Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-12 00:59:20.478 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39938 10 6452 1 2025-11-12 01:00:20.880 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57626 10 6452 1 2025-11-12 01:01:12.307 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 01:01:12.170 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 01:01:12.220 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 01:01:11.947 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 01:01:12.223 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 01:01:21.283 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56482 10 6452 1 2025-11-12 00:57:59.319 00:04:00.132 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-12 00:57:59.322 00:04:00.128 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-12 01:02:21.687 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:52240 10 6452 1 2025-11-12 01:03:22.065 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36480 10 6452 1 2025-11-12 01:04:22.472 00:00:10.472 TCP 1.101.0.1:3000 -> 23.104.0.1:58116 10 6452 1 2025-11-12 01:05:22.981 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:46150 10 6452 1 2025-11-12 01:06:12.276 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 01:06:12.360 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 01:06:12.290 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 01:06:12.318 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 01:06:12.402 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 01:06:23.387 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35744 10 6452 1 2025-11-12 01:02:59.323 00:04:00.127 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-12 01:02:59.321 00:04:00.132 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-12 01:07:23.788 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:34276 10 6452 1 2025-11-12 01:08:24.144 00:00:10.552 TCP 1.101.0.1:3000 -> 23.104.0.1:33050 10 6452 1 2025-11-12 01:07:59.326 00:01:00.125 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-11-12 01:07:59.323 00:01:00.130 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-11-12 01:09:24.733 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:52562 10 6452 1 2025-11-12 01:10:25.145 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:45746 10 6452 1 2025-11-12 01:11:12.304 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 01:11:12.415 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 01:11:12.415 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 01:11:12.371 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 01:11:12.222 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 01:11:25.508 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:43872 10 6452 1 2025-11-12 01:09:59.322 00:02:00.132 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-11-12 01:09:59.325 00:02:00.127 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-11-12 01:12:25.910 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:51148 10 6452 1 2025-11-12 01:13:26.275 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:38862 10 6452 1 2025-11-12 01:12:59.325 00:01:00.127 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-11-12 01:12:59.322 00:01:00.132 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-11-12 01:14:26.635 00:00:18.613 TCP 1.101.0.1:3000 -> 23.104.0.1:42170 10 6452 1 2025-11-12 01:15:35.289 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37792 10 6452 1 2025-11-12 01:16:12.237 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 01:16:12.439 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 01:16:12.270 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 01:16:12.323 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 01:16:12.405 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 01:16:35.688 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:33596 10 6452 1 2025-11-12 01:14:59.322 00:02:00.133 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-11-12 01:14:59.325 00:02:00.127 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-11-12 01:17:36.106 00:00:10.839 TCP 1.101.0.1:3000 -> 23.104.0.1:38962 10 6452 1 2025-11-12 01:18:36.978 00:00:10.442 TCP 1.101.0.1:3000 -> 23.104.0.1:41038 12 10375 1 2025-11-12 01:17:59.324 00:01:00.132 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-11-12 01:17:59.326 00:01:00.127 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-11-12 01:19:37.458 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56324 10 6452 1 2025-11-12 01:20:37.857 00:00:10.845 TCP 1.101.0.1:3000 -> 23.104.0.1:32840 10 6452 1 2025-11-12 01:21:12.516 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 01:21:12.424 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 01:21:12.506 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 01:21:12.344 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 01:21:12.434 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 01:21:38.742 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:39334 10 6452 1 2025-11-12 01:19:59.327 00:02:00.127 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-11-12 01:19:59.324 00:02:00.132 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-11-12 01:22:39.155 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:41686 10 6452 1 2025-11-12 01:23:39.521 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53684 10 6452 1 2025-11-12 01:22:59.326 00:01:00.128 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-11-12 01:22:59.324 00:01:00.133 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-11-12 01:24:39.930 00:00:10.394 TCP 1.101.0.1:3000 -> 23.104.0.1:47986 10 6452 1 2025-11-12 01:25:40.364 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60876 10 6452 1 2025-11-12 01:26:12.407 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 01:26:12.620 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 01:26:12.159 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 01:26:12.617 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 01:26:12.701 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 01:26:40.768 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:38894 10 6452 1 2025-11-12 01:24:59.324 00:02:00.135 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-11-12 01:24:59.326 00:02:00.130 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-11-12 01:27:41.183 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:51592 10 6452 1 2025-11-12 01:28:41.559 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:52936 10 6452 1 2025-11-12 01:27:59.327 00:01:00.130 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-11-12 01:27:59.325 00:01:00.135 