162 10 6452 1 2025-11-17 02:51:33.758 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:58212 10 6452 1 2025-11-17 02:52:34.172 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:38040 10 6452 1 2025-11-17 02:53:38.878 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 02:53:38.646 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 02:53:38.658 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 02:53:38.795 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 02:53:38.641 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 02:53:34.577 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:49972 10 6452 1 2025-11-17 02:50:01.894 00:05:00.137 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-17 02:50:01.892 00:05:00.142 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-17 02:54:34.991 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:51116 10 6452 1 2025-11-17 02:55:35.395 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40166 10 6452 1 2025-11-17 02:56:35.796 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:40196 10 6452 1 2025-11-17 02:57:36.173 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:34930 10 6452 1 2025-11-17 02:58:38.589 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 02:58:38.688 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 02:58:38.557 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 02:58:38.505 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 02:58:38.819 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 02:58:36.581 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:52000 10 6452 1 Summary: total flows: 138, total bytes: 421008, total packets: 1024, avg bps: 894, avg pps: 0, avg bpp: 411 Time window: 2025-11-17 01:56:01 - 2025-11-17 02:58:46 Total flows processed: 138, passed: 138, Blocks skipped: 0, Bytes read: 14416 Sys: 0.0032s User: 0.0022s Wall: 0.0020s flows/second: 70227.4 Runtime: 0.0020s