Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-22 12:59:31.213 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50808 10 6452 1 2025-11-22 12:55:04.581 00:06:00.361 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-22 13:00:31.615 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:45318 10 6452 1 2025-11-22 12:56:04.579 00:06:00.367 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-22 13:01:16.676 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 13:01:16.928 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 13:01:16.991 00:00:00.043 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 13:01:16.867 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 13:01:17.074 00:00:00.043 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 13:01:32.002 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:34858 10 6452 1 2025-11-22 13:02:32.404 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:54266 10 6452 1 2025-11-22 13:03:32.766 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40814 10 6452 1 2025-11-22 13:04:33.173 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42902 10 6452 1 2025-11-22 13:05:33.575 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:37796 10 6452 1 2025-11-22 13:06:17.221 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 13:06:17.099 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 13:06:17.099 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 13:06:17.007 00:00:00.042 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 13:06:17.181 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 13:06:33.977 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48286 10 6452 1 2025-11-22 13:02:04.585 00:06:00.359 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-22 13:07:34.380 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:53036 10 6452 1 2025-11-22 13:03:04.584 00:06:00.364 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-22 13:08:34.745 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52228 10 6452 1 2025-11-22 13:09:35.150 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:41164 10 6452 1 2025-11-22 13:10:35.547 00:00:10.356 TCP 1.101.0.1:3000 -> 23.104.0.1:43806 10 6452 1 2025-11-22 13:11:17.192 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 13:11:17.039 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 13:11:17.376 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 13:11:17.378 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 13:11:17.459 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 13:11:35.944 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:43298 10 6452 1 2025-11-22 13:12:36.320 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:34516 10 6452 1 2025-11-22 13:13:36.687 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:35638 10 6452 1 2025-11-22 13:09:04.587 00:06:00.359 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-22 13:14:37.050 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39866 10 6452 1 2025-11-22 13:10:04.585 00:06:00.365 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-22 13:15:37.453 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:35400 10 6452 1 2025-11-22 13:16:17.390 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 13:16:17.132 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 13:16:17.051 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 13:16:17.308 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 13:16:17.223 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 13:16:37.851 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:53764 10 6452 1 2025-11-22 13:17:38.272 00:00:10.882 TCP 1.101.0.1:3000 -> 23.104.0.1:51856 10 6452 1 2025-11-22 13:18:39.191 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:35728 10 6452 1 2025-11-22 13:19:39.552 00:00:10.438 TCP 1.101.0.1:3000 -> 23.104.0.1:42012 12 10369 1 2025-11-22 13:20:40.055 00:00:10.422 TCP 1.101.0.1:3000 -> 23.104.0.1:48948 11 6504 1 2025-11-22 13:16:04.588 00:06:00.360 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-22 13:21:17.416 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 13:21:17.408 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 13:21:17.374 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 13:21:17.335 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 13:21:17.179 00:00:00.029 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 13:21:40.521 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:40502 10 6452 1 2025-11-22 13:17:04.589 00:06:00.364 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-22 13:22:40.887 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:39478 10 6452 1 2025-11-22 13:23:41.267 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47042 10 6452 1 2025-11-22 13:24:41.667 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:42132 10 6452 1 2025-11-22 13:25:42.098 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:52834 10 6452 1 2025-11-22 13:26:17.449 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 13:26:17.617 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 13:26:17.549 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 13:26:17.366 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 13:26:17.384 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 13:26:42.460 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:59776 10 6452 1 2025-11-22 13:27:42.864 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:47136 10 6452 1 2025-11-22 13:23:04.590 00:06:00.360 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-22 13:28:43.281 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:50082 10 6452 1 2025-11-22 13:24:04.588 00:06:00.364 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-22 13:29:43.698 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:35802 10 6452 1 2025-11-22 13:30:44.110 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:41034 10 6452 1 2025-11-22 13:31:17.949 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 13:31:17.863 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 13:31:17.449 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 13:31:17.866 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 13:31:17.792 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 13:31:44.472 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:43830 10 6452 1 2025-11-22 13:32:44.881 00:00:10.402 TCP 1.101.0.1:3000 -> 23.104.0.1:43044 10 6452 1 2025-11-22 13:33:45.325 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53446 10 6452 1 2025-11-22 13:34:45.730 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:60360 10 6452 1 2025-11-22 13:30:04.591 00:06:00.360 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-22 13:35:46.135 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:48850 10 6452 1 2025-11-22 13:31:04.587 00:06:00.365 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-22 13:36:17.716 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 13:36:17.881 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 13:36:17.483 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 13:36:17.563 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 13:36:17.800 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 13:36:46.499 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49556 10 6452 1 2025-11-22 13:37:46.906 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:37398 10 6452 1 2025-11-22 13:38:47.281 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:40916 10 6452 1 2025-11-22 13:39:47.644 00:00:10.406 TCP 1.101.0.1:3000 -> 23.104.0.1:41142 10 6452 1 2025-11-22 13:40:48.066 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54108 10 6452 1 2025-11-22 13:41:17.781 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 13:41:17.502 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 13:41:17.821 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 13:41:17.667 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 13:41:17.903 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 13:41:48.472 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:41450 10 6452 1 2025-11-22 13:37:04.592 00:06:00.363 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-22 13:42:48.881 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34440 10 6452 1 2025-11-22 13:38:04.592 00:06:00.366 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-22 13:43:49.283 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39542 10 6452 1 2025-11-22 13:44:49.685 00:00:10.454 TCP 1.101.0.1:3000 -> 23.104.0.1:55910 12 10375 1 2025-11-22 13:45:50.178 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57416 10 6452 1 2025-11-22 13:46:18.150 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 13:46:18.109 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 13:46:17.987 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 13:46:18.260 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 13:46:18.191 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 13:46:50.582 00:00:19.414 TCP 1.101.0.1:3000 -> 23.104.0.1:40950 10 6452 1 2025-11-22 13:48:00.058 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56988 10 6452 1 2025-11-22 13:44:04.595 00:06:00.363 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-22 13:49:00.459 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:60972 10 6452 1 2025-11-22 13:45:04.593 00:06:00.369 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-22 13:50:00.866 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41720 10 6452 1 2025-11-22 13:51:01.266 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:45108 10 6452 1 2025-11-22 13:51:17.946 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 13:51:18.182 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 13:51:18.167 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 13:51:18.165 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 13:51:18.251 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 13:52:01.634 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:33354 10 6452 1 2025-11-22 13:53:01.997 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40242 10 6452 1 2025-11-22 13:54:02.400 00:00:14.054 TCP 1.101.0.1:3000 -> 23.104.0.1:54936 10 6452 1 2025-11-22 13:55:06.506 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50194 10 6452 1 2025-11-22 13:51:04.600 00:06:00.361 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-22 13:56:18.051 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 13:56:17.856 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 13:56:18.004 00:00:00.043 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 13:56:18.118 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 13:56:06.913 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:35734 10 6452 1 2025-11-22 13:56:18.086 00:00:00.044 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 13:52:04.593 00:06:00.369 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-22 13:57:07.276 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:40532 10 6452 1 2025-11-22 13:58:07.691 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:57604 10 6452 1 Summary: total flows: 137, total bytes: 419178, total packets: 1027, avg bps: 884, avg pps: 0, avg bpp: 408 Time window: 2025-11-22 12:55:04 - 2025-11-22 13:58:18 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0045s User: 0.0009s Wall: 0.0012s flows/second: 117102.0 Runtime: 0.0012s