Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-13 11:59:13.035 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:59792 10 6452 1 2025-11-13 12:00:13.435 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:46734 10 6452 1 2025-11-13 11:56:00.058 00:06:00.224 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-13 12:01:13.843 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:50960 10 6452 1 2025-11-13 12:01:54.304 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 12:01:54.270 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 12:01:54.106 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 12:01:54.135 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 12:01:54.218 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 12:02:14.271 00:00:13.827 TCP 1.101.0.1:3000 -> 23.104.0.1:41494 10 6452 1 2025-11-13 12:03:18.184 00:00:10.317 TCP 1.101.0.1:3000 -> 23.104.0.1:49014 10 6452 1 2025-11-13 12:04:18.538 00:00:10.434 TCP 1.101.0.1:3000 -> 23.104.0.1:53748 13 13949 1 2025-11-13 12:00:00.051 00:06:00.234 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-13 12:05:19.018 00:00:10.967 TCP 1.101.0.1:3000 -> 23.104.0.1:37696 10 6452 1 2025-11-13 12:06:20.032 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:41488 10 6452 1 2025-11-13 12:06:54.351 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 12:06:54.211 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 12:06:54.456 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 12:06:54.209 00:00:00.026 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 12:06:54.292 00:00:00.026 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 12:07:20.436 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:47298 10 6452 1 2025-11-13 12:03:00.054 00:06:00.229 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-13 12:08:20.835 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60138 10 6452 1 2025-11-13 12:09:21.234 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:49520 10 6452 1 2025-11-13 12:10:21.637 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:58560 10 6452 1 2025-11-13 12:11:22.037 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:41114 10 6452 1 2025-11-13 12:11:54.456 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 12:11:54.531 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 12:11:54.567 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 12:11:54.221 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 12:11:54.373 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 12:07:00.053 00:06:00.234 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-13 12:12:22.396 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55492 10 6452 1 2025-11-13 12:13:22.796 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36026 10 6452 1 2025-11-13 12:14:23.200 00:00:10.496 TCP 1.101.0.1:3000 -> 23.104.0.1:58100 14 10479 1 2025-11-13 12:10:00.058 00:06:00.228 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-13 12:15:23.735 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43690 10 6452 1 2025-11-13 12:16:24.149 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:60098 10 6452 1 2025-11-13 12:16:54.624 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 12:16:54.544 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 12:16:54.461 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 12:16:54.408 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 12:16:54.541 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 12:17:24.553 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45560 10 6452 1 2025-11-13 12:18:24.952 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47558 10 6452 1 2025-11-13 12:14:00.056 00:06:00.232 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-13 12:19:25.358 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:60010 10 6452 1 2025-11-13 12:20:25.764 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:40796 10 6452 1 2025-11-13 12:21:26.177 00:00:11.087 TCP 1.101.0.1:3000 -> 23.104.0.1:58910 10 6452 1 2025-11-13 12:21:54.712 00:00:00.019 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 12:21:54.708 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 12:21:54.701 00:00:00.027 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 12:21:54.530 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 12:21:54.619 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 12:17:00.058 00:06:00.228 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-13 12:22:27.308 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55902 10 6452 1 2025-11-13 12:23:27.715 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42210 10 6452 1 2025-11-13 12:24:28.119 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45806 10 6452 1 2025-11-13 12:25:28.526 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33036 10 6452 1 2025-11-13 12:21:00.058 00:06:00.233 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-13 12:26:28.938 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:43428 10 6452 1 2025-11-13 12:26:54.884 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 12:26:54.884 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 12:26:54.786 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 12:26:54.899 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 12:26:54.982 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 12:27:29.363 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53938 10 6452 1 2025-11-13 12:28:29.769 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:56972 10 6452 1 2025-11-13 12:24:00.061 00:06:00.228 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-13 12:29:30.143 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:43766 10 6452 1 2025-11-13 12:30:30.577 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:33692 12 6556 1 2025-11-13 12:31:30.985 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34114 10 6452 1 2025-11-13 12:31:54.813 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 12:31:54.826 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 12:31:54.824 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 12:31:54.796 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 12:31:54.730 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 12:32:31.388 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33914 10 6452 1 2025-11-13 12:28:00.060 00:06:00.232 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-13 12:33:31.802 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:44852 10 6452 1 2025-11-13 12:34:32.180 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52278 10 6452 1 2025-11-13 12:35:32.584 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:33128 10 6452 1 2025-11-13 12:31:00.063 00:06:00.227 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-13 12:36:32.987 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:47926 10 6452 1 2025-11-13 12:36:54.957 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 12:36:54.758 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 12:36:54.956 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 12:36:54.702 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 12:36:54.875 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 12:37:33.353 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:55116 10 6452 1 2025-11-13 12:38:33.710 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:33148 10 6452 1 2025-11-13 12:39:34.104 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38146 10 6452 1 2025-11-13 12:35:00.062 00:06:00.231 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-13 12:40:34.508 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48088 10 6452 1 2025-11-13 12:41:34.914 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:50842 10 6452 1 2025-11-13 12:41:54.941 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 12:41:54.754 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 12:41:54.957 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 12:41:55.157 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 12:41:55.040 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 12:42:35.289 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:42226 10 6452 1 2025-11-13 12:38:00.065 00:06:00.225 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-13 12:43:35.652 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56966 10 6452 1 2025-11-13 12:44:36.062 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:44448 10 6452 1 2025-11-13 12:45:36.428 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:60216 10 6452 1 2025-11-13 12:46:36.791 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:58554 10 6452 1 2025-11-13 12:46:54.762 00:00:00.026 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 12:46:55.507 00:00:00.028 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 12:46:55.258 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 12:46:55.386 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 12:46:55.425 00:00:00.028 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 12:42:00.063 00:06:00.231 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-13 12:47:37.145 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37466 10 6452 1 2025-11-13 12:48:37.549 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:34602 10 6452 1 2025-11-13 12:49:37.948 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:49102 10 6452 1 2025-11-13 12:45:00.068 00:06:00.227 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-13 12:50:38.357 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:35002 10 6452 1 2025-11-13 12:51:55.338 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 12:51:38.727 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:40494 10 6452 1 2025-11-13 12:51:54.926 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 12:51:55.246 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 12:51:55.295 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 12:51:55.256 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 12:52:39.126 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36402 10 6452 1 2025-11-13 12:53:39.526 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49246 10 6452 1 2025-11-13 12:49:00.067 00:06:00.231 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-13 12:54:39.930 00:00:10.461 TCP 1.101.0.1:3000 -> 23.104.0.1:45508 12 10584 1 2025-11-13 12:55:40.433 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:52732 10 6661 1 2025-11-13 12:56:55.414 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 12:56:40.798 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:42064 10 6661 1 2025-11-13 12:56:55.250 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 12:56:55.493 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 12:56:55.316 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 12:56:55.331 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 12:52:00.070 00:06:00.226 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-13 12:57:41.212 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47414 10 6661 1 Summary: total flows: 136, total bytes: 426812, total packets: 1019, avg bps: 917, avg pps: 0, avg bpp: 418 Time window: 2025-11-13 11:56:00 - 2025-11-13 12:58:00 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0018s User: 0.0018s Wall: 0.0012s flows/second: 109047.1 Runtime: 0.0013s