Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-13 09:59:14.145 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60016 10 6452 1 2025-11-13 10:00:14.543 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39614 10 6452 1 2025-11-13 10:01:14.950 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52572 10 6452 1 2025-11-13 10:01:51.918 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 10:01:51.800 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 10:01:51.916 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 10:01:51.963 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 10:01:52.000 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 09:57:59.976 00:05:00.267 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-13 10:02:15.355 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:57332 10 6452 1 2025-11-13 09:58:59.979 00:05:00.262 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-13 10:03:15.759 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:45572 10 6452 1 2025-11-13 10:04:16.175 00:00:11.242 TCP 1.101.0.1:3000 -> 23.104.0.1:58574 10 6452 1 2025-11-13 10:05:17.454 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:37164 10 6452 1 2025-11-13 10:06:17.853 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:50470 10 6452 1 2025-11-13 10:06:52.092 00:00:00.042 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 10:06:52.087 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 10:06:51.935 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 10:06:52.010 00:00:00.041 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 10:06:51.834 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 10:07:18.272 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39014 10 6452 1 2025-11-13 10:03:59.977 00:05:00.268 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-13 10:08:18.681 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:40862 10 6452 1 2025-11-13 10:04:59.981 00:05:00.264 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-13 10:09:19.039 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:41536 10 6452 1 2025-11-13 10:10:19.438 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48264 10 6452 1 2025-11-13 10:11:19.844 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:57594 10 6452 1 2025-11-13 10:11:52.123 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 10:11:51.911 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 10:11:52.075 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 10:11:52.137 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 10:11:52.157 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 10:12:20.273 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:58816 10 6452 1 2025-11-13 10:13:20.634 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:45092 10 6452 1 2025-11-13 10:09:59.979 00:05:00.271 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-13 10:14:20.996 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57334 10 6452 1 2025-11-13 10:10:59.980 00:05:00.266 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-13 10:15:21.408 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:45342 10 6452 1 2025-11-13 10:16:21.775 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:38402 10 6452 1 2025-11-13 10:16:52.211 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 10:16:52.255 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 10:16:52.288 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 10:16:52.211 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 10:16:52.371 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 10:17:22.183 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:39238 10 6452 1 2025-11-13 10:18:22.588 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:54850 10 6452 1 2025-11-13 10:19:22.948 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:41530 10 6452 1 2025-11-13 10:15:59.979 00:05:00.271 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-13 10:20:23.368 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:41592 10 6452 1 2025-11-13 10:16:59.982 00:05:00.266 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-13 10:21:23.732 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39242 10 6452 1 2025-11-13 10:21:52.398 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 10:21:52.285 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 10:21:52.356 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 10:21:52.397 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 10:21:52.440 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 10:22:24.144 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:39530 10 6452 1 2025-11-13 10:23:24.551 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:33654 10 6452 1 2025-11-13 10:24:24.955 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:36728 10 6452 1 2025-11-13 10:25:25.373 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:33302 10 6452 1 2025-11-13 10:21:59.980 00:05:00.271 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-13 10:26:25.770 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:45864 10 6452 1 2025-11-13 10:26:52.414 00:00:00.029 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 10:26:52.395 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 10:26:52.339 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 10:26:52.331 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 10:26:52.329 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 10:22:59.984 00:05:00.268 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-13 10:27:26.181 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51806 10 6452 1 2025-11-13 10:28:26.580 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37090 10 6452 1 2025-11-13 10:29:26.986 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44424 10 6452 1 2025-11-13 10:27:59.985 00:02:00.269 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-11-13 10:30:27.390 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37746 10 6452 1 2025-11-13 10:31:27.792 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:53606 10 6452 1 2025-11-13 10:31:52.432 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 10:31:52.037 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 10:31:52.370 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 10:31:52.432 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 10:31:52.453 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 10:32:28.191 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37330 10 6452 1 2025-11-13 10:28:59.986 00:05:00.266 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-13 10:33:28.593 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:59554 10 6452 1 2025-11-13 10:34:28.948 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40176 10 6452 1 2025-11-13 10:30:59.985 00:05:00.271 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-13 10:35:29.356 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51014 10 6452 1 2025-11-13 10:36:29.766 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:40446 10 6452 1 2025-11-13 10:36:52.655 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 10:36:52.756 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 10:36:52.816 00:00:00.032 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 10:36:52.888 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 10:36:52.899 00:00:00.032 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 10:37:30.183 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38320 10 6452 1 2025-11-13 10:38:30.589 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39750 10 6452 1 2025-11-13 10:34:59.987 00:05:00.266 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-13 10:39:30.990 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:53092 10 6452 1 2025-11-13 10:40:31.396 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50054 10 6452 1 2025-11-13 10:36:59.987 00:05:00.271 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-13 10:41:31.797 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35512 10 6452 1 2025-11-13 10:41:52.799 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 10:41:52.543 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 10:41:52.690 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 10:41:52.717 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 10:41:52.612 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 10:42:32.202 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:37426 10 6452 1 2025-11-13 10:43:32.609 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:60026 10 6452 1 2025-11-13 10:44:33.011 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:52304 10 6452 1 2025-11-13 10:40:59.992 00:05:00.263 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-13 10:45:33.412 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:32950 10 6452 1 2025-11-13 10:46:33.817 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48986 10 6452 1 2025-11-13 10:46:52.742 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 10:46:52.951 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 10:46:53.052 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 10:46:52.872 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 10:46:53.135 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 10:42:59.988 00:05:00.270 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-13 10:47:34.226 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51320 10 6452 1 2025-11-13 10:48:34.629 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:43726 10 6452 1 2025-11-13 10:49:34.989 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56014 10 6452 1 2025-11-13 10:50:35.396 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45772 10 6452 1 2025-11-13 10:46:59.995 00:05:00.262 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-13 10:51:35.802 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44910 10 6452 1 2025-11-13 10:51:52.934 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 10:51:52.892 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 10:51:52.938 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 10:51:52.924 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 10:51:53.022 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 10:52:36.209 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44146 10 6452 1 2025-11-13 10:48:59.992 00:05:00.268 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-13 10:53:36.610 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39532 10 6452 1 2025-11-13 10:54:37.015 00:00:10.316 TCP 1.101.0.1:3000 -> 23.104.0.1:37758 10 6452 1 2025-11-13 10:55:37.372 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:53414 10 6452 1 2025-11-13 10:56:37.770 00:00:11.171 TCP 1.101.0.1:3000 -> 23.104.0.1:56988 10 6452 1 2025-11-13 10:56:52.904 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 10:56:52.779 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 10:56:52.844 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 10:56:52.904 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 10:56:52.926 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 10:52:59.997 00:05:00.262 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-13 10:57:38.979 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54858 10 6452 1 2025-11-13 10:58:39.385 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:47010 10 6452 1 Summary: total flows: 140, total bytes: 416631, total packets: 1014, avg bps: 913, avg pps: 0, avg bpp: 410 Time window: 2025-11-13 09:57:59 - 2025-11-13 10:58:49 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0021s User: 0.0032s Wall: 0.0018s flows/second: 79233.9 Runtime: 0.0018s