Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-12 14:58:43.805 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:51704 10 6452 1 2025-11-12 14:59:44.212 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49974 10 6452 1 2025-11-12 15:00:44.615 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:36680 10 6452 1 2025-11-12 15:01:28.898 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 15:01:28.731 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 15:01:28.939 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 15:01:28.899 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 15:01:29.022 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 15:01:45.012 00:00:10.419 TCP 1.101.0.1:3000 -> 23.104.0.1:35354 10 6452 1 2025-11-12 14:56:59.615 00:06:00.173 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-12 15:02:45.471 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36090 10 6452 1 2025-11-12 14:57:59.616 00:06:00.169 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-12 15:03:45.877 00:00:12.507 TCP 1.101.0.1:3000 -> 23.104.0.1:49968 10 6452 1 2025-11-12 15:04:48.467 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:52492 10 6452 1 2025-11-12 15:05:48.868 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:53750 10 6452 1 2025-11-12 15:06:28.855 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 15:06:28.883 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 15:06:28.857 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 15:06:29.125 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 15:06:28.939 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 15:06:49.233 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50884 10 6452 1 2025-11-12 15:07:49.638 00:00:14.422 TCP 1.101.0.1:3000 -> 23.104.0.1:39908 10 6452 1 2025-11-12 15:03:59.616 00:06:00.174 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-12 15:08:54.120 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:38062 10 6452 1 2025-11-12 15:04:59.619 00:06:00.169 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-12 15:09:54.522 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:39868 10 6452 1 2025-11-12 15:10:54.937 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:55264 10 6452 1 2025-11-12 15:11:28.912 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 15:11:28.832 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 15:11:28.678 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 15:11:28.829 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 15:11:29.053 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 15:11:55.362 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:47920 10 6452 1 2025-11-12 15:12:55.764 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:49084 10 6452 1 2025-11-12 15:13:56.182 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:46496 10 6452 1 2025-11-12 15:14:56.547 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49136 10 6452 1 2025-11-12 15:10:59.618 00:06:00.174 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-12 15:15:56.949 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:59474 10 6452 1 2025-11-12 15:16:29.381 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 15:16:29.085 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 15:16:29.279 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 15:16:29.298 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 15:16:29.231 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 15:11:59.621 00:06:00.169 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-12 15:16:57.352 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:60212 10 6452 1 2025-11-12 15:17:57.754 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:52442 10 6452 1 2025-11-12 15:18:58.179 00:00:10.438 TCP 1.101.0.1:3000 -> 23.104.0.1:42166 12 10375 1 2025-11-12 15:19:58.659 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:54026 10 6452 1 2025-11-12 15:20:59.090 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:45942 10 6452 1 2025-11-12 15:21:29.283 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 15:21:29.312 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 15:21:29.362 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 15:21:29.449 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 15:21:29.445 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 15:21:59.501 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:33486 10 6452 1 2025-11-12 15:17:59.620 00:06:00.172 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-12 15:22:59.903 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:57342 10 6452 1 2025-11-12 15:18:59.625 00:06:00.166 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-12 15:24:00.277 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34502 10 6452 1 2025-11-12 15:25:00.682 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:44924 10 6452 1 2025-11-12 15:26:01.042 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39152 10 6452 1 2025-11-12 15:26:29.396 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 15:26:29.511 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 15:26:29.499 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 15:26:29.492 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 15:26:29.581 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 15:27:01.442 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:34376 10 6452 1 2025-11-12 15:28:01.802 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59596 10 6452 1 2025-11-12 15:29:02.206 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:44814 10 6452 1 2025-11-12 15:24:59.622 00:06:00.186 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-12 15:30:02.602 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:39254 10 6452 1 2025-11-12 15:25:59.625 00:06:00.182 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-12 15:31:03.010 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49984 10 6452 1 2025-11-12 15:31:29.821 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 15:31:29.338 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 15:31:29.739 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 15:31:29.322 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 15:31:29.308 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 15:32:03.424 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55008 10 6452 1 2025-11-12 15:33:03.828 00:00:10.350 TCP 1.101.0.1:3000 -> 23.104.0.1:43208 10 6452 1 2025-11-12 15:34:04.215 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:38234 10 6452 1 2025-11-12 15:35:04.577 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:52798 10 6452 1 2025-11-12 15:36:04.981 00:00:11.133 TCP 1.101.0.1:3000 -> 23.104.0.1:35964 10 6452 1 2025-11-12 15:36:29.639 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 15:36:29.471 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 15:36:29.768 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 15:36:29.635 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 15:36:29.851 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 15:31:59.624 00:06:00.186 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-12 15:37:06.150 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:44132 10 6452 1 2025-11-12 15:32:59.627 00:06:00.181 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-12 15:38:06.554 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:51856 10 6452 1 2025-11-12 15:39:06.953 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:37646 10 6452 1 2025-11-12 15:40:07.338 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56876 10 6452 1 2025-11-12 15:41:07.743 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:33570 10 6452 1 2025-11-12 15:41:29.782 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 15:41:29.726 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 15:41:29.554 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 15:41:29.699 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 15:41:29.713 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 15:42:08.148 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59676 10 6452 1 2025-11-12 15:43:08.553 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:41052 10 6452 1 2025-11-12 15:38:59.624 00:06:00.188 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-12 15:44:08.954 00:00:10.406 TCP 1.101.0.1:3000 -> 23.104.0.1:43144 12 10375 1 2025-11-12 15:39:59.628 00:06:00.183 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-12 15:45:09.394 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:51926 10 6452 1 2025-11-12 15:46:09.789 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:56566 10 6452 1 2025-11-12 15:46:30.016 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 15:46:30.049 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 15:46:29.938 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 15:46:29.933 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 15:46:29.688 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 15:47:10.154 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:55438 10 6452 1 2025-11-12 15:48:10.520 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:54232 10 6452 1 2025-11-12 15:49:10.886 00:00:17.511 TCP 1.101.0.1:3000 -> 23.104.0.1:39178 10 6452 1 2025-11-12 15:50:18.433 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:34708 10 6452 1 2025-11-12 15:45:59.627 00:06:00.190 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-12 15:51:29.931 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 15:51:29.852 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 15:51:29.785 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 15:51:29.850 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 15:51:18.837 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:58062 10 6452 1 2025-11-12 15:51:29.652 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 15:46:59.629 00:06:00.186 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-12 15:52:19.270 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:44020 10 6452 1 2025-11-12 15:53:19.674 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:53072 10 6452 1 2025-11-12 15:54:20.101 00:00:10.505 TCP 1.101.0.1:3000 -> 23.104.0.1:55710 10 6452 1 2025-11-12 15:55:20.645 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:41340 10 6452 1 2025-11-12 15:56:30.173 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 15:56:29.845 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 15:56:29.949 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 15:56:30.091 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 15:56:29.959 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 15:56:21.069 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50096 10 6452 1 2025-11-12 15:57:21.476 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52206 10 6452 1 2025-11-12 15:52:59.628 00:06:00.193 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-12 15:58:21.881 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57108 10 6452 1 Summary: total flows: 137, total bytes: 424723, total packets: 1022, avg bps: 913, avg pps: 0, avg bpp: 415 Time window: 2025-11-12 14:56:59 - 2025-11-12 15:58:59 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0063s User: 0.0000s Wall: 0.0022s flows/second: 61628.0 Runtime: 0.0022s