Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-14 20:58:52.995 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:42366 10 6452 1 2025-11-14 20:54:00.754 00:06:00.143 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-14 20:59:53.408 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51934 10 6452 1 2025-11-14 21:00:53.808 00:00:10.417 TCP 1.101.0.1:3000 -> 23.104.0.1:44754 10 6452 1 2025-11-14 20:57:00.757 00:06:00.138 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-14 21:01:54.276 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:49846 10 6452 1 2025-11-14 21:02:34.039 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 21:02:33.937 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 21:02:33.920 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 21:02:33.593 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 21:02:33.957 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 21:02:54.674 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46892 10 6452 1 2025-11-14 21:03:55.097 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:33654 10 6452 1 2025-11-14 21:04:55.497 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43214 10 6452 1 2025-11-14 21:01:00.756 00:06:00.142 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-14 21:05:55.901 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:42370 10 6452 1 2025-11-14 21:06:56.310 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:50864 10 6452 1 2025-11-14 21:07:34.482 00:00:00.031 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 21:07:34.242 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 21:07:34.293 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 21:07:34.400 00:00:00.031 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 21:07:34.340 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 21:07:56.719 00:00:10.911 TCP 1.101.0.1:3000 -> 23.104.0.1:32792 10 6452 1 2025-11-14 21:04:00.759 00:06:00.137 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-14 21:08:57.668 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:36364 10 6452 1 2025-11-14 21:09:58.077 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56814 12 6556 1 2025-11-14 21:10:58.481 00:00:10.448 TCP 1.101.0.1:3000 -> 23.104.0.1:51792 12 10375 1 2025-11-14 21:11:58.965 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43242 10 6452 1 2025-11-14 21:12:34.241 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 21:12:34.198 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 21:12:34.084 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 21:12:33.759 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 21:12:34.158 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 21:08:00.758 00:06:00.142 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-14 21:12:59.366 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50570 10 6452 1 2025-11-14 21:13:59.772 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:38288 10 6452 1 2025-11-14 21:15:00.148 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:52782 10 6452 1 2025-11-14 21:11:00.762 00:06:00.137 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-14 21:16:00.544 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:58480 10 6452 1 2025-11-14 21:17:00.942 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:53240 10 6452 1 2025-11-14 21:17:34.226 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 21:17:33.812 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 21:17:34.110 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 21:17:33.978 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 21:17:34.193 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 21:18:01.369 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:55084 10 6452 1 2025-11-14 21:19:01.732 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:41248 10 6452 1 2025-11-14 21:15:00.762 00:06:00.141 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-14 21:20:02.141 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50316 10 6452 1 2025-11-14 21:21:02.539 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46514 10 6452 1 2025-11-14 21:22:02.939 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:45296 10 6452 1 2025-11-14 21:22:34.225 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 21:22:34.393 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 21:22:34.247 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 21:22:34.352 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 21:22:34.433 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 21:18:00.765 00:06:00.136 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-14 21:23:03.352 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:44700 10 6452 1 2025-11-14 21:24:03.765 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:33402 10 6452 1 2025-11-14 21:25:04.180 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:54658 10 6452 1 2025-11-14 21:26:04.585 00:00:10.452 TCP 1.101.0.1:3000 -> 23.104.0.1:40000 12 10375 1 2025-11-14 21:22:00.763 00:06:00.141 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-14 21:27:05.101 00:00:10.840 TCP 1.101.0.1:3000 -> 23.104.0.1:46688 10 6452 1 2025-11-14 21:27:34.323 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 21:27:34.502 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 21:27:34.296 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 21:27:34.241 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 21:27:34.413 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 21:28:05.987 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:37256 10 6452 1 2025-11-14 21:29:06.392 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53096 10 6452 1 2025-11-14 21:25:00.767 00:06:00.137 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-14 21:30:06.798 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:34128 10 6452 1 2025-11-14 21:31:07.213 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:36804 10 6452 1 2025-11-14 21:32:07.624 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42516 10 6452 1 2025-11-14 21:32:34.294 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 21:32:34.441 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 21:32:34.308 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 21:32:34.295 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 21:32:34.391 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 21:33:08.062 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:40404 10 6452 1 2025-11-14 21:29:00.764 00:06:00.143 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-14 21:34:08.441 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:58136 10 6452 1 2025-11-14 21:35:08.849 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:36362 10 6452 1 2025-11-14 21:36:09.262 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:35734 10 6452 1 2025-11-14 21:32:00.770 00:06:00.135 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-14 21:37:09.671 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:43790 10 6452 1 2025-11-14 21:37:34.473 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 21:37:34.459 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 21:37:34.607 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 21:37:34.461 00:00:00.027 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 21:37:34.544 00:00:00.027 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 21:38:10.100 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47378 10 6452 1 2025-11-14 21:39:10.507 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51690 10 6452 1 2025-11-14 21:40:10.910 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:47326 10 6452 1 2025-11-14 21:36:00.767 00:06:00.141 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-14 21:41:11.315 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40188 10 6452 1 2025-11-14 21:42:11.720 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:50248 10 6452 1 2025-11-14 21:42:34.604 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 21:42:34.696 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 21:42:34.721 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 21:42:34.671 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 21:42:34.804 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 21:43:12.132 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49424 10 6452 1 2025-11-14 21:39:00.770 00:06:00.136 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-14 21:44:12.537 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:36006 10 6452 1 2025-11-14 21:45:12.949 00:00:10.345 TCP 1.101.0.1:3000 -> 23.104.0.1:34526 10 6452 1 2025-11-14 21:46:13.331 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:51768 10 6452 1 2025-11-14 21:47:13.732 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:38456 10 6452 1 2025-11-14 21:47:34.921 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 21:47:34.940 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 21:47:34.755 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 21:47:34.839 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 21:47:35.063 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 21:43:00.768 00:06:00.143 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-14 21:48:14.141 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51826 10 6452 1 2025-11-14 21:49:14.542 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:54102 10 6452 1 2025-11-14 21:50:14.904 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:54564 12 6556 1 2025-11-14 21:46:00.771 00:06:00.139 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-14 21:51:15.311 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58972 10 6452 1 2025-11-14 21:52:15.718 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:35476 10 6452 1 2025-11-14 21:52:34.795 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 21:52:34.601 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 21:52:34.964 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 21:52:34.713 00:00:00.020 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 21:52:35.203 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 21:53:16.121 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:42734 10 6452 1 2025-11-14 21:54:16.483 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:39308 10 6452 1 2025-11-14 21:50:00.769 00:06:00.144 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-14 21:55:16.891 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:40546 10 6452 1 2025-11-14 21:56:17.321 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38316 10 6452 1 2025-11-14 21:57:17.734 00:00:11.232 TCP 1.101.0.1:3000 -> 23.104.0.1:46516 10 6452 1 2025-11-14 21:57:34.917 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 21:57:34.922 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 21:57:34.953 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 21:57:34.918 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 21:57:35.002 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 21:53:00.772 00:06:00.139 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-14 21:58:19.009 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:45874 10 6452 1 Summary: total flows: 138, total bytes: 425792, total packets: 1040, avg bps: 873, avg pps: 0, avg bpp: 409 Time window: 2025-11-14 20:54:00 - 2025-11-14 21:59:00 Total flows processed: 138, passed: 138, Blocks skipped: 0, Bytes read: 14416 Sys: 0.0041s User: 0.0010s Wall: 0.0022s flows/second: 63010.4 Runtime: 0.0022s