Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-12 05:59:07.139 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:46958 10 6452 1 2025-11-12 06:00:07.497 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:53472 10 6452 1 2025-11-12 06:01:18.217 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 06:01:07.908 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:57524 12 6556 1 2025-11-12 06:01:18.079 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 06:01:18.184 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 06:01:18.136 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 06:01:18.083 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 06:02:08.312 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42956 10 6452 1 2025-11-12 05:57:59.425 00:06:00.154 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-12 06:03:08.715 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57802 10 6452 1 2025-11-12 05:58:59.427 00:06:00.151 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-12 06:04:09.122 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33388 10 6452 1 2025-11-12 06:05:09.524 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39184 10 6452 1 2025-11-12 06:06:09.929 00:00:10.346 TCP 1.101.0.1:3000 -> 23.104.0.1:56308 10 6452 1 2025-11-12 06:06:18.040 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 06:06:18.201 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 06:06:18.063 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 06:06:18.078 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 06:06:18.145 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 06:07:10.316 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:37084 10 6452 1 2025-11-12 06:08:10.729 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:58436 10 6452 1 2025-11-12 06:09:11.140 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47314 10 6452 1 2025-11-12 06:04:59.427 00:06:00.153 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-12 06:10:11.542 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:53988 10 6452 1 2025-11-12 06:05:59.429 00:06:00.148 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-12 06:11:18.313 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 06:11:18.375 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 06:11:18.194 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 06:11:18.231 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 06:11:18.423 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 06:11:11.969 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:39918 10 6452 1 2025-11-12 06:12:12.377 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37338 10 6452 1 2025-11-12 06:13:12.781 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:36872 10 6452 1 2025-11-12 06:14:13.188 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:49462 10 6452 1 2025-11-12 06:15:13.595 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:46176 10 6452 1 2025-11-12 06:16:18.579 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 06:16:18.559 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 06:16:18.263 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 06:16:18.498 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 06:16:18.435 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 06:16:14.014 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60440 10 6452 1 2025-11-12 06:11:59.429 00:06:00.151 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-12 06:17:14.418 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:48104 10 6452 1 2025-11-12 06:12:59.432 00:06:00.146 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-12 06:18:14.783 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:56044 10 6452 1 2025-11-12 06:19:15.190 00:00:10.722 TCP 1.101.0.1:3000 -> 23.104.0.1:57982 10 6452 1 2025-11-12 06:20:15.944 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:41830 10 6452 1 2025-11-12 06:21:18.685 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 06:21:18.602 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 06:21:18.389 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 06:21:18.603 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 06:21:18.548 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 06:21:16.358 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54404 10 6452 1 2025-11-12 06:22:16.767 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:47604 10 6452 1 2025-11-12 06:23:17.190 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:43242 10 6452 1 2025-11-12 06:18:59.430 00:06:00.151 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-12 06:24:17.552 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:32770 10 6452 1 2025-11-12 06:19:59.433 00:06:00.146 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-12 06:25:17.957 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:59516 10 6452 1 2025-11-12 06:26:18.683 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 06:26:18.686 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 06:26:18.459 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 06:26:18.763 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 06:26:18.542 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 06:26:18.360 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:38658 10 6452 1 2025-11-12 06:27:18.720 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:60246 10 6452 1 2025-11-12 06:28:19.150 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:34296 10 6452 1 2025-11-12 06:29:19.566 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39052 10 6452 1 2025-11-12 06:30:19.978 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:53272 10 6452 1 2025-11-12 06:25:59.433 00:06:00.149 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-12 06:31:18.885 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 06:31:18.633 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 06:31:18.750 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 06:31:18.809 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 06:31:18.834 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 06:31:20.388 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58282 10 6452 1 2025-11-12 06:26:59.438 00:06:00.143 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-12 06:32:20.788 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53452 10 6452 1 2025-11-12 06:33:21.191 00:00:10.438 TCP 1.101.0.1:3000 -> 23.104.0.1:37944 12 10375 1 2025-11-12 06:34:21.665 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41478 10 6452 1 2025-11-12 06:35:22.099 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:43566 10 6452 1 2025-11-12 06:36:18.821 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 06:36:18.845 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 06:36:18.822 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 06:36:18.891 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 06:36:18.904 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 06:36:22.498 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54668 10 6452 1 2025-11-12 06:37:22.907 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:44310 10 6452 1 2025-11-12 06:32:59.434 00:06:00.148 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-12 06:38:23.318 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:59062 10 6452 1 2025-11-12 06:33:59.438 00:06:00.144 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-12 06:39:23.735 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:37248 10 6452 1 2025-11-12 06:40:24.144 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:48726 10 6452 1 2025-11-12 06:41:19.038 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 06:41:19.011 00:00:00.032 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 06:41:19.015 00:00:00.042 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 06:41:18.956 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 06:41:18.954 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 06:41:24.573 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:34226 10 6452 1 2025-11-12 06:42:24.973 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:36778 10 6452 1 2025-11-12 06:43:25.382 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51364 10 6452 1 2025-11-12 06:44:25.784 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:34872 10 6452 1 2025-11-12 06:39:59.435 00:06:00.150 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-12 06:45:26.190 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59300 10 6452 1 2025-11-12 06:40:59.439 00:06:00.145 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-12 06:46:19.178 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 06:46:19.090 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 06:46:18.762 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 06:46:19.095 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 06:46:19.083 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 06:46:26.590 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:51708 10 6452 1 2025-11-12 06:47:26.952 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:45162 10 6452 1 2025-11-12 06:48:27.366 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:44100 10 6452 1 2025-11-12 06:49:27.773 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35128 10 6452 1 2025-11-12 06:50:28.176 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42742 10 6452 1 2025-11-12 06:51:19.093 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 06:51:19.037 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 06:51:19.092 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 06:51:18.985 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 06:51:19.174 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 06:51:28.585 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49130 10 6452 1 2025-11-12 06:46:59.438 00:06:00.149 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-12 06:52:28.989 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:35134 10 6452 1 2025-11-12 06:47:59.440 00:06:00.145 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-12 06:53:29.400 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:43292 10 6452 1 2025-11-12 06:54:29.816 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:51668 10 6452 1 2025-11-12 06:55:30.223 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49408 10 6452 1 2025-11-12 06:56:19.601 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 06:56:19.180 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 06:56:19.013 00:00:00.046 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 06:56:19.520 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 06:56:19.377 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 06:56:30.625 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34242 10 6452 1 2025-11-12 06:57:31.045 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:35776 10 6452 1 2025-11-12 06:58:31.408 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59110 10 6452 1 Summary: total flows: 136, total bytes: 420043, total packets: 1008, avg bps: 922, avg pps: 0, avg bpp: 416 Time window: 2025-11-12 05:57:59 - 2025-11-12 06:58:41 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0039s User: 0.0020s Wall: 0.0021s flows/second: 63521.8 Runtime: 0.0022s