Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-22 13:59:08.059 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41468 10 6452 1 2025-11-22 14:00:08.461 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51790 10 6452 1 2025-11-22 14:01:18.224 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 14:01:18.181 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 14:01:18.161 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 14:01:18.261 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 14:01:08.867 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:49620 10 6452 1 2025-11-22 14:01:18.243 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 14:02:09.277 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54486 10 6452 1 2025-11-22 13:58:04.598 00:06:00.366 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-22 14:03:09.678 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:58676 10 6452 1 2025-11-22 13:59:04.596 00:06:00.370 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-22 14:04:10.139 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49064 10 6452 1 2025-11-22 14:05:10.547 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53072 10 6452 1 2025-11-22 14:06:18.246 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 14:06:18.156 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 14:06:18.265 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 14:06:18.142 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 14:06:18.348 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 14:06:10.951 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:40280 10 6452 1 2025-11-22 14:07:11.367 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:34970 10 6452 1 2025-11-22 14:08:11.767 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:56258 10 6452 1 2025-11-22 14:09:12.138 00:00:10.446 TCP 1.101.0.1:3000 -> 23.104.0.1:39726 12 10375 1 2025-11-22 14:05:04.598 00:06:00.367 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-22 14:10:12.619 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54794 10 6452 1 2025-11-22 14:06:04.596 00:06:00.372 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-22 14:11:18.038 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 14:11:18.144 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 14:11:18.078 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 14:11:18.077 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 14:11:18.160 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 14:11:13.028 00:00:15.967 TCP 1.101.0.1:3000 -> 23.104.0.1:55692 10 6452 1 2025-11-22 14:12:19.036 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46032 10 6452 1 2025-11-22 14:13:19.435 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:39624 10 6452 1 2025-11-22 14:14:19.843 00:00:10.347 TCP 1.101.0.1:3000 -> 23.104.0.1:47898 10 6452 1 2025-11-22 14:15:20.228 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:43532 10 6452 1 2025-11-22 14:16:18.601 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 14:16:18.461 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 14:16:18.518 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 14:16:18.518 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 14:16:18.591 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 14:16:20.634 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40790 10 6452 1 2025-11-22 14:12:04.601 00:06:00.377 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-22 14:17:21.035 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58210 10 6452 1 2025-11-22 14:13:04.599 00:06:00.389 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-22 14:18:21.439 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47786 10 6452 1 2025-11-22 14:19:21.841 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:60474 10 6452 1 2025-11-22 14:20:22.228 00:00:10.765 TCP 1.101.0.1:3000 -> 23.104.0.1:45924 10 6452 1 2025-11-22 14:21:18.414 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 14:21:18.726 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 14:21:18.792 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 14:21:18.330 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 14:21:18.520 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 14:21:23.030 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47762 10 6452 1 2025-11-22 14:22:23.433 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:49116 10 6452 1 2025-11-22 14:23:23.833 00:00:10.354 TCP 1.101.0.1:3000 -> 23.104.0.1:43536 10 6452 1 2025-11-22 14:19:04.605 00:06:00.382 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-22 14:24:24.225 00:00:10.473 TCP 1.101.0.1:3000 -> 23.104.0.1:54908 14 14292 1 2025-11-22 14:20:04.601 00:06:00.387 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-22 14:25:24.741 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41370 10 6452 1 2025-11-22 14:26:18.602 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 14:26:18.407 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 14:26:18.634 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 14:26:18.519 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 14:26:18.684 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 14:26:25.146 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:44238 10 6452 1 2025-11-22 14:27:25.575 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:52824 10 6452 1 2025-11-22 14:28:25.987 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:47112 10 6452 1 2025-11-22 14:29:26.400 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42150 10 6452 1 2025-11-22 14:30:26.805 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:55660 10 6452 1 2025-11-22 14:26:04.604 00:06:00.383 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-22 14:31:18.696 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 14:31:18.796 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 14:31:18.796 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 14:31:18.685 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 14:31:18.880 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 14:31:27.221 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:37482 10 6452 1 2025-11-22 14:27:04.604 00:06:00.387 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-22 14:32:27.629 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48256 10 6452 1 2025-11-22 14:33:28.032 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:44716 10 6452 1 2025-11-22 14:34:28.432 00:00:10.397 TCP 1.101.0.1:3000 -> 23.104.0.1:50452 12 10584 1 2025-11-22 14:35:28.865 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:44168 10 6661 1 2025-11-22 14:36:18.943 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 14:36:18.769 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 14:36:18.748 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 14:36:18.860 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 14:36:18.775 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 14:36:29.276 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33054 10 6661 1 2025-11-22 14:37:29.680 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53196 10 6661 1 2025-11-22 14:33:04.610 00:06:00.386 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-22 14:38:30.105 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:56490 10 6661 1 2025-11-22 14:34:04.607 00:06:00.393 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-22 14:39:30.504 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:36500 10 6661 1 2025-11-22 14:40:30.921 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:59616 10 6661 1 2025-11-22 14:41:19.033 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 14:41:18.939 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 14:41:18.734 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 14:41:18.949 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 14:41:18.732 00:00:00.019 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 14:41:31.287 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48964 10 6661 1 2025-11-22 14:42:31.692 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:56410 10 6661 1 2025-11-22 14:43:32.106 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33866 10 6661 1 2025-11-22 14:44:32.507 00:00:10.613 TCP 1.101.0.1:3000 -> 23.104.0.1:43854 12 10584 1 2025-11-22 14:40:04.613 00:06:00.396 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-22 14:41:04.610 00:05:00.401 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-22 14:45:33.159 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36864 10 6661 1 2025-11-22 14:46:19.219 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 14:46:18.867 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 14:46:19.217 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 14:46:19.332 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 14:46:19.302 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 14:46:33.559 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:60268 10 6661 1 2025-11-22 14:47:33.971 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55062 10 6661 1 2025-11-22 14:48:34.375 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:44434 10 6661 1 2025-11-22 14:49:34.772 00:00:10.350 TCP 1.101.0.1:3000 -> 23.104.0.1:37258 10 6661 1 2025-11-22 14:50:35.137 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:57612 10 6661 1 2025-11-22 14:47:04.612 00:05:00.420 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-22 14:47:04.610 00:05:00.425 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-22 14:51:19.073 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 14:51:18.894 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 14:51:19.078 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 14:51:19.131 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 14:51:19.162 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 14:51:35.541 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50248 10 6661 1 2025-11-22 14:52:35.948 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:60810 10 6661 1 2025-11-22 14:53:36.373 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:58036 10 6661 1 2025-11-22 14:54:36.733 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:60850 10 6661 1 2025-11-22 14:55:37.146 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52796 10 6661 1 2025-11-22 14:56:19.199 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 14:56:19.311 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 14:56:19.268 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 14:56:19.313 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 14:56:19.395 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 14:56:37.554 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48252 10 6661 1 2025-11-22 14:53:04.611 00:05:00.451 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-22 14:53:04.613 00:05:00.446 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-22 14:57:37.962 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:60566 10 6661 1 2025-11-22 14:58:38.325 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:45620 10 6661 1 Summary: total flows: 138, total bytes: 441957, total packets: 1032, avg bps: 970, avg pps: 0, avg bpp: 428 Time window: 2025-11-22 13:58:04 - 2025-11-22 14:58:48 Total flows processed: 138, passed: 138, Blocks skipped: 0, Bytes read: 14416 Sys: 0.0041s User: 0.0010s Wall: 0.0021s flows/second: 64758.8 Runtime: 0.0022s