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-11-12 01:29:41.920 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:37610 10 6452 1 2025-11-12 01:30:42.340 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54782 10 6452 1 2025-11-12 01:31:12.724 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 01:31:12.658 00:00:00.026 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 01:31:12.658 00:00:00.032 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 01:31:12.658 00:00:00.028 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 01:31:12.804 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 01:31:42.741 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:40162 10 6452 1 2025-11-12 01:32:43.148 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49972 10 6452 1 2025-11-12 01:33:43.548 00:00:10.403 TCP 1.101.0.1:3000 -> 23.104.0.1:33274 12 10375 1 2025-11-12 01:29:59.325 00:04:00.136 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-12 01:29:59.328 00:04:00.130 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-12 01:34:43.995 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:47418 10 6452 1 2025-11-12 01:35:44.401 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60844 10 6452 1 2025-11-12 01:36:12.828 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 01:36:12.876 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 01:36:12.787 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 01:36:12.828 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 01:36:12.911 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 01:36:44.807 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:56248 10 6452 1 2025-11-12 01:37:45.216 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:48008 10 6452 1 2025-11-12 01:34:59.326 00:04:00.136 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-12 01:34:59.328 00:04:00.131 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-12 01:38:45.579 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:34108 10 6452 1 2025-11-12 01:39:45.985 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39758 10 6452 1 2025-11-12 01:39:59.328 00:01:00.131 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-11-12 01:40:46.387 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:42468 10 6452 1 2025-11-12 01:39:59.327 00:01:00.135 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-11-12 01:41:13.074 00:00:00.050 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 01:41:12.647 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 01:41:12.872 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 01:41:12.953 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 01:41:12.990 00:00:00.050 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 01:41:46.811 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:35842 10 6452 1 2025-11-12 01:42:47.183 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:52862 10 6452 1 2025-11-12 01:41:59.326 00:02:00.136 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-11-12 01:43:47.589 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:58632 10 6452 1 2025-11-12 01:41:59.330 00:02:00.131 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-11-12 01:44:47.996 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37522 10 6452 1 2025-11-12 01:44:59.328 00:01:00.137 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-11-12 01:44:59.330 00:01:00.132 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-11-12 01:45:48.402 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56374 10 6452 1 2025-11-12 01:46:12.903 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 01:46:13.102 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 01:46:12.825 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 01:46:12.856 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 01:46:12.821 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 01:46:48.806 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56862 10 6452 1 2025-11-12 01:47:49.216 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:48136 10 6452 1 2025-11-12 01:46:59.331 00:02:00.133 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-11-12 01:46:59.335 00:02:00.127 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-11-12 01:48:49.625 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:57668 10 6452 1 2025-11-12 01:49:50.051 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45562 10 6452 1 2025-11-12 01:49:59.338 00:01:00.124 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-11-12 01:49:59.336 00:01:00.131 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-11-12 01:50:50.456 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:42674 10 6452 1 2025-11-12 01:51:13.307 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 01:51:12.972 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 01:51:13.118 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 01:51:13.095 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 01:51:13.222 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 01:51:50.853 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:38728 10 6452 1 2025-11-12 01:52:51.286 00:00:10.351 TCP 1.101.0.1:3000 -> 23.104.0.1:52438 10 6452 1 2025-11-12 01:51:59.337 00:02:00.125 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-11-12 01:51:59.335 00:02:00.130 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-11-12 01:53:51.673 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47326 10 6452 1 2025-11-12 01:54:52.098 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37872 10 6452 1 2025-11-12 01:54:59.339 00:01:00.125 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-11-12 01:54:59.335 00:01:00.131 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-11-12 01:55:52.498 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:33668 10 6452 1 2025-11-12 01:56:13.360 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 01:56:13.144 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 01:56:13.386 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 01:56:12.836 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 01:56:13.278 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 01:56:52.900 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57268 10 6452 1 2025-11-12 01:57:53.306 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:59196 10 6452 1 Summary: total flows: 159, total bytes: 418148, total packets: 1010, avg bps: 928, avg pps: 0, avg bpp: 414 Time window: 2025-11-12 00:57:59 - 2025-11-12 01:58:03 Total flows processed: 159, passed: 159, Blocks skipped: 0, Bytes read: 16600 Sys: 0.0055s User: 0.0009s Wall: 0.0019s flows/second: 83602.1 Runtime: 0.0019s