Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-13 01:59:13.621 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:47494 10 6452 1 2025-11-13 01:55:59.808 00:05:00.255 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-13 02:00:14.029 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:44834 10 6452 1 2025-11-13 02:01:14.450 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47874 10 6452 1 2025-11-13 02:01:42.265 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 02:01:42.248 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 02:01:41.938 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 02:01:42.182 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 02:01:42.251 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 01:57:59.805 00:05:00.260 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-13 02:02:14.855 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:50762 10 6452 1 2025-11-13 02:03:15.282 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:33970 10 6452 1 2025-11-13 02:04:15.650 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47912 12 6556 1 2025-11-13 02:05:16.061 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59786 10 6452 1 2025-11-13 02:01:59.808 00:05:00.256 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-13 02:06:16.464 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:50956 10 6452 1 2025-11-13 02:06:42.459 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 02:06:42.419 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 02:06:42.399 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 02:06:42.346 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 02:06:42.482 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 02:07:16.827 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39518 10 6452 1 2025-11-13 02:03:59.806 00:05:00.261 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-13 02:08:17.232 00:00:11.047 TCP 1.101.0.1:3000 -> 23.104.0.1:33478 10 6452 1 2025-11-13 02:09:18.318 00:00:10.437 TCP 1.101.0.1:3000 -> 23.104.0.1:46772 12 10369 1 2025-11-13 02:10:18.790 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:46238 10 6452 1 2025-11-13 02:11:19.196 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:43646 10 6452 1 2025-11-13 02:11:42.902 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 02:11:42.917 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 02:11:43.012 00:00:00.045 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 02:11:42.820 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 02:11:42.985 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 02:07:59.808 00:05:00.257 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-13 02:12:19.601 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:34882 10 6452 1 2025-11-13 02:13:19.965 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:35066 10 6452 1 2025-11-13 02:09:59.807 00:05:00.263 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-13 02:14:20.373 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:48986 10 6452 1 2025-11-13 02:15:20.770 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:48760 10 6452 1 2025-11-13 02:16:21.190 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54952 10 6452 1 2025-11-13 02:16:43.323 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 02:16:43.045 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 02:16:42.616 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 02:16:43.240 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 02:16:42.929 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 02:17:21.594 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:40660 10 6452 1 2025-11-13 02:13:59.810 00:05:00.258 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-13 02:18:22.002 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:42456 10 6452 1 2025-11-13 02:19:22.368 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:57124 10 6452 1 2025-11-13 02:15:59.808 00:05:00.263 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-13 02:20:22.756 00:00:10.394 TCP 1.101.0.1:3000 -> 23.104.0.1:47392 10 6452 1 2025-11-13 02:21:23.189 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36242 10 6452 1 2025-11-13 02:21:42.559 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 02:21:42.397 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 02:21:42.380 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 02:21:42.380 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 02:21:42.464 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 02:22:23.597 00:00:10.624 TCP 1.101.0.1:3000 -> 23.104.0.1:37704 10 6452 1 2025-11-13 02:23:24.258 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59628 10 6452 1 2025-11-13 02:19:59.812 00:05:00.256 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-13 02:24:24.667 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:58150 10 6452 1 2025-11-13 02:25:25.105 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:54576 10 6452 1 2025-11-13 02:21:59.811 00:05:00.261 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-13 02:26:25.468 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56096 10 6452 1 2025-11-13 02:26:42.566 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 02:26:42.817 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 02:26:42.572 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 02:26:42.752 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 02:26:42.656 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 02:27:25.870 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:44198 10 6452 1 2025-11-13 02:28:26.282 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:42542 10 6452 1 2025-11-13 02:29:26.689 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:57104 10 6452 1 2025-11-13 02:25:59.813 00:05:00.262 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-13 02:30:27.110 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35630 10 6452 1 2025-11-13 02:31:27.515 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56234 10 6452 1 2025-11-13 02:31:42.783 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 02:31:42.828 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 02:31:42.533 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 02:31:42.701 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 02:31:42.770 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 02:27:59.813 00:05:00.264 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-13 02:32:27.919 00:00:11.008 TCP 1.101.0.1:3000 -> 23.104.0.1:52454 10 6452 1 2025-11-13 02:33:28.969 00:00:10.345 TCP 1.101.0.1:3000 -> 23.104.0.1:44918 10 6452 1 2025-11-13 02:34:29.350 00:00:10.443 TCP 1.101.0.1:3000 -> 23.104.0.1:45526 12 10375 1 2025-11-13 02:35:29.828 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58780 10 6452 1 2025-11-13 02:31:59.817 00:05:00.261 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-13 02:36:30.235 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46760 10 6452 1 2025-11-13 02:36:43.163 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 02:36:42.844 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 02:36:43.124 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 02:36:42.917 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 02:36:43.206 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 02:37:30.633 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39710 10 6452 1 2025-11-13 02:33:59.815 00:05:00.265 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-13 02:38:31.042 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:50198 10 6452 1 2025-11-13 02:39:31.452 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:45404 10 6452 1 2025-11-13 02:40:31.814 00:00:26.801 TCP 1.101.0.1:3000 -> 23.104.0.1:53722 10 6452 1 2025-11-13 02:41:42.896 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 02:41:42.841 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 02:41:42.898 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 02:41:43.000 00:00:00.047 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 02:41:42.980 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 02:41:48.662 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57750 10 6452 1 2025-11-13 02:37:59.820 00:05:00.259 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-13 02:42:49.064 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:49386 10 6452 1 2025-11-13 02:39:59.819 00:05:00.263 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-13 02:43:49.471 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:55576 10 6452 1 2025-11-13 02:44:49.871 00:00:10.737 TCP 1.101.0.1:3000 -> 23.104.0.1:46384 10 6452 1 2025-11-13 02:45:50.651 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45910 10 6452 1 2025-11-13 02:46:43.221 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 02:46:43.101 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 02:46:42.898 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 02:46:42.931 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 02:46:43.139 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 02:46:51.068 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:41264 10 6452 1 2025-11-13 02:43:59.821 00:05:00.259 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-13 02:47:51.473 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60536 10 6452 1 2025-11-13 02:48:51.881 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35206 10 6452 1 2025-11-13 02:45:59.829 00:05:00.254 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-13 02:49:52.281 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33184 10 6452 1 2025-11-13 02:50:52.697 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:38778 10 6452 1 2025-11-13 02:51:43.159 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 02:51:43.071 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 02:51:43.106 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 02:51:43.076 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 02:51:43.075 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 02:51:53.113 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47496 10 6452 1 2025-11-13 02:52:53.517 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:55736 10 6452 1 2025-11-13 02:49:59.828 00:05:00.260 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-13 02:53:53.881 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54210 10 6452 1 2025-11-13 02:54:54.291 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55974 10 6452 1 2025-11-13 02:51:59.825 00:05:00.265 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-13 02:55:54.692 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:39832 10 6452 1 2025-11-13 02:56:43.826 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 02:56:43.550 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 02:56:43.389 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 02:56:43.743 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 02:56:43.555 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 02:56:55.110 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:36910 10 6452 1 2025-11-13 02:57:55.516 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56540 10 6452 1 Summary: total flows: 139, total bytes: 418492, total packets: 1016, avg bps: 898, avg pps: 0, avg bpp: 411 Time window: 2025-11-13 01:55:59 - 2025-11-13 02:58:05 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0033s User: 0.0022s Wall: 0.0024s flows/second: 57558.3 Runtime: 0.0024s