Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-12 03:59:01.284 00:00:10.442 TCP 1.101.0.1:3000 -> 23.104.0.1:43676 12 10369 1 2025-11-12 04:00:01.767 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:47170 10 6452 1 2025-11-12 04:01:02.127 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38704 10 6452 1 2025-11-12 04:01:15.851 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 04:01:15.988 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 04:01:16.077 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 04:01:16.081 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 04:01:16.072 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 04:02:02.529 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55246 10 6452 1 2025-11-12 04:03:02.932 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:46078 10 6452 1 2025-11-12 03:58:59.380 00:06:00.159 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-12 04:04:03.367 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43416 10 6452 1 2025-11-12 03:59:59.384 00:06:00.153 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-12 04:05:03.768 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:49296 10 6452 1 2025-11-12 04:06:15.927 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 04:06:04.137 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:47124 10 6452 1 2025-11-12 04:06:15.877 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 04:06:15.737 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 04:06:15.740 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 04:06:15.819 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 04:07:04.501 00:00:10.663 TCP 1.101.0.1:3000 -> 23.104.0.1:57898 10 6452 1 2025-11-12 04:08:05.205 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:32920 10 6452 1 2025-11-12 04:09:05.610 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:38024 10 6452 1 2025-11-12 04:10:06.017 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:51348 10 6452 1 2025-11-12 04:05:59.382 00:06:00.168 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-12 04:11:15.947 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 04:11:15.857 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 04:11:15.594 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 04:11:15.865 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 04:11:15.783 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 04:11:06.397 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:50900 10 6452 1 2025-11-12 04:06:59.385 00:06:00.163 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-12 04:12:06.799 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59238 10 6452 1 2025-11-12 04:13:07.208 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57312 10 6452 1 2025-11-12 04:14:07.612 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53256 10 6452 1 2025-11-12 04:15:08.011 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56556 10 6452 1 2025-11-12 04:16:15.958 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 04:16:16.123 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 04:16:16.239 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 04:16:16.353 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 04:16:08.407 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52422 10 6452 1 2025-11-12 04:16:16.324 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 04:17:08.811 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:45348 10 6452 1 2025-11-12 04:12:59.383 00:06:00.168 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-12 04:18:09.229 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:60446 10 6452 1 2025-11-12 04:13:59.386 00:06:00.163 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-12 04:19:09.598 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:44850 10 6452 1 2025-11-12 04:20:09.963 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43904 10 6452 1 2025-11-12 04:21:15.952 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 04:21:15.947 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 04:21:16.085 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 04:21:10.368 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56654 10 6452 1 2025-11-12 04:21:16.124 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 04:21:16.028 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 04:22:10.769 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:59838 10 6452 1 2025-11-12 04:23:11.182 00:00:10.495 TCP 1.101.0.1:3000 -> 23.104.0.1:45460 13 10421 1 2025-11-12 04:24:11.718 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:39832 10 6452 1 2025-11-12 04:19:59.385 00:06:00.169 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-12 04:25:12.097 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:43464 10 6452 1 2025-11-12 04:20:59.388 00:06:00.163 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-12 04:26:16.231 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 04:26:16.106 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 04:26:16.260 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 04:26:16.219 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 04:26:16.344 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 04:26:12.499 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47720 10 6452 1 2025-11-12 04:27:12.901 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:44092 10 6452 1 2025-11-12 04:28:13.262 00:00:10.440 TCP 1.101.0.1:3000 -> 23.104.0.1:60644 12 10375 1 2025-11-12 04:29:13.737 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38724 10 6452 1 2025-11-12 04:30:14.144 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37686 10 6452 1 2025-11-12 04:31:16.191 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 04:31:16.075 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 04:31:16.381 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 04:31:16.424 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 04:31:16.465 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 04:31:14.543 00:00:17.275 TCP 1.101.0.1:3000 -> 23.104.0.1:57888 10 6452 1 2025-11-12 04:26:59.387 00:06:00.168 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-12 04:32:21.896 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45658 10 6452 1 2025-11-12 04:27:59.388 00:06:00.165 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-12 04:33:22.301 00:00:10.595 TCP 1.101.0.1:3000 -> 23.104.0.1:43678 10 6452 1 2025-11-12 04:34:22.938 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:37506 10 6452 1 2025-11-12 04:35:23.361 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:55894 10 6452 1 2025-11-12 04:36:16.595 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 04:36:16.552 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 04:36:16.522 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 04:36:16.512 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 04:36:16.298 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 04:36:23.774 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:36916 10 6452 1 2025-11-12 04:37:24.186 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:60694 10 6452 1 2025-11-12 04:38:24.586 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50002 10 6452 1 2025-11-12 04:33:59.388 00:06:00.169 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-12 04:39:24.999 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60748 10 6452 1 2025-11-12 04:34:59.390 00:06:00.164 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-12 04:40:25.406 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:45768 10 6452 1 2025-11-12 04:41:16.851 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 04:41:16.811 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 04:41:16.788 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 04:41:16.560 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 04:41:16.870 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 04:41:25.814 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41566 10 6452 1 2025-11-12 04:42:26.223 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51412 10 6452 1 2025-11-12 04:43:26.629 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:60088 10 6452 1 2025-11-12 04:44:27.035 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:42886 10 6452 1 2025-11-12 04:45:27.391 00:00:10.726 TCP 1.101.0.1:3000 -> 23.104.0.1:44606 10 6452 1 2025-11-12 04:40:59.390 00:06:00.168 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-12 04:46:16.721 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 04:46:16.528 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 04:46:16.397 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 04:46:16.638 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 04:46:16.583 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 04:46:28.154 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38722 10 6452 1 2025-11-12 04:41:59.393 00:06:00.163 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-12 04:47:28.564 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:56436 10 6452 1 2025-11-12 04:48:28.946 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:46338 10 6452 1 2025-11-12 04:49:29.365 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:37054 10 6452 1 2025-11-12 04:50:29.767 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:46692 10 6452 1 2025-11-12 04:51:16.810 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 04:51:16.627 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 04:51:16.685 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 04:51:16.689 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 04:51:16.767 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 04:51:30.180 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41420 10 6452 1 2025-11-12 04:52:30.587 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51410 10 6452 1 2025-11-12 04:47:59.391 00:06:00.168 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-12 04:53:30.991 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39120 10 6452 1 2025-11-12 04:48:59.394 00:06:00.163 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-12 04:54:31.397 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47632 10 6452 1 2025-11-12 04:55:31.803 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:33880 10 6452 1 2025-11-12 04:56:16.642 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 04:56:16.810 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 04:56:16.646 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 04:56:16.727 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 04:56:16.730 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 04:56:32.203 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:57268 10 6452 1 2025-11-12 04:57:32.563 00:00:10.412 TCP 1.101.0.1:3000 -> 23.104.0.1:58192 11 6504 1 2025-11-12 04:58:33.014 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:35140 10 6452 1 Summary: total flows: 136, total bytes: 427877, total packets: 1012, avg bps: 955, avg pps: 0, avg bpp: 422 Time window: 2025-11-12 03:58:59 - 2025-11-12 04:58:43 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0026s User: 0.0026s Wall: 0.0022s flows/second: 63079.2 Runtime: 0.0022s