Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-14 10:59:29.040 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:50932 10 6452 1 2025-11-14 10:55:00.558 00:06:00.154 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-14 11:00:29.404 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50466 10 6452 1 2025-11-14 11:01:29.804 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:56374 10 6452 1 2025-11-14 11:02:21.976 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 11:02:21.911 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 11:02:21.920 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 11:02:22.103 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 11:02:22.186 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 11:02:30.181 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:38346 10 6452 1 2025-11-14 11:03:30.544 00:00:10.962 TCP 1.101.0.1:3000 -> 23.104.0.1:57874 10 6452 1 2025-11-14 10:59:00.555 00:06:00.159 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-14 11:04:31.543 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39058 10 6452 1 2025-11-14 11:05:31.947 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:36060 10 6452 1 2025-11-14 11:06:32.355 00:00:11.274 TCP 1.101.0.1:3000 -> 23.104.0.1:49924 10 6452 1 2025-11-14 11:02:00.558 00:06:00.154 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-14 11:07:21.748 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 11:07:21.851 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 11:07:21.870 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 11:07:21.815 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 11:07:21.666 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 11:07:33.664 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:42110 10 6452 1 2025-11-14 11:08:34.020 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:49328 10 6452 1 2025-11-14 11:09:34.425 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:53612 10 6452 1 2025-11-14 11:10:34.854 00:00:10.406 TCP 1.101.0.1:3000 -> 23.104.0.1:33786 10 6452 1 2025-11-14 11:06:00.557 00:06:00.159 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-14 11:11:35.348 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:40430 10 6452 1 2025-11-14 11:12:22.277 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 11:12:22.145 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 11:12:21.862 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 11:12:21.843 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 11:12:22.195 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 11:12:35.754 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:45490 10 6452 1 2025-11-14 11:13:36.154 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:60902 10 6452 1 2025-11-14 11:09:00.560 00:06:00.155 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-14 11:14:36.563 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38128 10 6452 1 2025-11-14 11:15:36.964 00:00:10.439 TCP 1.101.0.1:3000 -> 23.104.0.1:46808 12 10375 1 2025-11-14 11:16:37.447 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:37352 10 6452 1 2025-11-14 11:17:22.251 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 11:17:22.163 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 11:17:22.164 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 11:17:22.110 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 11:17:22.169 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 11:17:37.820 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:51252 10 6452 1 2025-11-14 11:13:00.559 00:06:00.160 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-14 11:18:38.216 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:32944 10 6452 1 2025-11-14 11:19:38.615 00:00:11.164 TCP 1.101.0.1:3000 -> 23.104.0.1:47656 10 6452 1 2025-11-14 11:20:39.819 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:33408 10 6452 1 2025-11-14 11:16:00.561 00:06:00.156 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-14 11:21:40.189 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:43424 10 6452 1 2025-11-14 11:22:22.056 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 11:22:22.208 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 11:22:22.207 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 11:22:21.920 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 11:22:21.972 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 11:22:40.597 00:00:10.794 TCP 1.101.0.1:3000 -> 23.104.0.1:39698 10 6452 1 2025-11-14 11:23:41.432 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57036 10 6452 1 2025-11-14 11:24:41.840 00:00:10.852 TCP 1.101.0.1:3000 -> 23.104.0.1:52524 10 6452 1 2025-11-14 11:20:00.560 00:06:00.161 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-14 11:25:42.731 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:36246 10 6452 1 2025-11-14 11:26:43.140 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:42880 12 6556 1 2025-11-14 11:27:22.343 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 11:27:22.446 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 11:27:22.057 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 11:27:22.207 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 11:27:22.289 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 11:27:43.547 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40478 10 6452 1 2025-11-14 11:23:00.566 00:06:00.153 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-14 11:28:43.954 00:00:12.010 TCP 1.101.0.1:3000 -> 23.104.0.1:35976 10 6452 1 2025-11-14 11:29:46.094 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51902 