Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-17 02:59:36.988 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:33024 10 6452 1 2025-11-17 03:00:37.393 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:46676 10 6452 1 2025-11-17 03:01:37.760 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:35894 10 6452 1 2025-11-17 03:02:38.171 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:58488 10 6452 1 2025-11-17 02:59:01.899 00:05:00.133 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-17 02:59:01.896 00:05:00.138 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-17 03:03:38.805 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 03:03:38.980 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 03:03:38.850 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 03:03:38.864 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 03:03:38.949 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 03:03:38.571 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49516 10 6452 1 2025-11-17 03:04:38.973 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:58114 10 6452 1 2025-11-17 03:05:39.388 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57178 10 6452 1 2025-11-17 03:06:39.792 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:50256 10 6452 1 2025-11-17 03:07:40.152 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:48360 10 6452 1 2025-11-17 03:08:39.202 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 03:08:38.870 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 03:08:38.641 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 03:08:39.250 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 03:08:39.332 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 03:08:40.511 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:57224 10 6452 1 2025-11-17 03:05:01.897 00:05:00.137 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-17 03:05:01.894 00:05:00.142 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-17 03:09:40.876 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55474 10 6452 1 2025-11-17 03:10:41.286 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46268 10 6452 1 2025-11-17 03:11:41.692 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51604 10 6452 1 2025-11-17 03:12:42.111 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56616 10 6452 1 2025-11-17 03:13:39.016 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 03:13:39.063 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 03:13:38.792 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 03:13:38.971 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 03:13:38.932 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 03:13:42.514 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:58042 10 6452 1 2025-11-17 03:14:42.883 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:52806 10 6452 1 2025-11-17 03:11:01.895 00:05:00.148 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-17 03:11:01.898 00:05:00.143 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-17 03:15:43.248 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:33404 10 6452 1 2025-11-17 03:16:43.657 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50554 10 6452 1 2025-11-17 03:17:44.065 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60414 10 6452 1 2025-11-17 03:18:39.102 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 03:18:39.107 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 03:18:39.138 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 03:18:39.182 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 03:18:39.265 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 03:18:44.468 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40336 10 6452 1 2025-11-17 03:19:44.870 00:00:10.406 TCP 1.101.0.1:3000 -> 23.104.0.1:48570 10 6452 1 2025-11-17 03:20:45.320 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44922 10 6452 1 2025-11-17 03:17:01.900 00:05:00.144 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-17 03:17:01.897 00:05:00.149 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-17 03:21:45.727 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:58762 10 6452 1 2025-11-17 03:22:46.152 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47080 10 6452 1 2025-11-17 03:23:39.258 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 03:23:39.262 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 03:23:39.129 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 03:23:39.323 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 03:23:39.405 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 03:23:46.555 00:00:10.921 TCP 1.101.0.1:3000 -> 23.104.0.1:43988 10 6452 1 2025-11-17 03:24:47.517 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39424 10 6452 1 2025-11-17 03:25:47.919 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:45976 10 6452 1 2025-11-17 03:26:48.326 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:56334 10 6452 1 2025-11-17 03:23:01.899 00:05:00.150 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-17 03:23:01.901 00:05:00.145 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-17 03:27:48.699 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:36700 10 6452 1 2025-11-17 03:28:39.456 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 03:28:39.373 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 03:28:39.424 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 03:28:39.299 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 03:28:38.957 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 03:28:49.063 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:34184 10 6452 1 2025-11-17 03:29:49.465 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:54114 10 6452 1 2025-11-17 03:30:49.888 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:60056 12 6556 1 2025-11-17 03:31:50.310 00:00:10.435 TCP 1.101.0.1:3000 -> 23.104.0.1:55894 12 10375 1 2025-11-17 03:29:01.907 00:05:00.141 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-17 03:32:50.788 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59298 10 6452 1 2025-11-17 03:29:01.905 00:05:00.147 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-17 03:33:39.411 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 03:33:39.612 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 03:33:39.547 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 03:33:39.508 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 03:33:39.590 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 03:33:51.194 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41382 10 6452 1 2025-11-17 03:34:51.598 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:52800 10 6452 1 2025-11-17 03:35:52.005 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:47408 10 6452 1 2025-11-17 03:36:52.362 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:36262 10 6452 1 2025-11-17 03:37:52.728 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43156 10 6452 1 2025-11-17 03:38:39.701 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 03:38:39.552 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 03:38:39.512 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 03:38:39.656 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 03:38:39.594 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 03:35:01.906 00:05:00.146 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-17 03:38:53.134 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43984 10 6452 1 2025-11-17 03:35:01.908 00:05:00.141 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-17 03:39:53.536 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:55744 10 6452 1 2025-11-17 03:40:53.946 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:56480 10 6452 1 2025-11-17 03:41:54.319 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:49162 10 6452 1 2025-11-17 03:42:54.738 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36934 10 6452 1 2025-11-17 03:43:39.775 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 03:43:39.774 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 03:43:39.379 00:00:00.027 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 03:43:39.775 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 03:43:39.858 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 03:43:55.144 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:40770 10 6452 1 2025-11-17 03:41:01.909 00:05:00.141 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-17 03:41:01.907 00:05:00.146 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-17 03:44:55.510 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60680 10 6452 1 2025-11-17 03:45:55.912 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:43214 10 6452 1 2025-11-17 03:46:56.344 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:39884 10 6452 1 2025-11-17 03:47:56.744 00:00:17.043 TCP 1.101.0.1:3000 -> 23.104.0.1:49794 10 6452 1 2025-11-17 03:48:41.623 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 03:48:41.383 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 03:48:41.384 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 03:48:41.046 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 03:48:41.540 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 03:49:03.827 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:36368 10 6452 1 2025-11-17 03:50:04.228 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:47092 10 6452 1 2025-11-17 03:47:01.910 00:05:00.145 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-17 03:47:01.914 00:05:00.139 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-17 03:51:04.636 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:60016 10 6452 1 2025-11-17 03:52:05.056 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:37052 10 6452 1 2025-11-17 03:53:05.457 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:53026 10 6452 1 2025-11-17 03:53:39.972 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 03:53:39.968 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 03:53:39.970 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 03:53:40.054 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 03:53:39.992 00:00:00.058 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 03:54:05.860 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:40892 10 6452 1 2025-11-17 03:55:06.277 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44430 10 6452 1 2025-11-17 03:56:06.682 00:00:10.394 TCP 1.101.0.1:3000 -> 23.104.0.1:48692 10 6452 1 2025-11-17 03:53:01.913 00:05:00.144 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-17 03:53:01.915 00:05:00.139 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-17 03:57:07.114 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:60400 10 6452 1 2025-11-17 03:58:07.523 00:00:11.467 TCP 1.101.0.1:3000 -> 23.104.0.1:48978 10 6452 1 2025-11-17 03:58:39.967 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 03:58:40.143 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 03:58:40.227 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 03:58:40.075 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 03:58:40.310 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 Summary: total flows: 139, total bytes: 414575, total packets: 1014, avg bps: 926, avg pps: 0, avg bpp: 408 Time window: 2025-11-17 02:59:01 - 2025-11-17 03:58:40 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0028s User: 0.0028s Wall: 0.0023s flows/second: 61615.8 Runtime: 0.0023s