Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-22 01:59:26.768 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:50196 10 6452 1 2025-11-22 02:00:27.132 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43818 10 6452 1 2025-11-22 02:01:04.515 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 02:01:04.437 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 02:01:04.099 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 02:01:04.434 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 02:01:04.156 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 02:01:27.535 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51264 10 6452 1 2025-11-22 01:57:04.354 00:06:00.286 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-22 02:02:27.942 00:00:10.395 TCP 1.101.0.1:3000 -> 23.104.0.1:40690 10 6452 1 2025-11-22 01:58:04.357 00:06:00.286 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-22 02:03:28.374 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38898 10 6452 1 2025-11-22 02:04:28.787 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:33154 10 6452 1 2025-11-22 02:05:29.191 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:57370 10 6452 1 2025-11-22 02:06:03.845 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 02:06:03.910 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 02:06:03.656 00:00:00.028 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 02:06:03.762 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 02:06:03.837 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 02:06:29.555 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:53484 10 6452 1 2025-11-22 02:07:29.952 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:52032 10 6452 1 2025-11-22 02:08:30.320 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:36790 10 6452 1 2025-11-22 02:04:04.357 00:06:00.287 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-22 02:09:30.720 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:38820 10 6452 1 2025-11-22 02:05:04.355 00:06:00.291 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-22 02:10:31.133 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:53250 10 6452 1 2025-11-22 02:11:03.877 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 02:11:04.102 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 02:11:03.896 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 02:11:03.876 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 02:11:03.979 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 02:11:31.495 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43074 10 6452 1 2025-11-22 02:12:31.899 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:34426 12 6556 1 2025-11-22 02:13:32.314 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34616 10 6452 1 2025-11-22 02:14:32.718 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:45678 10 6452 1 2025-11-22 02:15:33.137 00:00:10.568 TCP 1.101.0.1:3000 -> 23.104.0.1:51392 10 6452 1 2025-11-22 02:16:04.191 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 02:16:04.162 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 02:11:04.359 00:06:00.286 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-22 02:16:04.008 00:00:00.043 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 02:16:04.120 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 02:16:04.274 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 02:16:33.737 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:47418 10 6452 1 2025-11-22 02:12:04.356 00:06:00.293 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-22 02:17:34.150 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:41102 10 6452 1 2025-11-22 02:18:34.531 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57314 10 6452 1 2025-11-22 02:19:34.939 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:44118 10 6452 1 2025-11-22 02:20:35.355 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:40156 10 6452 1 2025-11-22 02:21:04.413 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 02:21:04.472 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 02:21:04.535 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 02:21:04.329 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 02:21:04.529 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 02:21:35.739 00:00:10.349 TCP 1.101.0.1:3000 -> 23.104.0.1:58538 10 6452 1 2025-11-22 02:22:36.126 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50066 10 6452 1 2025-11-22 02:18:04.360 00:06:00.289 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-22 02:23:36.528 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59336 10 6452 1 2025-11-22 02:19:04.359 00:06:00.294 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-22 02:24:36.933 00:00:10.917 TCP 1.101.0.1:3000 -> 23.104.0.1:57406 10 6452 1 2025-11-22 02:25:37.893 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:45568 10 6452 1 2025-11-22 02:26:04.262 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 02:26:04.187 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 02:26:04.198 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 02:26:04.200 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 02:26:04.280 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 02:26:38.309 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34186 10 6452 1 2025-11-22 02:27:38.715 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:56952 10 6452 1 2025-11-22 02:28:39.134 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:54504 10 6452 1 2025-11-22 02:29:39.494 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:36034 10 6452 1 2025-11-22 02:25:04.364 00:06:00.286 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-22 02:30:39.859 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:56612 10 6452 1 2025-11-22 02:31:04.507 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 02:31:04.305 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 02:31:04.534 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 02:31:04.535 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 02:26:04.362 00:06:00.291 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-22 02:31:04.618 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 02:31:40.276 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:48954 10 6452 1 2025-11-22 02:32:40.635 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:46650 10 6452 1 2025-11-22 02:33:40.997 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:50080 10 6452 1 2025-11-22 02:34:41.397 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:57270 10 6452 1 2025-11-22 02:35:41.763 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:43542 10 6452 1 2025-11-22 02:36:04.474 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 02:36:04.414 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 02:36:04.418 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 02:36:04.411 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 02:36:04.493 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 02:36:42.142 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57480 10 6452 1 2025-11-22 02:32:04.365 00:06:00.289 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-22 02:37:42.546 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33056 10 6452 1 2025-11-22 02:33:04.364 00:06:00.293 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-22 02:38:42.951 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:49292 10 6452 1 2025-11-22 02:39:43.318 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:52744 10 6452 1 2025-11-22 02:40:43.720 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:49952 10 6452 1 2025-11-22 02:41:04.768 00:00:00.044 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 02:41:04.285 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 02:41:04.803 00:00:00.026 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 02:41:05.350 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 02:41:04.886 00:00:00.026 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 02:41:44.140 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:50362 10 6452 1 2025-11-22 02:42:44.540 00:00:10.439 TCP 1.101.0.1:3000 -> 23.104.0.1:49650 12 10375 1 2025-11-22 02:43:45.021 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:54432 10 6452 1 2025-11-22 02:39:04.365 00:06:00.288 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-22 02:44:45.419 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46850 10 6452 1 2025-11-22 02:40:04.371 00:06:00.286 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-22 02:45:45.818 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:52908 10 6452 1 2025-11-22 02:46:04.719 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 02:46:04.426 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 02:46:04.664 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 02:46:04.664 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 02:46:04.746 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 02:46:46.195 00:00:10.351 TCP 1.101.0.1:3000 -> 23.104.0.1:48048 10 6452 1 2025-11-22 02:47:46.587 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:47440 10 6452 1 2025-11-22 02:48:46.998 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:53618 10 6452 1 2025-11-22 02:49:47.424 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:49226 10 6452 1 2025-11-22 02:50:47.834 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40528 10 6452 1 2025-11-22 02:46:04.378 00:06:00.279 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-22 02:51:04.568 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 02:51:04.591 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 02:51:04.672 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 02:51:04.819 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 02:51:04.755 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 02:51:48.232 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:48356 10 6452 1 2025-11-22 02:47:04.374 00:06:00.284 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-22 02:52:48.660 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44814 10 6452 1 2025-11-22 02:53:49.071 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60734 10 6452 1 2025-11-22 02:54:49.475 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:54860 10 6452 1 2025-11-22 02:55:49.848 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:45862 10 6452 1 2025-11-22 02:56:04.970 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 02:56:04.937 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 02:56:04.969 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 02:56:04.836 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 02:56:05.052 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 02:56:50.277 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:59466 10 6452 1 2025-11-22 02:57:50.643 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:52412 10 6452 1 2025-11-22 02:53:04.379 00:06:00.280 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 Summary: total flows: 136, total bytes: 414452, total packets: 1012, avg bps: 891, avg pps: 0, avg bpp: 409 Time window: 2025-11-22 01:57:04 - 2025-11-22 02:59:04 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0048s User: 0.0008s Wall: 0.0021s flows/second: 66021.5 Runtime: 0.0021s