Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-12 02:59:21.002 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:32804 10 6452 1 2025-11-12 03:00:21.407 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:60876 10 6452 1 2025-11-12 02:55:59.356 00:06:00.141 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-12 03:01:14.314 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 03:01:14.262 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 03:01:14.504 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 03:01:14.641 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 03:01:14.588 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 03:01:21.818 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:40670 10 6452 1 2025-11-12 02:56:59.359 00:06:00.137 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-12 03:02:22.228 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:57712 10 6452 1 2025-11-12 03:03:22.639 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:56896 10 6452 1 2025-11-12 03:04:23.014 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34408 10 6452 1 2025-11-12 03:05:23.418 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41192 10 6452 1 2025-11-12 03:06:14.610 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 03:06:14.621 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 03:06:14.451 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 03:06:14.602 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 03:06:14.533 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 03:06:23.821 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:47202 10 6452 1 2025-11-12 03:07:24.230 00:00:10.413 TCP 1.101.0.1:3000 -> 23.104.0.1:48652 11 6504 1 2025-11-12 03:02:59.360 00:06:00.142 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-12 03:08:24.686 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:37388 10 6452 1 2025-11-12 03:03:59.362 00:06:00.137 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-12 03:09:25.111 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33510 10 6452 1 2025-11-12 03:10:25.516 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:42126 10 6452 1 2025-11-12 03:11:14.820 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 03:11:14.650 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 03:11:14.369 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 03:11:14.738 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 03:11:14.540 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 03:11:25.880 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33248 10 6452 1 2025-11-12 03:12:26.287 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:43900 10 6452 1 2025-11-12 03:13:26.687 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:41570 10 6452 1 2025-11-12 03:14:27.110 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41728 10 6452 1 2025-11-12 03:09:59.364 00:06:00.158 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-12 03:15:27.512 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:41716 10 6452 1 2025-11-12 03:10:59.366 00:06:00.151 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-12 03:16:15.032 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 03:16:14.949 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 03:16:14.800 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 03:16:14.950 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 03:16:14.850 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 03:16:27.921 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:54468 10 6452 1 2025-11-12 03:17:28.335 00:00:10.698 TCP 1.101.0.1:3000 -> 23.104.0.1:51064 10 6452 1 2025-11-12 03:18:29.097 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:51136 10 6452 1 2025-11-12 03:19:29.503 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:40658 10 6452 1 2025-11-12 03:20:29.874 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:60710 10 6452 1 2025-11-12 03:21:15.198 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 03:21:15.111 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 03:21:14.687 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 03:21:15.115 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 03:21:15.125 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 03:21:30.277 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:60320 10 6452 1 2025-11-12 03:16:59.364 00:06:00.157 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-12 03:22:30.682 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:46534 10 6452 1 2025-11-12 03:17:59.367 00:06:00.152 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-12 03:23:31.048 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:36624 10 6452 1 2025-11-12 03:24:31.445 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:51380 10 6452 1 2025-11-12 03:25:31.843 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:36880 10 6452 1 2025-11-12 03:26:14.870 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 03:26:14.868 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 03:26:14.933 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 03:26:15.076 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 03:26:15.017 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 03:26:32.268 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:40784 10 6452 1 2025-11-12 03:27:32.632 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49600 10 6452 1 2025-11-12 03:28:33.034 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:42908 10 6452 1 2025-11-12 03:23:59.368 00:06:00.155 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-12 03:29:33.396 00:00:10.582 TCP 1.101.0.1:3000 -> 23.104.0.1:51950 10 6452 1 2025-11-12 03:24:59.372 00:06:00.148 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-12 03:30:34.024 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:60782 10 6452 1 2025-11-12 03:31:15.205 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 03:31:14.834 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 03:31:15.270 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 03:31:15.205 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 03:31:15.353 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 03:31:34.434 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:36746 10 6452 1 2025-11-12 03:32:34.815 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:52476 10 6452 1 2025-11-12 03:33:35.223 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:57816 10 6452 1 2025-11-12 03:34:35.655 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:39676 10 6452 1 2025-11-12 03:35:36.114 00:00:10.590 TCP 1.101.0.1:3000 -> 23.104.0.1:44010 10 6452 1 2025-11-12 03:30:59.369 00:06:00.155 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-12 03:36:15.252 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 03:36:15.170 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 03:36:15.154 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 03:36:15.170 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 03:36:15.172 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 03:36:36.746 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:45796 10 6452 1 2025-11-12 03:31:59.372 00:06:00.151 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-12 03:37:37.161 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47664 10 6452 1 2025-11-12 03:38:37.581 00:00:10.408 TCP 1.101.0.1:3000 -> 23.104.0.1:59862 12 10375 1 2025-11-12 03:39:38.031 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:35902 10 6452 1 2025-11-12 03:40:38.432 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:46570 10 6452 1 2025-11-12 03:41:15.556 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 03:41:15.527 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 03:41:15.217 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 03:41:15.475 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 03:41:15.408 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 03:41:38.834 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:47470 10 6452 1 2025-11-12 03:42:39.236 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50078 12 6556 1 2025-11-12 03:37:59.372 00:06:00.157 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-12 03:43:39.639 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36354 10 6452 1 2025-11-12 03:38:59.375 00:06:00.152 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-12 03:44:40.039 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53782 10 6452 1 2025-11-12 03:45:40.445 00:00:10.815 TCP 1.101.0.1:3000 -> 23.104.0.1:43196 10 6452 1 2025-11-12 03:46:15.491 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 03:46:15.402 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 03:46:15.313 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 03:46:15.125 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 03:46:15.396 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 03:46:41.299 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:43968 10 6452 1 2025-11-12 03:47:41.698 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56940 10 6452 1 2025-11-12 03:48:42.114 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:52318 10 6452 1 2025-11-12 03:49:42.558 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56004 10 6452 1 2025-11-12 03:44:59.375 00:06:00.162 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-12 03:50:42.960 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:38314 10 6452 1 2025-11-12 03:45:59.377 00:06:00.156 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-12 03:51:15.974 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 03:51:15.936 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 03:51:15.921 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 03:51:15.838 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 03:51:16.003 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 03:51:43.368 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58088 10 6452 1 2025-11-12 03:52:43.769 00:00:10.425 TCP 1.101.0.1:3000 -> 23.104.0.1:51778 11 6504 1 2025-11-12 03:53:44.234 00:00:11.102 TCP 1.101.0.1:3000 -> 23.104.0.1:60192 10 6452 1 2025-11-12 03:54:45.374 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39984 12 6556 1 2025-11-12 03:55:45.775 00:00:24.638 TCP 1.101.0.1:3000 -> 23.104.0.1:50088 10 6452 1 2025-11-12 03:56:15.760 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 03:56:15.676 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 03:56:15.444 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 03:56:15.678 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 03:56:15.680 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 03:51:59.379 00:06:00.158 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-12 03:57:00.471 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33544 10 6452 1 2025-11-12 03:52:59.382 00:06:00.153 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-12 03:58:00.876 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:38864 10 6452 1 Summary: total flows: 137, total bytes: 415521, total packets: 1030, avg bps: 879, avg pps: 0, avg bpp: 403 Time window: 2025-11-12 02:55:59 - 2025-11-12 03:58:59 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0029s User: 0.0019s Wall: 0.0020s flows/second: 69684.7 Runtime: 0.0020s