Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-13 17:59:31.403 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:60704 10 6452 1 2025-11-13 18:00:31.763 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:52750 10 6452 1 2025-11-13 18:01:32.183 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:56920 10 6452 1 2025-11-13 18:02:01.560 00:00:00.026 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 17:57:00.163 00:06:00.234 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-13 18:02:01.408 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 18:02:01.560 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 18:02:01.372 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 18:02:01.477 00:00:00.026 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 18:02:32.589 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:42098 10 6452 1 2025-11-13 18:03:33.000 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60558 10 6452 1 2025-11-13 18:04:33.402 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:34586 10 6452 1 2025-11-13 18:00:00.167 00:06:00.231 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-13 18:05:33.799 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:33166 10 6452 1 2025-11-13 18:06:34.203 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47438 10 6452 1 2025-11-13 18:07:01.553 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 18:07:01.248 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 18:07:01.336 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 18:07:01.478 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 18:07:01.561 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 18:07:34.599 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:46394 10 6452 1 2025-11-13 18:08:35.002 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:53804 10 6452 1 2025-11-13 18:04:00.164 00:06:00.236 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-13 18:09:35.362 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:36226 10 6452 1 2025-11-13 18:10:35.771 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:46774 10 6452 1 2025-11-13 18:11:36.184 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54666 10 6452 1 2025-11-13 18:12:01.683 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 18:12:01.500 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 18:07:00.168 00:06:00.230 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-13 18:12:01.557 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 18:12:01.578 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 18:12:01.601 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 18:12:36.585 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:34744 10 6452 1 2025-11-13 18:13:36.997 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48948 10 6452 1 2025-11-13 18:14:37.398 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60276 10 6452 1 2025-11-13 18:15:37.798 00:00:10.346 TCP 1.101.0.1:3000 -> 23.104.0.1:51882 10 6452 1 2025-11-13 18:11:00.166 00:06:00.234 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-13 18:16:38.180 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55656 10 6452 1 2025-11-13 18:17:01.749 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 18:17:01.748 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 18:17:01.790 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 18:17:01.750 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 18:17:01.833 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 18:17:38.586 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54582 10 6452 1 2025-11-13 18:18:38.991 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:57160 10 6452 1 2025-11-13 18:14:00.172 00:06:00.228 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-13 18:19:39.351 00:00:10.437 TCP 1.101.0.1:3000 -> 23.104.0.1:57178 12 10375 1 2025-11-13 18:20:39.828 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:37496 10 6452 1 2025-11-13 18:21:40.244 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:60210 10 6452 1 2025-11-13 18:22:01.862 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 18:22:01.861 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 18:22:01.863 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 18:22:01.660 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 18:22:01.945 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 18:22:40.699 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:37588 10 6452 1 2025-11-13 18:18:00.168 00:06:00.233 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-13 18:23:41.073 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:35950 10 6452 1 2025-11-13 18:24:41.473 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42168 10 6452 1 2025-11-13 18:25:41.874 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:51472 10 6452 1 2025-11-13 18:21:00.178 00:06:00.221 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-13 18:26:42.234 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:55816 10 6452 1 2025-11-13 18:27:01.958 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 18:27:01.828 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 18:27:01.823 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 18:27:01.670 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 18:27:01.876 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 18:27:42.635 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42084 10 6452 1 2025-11-13 18:28:43.056 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:45758 10 6452 1 2025-11-13 18:29:43.415 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:53850 10 6452 1 2025-11-13 18:25:00.170 00:06:00.232 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-13 18:30:43.820 00:00:10.964 TCP 1.101.0.1:3000 -> 23.104.0.1:57242 10 6452 1 2025-11-13 18:31:44.838 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:42962 10 6452 1 2025-11-13 18:32:01.975 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 18:32:02.057 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 18:32:01.929 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 18:32:02.061 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 18:32:02.144 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 18:32:45.264 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:40470 10 6452 1 2025-11-13 18:28:00.174 00:06:00.227 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-13 18:33:45.668 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:54708 10 6452 1 2025-11-13 18:34:46.093 00:00:10.513 TCP 1.101.0.1:3000 -> 23.104.0.1:38418 14 14292 1 2025-11-13 18:35:46.649 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:35624 10 6452 1 2025-11-13 18:37:02.450 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 18:32:00.171 00:06:00.237 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-13 18:36:47.065 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60248 10 6452 1 2025-11-13 18:37:02.215 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 18:37:02.215 00:00:00.031 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 18:37:01.994 00:00:00.051 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 18:37:02.368 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 18:37:47.474 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56838 10 6452 1 2025-11-13 18:38:47.875 00:00:10.416 TCP 1.101.0.1:3000 -> 23.104.0.1:49286 11 6504 1 2025-11-13 18:39:48.333 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:41440 10 6452 1 2025-11-13 18:35:00.176 00:06:00.231 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-13 18:40:48.738 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47346 10 6452 1 2025-11-13 18:41:49.144 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40450 10 6452 1 2025-11-13 18:42:02.510 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 18:42:02.350 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 18:42:02.352 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 18:42:02.215 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 18:42:02.426 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 18:42:49.546 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59214 10 6452 1 2025-11-13 18:39:00.173 00:06:00.236 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-13 18:43:49.945 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58202 10 6452 1 2025-11-13 18:44:50.355 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44474 10 6452 1 2025-11-13 18:45:50.762 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:43036 10 6452 1 2025-11-13 18:47:02.308 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 18:47:02.409 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 18:46:51.186 00:00:11.017 TCP 1.101.0.1:3000 -> 23.104.0.1:38212 11 6504 1 2025-11-13 18:42:00.180 00:06:00.228 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-13 18:47:02.318 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 18:47:01.952 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 18:47:02.225 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 18:47:52.244 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:45924 10 6452 1 2025-11-13 18:48:52.644 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:32810 10 6452 1 2025-11-13 18:49:53.023 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:53134 10 6452 1 2025-11-13 18:50:53.452 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:35022 10 6452 1 2025-11-13 18:46:00.178 00:06:00.234 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-13 18:52:01.729 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 18:52:02.080 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 18:51:53.853 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:36288 10 6452 1 2025-11-13 18:52:01.788 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 18:52:01.901 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 18:52:01.984 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 18:52:54.278 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58992 10 6452 1 2025-11-13 18:49:00.181 00:06:00.228 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-13 18:53:54.684 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:44114 10 6452 1 2025-11-13 18:54:55.111 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59956 10 6452 1 2025-11-13 18:55:55.515 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44760 10 6452 1 2025-11-13 18:57:02.579 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 18:57:02.317 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 18:57:02.497 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 18:57:02.205 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 18:57:02.495 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 18:56:55.919 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:43280 12 6556 1 2025-11-13 18:53:00.182 00:06:00.231 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-13 18:57:56.341 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38468 10 6452 1 Summary: total flows: 136, total bytes: 422396, total packets: 1018, avg bps: 908, avg pps: 0, avg bpp: 414 Time window: 2025-11-13 17:57:00 - 2025-11-13 18:59:00 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0017s User: 0.0034s Wall: 0.0020s flows/second: 67195.8 Runtime: 0.0020s