Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-14 01:58:43.026 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:54798 10 6452 1 2025-11-14 01:59:43.396 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:34374 10 6452 1 2025-11-14 02:00:43.794 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42768 10 6452 1 2025-11-14 01:56:00.332 00:06:00.205 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-14 02:01:44.201 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46692 10 6452 1 2025-11-14 02:02:11.154 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 02:02:11.075 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 02:02:10.862 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 02:02:11.093 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 02:02:11.073 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 02:02:44.605 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:58040 10 6452 1 2025-11-14 02:03:45.006 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:52896 10 6452 1 2025-11-14 02:04:45.370 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:57598 10 6452 1 2025-11-14 02:00:00.331 00:06:00.210 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-14 02:05:45.735 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44976 10 6452 1 2025-11-14 02:06:46.139 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:37300 10 6452 1 2025-11-14 02:07:11.176 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 02:07:11.216 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 02:07:11.167 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 02:07:10.897 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 02:07:11.094 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 02:07:46.513 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:52846 10 6452 1 2025-11-14 02:03:00.334 00:06:00.205 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-14 02:08:46.876 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36402 10 6452 1 2025-11-14 02:09:47.283 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:56612 10 6452 1 2025-11-14 02:10:47.644 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:42108 10 6452 1 2025-11-14 02:11:48.055 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:56398 10 6452 1 2025-11-14 02:07:00.331 00:06:00.213 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-14 02:12:11.730 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 02:12:11.421 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 02:12:11.228 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 02:12:11.731 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 02:12:11.813 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 02:12:48.467 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:60840 10 6452 1 2025-11-14 02:13:48.868 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:46402 10 6452 1 2025-11-14 02:14:49.236 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33898 10 6452 1 2025-11-14 02:10:00.334 00:06:00.207 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-14 02:15:49.639 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:34144 10 6452 1 2025-11-14 02:16:50.054 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53326 10 6452 1 2025-11-14 02:17:11.494 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 02:17:11.354 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 02:17:11.280 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 02:17:11.225 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 02:17:11.411 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 02:17:50.461 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47546 10 6452 1 2025-11-14 02:18:50.869 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:55008 10 6452 1 2025-11-14 02:14:00.332 00:06:00.213 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-14 02:19:51.294 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:40732 10 6452 1 2025-11-14 02:20:51.717 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:38546 10 6452 1 2025-11-14 02:17:00.335 00:06:00.208 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-14 02:21:52.135 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38296 10 6452 1 2025-11-14 02:22:11.573 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 02:22:11.409 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 02:22:11.418 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 02:22:11.398 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 02:22:11.489 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 02:22:52.534 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40436 10 6452 1 2025-11-14 02:23:52.938 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:39732 10 6452 1 2025-11-14 02:24:53.359 00:00:14.798 TCP 1.101.0.1:3000 -> 23.104.0.1:54246 10 6452 1 2025-11-14 02:21:00.334 00:06:00.212 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-14 02:25:58.205 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:53684 10 6452 1 2025-11-14 02:26:58.606 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34960 10 6452 1 2025-11-14 02:27:11.509 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 02:27:11.718 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 02:27:11.535 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 02:27:11.650 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 02:27:11.733 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 02:27:59.016 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:60778 10 6452 1 2025-11-14 02:24:00.338 00:06:00.208 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-14 02:28:59.413 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50212 10 6452 1 2025-11-14 02:29:59.826 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37000 10 6452 1 2025-11-14 02:31:00.227 00:00:10.538 TCP 1.101.0.1:3000 -> 23.104.0.1:55370 10 6452 1 2025-11-14 02:32:12.571 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 02:32:12.550 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 02:32:12.186 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 02:32:00.803 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42216 10 6452 1 2025-11-14 02:32:12.275 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 02:32:12.358 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 02:28:00.337 00:06:00.210 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-14 02:33:01.208 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:49652 10 6452 1 2025-11-14 02:34:01.571 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45724 10 6452 1 2025-11-14 02:35:01.974 00:00:10.440 TCP 1.101.0.1:3000 -> 23.104.0.1:42662 12 10369 1 2025-11-14 02:31:00.341 00:06:00.205 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-14 02:36:02.451 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:37528 10 6452 1 2025-11-14 02:37:11.799 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 02:37:02.851 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:43622 10 6452 1 2025-11-14 02:37:11.553 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 02:37:11.772 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 02:37:11.547 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 02:37:11.630 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 02:38:03.276 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:52886 10 6452 1 2025-11-14 02:39:03.686 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50102 10 6452 1 2025-11-14 02:35:00.338 00:06:00.210 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-14 02:40:04.107 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:43300 10 6452 1 2025-11-14 02:41:04.504 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:45524 10 6452 1 2025-11-14 02:42:12.054 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 02:42:11.708 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 02:42:11.888 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 02:42:11.828 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 02:42:11.971 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 02:42:04.928 00:00:10.397 TCP 1.101.0.1:3000 -> 23.104.0.1:42256 10 6452 1 2025-11-14 02:38:00.342 00:06:00.206 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-14 02:43:05.364 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:40814 10 6452 1 2025-11-14 02:44:05.776 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:51988 10 6452 1 2025-11-14 02:45:06.184 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:45538 10 6452 1 2025-11-14 02:46:06.587 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:36148 10 6452 1 2025-11-14 02:42:00.344 00:06:00.206 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-14 02:47:12.004 00:00:00.043 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 02:47:12.148 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 02:47:11.947 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 02:47:12.004 00:00:00.041 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 02:47:12.092 00:00:00.036 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 02:47:07.000 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:57696 10 6452 1 2025-11-14 02:48:07.368 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:38322 10 6452 1 2025-11-14 02:49:07.775 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:46826 10 6452 1 2025-11-14 02:45:00.349 00:06:00.200 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-14 02:50:08.188 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:46708 10 6452 1 2025-11-14 02:51:08.588 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60040 10 6452 1 2025-11-14 02:52:12.130 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 02:52:12.057 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 02:52:12.166 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 02:52:12.067 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 02:52:12.046 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 02:52:08.989 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:52432 10 6452 1 2025-11-14 02:53:09.356 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35298 10 6452 1 2025-11-14 02:49:00.347 00:06:00.208 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-14 02:54:09.771 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:37720 10 6452 1 2025-11-14 02:55:10.140 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:57684 10 6452 1 2025-11-14 02:56:10.504 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:42468 10 6452 1 2025-11-14 02:52:00.351 00:06:00.204 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-14 02:57:12.258 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 02:57:12.257 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 02:57:12.223 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 02:57:11.881 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 02:57:12.177 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 02:57:10.910 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:42792 10 6452 1 2025-11-14 02:58:11.277 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:55808 10 6452 1 Summary: total flows: 137, total bytes: 420794, total packets: 1020, avg bps: 899, avg pps: 0, avg bpp: 412 Time window: 2025-11-14 01:56:00 - 2025-11-14 02:58:21 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0030s User: 0.0020s Wall: 0.0031s flows/second: 44755.8 Runtime: 0.0031s