Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-14 08:59:16.101 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:40856 10 6452 1 2025-11-14 09:00:16.473 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57096 10 6452 1 2025-11-14 08:56:00.510 00:06:00.169 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-14 09:01:16.878 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54560 10 6452 1 2025-11-14 09:02:19.693 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 09:02:19.640 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 09:02:19.581 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 09:02:19.625 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 09:02:19.707 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 09:02:17.287 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:33358 10 6452 1 2025-11-14 09:03:17.659 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:49806 10 6452 1 2025-11-14 09:04:18.101 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52614 10 6452 1 2025-11-14 09:00:00.509 00:06:00.176 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-14 09:05:18.508 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:47752 10 6452 1 2025-11-14 09:06:18.872 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55222 10 6452 1 2025-11-14 09:07:19.583 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 09:07:19.582 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 09:07:19.614 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 09:07:19.444 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 09:07:19.527 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 09:07:19.279 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:52506 10 6452 1 2025-11-14 09:03:00.513 00:06:00.168 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-14 09:08:19.635 00:00:11.404 TCP 1.101.0.1:3000 -> 23.104.0.1:55760 10 6452 1 2025-11-14 09:09:21.110 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:34122 10 6452 1 2025-11-14 09:10:21.476 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:40238 10 6452 1 2025-11-14 09:11:21.880 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51360 10 6452 1 2025-11-14 09:07:00.514 00:06:00.174 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-14 09:12:19.948 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 09:12:19.573 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 09:12:19.744 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 09:12:19.572 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 09:12:19.866 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 09:12:22.283 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46464 10 6452 1 2025-11-14 09:13:22.685 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58906 10 6452 1 2025-11-14 09:14:23.112 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:33716 10 6452 1 2025-11-14 09:10:00.516 00:06:00.169 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-14 09:15:23.513 00:00:10.441 TCP 1.101.0.1:3000 -> 23.104.0.1:35376 12 10369 1 2025-11-14 09:16:23.994 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:53934 10 6452 1 2025-11-14 09:17:19.871 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 09:17:19.821 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 09:17:19.822 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 09:17:19.597 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 09:17:19.954 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 09:17:24.404 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:54460 10 6452 1 2025-11-14 09:18:24.809 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:48130 10 6452 1 2025-11-14 09:14:00.516 00:06:00.173 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-14 09:19:25.215 00:00:10.355 TCP 1.101.0.1:3000 -> 23.104.0.1:59570 10 6452 1 2025-11-14 09:20:25.607 00:00:11.468 TCP 1.101.0.1:3000 -> 23.104.0.1:57196 10 6452 1 2025-11-14 09:21:27.118 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:57574 10 6452 1 2025-11-14 09:17:00.519 00:06:00.167 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-14 09:22:19.863 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 09:22:20.069 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 09:22:20.227 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 09:22:20.064 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 09:22:20.147 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 09:22:27.517 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:51714 10 6452 1 2025-11-14 09:23:27.879 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39252 10 6452 1 2025-11-14 09:24:28.282 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:36792 10 6452 1 2025-11-14 09:25:28.686 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:36730 10 6452 1 2025-11-14 09:21:00.516 00:06:00.173 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-14 09:26:29.108 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:45982 10 6452 1 2025-11-14 09:27:20.053 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 09:27:19.854 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 09:27:19.970 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 09:27:20.076 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 09:27:20.125 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 09:27:29.507 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49848 10 6452 1 2025-11-14 09:28:29.914 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:55688 10 6452 1 2025-11-14 09:24:00.519 00:06:00.168 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-14 09:29:30.293 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:51438 10 6452 1 2025-11-14 09:30:30.661 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45404 10 6452 1 2025-11-14 09:31:31.106 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:54778 10 6452 1 2025-11-14 09:32:20.116 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 09:32:19.833 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 09:32:20.171 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 09:32:20.119 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 09:32:20.033 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 09:32:31.518 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59138 10 6452 1 2025-11-14 09:28:00.518 00:06:00.173 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-14 09:33:31.927 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:60300 10 6452 1 2025-11-14 09:34:32.306 00:00:23.823 TCP 1.101.0.1:3000 -> 23.104.0.1:57736 10 6452 1 2025-11-14 09:35:46.185 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:38808 10 6452 1 2025-11-14 09:31:00.521 00:06:00.170 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-14 09:36:46.591 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:33384 10 6452 1 2025-11-14 09:37:20.392 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 09:37:19.917 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 09:37:20.313 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 09:37:20.123 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 09:37:20.309 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 09:37:47.001 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:44874 10 6452 1 2025-11-14 09:38:47.360 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54532 10 6452 1 2025-11-14 09:39:47.771 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:47012 10 6452 1 2025-11-14 09:35:00.519 00:06:00.176 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-14 09:40:48.195 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:55344 10 6452 1 2025-11-14 09:41:48.559 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57238 10 6452 1 2025-11-14 09:42:20.565 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 09:42:20.525 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 09:42:20.521 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 09:42:20.436 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 09:42:20.483 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 09:42:48.969 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:56646 10 6452 1 2025-11-14 09:38:00.522 00:06:00.172 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-14 09:43:49.328 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43640 10 6452 1 2025-11-14 09:44:49.736 00:00:15.140 TCP 1.101.0.1:3000 -> 23.104.0.1:34704 12 10375 1 2025-11-14 09:45:54.921 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:57320 10 6452 1 2025-11-14 09:42:00.524 00:06:00.175 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-14 09:46:55.338 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43528 10 6452 1 2025-11-14 09:47:20.329 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 09:47:20.406 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 09:47:20.426 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 09:47:20.401 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 09:47:20.484 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 09:47:55.739 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37658 10 6452 1 2025-11-14 09:48:56.143 00:00:10.510 TCP 1.101.0.1:3000 -> 23.104.0.1:32906 10 6452 1 2025-11-14 09:45:00.527 00:06:00.169 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-14 09:49:56.688 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:56642 10 6452 1 2025-11-14 09:50:57.103 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:60394 10 6452 1 2025-11-14 09:51:57.500 00:00:10.485 TCP 1.101.0.1:3000 -> 23.104.0.1:46560 10 6452 1 2025-11-14 09:52:21.140 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 09:52:21.136 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 09:52:21.011 00:00:00.039 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 09:52:21.277 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 09:52:21.361 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 09:52:58.024 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:51574 10 6452 1 2025-11-14 09:49:00.524 00:06:00.174 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-14 09:53:58.432 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38886 10 6452 1 2025-11-14 09:54:58.837 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:55584 10 6452 1 2025-11-14 09:55:59.213 00:00:10.611 TCP 1.101.0.1:3000 -> 23.104.0.1:33926 10 6452 1 2025-11-14 09:52:00.529 00:06:00.170 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-14 09:56:59.862 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:48634 10 6452 1 2025-11-14 09:57:20.666 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 09:57:20.329 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 09:57:20.649 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 09:57:20.508 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 09:57:20.583 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 09:58:00.276 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:55680 10 6452 1 Summary: total flows: 136, total bytes: 418265, total packets: 1012, avg bps: 897, avg pps: 0, avg bpp: 413 Time window: 2025-11-14 08:56:00 - 2025-11-14 09:58:10 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0030s User: 0.0020s Wall: 0.0026s flows/second: 51650.2 Runtime: 0.0027s