Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-19 12:59:27.109 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43926 10 6452 1 2025-11-19 12:59:49.284 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-19 12:59:49.296 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-19 12:59:49.303 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-19 12:59:49.230 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-19 12:59:49.200 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-19 13:00:27.515 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55804 10 6452 1 2025-11-19 13:01:27.920 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:51504 10 6452 1 2025-11-19 12:57:03.077 00:06:00.216 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-19 12:57:03.074 00:06:00.221 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-19 13:02:28.319 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44248 10 6452 1 2025-11-19 13:03:28.722 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:53740 10 6452 1 2025-11-19 13:04:29.135 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41502 10 6452 1 2025-11-19 13:04:48.595 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-19 13:04:48.632 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-19 13:04:48.691 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-19 13:04:48.750 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-19 13:04:48.774 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-19 13:05:29.544 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:49188 10 6452 1 2025-11-19 13:06:29.908 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:51370 12 6556 1 2025-11-19 13:07:30.310 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:33198 10 6452 1 2025-11-19 13:08:30.711 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52810 10 6452 1 2025-11-19 13:04:03.076 00:06:00.224 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-19 13:04:03.078 00:06:00.218 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-19 13:09:31.123 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54782 10 6452 1 2025-11-19 13:09:49.026 00:00:00.027 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-19 13:09:48.942 00:00:00.028 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-19 13:09:49.286 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-19 13:09:49.397 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-19 13:09:48.714 00:00:00.053 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-19 13:10:31.528 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:47900 10 6452 1 2025-11-19 13:11:31.883 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55136 10 6452 1 2025-11-19 13:12:32.290 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52518 10 6452 1 2025-11-19 13:13:32.687 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:51822 10 6452 1 2025-11-19 13:14:33.112 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:59734 10 6452 1 2025-11-19 13:14:48.913 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-19 13:14:48.688 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-19 13:14:48.623 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-19 13:14:48.766 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-19 13:14:48.848 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-19 13:15:33.475 00:00:10.356 TCP 1.101.0.1:3000 -> 23.104.0.1:57474 10 6452 1 2025-11-19 13:11:03.079 00:06:00.219 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-19 13:11:03.077 00:06:00.223 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-19 13:16:33.871 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:43084 10 6452 1 2025-11-19 13:17:34.239 00:00:10.441 TCP 1.101.0.1:3000 -> 23.104.0.1:42638 12 10375 1 2025-11-19 13:18:34.720 00:00:10.762 TCP 1.101.0.1:3000 -> 23.104.0.1:33388 10 6452 1 2025-11-19 13:19:48.837 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-19 13:19:48.840 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-19 13:19:48.870 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-19 13:19:48.917 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-19 13:19:35.518 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44342 10 6452 1 2025-11-19 13:19:49.001 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-19 13:20:35.924 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:33830 10 6452 1 2025-11-19 13:21:36.342 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47666 10 6452 1 2025-11-19 13:22:36.744 00:00:10.441 TCP 1.101.0.1:3000 -> 23.104.0.1:52604 12 10375 1 2025-11-19 13:18:03.081 00:06:00.218 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-19 13:18:03.078 00:06:00.224 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-19 13:23:37.223 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:37978 10 6452 1 2025-11-19 13:24:49.059 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-19 13:24:48.985 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-19 13:24:48.998 00:00:00.039 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-19 13:24:37.604 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:49556 10 6452 1 2025-11-19 13:24:48.977 00:00:00.027 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-19 13:24:48.960 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-19 13:25:37.968 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:36200 10 6452 1 2025-11-19 13:26:38.376 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43904 10 6452 1 2025-11-19 13:27:38.785 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:36164 10 6452 1 2025-11-19 13:28:39.150 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:46236 10 6452 1 2025-11-19 13:29:49.357 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-19 13:29:39.559 