Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-12 00:59:20.480 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39938 10 6452 1 2025-11-12 01:00:20.879 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57626 10 6452 1 2025-11-12 01:01:12.170 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 01:01:11.947 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 01:01:12.223 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 01:01:12.221 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 01:01:12.306 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 01:01:21.283 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56482 10 6452 1 2025-11-12 00:56:59.319 00:06:00.132 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-12 01:02:21.686 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:52240 10 6452 1 2025-11-12 00:57:59.323 00:06:00.128 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-12 01:03:22.065 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36480 10 6452 1 2025-11-12 01:04:22.471 00:00:10.472 TCP 1.101.0.1:3000 -> 23.104.0.1:58116 10 6452 1 2025-11-12 01:05:22.981 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:46150 10 6452 1 2025-11-12 01:06:12.401 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 01:06:12.276 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 01:06:12.291 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 01:06:12.318 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 01:06:12.360 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 01:06:23.388 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35744 10 6452 1 2025-11-12 01:07:23.787 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:34276 10 6452 1 2025-11-12 01:08:24.143 00:00:10.552 TCP 1.101.0.1:3000 -> 23.104.0.1:33050 10 6452 1 2025-11-12 01:03:59.321 00:06:00.133 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-12 01:09:24.733 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:52562 10 6452 1 2025-11-12 01:04:59.324 00:06:00.127 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-12 01:10:25.145 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:45746 10 6452 1 2025-11-12 01:11:12.305 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 01:11:12.414 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 01:11:12.370 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 01:11:12.221 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 01:11:12.414 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 01:11:25.508 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:43872 10 6452 1 2025-11-12 01:12:25.911 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:51148 10 6452 1 2025-11-12 01:13:26.274 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:38862 10 6452 1 2025-11-12 01:14:26.634 00:00:18.613 TCP 1.101.0.1:3000 -> 23.104.0.1:42170 10 6452 1 2025-11-12 01:15:35.289 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:37792 10 6452 1 2025-11-12 01:10:59.323 00:06:00.132 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-12 01:16:12.237 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 01:16:12.270 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 01:16:12.323 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 01:16:12.440 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 01:16:12.406 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 01:16:35.688 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:33596 10 6452 1 2025-11-12 01:11:59.325 00:06:00.128 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-12 01:17:36.105 00:00:10.839 TCP 1.101.0.1:3000 -> 23.104.0.1:38962 10 6452 1 2025-11-12 01:18:36.979 00:00:10.441 TCP 1.101.0.1:3000 -> 23.104.0.1:41038 12 10375 1 2025-11-12 01:19:37.457 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56324 10 6452 1 2025-11-12 01:20:37.856 00:00:10.844 TCP 1.101.0.1:3000 -> 23.104.0.1:32840 10 6452 1 2025-11-12 01:21:12.516 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 01:21:12.424 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 01:21:12.344 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 01:21:12.434 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 01:21:12.505 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 01:21:38.742 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:39334 10 6452 1 2025-11-12 01:22:39.154 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:41686 10 6452 1 2025-11-12 01:17:59.323 00:06:00.134 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-12 01:23:39.523 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53684 10 6452 1 2025-11-12 01:18:59.326 00:06:00.131 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-12 01:24:39.930 00:00:10.393 TCP 1.101.0.1:3000 -> 23.104.0.1:47986 10 6452 1 2025-11-12 01:25:40.365 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60876 10 6452 1 2025-11-12 01:26:12.699 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 01:26:12.407 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 01:26:12.159 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 01:26:12.616 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 01:26:12.620 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 01:26:40.766 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:38894 10 6452 1 2025-11-12 01:27:41.183 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:51592 10 6452 1 2025-11-12 01:28:41.560 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:52936 10 6452 1 2025-11-12 01:29:41.920 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:37610 10 6452 1 2025-11-12 01:24:59.324 00:06:00.136 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-12 01:30:42.339 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54782 10 6452 1 2025-11-12 01:25:59.328 00:06:00.130 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-12 01:31:12.657 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 01:31:12.657 00:00:00.028 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 01:31:12.722 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 01:31:12.656 00:00:00.033 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 01:31:12.805 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 01:31:42.740 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:40162 10 6452 1 2025-11-12 01:32:43.149 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49972 10 6452 1 2025-11-12 01:33:43.549 00:00:10.404 TCP 1.101.0.1:3000 -> 23.104.0.1:33274 12 10375 1 2025-11-12 01:34:43.995 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:47418 10 6452 1 2025-11-12 01:35:44.402 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60844 10 6452 1 2025-11-12 01:36:12.828 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 01:36:12.787 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 01:36:12.828 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 01:36:12.876 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 01:36:12.912 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 01:36:44.807 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:56248 10 6452 1 2025-11-12 01:31:59.326 00:06:00.135 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-12 01:37:45.217 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:48008 10 6452 1 2025-11-12 01:32:59.328 00:06:00.131 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-12 01:38:45.580 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34108 10 6452 1 2025-11-12 01:39:45.983 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39758 10 6452 1 2025-11-12 01:40:46.387 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:42468 10 6452 1 2025-11-12 01:41:12.648 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 01:41:12.954 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 01:41:12.991 00:00:00.050 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 01:41:12.873 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 01:41:13.074 00:00:00.049 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 01:41:46.811 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:35842 10 6452 1 2025-11-12 01:42:47.183 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:52862 10 6452 1 2025-11-12 01:43:47.588 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:58632 10 6452 1 2025-11-12 01:38:59.325 00:06:00.137 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-12 01:44:47.997 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37522 10 6452 1 2025-11-12 01:39:59.330 00:06:00.132 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-12 01:45:48.402 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56374 10 6452 1 2025-11-12 01:46:12.902 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 01:46:13.101 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 01:46:12.855 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 01:46:12.820 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 01:46:12.824 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 01:46:48.805 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56862 10 6452 1 2025-11-12 01:47:49.217 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:48136 10 6452 1 2025-11-12 01:48:49.625 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:57668 10 6452 1 2025-11-12 01:49:50.052 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45562 10 6452 1 2025-11-12 01:45:59.331 00:06:00.133 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-12 01:50:50.457 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:42674 10 6452 1 2025-11-12 01:51:13.307 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 01:51:13.096 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 01:51:13.222 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 01:51:13.119 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 01:51:12.973 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 01:46:59.335 00:06:00.128 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-12 01:51:50.853 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:38728 10 6452 1 2025-11-12 01:52:51.287 00:00:10.351 TCP 1.101.0.1:3000 -> 23.104.0.1:52438 10 6452 1 2025-11-12 01:53:51.672 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47326 10 6452 1 2025-11-12 01:54:52.099 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:37872 10 6452 1 2025-11-12 01:55:52.498 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:33668 10 6452 1 2025-11-12 01:56:13.144 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 01:56:12.836 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 01:56:13.277 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 01:56:13.386 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 01:56:13.361 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 01:56:52.899 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:57268 10 6452 1 2025-11-12 01:52:59.335 00:06:00.132 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-12 01:57:53.304 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:59196 10 6452 1 Summary: total flows: 136, total bytes: 418271, total packets: 1012, avg bps: 899, avg pps: 0, avg bpp: 413 Time window: 2025-11-12 00:56:59 - 2025-11-12 01:58:59 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0039s User: 0.0000s Wall: 0.0018s flows/second: 75343.5 Runtime: 0.0018s