Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-14 17:59:09.521 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36310 10 6452 1 2025-11-14 17:55:00.683 00:06:00.168 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-14 18:00:09.927 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:37434 10 6452 1 2025-11-14 18:01:10.364 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:38540 10 6452 1 2025-11-14 18:02:10.792 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:35624 10 6452 1 2025-11-14 18:02:30.503 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 18:02:30.430 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 18:02:30.510 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 18:02:30.346 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 18:02:30.428 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 18:03:11.154 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:56934 10 6452 1 2025-11-14 17:59:00.684 00:06:00.171 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-14 18:04:11.564 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60202 10 6452 1 2025-11-14 18:05:11.972 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:51990 10 6452 1 2025-11-14 18:06:12.380 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39710 10 6452 1 2025-11-14 18:02:00.688 00:06:00.164 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-14 18:07:12.780 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47840 10 6452 1 2025-11-14 18:07:30.113 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 18:07:30.379 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 18:07:30.335 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 18:07:30.296 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 18:07:30.379 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 18:08:13.189 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:44782 10 6452 1 2025-11-14 18:09:13.548 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:56138 10 6452 1 2025-11-14 18:10:13.954 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:39100 10 6452 1 2025-11-14 18:06:00.688 00:06:00.168 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-14 18:11:14.360 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:56962 10 6452 1 2025-11-14 18:12:14.716 00:00:10.960 TCP 1.101.0.1:3000 -> 23.104.0.1:36588 10 6452 1 2025-11-14 18:12:30.593 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 18:12:30.679 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 18:12:30.704 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 18:12:30.741 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 18:12:30.824 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 18:13:15.713 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:44248 10 6452 1 2025-11-14 18:09:00.691 00:06:00.165 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-14 18:14:16.116 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59016 10 6452 1 2025-11-14 18:15:16.519 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:53958 10 6452 1 2025-11-14 18:16:16.921 00:00:10.811 TCP 1.101.0.1:3000 -> 23.104.0.1:56436 10 6452 1 2025-11-14 18:17:17.767 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:53880 10 6452 1 2025-11-14 18:17:30.838 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 18:17:30.474 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 18:17:30.381 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 18:17:30.771 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 18:17:30.464 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 18:13:00.691 00:06:00.168 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-14 18:18:18.176 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:48624 10 6452 1 2025-11-14 18:19:18.578 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:42756 10 6452 1 2025-11-14 18:20:18.940 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:59936 10 6452 1 2025-11-14 18:16:00.694 00:06:00.164 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-14 18:21:19.354 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43530 10 6452 1 2025-11-14 18:22:30.721 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 18:22:30.733 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 18:22:19.762 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:54956 10 6452 1 2025-11-14 18:22:30.531 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 18:22:30.490 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 18:22:30.639 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 18:23:20.134 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52048 10 6452 1 2025-11-14 18:24:20.535 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48624 10 6452 1 2025-11-14 18:20:00.695 00:06:00.168 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-14 18:25:20.936 00:00:10.583 TCP 1.101.0.1:3000 -> 23.104.0.1:60556 10 6452 1 2025-11-14 18:26:21.560 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:44394 10 6452 1 2025-11-14 18:27:30.776 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 18:27:30.759 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 18:27:30.762 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 18:27:30.795 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 18:27:21.968 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:52722 10 6452 1 2025-11-14 18:27:30.692 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 18:23:00.697 00:06:00.164 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-14 18:28:22.329 00:00:25.479 TCP 1.101.0.1:3000 -> 23.104.0.1:52562 10 6452 1 2025-11-14 18:29:37.863 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:59960 10 6452 1 2025-11-14 18:30:38.274 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:55984 10 6452 1 2025-11-14 18:31:38.676 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:46608 10 6452 1 2025-11-14 18:27:00.694 00:06:00.169 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-14 18:32:30.921 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 18:32:30.923 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 18:32:30.826 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 18:32:30.682 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 18:32:30.837 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 18:32:39.118 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:46460 10 6452 1 2025-11-14 18:33:39.479 00:00:10.436 TCP 1.101.0.1:3000 -> 23.104.0.1:47886 10 6452 1 2025-11-14 18:34:39.955 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:50932 10 6452 1 2025-11-14 18:30:00.699 00:06:00.164 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-14 18:35:40.366 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58066 10 6452 1 2025-11-14 18:36:40.774 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:34324 10 6452 1 2025-11-14 18:37:31.101 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 18:37:31.191 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 18:37:31.117 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 18:37:30.929 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 18:37:31.013 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 18:37:41.186 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:52714 10 6452 1 2025-11-14 18:38:41.585 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:60522 10 6452 1 2025-11-14 18:34:00.696 00:06:00.170 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-14 18:39:41.993 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:41898 10 6452 1 2025-11-14 18:40:42.357 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:36298 10 6452 1 2025-11-14 18:41:42.724 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:39018 10 6452 1 2025-11-14 18:37:00.702 00:06:00.163 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-14 18:42:31.452 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 18:42:31.266 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 18:42:31.327 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 18:42:31.291 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 18:42:31.369 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 18:42:43.135 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35142 10 6452 1 2025-11-14 18:43:43.539 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49538 10 6452 1 2025-11-14 18:44:43.943 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:46080 10 6452 1 2025-11-14 18:45:44.320 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:44878 10 6452 1 2025-11-14 18:41:00.701 00:06:00.168 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-14 18:46:44.726 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:36484 10 6452 1 2025-11-14 18:47:31.402 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 18:47:31.224 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 18:47:31.002 00:00:00.033 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 18:47:31.079 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 18:47:31.319 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 18:47:45.135 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53370 10 6452 1 2025-11-14 18:48:45.540 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55672 10 6452 1 2025-11-14 18:44:00.704 00:06:00.162 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-14 18:49:45.947 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:51980 10 6452 1 2025-11-14 18:50:46.366 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:48466 10 6452 1 2025-11-14 18:51:46.731 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:32876 10 6452 1 2025-11-14 18:52:31.106 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 18:52:31.102 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 18:52:31.091 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 18:52:31.111 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 18:52:31.193 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 18:52:47.139 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:43572 10 6452 1 2025-11-14 18:48:00.701 00:06:00.168 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-14 18:53:47.567 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44418 10 6452 1 2025-11-14 18:54:47.972 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:57774 10 6452 1 2025-11-14 18:55:48.388 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:49218 10 6452 1 2025-11-14 18:51:00.705 00:06:00.162 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-14 18:56:48.751 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:43348 10 6452 1 2025-11-14 18:57:31.468 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 18:57:31.385 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 18:57:31.317 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 18:57:31.491 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 18:57:31.385 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 18:57:49.157 00:00:11.270 TCP 1.101.0.1:3000 -> 23.104.0.1:52404 10 6452 1 Summary: total flows: 136, total bytes: 410425, total packets: 1008, avg bps: 868, avg pps: 0, avg bpp: 407 Time window: 2025-11-14 17:55:00 - 2025-11-14 18:58:00 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0049s User: 0.0008s Wall: 0.0022s flows/second: 61734.3 Runtime: 0.0022s