Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-14 18:58:50.486 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:39414 10 6452 1 2025-11-14 18:55:00.703 00:06:00.166 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-14 18:59:50.896 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:56566 10 6452 1 2025-11-14 19:00:51.273 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:59322 10 6452 1 2025-11-14 19:01:51.635 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41802 10 6452 1 2025-11-14 19:02:31.613 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 19:02:31.546 00:00:00.033 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 19:02:31.217 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 19:02:31.513 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 19:02:31.516 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 18:58:00.706 00:06:00.161 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-14 19:02:52.036 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40090 10 6452 1 2025-11-14 19:03:52.438 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:40910 10 6452 1 2025-11-14 19:04:52.840 00:00:10.344 TCP 1.101.0.1:3000 -> 23.104.0.1:37504 10 6452 1 2025-11-14 19:05:53.221 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:58684 10 6452 1 2025-11-14 19:02:00.706 00:06:00.166 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-14 19:06:53.627 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:55614 10 6452 1 2025-11-14 19:07:31.548 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 19:07:31.344 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 19:07:31.384 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 19:07:31.691 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 19:07:31.775 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 19:07:54.029 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:36462 10 6452 1 2025-11-14 19:08:54.433 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:50190 10 6452 1 2025-11-14 19:05:00.709 00:06:00.161 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-14 19:09:54.799 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:60948 10 6452 1 2025-11-14 19:10:55.210 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:33858 10 6452 1 2025-11-14 19:11:55.623 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57716 10 6452 1 2025-11-14 19:12:31.912 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 19:12:31.712 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 19:12:31.713 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 19:12:31.748 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 19:12:31.829 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 19:12:56.031 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40118 10 6452 1 2025-11-14 19:09:00.708 00:06:00.167 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-14 19:13:56.442 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:39396 10 6452 1 2025-11-14 19:14:56.808 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47426 10 6452 1 2025-11-14 19:15:57.209 00:00:10.440 TCP 1.101.0.1:3000 -> 23.104.0.1:49020 12 10369 1 2025-11-14 19:12:00.711 00:06:00.161 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-14 19:16:57.687 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:59394 10 6452 1 2025-11-14 19:17:31.755 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 19:17:31.866 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 19:17:31.667 00:00:00.030 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 19:17:31.869 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 19:17:31.951 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 19:17:58.110 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41870 10 6452 1 2025-11-14 19:18:58.515 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42494 10 6452 1 2025-11-14 19:19:58.917 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39172 10 6452 1 2025-11-14 19:16:00.714 00:06:00.164 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-14 19:20:59.325 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:41254 10 6452 1 2025-11-14 19:21:59.684 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:48084 10 6452 1 2025-11-14 19:22:31.868 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 19:22:31.938 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 19:22:31.788 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 19:22:31.611 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 19:22:31.785 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 19:23:00.109 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:33434 10 6452 1 2025-11-14 19:19:00.717 00:06:00.158 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-14 19:24:00.529 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:59482 10 6452 1 2025-11-14 19:25:00.929 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:47984 10 6452 1 2025-11-14 19:26:01.351 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:33832 10 6452 1 2025-11-14 19:27:01.715 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50968 10 6452 1 2025-11-14 19:27:32.185 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 19:27:32.104 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 19:27:32.293 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 19:27:31.801 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 19:27:32.103 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 19:23:00.716 00:06:00.163 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-14 19:28:02.123 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57384 10 6452 1 2025-11-14 19:29:02.528 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:47226 10 6452 1 2025-11-14 19:30:02.898 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:60554 12 6556 1 2025-11-14 19:26:00.718 00:06:00.157 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-14 19:31:03.310 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:46220 10 6452 1 2025-11-14 19:32:03.672 00:00:10.846 TCP 1.101.0.1:3000 -> 23.104.0.1:33006 10 6452 1 2025-11-14 19:32:32.185 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 19:32:32.094 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 19:32:32.100 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 19:32:32.056 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 19:32:32.103 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 19:33:04.560 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43912 10 6452 1 2025-11-14 19:34:04.962 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58040 10 6452 1 2025-11-14 19:30:00.724 00:06:00.157 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-14 19:35:05.371 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:54602 10 6452 1 2025-11-14 19:36:05.737 00:00:10.351 TCP 1.101.0.1:3000 -> 23.104.0.1:57584 10 6452 1 2025-11-14 19:37:06.132 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:35320 10 6452 1 2025-11-14 19:37:32.249 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 19:37:32.114 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 19:37:32.000 00:00:00.041 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 19:37:32.168 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 19:37:32.332 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 19:33:00.736 00:06:00.143 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-14 19:38:06.496 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51184 10 6452 1 2025-11-14 19:39:06.901 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54324 10 6452 1 2025-11-14 19:40:07.309 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:51266 10 6452 1 2025-11-14 19:41:07.721 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:59658 10 6452 1 2025-11-14 19:37:00.734 00:06:00.148 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-14 19:42:08.118 00:00:10.877 TCP 1.101.0.1:3000 -> 23.104.0.1:58540 10 6452 1 2025-11-14 19:42:32.399 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 19:42:32.474 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 19:42:32.239 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 19:42:32.278 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 19:42:32.316 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 19:43:09.034 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44260 10 6452 1 2025-11-14 19:44:09.435 00:00:14.538 TCP 1.101.0.1:3000 -> 23.104.0.1:45572 10 6452 1 2025-11-14 19:40:00.737 00:06:00.142 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-14 19:45:14.015 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52420 10 6452 1 2025-11-14 19:46:14.421 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:46282 10 6452 1 2025-11-14 19:47:14.783 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52214 10 6452 1 2025-11-14 19:47:32.934 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 19:47:33.071 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 19:47:33.068 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 19:47:33.282 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 19:47:33.366 00:00:00.027 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 19:48:15.185 00:00:11.244 TCP 1.101.0.1:3000 -> 23.104.0.1:51820 10 6452 1 2025-11-14 19:44:00.736 00:06:00.146 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-14 19:49:16.473 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:40876 10 6452 1 2025-11-14 19:50:16.887 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:58604 10 6452 1 2025-11-14 19:51:17.280 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59182 10 6452 1 2025-11-14 19:47:00.740 00:06:00.141 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-14 19:52:17.680 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:58842 10 6452 1 2025-11-14 19:52:33.062 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 19:52:32.878 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 19:52:33.098 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 19:52:33.060 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 19:52:33.181 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 19:53:18.110 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36812 10 6452 1 2025-11-14 19:54:18.514 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:56870 10 6452 1 2025-11-14 19:55:18.910 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:50768 10 6452 1 2025-11-14 19:51:00.740 00:06:00.145 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-14 19:56:19.314 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:54680 10 6452 1 2025-11-14 19:57:32.785 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 19:57:32.564 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 19:57:32.382 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 19:57:32.564 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 19:57:19.674 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:39934 10 6452 1 2025-11-14 19:57:32.649 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 19:58:20.040 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55804 10 6452 1 Summary: total flows: 137, total bytes: 420898, total packets: 1022, avg bps: 883, avg pps: 0, avg bpp: 411 Time window: 2025-11-14 18:55:00 - 2025-11-14 19:58:30 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0047s User: 0.0009s Wall: 0.0028s flows/second: 48949.6 Runtime: 0.0028s