Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-13 08:59:34.247 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:46442 10 6452 1 2025-11-13 08:55:59.949 00:05:00.259 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-13 09:00:34.613 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:38454 10 6452 1 2025-11-13 09:01:35.020 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35102 10 6452 1 2025-11-13 09:01:50.708 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 09:01:50.630 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 09:01:50.403 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 09:01:50.626 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 09:01:50.477 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 08:57:59.952 00:05:00.262 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-13 09:02:35.423 00:00:10.420 TCP 1.101.0.1:3000 -> 23.104.0.1:43428 10 6452 1 2025-11-13 09:03:35.891 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:59384 10 6452 1 2025-11-13 09:04:36.309 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37600 10 6452 1 2025-11-13 09:05:36.713 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:49248 10 6452 1 2025-11-13 09:01:59.954 00:05:00.264 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-13 09:06:50.663 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 09:06:50.709 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 09:06:50.531 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 09:06:51.080 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 09:06:37.146 00:00:15.826 TCP 1.101.0.1:3000 -> 23.104.0.1:52370 10 6452 1 2025-11-13 09:06:51.162 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 09:07:43.026 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:44428 10 6452 1 2025-11-13 09:03:59.951 00:05:00.269 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-13 09:08:43.430 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:45418 10 6452 1 2025-11-13 09:09:43.831 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56414 10 6452 1 2025-11-13 09:10:44.239 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46322 10 6452 1 2025-11-13 09:11:50.911 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 09:11:50.779 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 09:11:50.904 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 09:11:50.913 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 09:11:50.986 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 09:11:44.642 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:53100 10 6452 1 2025-11-13 09:07:59.956 00:05:00.263 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-13 09:12:45.039 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:56136 10 6452 1 2025-11-13 09:13:45.442 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:43586 10 6452 1 2025-11-13 09:09:59.953 00:05:00.268 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-13 09:14:45.803 00:00:10.821 TCP 1.101.0.1:3000 -> 23.104.0.1:54384 10 6452 1 2025-11-13 09:15:46.666 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37682 10 6452 1 2025-11-13 09:16:50.796 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 09:16:50.742 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 09:16:50.820 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 09:16:50.904 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 09:16:51.085 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 09:16:47.096 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46356 10 6452 1 2025-11-13 09:17:47.495 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:43120 10 6452 1 2025-11-13 09:13:59.962 00:05:00.260 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-13 09:18:47.859 00:00:10.839 TCP 1.101.0.1:3000 -> 23.104.0.1:36486 10 6452 1 2025-11-13 09:19:48.738 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:40750 10 6452 1 2025-11-13 09:15:59.960 00:05:00.266 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-13 09:20:49.108 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56156 10 6452 1 2025-11-13 09:21:50.851 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 09:21:51.185 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 09:21:50.977 00:00:00.056 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 09:21:51.103 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 09:21:51.110 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 09:21:49.515 00:00:10.409 TCP 1.101.0.1:3000 -> 23.104.0.1:53670 10 6452 1 2025-11-13 09:22:49.967 00:00:10.401 TCP 1.101.0.1:3000 -> 23.104.0.1:35688 10 6452 1 2025-11-13 09:23:50.421 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45998 10 6452 1 2025-11-13 09:19:59.965 00:05:00.257 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-13 09:24:50.825 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:37292 10 6452 1 2025-11-13 09:21:59.963 00:05:00.263 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-13 09:25:51.191 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41678 10 6452 1 2025-11-13 09:26:50.959 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 09:26:51.251 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 09:26:51.125 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 09:26:51.252 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 09:26:51.208 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 09:26:51.590 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:50862 10 6452 1 2025-11-13 09:27:51.996 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37808 10 6452 1 2025-11-13 09:28:52.405 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:44036 10 6452 1 2025-11-13 09:25:59.967 00:05:00.258 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-13 09:29:52.813 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:56364 10 6452 1 2025-11-13 09:30:53.217 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:52524 10 6452 1 2025-11-13 09:31:51.042 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 09:31:51.126 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 09:31:51.274 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 09:31:51.128 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 09:31:51.357 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 09:27:59.964 00:05:00.263 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-13 09:31:53.622 00:00:11.819 TCP 1.101.0.1:3000 -> 23.104.0.1:46010 10 6452 1 2025-11-13 09:32:55.480 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50342 10 6452 1 2025-11-13 09:33:55.882 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59494 10 6452 1 2025-11-13 09:34:56.286 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:52750 10 6452 1 2025-11-13 09:31:59.968 00:05:00.258 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-13 09:35:56.688 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:32952 10 6452 1 2025-11-13 09:36:51.571 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 09:36:51.289 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 09:36:51.138 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 09:36:51.488 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 09:36:51.289 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 09:36:57.099 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:33578 10 6452 1 2025-11-13 09:33:59.966 00:05:00.262 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-13 09:37:57.500 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37738 10 6452 1 2025-11-13 09:38:57.901 00:00:10.768 TCP 1.101.0.1:3000 -> 23.104.0.1:58470 10 6452 1 2025-11-13 09:39:58.703 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:47070 10 6452 1 2025-11-13 09:40:59.108 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53654 10 6452 1 2025-11-13 09:41:51.429 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 09:41:51.424 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 09:41:51.529 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 09:41:51.687 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 09:41:51.612 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 09:37:59.968 00:05:00.259 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-13 09:41:59.509 00:00:18.000 TCP 1.101.0.1:3000 -> 23.104.0.1:50826 10 6452 1 2025-11-13 09:43:07.557 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:57164 10 6452 1 2025-11-13 09:39:59.966 00:05:00.264 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-13 09:44:07.965 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:54146 10 6452 1 2025-11-13 09:45:08.377 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:43572 10 6452 1 2025-11-13 09:46:08.777 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:59844 10 6452 1 2025-11-13 09:46:51.695 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 09:46:51.420 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 09:46:51.610 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 09:46:51.421 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 09:46:51.693 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 09:47:09.184 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:55126 10 6452 1 2025-11-13 09:43:59.971 00:05:00.257 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-13 09:48:09.585 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:40274 10 6452 1 2025-11-13 09:49:09.948 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:34096 10 6452 1 2025-11-13 09:45:59.971 00:05:00.262 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-13 09:50:10.360 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:52184 10 6452 1 2025-11-13 09:51:10.763 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:35860 10 6452 1 2025-11-13 09:51:51.819 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 09:51:51.492 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 09:51:51.702 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 09:51:51.736 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 09:51:51.600 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 09:52:11.142 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:34298 10 6452 1 2025-11-13 09:53:11.573 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57860 10 6452 1 2025-11-13 09:49:59.977 00:05:00.259 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-13 09:54:11.987 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:50320 10 6452 1 2025-11-13 09:55:12.362 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:48504 10 6452 1 2025-11-13 09:51:59.974 00:05:00.264 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-13 09:56:12.729 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:58978 10 6452 1 2025-11-13 09:56:51.734 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 09:56:51.819 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 09:56:51.661 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 09:56:51.802 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 09:56:51.743 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 09:57:13.140 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43294 10 6452 1 2025-11-13 09:55:59.977 00:02:00.258 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-11-13 09:58:13.538 00:00:10.569 TCP 1.101.0.1:3000 -> 23.104.0.1:44816 10 6452 1 Summary: total flows: 140, total bytes: 410917, total packets: 1016, avg bps: 877, avg pps: 0, avg bpp: 404 Time window: 2025-11-13 08:55:59 - 2025-11-13 09:58:24 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0029s User: 0.0029s Wall: 0.0026s flows/second: 54160.0 Runtime: 0.0026s