Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-12 10:59:33.372 00:00:10.418 TCP 1.101.0.1:3000 -> 23.104.0.1:34120 10 6452 1 2025-11-12 11:00:33.830 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47318 10 6452 1 2025-11-12 11:01:24.696 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 11:01:24.379 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 11:01:24.656 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 11:01:24.658 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 11:01:24.739 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 11:01:34.225 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:34202 10 6452 1 2025-11-12 11:02:34.628 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36082 12 6556 1 2025-11-12 11:03:35.034 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:47384 10 6452 1 2025-11-12 10:58:59.529 00:06:00.178 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-12 11:04:35.448 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:40314 10 6452 1 2025-11-12 10:59:59.531 00:06:00.174 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-12 11:05:35.856 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:42336 10 6452 1 2025-11-12 11:06:24.276 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 11:06:24.088 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 11:06:24.279 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 11:06:24.394 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 11:06:24.361 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 11:06:36.273 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45536 10 6452 1 2025-11-12 11:07:36.680 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:45782 10 6452 1 2025-11-12 11:08:37.110 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:41872 10 6452 1 2025-11-12 11:09:37.465 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50830 10 6452 1 2025-11-12 11:10:37.872 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:48394 10 6452 1 2025-11-12 11:05:59.530 00:06:00.179 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-12 11:11:24.171 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 11:11:24.172 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 11:11:24.263 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 11:11:24.355 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 11:11:24.255 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 11:11:38.281 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:59896 10 6452 1 2025-11-12 11:06:59.533 00:06:00.174 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-12 11:12:38.692 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:55802 10 6452 1 2025-11-12 11:13:39.066 00:00:10.440 TCP 1.101.0.1:3000 -> 23.104.0.1:57500 12 10375 1 2025-11-12 11:14:39.543 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40664 10 6452 1 2025-11-12 11:15:39.948 00:00:17.842 TCP 1.101.0.1:3000 -> 23.104.0.1:37330 10 6452 1 2025-11-12 11:16:24.720 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 11:16:24.722 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 11:16:24.369 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 11:16:24.639 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 11:16:24.639 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 11:16:47.846 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:42720 10 6452 1 2025-11-12 11:12:59.531 00:06:00.180 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-12 11:17:48.268 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:34768 10 6452 1 2025-11-12 11:18:48.628 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:58752 10 6452 1 2025-11-12 11:13:59.534 00:06:00.175 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-12 11:19:49.005 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37462 10 6452 1 2025-11-12 11:20:49.403 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:44298 11 6492 1 2025-11-12 11:21:24.467 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 11:21:24.415 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 11:21:24.461 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 11:21:24.406 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 11:21:24.545 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 11:21:49.804 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:46280 10 6452 1 2025-11-12 11:22:50.165 00:00:11.311 TCP 1.101.0.1:3000 -> 23.104.0.1:57714 10 6452 1 2025-11-12 11:23:51.514 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48440 10 6452 1 2025-11-12 11:19:59.534 00:06:00.180 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-12 11:24:51.916 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:51080 10 6452 1 2025-11-12 11:20:59.537 00:06:00.174 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-12 11:25:52.317 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:56428 10 6452 1 2025-11-12 11:26:24.660 00:00:00.030 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 11:26:24.499 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 11:26:24.579 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 11:26:24.656 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 11:26:24.663 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 11:26:52.681 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46336 10 6452 1 2025-11-12 11:27:53.107 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45142 10 6452 1 2025-11-12 11:28:53.512 00:00:10.442 TCP 1.101.0.1:3000 -> 23.104.0.1:45794 12 10375 1 2025-11-12 11:29:53.991 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54576 10 6452 1 2025-11-12 11:30:54.397 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37460 10 6452 1 2025-11-12 11:31:24.861 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 11:31:25.169 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 11:31:24.589 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 11:31:24.779 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 11:31:25.173 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 11:26:59.535 00:06:00.180 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-12 11:31:54.801 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:39398 10 6452 1 2025-11-12 11:27:59.538 00:06:00.173 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-12 11:32:55.233 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:51780 10 6452 1 2025-11-12 11:33:55.637 00:00:10.612 TCP 1.101.0.1:3000 -> 23.104.0.1:59122 10 6452 1 2025-11-12 11:34:56.290 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:39180 10 6452 1 2025-11-12 11:35:56.698 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42720 10 6452 1 2025-11-12 11:36:24.723 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 11:36:24.783 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 11:36:24.674 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 11:36:24.641 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 11:36:25.100 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 11:36:57.111 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:53212 10 6452 1 2025-11-12 11:37:57.475 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:35654 10 6452 1 2025-11-12 11:33:59.540 00:06:00.176 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-12 11:38:57.847 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:37934 10 6452 1 2025-11-12 11:34:59.542 00:06:00.172 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-12 11:39:58.278 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:56314 10 6452 1 2025-11-12 11:40:58.684 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44742 10 6452 1 2025-11-12 11:41:24.956 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 11:41:25.079 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 11:41:24.903 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 11:41:24.872 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 11:41:24.865 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 11:41:59.114 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:52216 10 6452 1 2025-11-12 11:42:59.531 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:51728 10 6452 1 2025-11-12 11:43:59.926 00:00:10.351 TCP 1.101.0.1:3000 -> 23.104.0.1:35604 10 6452 1 2025-11-12 11:45:00.321 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:40886 10 6452 1 2025-11-12 11:40:59.540 00:06:00.178 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-12 11:46:00.728 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:46232 10 6452 1 2025-11-12 11:46:24.947 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 11:46:25.072 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 11:46:24.913 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 11:46:24.865 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 11:46:24.982 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 11:41:59.545 00:06:00.171 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-12 11:47:01.142 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60680 10 6452 1 2025-11-12 11:48:01.548 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:40376 10 6452 1 2025-11-12 11:49:01.949 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:36762 10 6452 1 2025-11-12 11:50:02.365 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46542 10 6452 1 2025-11-12 11:51:02.771 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:42510 10 6452 1 2025-11-12 11:51:25.367 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 11:51:25.276 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 11:51:25.249 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 11:51:25.162 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 11:51:25.337 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 11:52:03.146 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:46222 10 6452 1 2025-11-12 11:47:59.542 00:06:00.178 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-12 11:53:03.516 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48372 10 6452 1 2025-11-12 11:48:59.544 00:06:00.173 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-12 11:54:03.923 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:52270 10 6452 1 2025-11-12 11:55:04.343 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33348 10 6452 1 2025-11-12 11:56:04.748 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46632 10 6452 1 2025-11-12 11:56:25.442 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 11:56:25.285 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 11:56:25.275 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 11:56:25.295 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 11:56:25.360 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 11:57:05.150 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:59478 11 6504 1 2025-11-12 11:58:05.562 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:59386 10 6452 1 Summary: total flows: 135, total bytes: 417606, total packets: 1002, avg bps: 939, avg pps: 0, avg bpp: 416 Time window: 2025-11-12 10:58:59 - 2025-11-12 11:58:15 Total flows processed: 135, passed: 135, Blocks skipped: 0, Bytes read: 14104 Sys: 0.0028s User: 0.0019s Wall: 0.0012s flows/second: 111025.7 Runtime: 0.0012s