Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-17 11:58:40.907 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:56194 10 6661 1 2025-11-17 11:59:41.276 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:36756 10 6661 1 2025-11-17 11:55:02.080 00:06:00.150 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-17 12:00:41.687 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:56180 10 6661 1 2025-11-17 12:01:42.113 00:00:10.440 TCP 1.101.0.1:3000 -> 23.104.0.1:59642 12 10369 1 2025-11-17 12:02:42.594 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:57624 10 6452 1 2025-11-17 12:03:49.784 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 12:03:49.703 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 12:03:49.653 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 12:03:49.644 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 12:03:49.351 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 12:03:42.954 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:39522 10 6452 1 2025-11-17 12:04:43.321 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47556 10 6452 1 2025-11-17 12:00:02.083 00:06:00.146 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-17 12:05:43.723 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:47672 10 6452 1 2025-11-17 12:06:44.134 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58018 10 6452 1 2025-11-17 12:02:02.082 00:06:00.150 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-17 12:07:44.536 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:47496 10 6452 1 2025-11-17 12:08:49.928 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 12:08:49.762 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 12:08:49.845 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 12:08:50.049 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 12:08:50.061 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 12:08:44.935 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:57412 10 6452 1 2025-11-17 12:09:45.364 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:40896 10 6452 1 2025-11-17 12:10:45.766 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:56824 10 6452 1 2025-11-17 12:11:46.182 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56110 10 6452 1 2025-11-17 12:07:02.086 00:06:00.145 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-17 12:12:46.585 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45400 10 6452 1 2025-11-17 12:13:49.704 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 12:13:49.898 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 12:13:49.981 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 12:13:50.134 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 12:13:50.011 00:00:00.042 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 12:13:46.996 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46436 10 6452 1 2025-11-17 12:09:02.084 00:06:00.151 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-17 12:14:47.402 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:43690 10 6452 1 2025-11-17 12:15:47.771 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:59154 10 6452 1 2025-11-17 12:16:48.185 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49520 10 6452 1 2025-11-17 12:17:48.590 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:51200 10 6452 1 2025-11-17 12:18:50.256 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 12:18:50.261 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 12:18:50.202 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 12:18:50.255 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 12:18:50.338 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 12:18:49.014 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40572 10 6452 1 2025-11-17 12:14:02.086 00:06:00.146 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-17 12:19:49.417 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:38280 10 6452 1 2025-11-17 12:20:49.833 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59690 10 6452 1 2025-11-17 12:16:02.085 00:06:00.150 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-17 12:21:50.239 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:49446 10 6452 1 2025-11-17 12:22:50.612 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:43496 10 6452 1 2025-11-17 12:23:49.907 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 12:23:50.231 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 12:23:50.174 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 12:23:50.180 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 12:23:50.261 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 12:23:50.974 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:45236 10 6452 1 2025-11-17 12:24:51.347 00:00:10.482 TCP 1.101.0.1:3000 -> 23.104.0.1:59590 10 6452 1 2025-11-17 12:25:51.871 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:36154 10 6452 1 2025-11-17 12:21:02.088 00:06:00.146 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-17 12:26:52.284 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:33350 10 6452 1 2025-11-17 12:27:52.649 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45234 10 6452 1 2025-11-17 12:23:02.086 00:06:00.150 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-17 12:28:50.367 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 12:28:50.329 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 12:28:50.074 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 12:28:50.283 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 12:28:50.329 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 12:28:53.057 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39942 10 6452 1 2025-11-17 12:29:53.458 00:00:10.882 TCP 1.101.0.1:3000 -> 23.104.0.1:52440 10 6452 1 2025-11-17 12:30:54.376 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41732 10 6452 1 2025-11-17 12:31:54.782 00:00:10.444 TCP 1.101.0.1:3000 -> 23.104.0.1:55984 12 10375 1 2025-11-17 12:28:02.088 00:06:00.146 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-17 12:32:55.264 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:37254 10 6452 1 2025-11-17 12:33:50.450 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 12:33:50.383 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 12:33:50.254 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 12:33:50.450 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 12:33:50.533 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 12:33:55.642 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:44432 10 6452 1 2025-11-17 12:30:02.089 00:06:00.150 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-17 12:34:56.069 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:53218 10 6452 1 2025-11-17 12:35:56.465 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:55450 10 6452 1 2025-11-17 12:36:56.868 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55858 10 6452 1 2025-11-17 12:37:57.276 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:45776 10 6452 1 2025-11-17 12:38:50.615 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 12:38:50.633 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 12:38:50.672 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 12:38:50.672 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 12:38:50.755 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 12:38:57.683 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:35948 10 6452 1 2025-11-17 12:35:02.092 00:06:00.143 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-17 12:39:58.119 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:35140 10 6452 1 2025-11-17 12:40:58.521 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39024 10 6452 1 2025-11-17 12:37:02.090 00:06:00.149 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-17 12:41:58.930 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:57838 10 6452 1 2025-11-17 12:42:59.306 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:57538 10 6452 1 2025-11-17 12:43:50.727 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 12:43:50.797 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 12:43:50.748 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 12:43:50.764 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 12:43:50.644 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 12:43:59.724 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38880 10 6452 1 2025-11-17 12:45:00.139 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:59694 10 6452 1 2025-11-17 12:46:00.502 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:32828 10 6452 1 2025-11-17 12:42:02.092 00:06:00.146 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-17 12:47:00.867 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:47778 10 6452 1 2025-11-17 12:48:01.239 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:48448 10 6452 1 2025-11-17 12:48:50.713 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 12:48:50.718 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 12:48:50.646 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 12:48:50.711 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 12:48:50.794 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 12:44:02.091 00:06:00.153 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-17 12:49:01.654 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:42680 10 6452 1 2025-11-17 12:50:02.065 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:38426 10 6452 1 2025-11-17 12:51:02.445 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41352 10 6452 1 2025-11-17 12:52:02.846 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:42886 10 6452 1 2025-11-17 12:53:03.271 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:36924 10 6452 1 2025-11-17 12:53:50.838 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 12:53:50.822 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 12:53:50.843 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 12:53:50.755 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 12:53:50.823 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 12:49:02.094 00:06:00.147 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-17 12:54:03.678 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:57162 10 6452 1 2025-11-17 12:55:04.114 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:39908 10 6452 1 2025-11-17 12:51:02.091 00:06:00.153 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-17 12:56:04.562 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:50036 10 6452 1 2025-11-17 12:57:04.967 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45796 10 6452 1 2025-11-17 12:58:05.369 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:60354 10 6452 1 Summary: total flows: 132, total bytes: 424084, total packets: 1007, avg bps: 894, avg pps: 0, avg bpp: 421 Time window: 2025-11-17 11:55:02 - 2025-11-17 12:58:15 Total flows processed: 132, passed: 132, Blocks skipped: 0, Bytes read: 13792 Sys: 0.0051s User: 0.0000s Wall: 0.0013s flows/second: 102092.6 Runtime: 0.0013s