Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-12 20:58:41.143 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50626 10 6452 1 2025-11-12 20:53:59.708 00:06:00.223 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-12 20:59:41.546 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:41866 10 6452 1 2025-11-12 20:54:59.711 00:06:00.218 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-12 21:00:41.910 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:51274 10 6452 1 2025-11-12 21:01:36.171 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 21:01:36.189 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 21:01:36.118 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 21:01:36.262 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 21:01:36.200 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 21:01:42.317 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:48958 10 6452 1 2025-11-12 21:02:42.724 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:56708 10 6452 1 2025-11-12 21:03:43.138 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47358 10 6452 1 2025-11-12 21:04:43.540 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56190 10 6452 1 2025-11-12 21:05:43.940 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:47958 10 6452 1 2025-11-12 21:00:59.710 00:06:00.222 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-12 21:06:36.336 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 21:06:36.109 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 21:06:35.980 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 21:06:36.254 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 21:06:36.307 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 21:06:44.357 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:57376 10 6452 1 2025-11-12 21:01:59.713 00:06:00.217 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-12 21:07:44.725 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:53424 10 6452 1 2025-11-12 21:08:45.136 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51400 10 6452 1 2025-11-12 21:09:45.539 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:33704 10 6452 1 2025-11-12 21:10:45.900 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:36886 10 6452 1 2025-11-12 21:11:36.521 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 21:11:36.447 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 21:11:36.595 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 21:11:36.516 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 21:11:36.678 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 21:11:46.309 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:42210 10 6452 1 2025-11-12 21:12:46.678 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:51388 10 6452 1 2025-11-12 21:07:59.714 00:06:00.220 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-12 21:13:47.114 00:00:10.397 TCP 1.101.0.1:3000 -> 23.104.0.1:60892 12 10375 1 2025-11-12 21:08:59.716 00:06:00.216 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-12 21:14:47.549 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:38610 10 6452 1 2025-11-12 21:15:47.910 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:46886 10 6452 1 2025-11-12 21:16:36.520 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 21:16:36.503 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 21:16:36.467 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 21:16:36.438 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 21:16:36.425 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 21:16:48.318 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:51374 10 6452 1 2025-11-12 21:17:48.724 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:34862 10 6452 1 2025-11-12 21:18:49.138 00:00:10.739 TCP 1.101.0.1:3000 -> 23.104.0.1:56438 10 6452 1 2025-11-12 21:19:49.914 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:43838 10 6452 1 2025-11-12 21:14:59.714 00:06:00.222 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-12 21:20:50.318 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38300 10 6452 1 2025-11-12 21:15:59.717 00:06:00.217 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-12 21:21:36.572 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 21:21:36.729 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 21:21:36.634 00:00:00.033 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 21:21:36.490 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 21:21:36.669 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 21:21:50.719 00:00:11.264 TCP 1.101.0.1:3000 -> 23.104.0.1:40824 11 6504 1 2025-11-12 21:22:52.025 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:32936 10 6452 1 2025-11-12 21:23:52.431 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:33258 10 6452 1 2025-11-12 21:24:52.851 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:60532 10 6452 1 2025-11-12 21:25:53.253 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43814 10 6452 1 2025-11-12 21:26:36.477 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 21:26:36.602 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 21:26:36.480 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 21:26:36.570 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 21:26:36.563 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 21:21:59.714 00:06:00.224 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-12 21:26:53.660 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:55778 10 6452 1 2025-11-12 21:22:59.717 00:06:00.219 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-12 21:27:54.099 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:52210 10 6452 1 2025-11-12 21:28:54.498 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50744 10 6452 1 2025-11-12 21:29:54.896 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:49856 12 6556 1 2025-11-12 21:30:55.312 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:37638 12 6556 1 2025-11-12 21:31:36.884 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 21:31:36.640 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 21:31:36.708 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 21:31:36.877 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 21:31:36.792 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 21:31:55.712 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:36756 10 6452 1 2025-11-12 21:32:56.114 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:56596 10 6452 1 2025-11-12 21:28:59.717 00:06:00.223 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-12 21:33:56.526 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:56108 10 6452 1 2025-11-12 21:29:59.719 00:06:00.218 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-12 21:34:56.928 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:41912 10 6452 1 2025-11-12 21:35:57.352 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:47042 10 6452 1 2025-11-12 21:36:37.311 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 21:36:36.617 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 21:36:37.195 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 21:36:37.229 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 21:36:37.112 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 21:36:57.714 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:50566 10 6452 1 2025-11-12 21:37:58.101 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:58054 10 6452 1 2025-11-12 21:38:58.499 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:45420 10 6452 1 2025-11-12 21:39:58.900 00:00:10.674 TCP 1.101.0.1:3000 -> 23.104.0.1:52586 10 6452 1 2025-11-12 21:35:59.717 00:06:00.228 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-12 21:40:59.617 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:52068 10 6452 1 2025-11-12 21:41:37.088 00:00:00.040 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 21:41:37.006 00:00:00.039 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 21:41:36.933 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 21:41:36.949 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 21:41:36.963 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 21:36:59.720 00:06:00.222 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-12 21:41:59.978 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:60710 10 6452 1 2025-11-12 21:43:00.390 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58258 10 6452 1 2025-11-12 21:44:00.786 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:41438 10 6452 1 2025-11-12 21:45:01.146 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41048 10 6452 1 2025-11-12 21:46:01.549 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50940 10 6452 1 2025-11-12 21:46:37.162 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 21:46:36.854 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 21:46:36.883 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 21:46:37.081 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 21:46:37.118 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 21:47:01.949 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:43394 10 6452 1 2025-11-12 21:42:59.720 00:06:00.228 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-12 21:48:02.365 00:00:11.039 TCP 1.101.0.1:3000 -> 23.104.0.1:59718 10 6452 1 2025-11-12 21:43:59.722 00:06:00.223 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-12 21:49:03.449 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46886 10 6452 1 2025-11-12 21:50:03.849 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:59136 10 6452 1 2025-11-12 21:51:04.273 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:46328 10 6452 1 2025-11-12 21:51:37.262 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 21:51:37.106 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 21:51:36.983 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 21:51:37.178 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 21:51:37.231 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 21:52:04.676 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47300 10 6452 1 2025-11-12 21:53:05.107 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:43330 10 6452 1 2025-11-12 21:54:05.523 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:42730 10 6452 1 2025-11-12 21:49:59.720 00:06:00.228 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-12 21:55:05.926 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:53804 10 6452 1 2025-11-12 21:50:59.722 00:06:00.223 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-12 21:56:06.354 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:39052 10 6452 1 2025-11-12 21:56:37.840 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-12 21:56:36.861 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 21:56:37.267 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-12 21:56:37.263 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-12 21:56:37.349 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 21:57:06.743 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:38930 10 6452 1 2025-11-12 21:58:07.116 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:39252 10 6452 1 Summary: total flows: 138, total bytes: 421921, total packets: 1039, avg bps: 874, avg pps: 0, avg bpp: 406 Time window: 2025-11-12 20:53:59 - 2025-11-12 21:58:17 Total flows processed: 138, passed: 138, Blocks skipped: 0, Bytes read: 14416 Sys: 0.0043s User: 0.0011s Wall: 0.0020s flows/second: 68726.4 Runtime: 0.0020s