Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-12 12:58:52.272 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43258 10 6452 1 2025-11-12 12:59:52.677 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40348 10 6452 1 2025-11-12 13:00:53.116 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:56236 10 6452 1 2025-11-12 13:01:26.697 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 13:01:26.714 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 13:01:26.437 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 13:01:26.615 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 13:01:26.607 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 13:01:53.487 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53838 10 6452 1 2025-11-12 12:57:59.564 00:06:00.174 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-12 13:02:53.892 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:42852 10 6452 1 2025-11-12 12:58:59.568 00:06:00.168 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-12 13:03:54.303 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:45508 10 6452 1 2025-11-12 13:04:54.661 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37972 10 6452 1 2025-11-12 13:05:55.062 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56652 10 6452 1 2025-11-12 13:06:26.706 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 13:06:26.679 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 13:06:26.325 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 13:06:26.623 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 13:06:26.622 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 13:06:55.466 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:51270 10 6452 1 2025-11-12 13:07:55.829 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:45612 10 6452 1 2025-11-12 13:08:56.264 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:40796 10 6452 1 2025-11-12 13:04:59.566 00:06:00.174 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-12 13:09:56.669 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33046 10 6452 1 2025-11-12 13:05:59.570 00:06:00.169 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-12 13:10:57.104 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41868 10 6452 1 2025-11-12 13:11:26.774 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 13:11:26.613 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 13:11:26.703 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 13:11:26.773 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 13:11:26.786 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 13:11:57.508 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:58530 10 6452 1 2025-11-12 13:12:57.913 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47420 10 6452 1 2025-11-12 13:13:58.311 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:52812 10 6452 1 2025-11-12 13:14:58.719 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:33646 10 6452 1 2025-11-12 13:15:59.169 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:40108 10 6452 1 2025-11-12 13:16:27.028 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 13:16:26.821 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 13:16:26.594 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 13:16:26.945 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 13:16:26.944 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 13:11:59.570 00:06:00.173 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-12 13:16:59.579 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55682 10 6452 1 2025-11-12 13:12:59.574 00:06:00.168 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-12 13:17:59.987 00:00:10.398 TCP 1.101.0.1:3000 -> 23.104.0.1:46538 10 6452 1 2025-11-12 13:19:00.420 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:51656 10 6452 1 2025-11-12 13:20:00.778 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:42230 10 6452 1 2025-11-12 13:21:01.188 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38724 11 6492 1 2025-11-12 13:21:27.075 00:00:00.049 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 13:21:26.860 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 13:21:26.689 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 13:21:26.993 00:00:00.049 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 13:21:26.930 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 13:22:01.589 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36170 10 6452 1 2025-11-12 13:23:01.987 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:46164 10 6452 1 2025-11-12 13:18:59.577 00:06:00.170 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-12 13:24:02.353 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:60142 10 6452 1 2025-11-12 13:19:59.579 00:06:00.164 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-12 13:25:02.717 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:47316 10 6452 1 2025-11-12 13:26:03.111 00:00:10.650 TCP 1.101.0.1:3000 -> 23.104.0.1:38366 10 6452 1 2025-11-12 13:26:27.056 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 13:26:27.096 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 13:26:27.192 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 13:26:27.299 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 13:26:27.274 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 13:27:03.802 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:53690 10 6452 1 2025-11-12 13:28:04.202 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:36114 10 6452 1 2025-11-12 13:29:04.603 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53710 10 6452 1 2025-11-12 13:30:05.008 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47208 10 6452 1 2025-11-12 13:25:59.579 00:06:00.173 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-12 13:31:05.417 00:00:10.349 TCP 1.101.0.1:3000 -> 23.104.0.1:45610 10 6452 1 2025-11-12 13:31:27.124 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 13:31:26.858 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 13:31:27.131 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 13:31:27.131 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 13:31:27.213 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 13:26:59.584 00:06:00.165 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-12 13:32:05.805 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:44930 10 6452 1 2025-11-12 13:33:06.173 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:43582 10 6452 1 2025-11-12 13:34:06.535 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36096 10 6452 1 2025-11-12 13:35:06.941 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:37614 10 6452 1 2025-11-12 13:36:07.359 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:50602 10 6452 1 2025-11-12 13:36:27.321 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 13:36:27.078 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 13:36:27.201 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 13:36:27.237 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 13:36:27.161 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 13:37:07.724 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:45004 10 6452 1 2025-11-12 13:32:59.579 00:06:00.174 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-12 13:38:08.131 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60078 10 6452 1 2025-11-12 13:33:59.583 00:06:00.168 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-12 13:39:08.531 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:60546 10 6452 1 2025-11-12 13:40:08.937 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:39636 10 6452 1 2025-11-12 13:41:09.360 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47700 10 6452 1 2025-11-12 13:41:27.145 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 13:41:27.092 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 13:41:27.399 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 13:41:27.312 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 13:41:27.481 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 13:42:09.775 00:00:10.429 TCP 1.101.0.1:3000 -> 23.104.0.1:35206 11 6504 1 2025-11-12 13:43:10.245 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:35840 10 6452 1 2025-11-12 13:44:10.603 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:48652 10 6452 1 2025-11-12 13:39:59.584 00:06:00.172 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-12 13:45:11.016 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:45770 10 6452 1 2025-11-12 13:40:59.587 00:06:00.167 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-12 13:46:11.432 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:60714 10 6452 1 2025-11-12 13:46:27.345 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 13:46:27.300 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 13:46:27.333 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 13:46:27.335 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 13:46:27.417 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 13:47:11.836 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:33426 10 6452 1 2025-11-12 13:48:12.249 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47790 10 6452 1 2025-11-12 13:49:12.653 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59256 10 6452 1 2025-11-12 13:50:13.060 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39534 10 6452 1 2025-11-12 13:51:13.461 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50140 10 6452 1 2025-11-12 13:51:27.587 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 13:51:27.509 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 13:51:27.552 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 13:51:27.352 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 13:51:27.634 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 13:46:59.584 00:06:00.173 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-12 13:52:13.864 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:39018 10 6452 1 2025-11-12 13:47:59.587 00:06:00.168 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-12 13:53:14.284 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:43756 10 6452 1 2025-11-12 13:54:14.649 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49644 10 6452 1 2025-11-12 13:55:15.055 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:53420 10 6452 1 2025-11-12 13:56:15.472 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33420 10 6452 1 2025-11-12 13:56:27.847 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 13:56:27.707 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 13:56:27.654 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 13:56:27.764 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 13:56:27.627 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 13:57:15.879 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50310 10 6452 1 2025-11-12 13:58:16.281 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42432 10 6452 1 Summary: total flows: 136, total bytes: 416108, total packets: 1006, avg bps: 917, avg pps: 0, avg bpp: 413 Time window: 2025-11-12 12:57:59 - 2025-11-12 13:58:26 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0035s User: 0.0012s Wall: 0.0014s flows/second: 95902.0 Runtime: 0.0014s