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:56550 10 6452 1 2025-11-19 13:29:49.273 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-19 13:29:49.182 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-19 13:29:49.276 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-19 13:29:49.064 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-19 13:25:03.079 00:06:00.226 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-19 13:25:03.082 00:06:00.220 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-19 13:30:39.968 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:35158 10 6452 1 2025-11-19 13:31:40.334 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:56558 10 6452 1 2025-11-19 13:32:40.744 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:48596 10 6452 1 2025-11-19 13:33:41.154 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:57130 10 6452 1 2025-11-19 13:34:49.574 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-19 13:34:49.578 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-19 13:34:49.367 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-19 13:34:49.488 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-19 13:34:49.571 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-19 13:34:41.558 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38044 10 6452 1 2025-11-19 13:35:41.965 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36638 10 6452 1 2025-11-19 13:36:42.367 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36718 10 6452 1 2025-11-19 13:32:03.082 00:06:00.222 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-19 13:32:03.080 00:06:00.227 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-19 13:37:42.773 00:00:10.443 TCP 1.101.0.1:3000 -> 23.104.0.1:48550 12 10578 1 2025-11-19 13:38:43.289 00:00:10.792 TCP 1.101.0.1:3000 -> 23.104.0.1:50800 10 6661 1 2025-11-19 13:39:49.372 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-19 13:39:49.285 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-19 13:39:49.426 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-19 13:39:49.235 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-19 13:39:49.287 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-19 13:39:44.118 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:55460 10 6661 1 2025-11-19 13:40:44.519 00:00:11.000 TCP 1.101.0.1:3000 -> 23.104.0.1:38396 10 6661 1 2025-11-19 13:41:45.557 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42758 10 6661 1 2025-11-19 13:42:45.961 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:60526 10 6661 1 2025-11-19 13:43:46.368 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48524 10 6661 1 2025-11-19 13:39:03.084 00:06:00.222 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-19 13:39:03.083 00:06:00.228 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-19 13:44:49.547 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-19 13:44:49.464 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-19 13:44:49.463 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-19 13:44:49.612 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-19 13:44:49.297 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-19 13:44:46.774 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:40640 10 6661 1 2025-11-19 13:45:47.192 00:00:11.030 TCP 1.101.0.1:3000 -> 23.104.0.1:55416 10 6661 1 2025-11-19 13:46:48.263 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:54214 10 6661 1 2025-11-19 13:47:48.671 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:52396 10 6661 1 2025-11-19 13:48:49.035 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:50392 10 6661 1 2025-11-19 13:49:49.784 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-19 13:49:49.846 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-19 13:49:49.741 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-19 13:49:49.844 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-19 13:49:49.929 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-19 13:49:49.440 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:48472 10 6661 1 2025-11-19 13:46:03.083 00:06:00.230 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-19 13:46:03.085 00:06:00.225 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-19 13:50:49.847 00:00:10.398 TCP 1.101.0.1:3000 -> 23.104.0.1:45056 10 6661 1 2025-11-19 13:51:50.280 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:45992 10 6661 1 2025-11-19 13:52:50.689 00:00:21.811 TCP 1.101.0.1:3000 -> 23.104.0.1:44460 10 6661 1 2025-11-19 13:54:02.558 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49752 10 6661 1 2025-11-19 13:54:49.635 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-19 13:54:49.681 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-19 13:54:49.810 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-19 13:54:49.782 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-19 13:54:49.552 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-19 13:55:02.958 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:54070 10 6661 1 2025-11-19 13:56:03.362 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:54068 10 6661 1 2025-11-19 13:57:03.726 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:40474 10 6661 1 2025-11-19 13:53:03.087 00:06:00.233 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-19 13:53:03.084 00:06:00.238 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-19 13:58:04.142 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47832 10 6661 1 Summary: total flows: 137, total bytes: 427542, total packets: 1030, avg bps: 919, avg pps: 0, avg bpp: 415 Time window: 2025-11-19 12:57:03 - 2025-11-19 13:59:03 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0039s User: 0.0019s Wall: 0.0021s flows/second: 65083.2 Runtime: 0.0021s