Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-13 19:59:34.173 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:36638 10 6452 1 2025-11-13 20:00:34.579 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:35630 10 6452 1 2025-11-13 19:56:00.203 00:06:00.230 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-13 20:01:34.977 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:47140 10 6452 1 2025-11-13 20:02:04.140 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 20:02:04.092 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 20:02:03.726 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 20:02:03.779 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 20:02:04.059 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 20:02:35.407 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47678 10 6452 1 2025-11-13 20:03:35.812 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55056 10 6452 1 2025-11-13 19:59:00.207 00:06:00.225 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-13 20:04:36.210 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50250 10 6452 1 2025-11-13 20:05:36.615 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:39568 10 6452 1 2025-11-13 20:06:37.013 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40530 10 6452 1 2025-11-13 20:07:04.318 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 20:07:04.317 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 20:07:04.181 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 20:07:04.420 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 20:07:04.505 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 20:07:37.415 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:39504 10 6452 1 2025-11-13 20:03:00.207 00:06:00.230 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-13 20:08:37.825 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:36778 10 6452 1 2025-11-13 20:09:38.195 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42948 10 6452 1 2025-11-13 20:10:38.601 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:37880 10 6452 1 2025-11-13 20:06:00.209 00:06:00.225 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-13 20:11:39.011 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:49636 10 6452 1 2025-11-13 20:12:03.879 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 20:12:03.909 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 20:12:03.969 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 20:12:03.926 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 20:12:03.796 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 20:12:39.422 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:51804 10 6452 1 2025-11-13 20:13:39.837 00:00:10.411 TCP 1.101.0.1:3000 -> 23.104.0.1:45006 10 6452 1 2025-11-13 20:14:40.308 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39970 10 6452 1 2025-11-13 20:10:00.208 00:06:00.230 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-13 20:15:40.714 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:48130 10 6452 1 2025-11-13 20:16:41.100 00:00:10.425 TCP 1.101.0.1:3000 -> 23.104.0.1:42990 10 6452 1 2025-11-13 20:17:04.147 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 20:17:04.058 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 20:17:04.061 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 20:17:04.068 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 20:17:04.064 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 20:17:41.558 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48800 10 6452 1 2025-11-13 20:13:00.211 00:06:00.225 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-13 20:18:41.964 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47336 10 6452 1 2025-11-13 20:19:42.364 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:32938 10 6452 1 2025-11-13 20:20:42.775 00:00:15.254 TCP 1.101.0.1:3000 -> 23.104.0.1:34390 10 6452 1 2025-11-13 20:21:48.094 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60758 10 6452 1 2025-11-13 20:22:04.153 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 20:22:04.062 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 20:22:04.196 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 20:22:04.160 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 20:22:04.243 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 20:17:00.209 00:06:00.231 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-13 20:22:48.497 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48876 10 6452 1 2025-11-13 20:23:48.900 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:39560 10 6452 1 2025-11-13 20:24:49.309 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:39592 10 6452 1 2025-11-13 20:20:00.212 00:06:00.225 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-13 20:25:49.720 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:36414 10 6452 1 2025-11-13 20:27:04.249 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 20:27:04.427 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 20:27:04.333 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 20:27:04.191 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 20:27:04.167 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 20:26:50.136 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:48030 10 6452 1 2025-11-13 20:27:50.534 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36432 10 6452 1 2025-11-13 20:24:00.211 00:06:00.231 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-13 20:28:50.939 00:00:10.393 TCP 1.101.0.1:3000 -> 23.104.0.1:39808 10 6452 1 2025-11-13 20:29:51.374 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43732 10 6452 1 2025-11-13 20:30:51.773 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:43056 10 6452 1 2025-11-13 20:32:04.721 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 20:32:04.557 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 20:27:00.217 00:06:00.223 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-13 20:31:52.183 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:34476 10 6452 1 2025-11-13 20:32:04.689 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 20:32:04.272 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 20:32:04.639 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 20:32:52.584 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:44574 10 6452 1 2025-11-13 20:33:52.981 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:51204 10 6452 1 2025-11-13 20:34:53.390 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60300 10 6452 1 2025-11-13 20:31:00.217 00:06:00.226 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-13 20:35:53.789 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52994 10 6452 1 2025-11-13 20:37:04.399 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 20:37:04.606 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 20:37:04.312 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 20:36:54.193 00:00:10.562 TCP 1.101.0.1:3000 -> 23.104.0.1:49868 10 6452 1 2025-11-13 20:37:04.644 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 20:37:04.727 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 20:37:54.791 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:55732 10 6452 1 2025-11-13 20:34:00.221 00:06:00.222 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-13 20:38:55.190 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56498 10 6452 1 2025-11-13 20:39:55.597 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50208 10 6452 1 2025-11-13 20:40:56.006 00:00:11.032 TCP 1.101.0.1:3000 -> 23.104.0.1:56260 10 6452 1 2025-11-13 20:42:04.714 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 20:42:04.712 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 20:42:04.444 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 20:42:04.378 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 20:42:04.631 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 20:41:57.103 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41856 10 6452 1 2025-11-13 20:38:00.218 00:06:00.227 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-13 20:42:57.508 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:52732 10 6452 1 2025-11-13 20:43:57.927 00:00:10.393 TCP 1.101.0.1:3000 -> 23.104.0.1:47070 10 6452 1 2025-11-13 20:44:58.359 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:36622 10 6452 1 2025-11-13 20:41:00.222 00:06:00.222 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-13 20:45:58.718 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:54518 10 6452 1 2025-11-13 20:47:04.702 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 20:47:04.756 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 20:47:04.578 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 20:47:04.632 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 20:47:04.715 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 20:46:59.138 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:54726 10 6452 1 2025-11-13 20:47:59.541 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:34432 10 6452 1 2025-11-13 20:48:59.943 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:43210 10 6452 1 2025-11-13 20:45:00.222 00:06:00.225 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-13 20:50:00.319 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:35878 10 6452 1 2025-11-13 20:51:00.722 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55564 10 6452 1 2025-11-13 20:52:04.884 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 20:52:04.830 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 20:52:04.708 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 20:52:04.932 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 20:52:05.015 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 20:52:01.133 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56554 10 6452 1 2025-11-13 20:48:00.225 00:06:00.220 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-13 20:53:01.538 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58892 10 6452 1 2025-11-13 20:54:01.938 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:52594 10 6452 1 2025-11-13 20:55:02.352 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58712 10 6452 1 2025-11-13 20:56:02.751 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39694 10 6452 1 2025-11-13 20:57:04.824 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 20:57:04.763 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 20:57:04.821 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 20:57:04.904 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 20:52:00.223 00:06:00.226 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-13 20:57:05.003 00:00:00.035 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 20:57:03.155 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:50398 10 6452 1 2025-11-13 20:58:03.527 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:42982 10 6452 1 Summary: total flows: 136, total bytes: 410425, total packets: 1008, avg bps: 879, avg pps: 0, avg bpp: 407 Time window: 2025-11-13 19:56:00 - 2025-11-13 20:58:13 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0044s User: 0.0009s Wall: 0.0020s flows/second: 68175.6 Runtime: 0.0020s