10 6452 1 2025-11-14 11:30:46.501 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51452 10 6452 1 2025-11-14 11:31:46.903 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:42144 10 6452 1 2025-11-14 11:27:00.563 00:06:00.158 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-14 11:32:22.575 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 11:32:22.703 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 11:32:22.621 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 11:32:22.288 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 11:32:22.492 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 11:32:47.322 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:41326 10 6452 1 2025-11-14 11:33:47.719 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:41468 10 6452 1 2025-11-14 11:30:00.568 00:06:00.152 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-14 11:34:48.138 00:00:15.244 TCP 1.101.0.1:3000 -> 23.104.0.1:34768 10 6452 1 2025-11-14 11:35:53.422 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:37930 10 6452 1 2025-11-14 11:36:53.830 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:45488 10 6452 1 2025-11-14 11:37:22.603 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 11:37:22.517 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 11:37:22.515 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 11:37:22.462 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 11:37:22.512 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 11:37:54.236 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50644 10 6452 1 2025-11-14 11:34:00.565 00:06:00.157 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-14 11:38:54.643 00:00:10.412 TCP 1.101.0.1:3000 -> 23.104.0.1:52774 10 6452 1 2025-11-14 11:39:55.107 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48270 10 6452 1 2025-11-14 11:40:55.512 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:36954 10 6452 1 2025-11-14 11:37:00.572 00:06:00.148 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-14 11:41:55.924 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:41572 10 6452 1 2025-11-14 11:42:22.618 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 11:42:22.458 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 11:42:22.683 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 11:42:22.743 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 11:42:22.766 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 11:42:56.343 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:46596 10 6452 1 2025-11-14 11:43:56.757 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:48636 10 6452 1 2025-11-14 11:44:57.176 00:00:10.418 TCP 1.101.0.1:3000 -> 23.104.0.1:45388 11 6504 1 2025-11-14 11:41:00.571 00:06:00.158 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-14 11:45:57.628 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:53466 10 6452 1 2025-11-14 11:46:58.038 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55838 10 6452 1 2025-11-14 11:47:22.834 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 11:47:22.773 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 11:47:22.855 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 11:47:22.833 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 11:47:22.917 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 11:47:58.435 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:51886 10 6452 1 2025-11-14 11:44:00.575 00:06:00.153 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-14 11:48:58.804 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:53040 10 6452 1 2025-11-14 11:49:59.212 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:34210 10 6452 1 2025-11-14 11:50:59.610 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39436 10 6452 1 2025-11-14 11:52:00.011 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47996 10 6452 1 2025-11-14 11:52:22.883 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 11:52:22.797 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 11:52:22.675 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 11:52:22.440 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 11:52:22.800 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 11:48:00.575 00:06:00.157 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-14 11:53:00.414 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:57574 10 6452 1 2025-11-14 11:54:00.820 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:36600 10 6452 1 2025-11-14 11:55:01.225 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:44170 10 6452 1 2025-11-14 11:51:00.579 00:06:00.151 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-14 11:56:01.596 00:00:10.441 TCP 1.101.0.1:3000 -> 23.104.0.1:52196 12 10375 1 2025-11-14 11:57:02.095 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41710 10 6452 1 2025-11-14 11:57:22.912 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 11:57:22.992 00:00:00.042 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 11:57:22.949 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 11:57:22.996 00:00:00.039 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 11:57:23.080 00:00:00.039 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 11:58:02.498 00:00:10.418 TCP 1.101.0.1:3000 -> 23.104.0.1:39302 11 6504 1 Summary: total flows: 136, total bytes: 418479, total packets: 1016, avg bps: 882, avg pps: 0, avg bpp: 411 Time window: 2025-11-14 10:55:00 - 2025-11-14 11:58:12 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0045s User: 0.0018s Wall: 0.0026s flows/second: 52588.3 Runtime: 0.0026s