Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-13 11:59:13.035 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:59792 10 6452 1 2025-11-13 12:00:13.436 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:46734 10 6452 1 2025-11-13 11:57:00.055 00:04:00.228 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-13 12:01:13.842 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:50960 10 6452 1 2025-11-13 12:01:54.218 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 12:01:54.304 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 12:01:54.106 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 12:01:54.135 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 12:01:54.270 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 12:02:14.271 00:00:13.827 TCP 1.101.0.1:3000 -> 23.104.0.1:41494 10 6452 1 2025-11-13 12:03:18.185 00:00:10.317 TCP 1.101.0.1:3000 -> 23.104.0.1:49014 10 6452 1 2025-11-13 11:59:00.053 00:06:00.002 TCP 179.21.23.23:179 -> 179.21.23.21:38570 13 809 1 2025-11-13 12:04:18.539 00:00:10.434 TCP 1.101.0.1:3000 -> 23.104.0.1:53748 13 13949 1 2025-11-13 12:05:19.017 00:00:10.968 TCP 1.101.0.1:3000 -> 23.104.0.1:37696 10 6452 1 2025-11-13 12:02:00.056 00:04:00.227 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-13 12:05:00.286 00:01:00.000 TCP 179.21.23.23:179 -> 179.21.23.21:38570 3 175 1 2025-11-13 12:06:20.032 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:41488 10 6452 1 2025-11-13 12:06:54.293 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 12:06:54.352 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 12:06:54.457 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 12:06:54.209 00:00:00.026 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 12:06:54.212 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 12:07:20.435 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:47298 10 6452 1 2025-11-13 12:08:20.835 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60138 10 6452 1 2025-11-13 12:09:21.235 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:49520 10 6452 1 2025-11-13 12:10:21.636 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:58560 10 6452 1 2025-11-13 12:07:00.054 00:04:00.233 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-13 12:11:22.036 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:41114 10 6452 1 2025-11-13 12:11:54.456 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 12:11:54.531 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 12:11:54.221 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 12:11:54.374 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 12:11:54.568 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 12:07:00.055 00:06:00.229 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-13 12:12:22.395 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55492 10 6452 1 2025-11-13 12:13:22.794 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36026 10 6452 1 2025-11-13 12:14:23.200 00:00:10.497 TCP 1.101.0.1:3000 -> 23.104.0.1:58100 14 10479 1 2025-11-13 12:15:23.734 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43690 10 6452 1 2025-11-13 12:12:00.055 00:04:00.232 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-13 12:16:24.149 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:60098 10 6452 1 2025-11-13 12:16:54.624 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 12:16:54.544 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 12:16:54.408 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 12:16:54.542 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 12:16:54.462 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 12:17:24.554 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45560 10 6452 1 2025-11-13 12:18:24.952 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47558 10 6452 1 2025-11-13 12:14:00.058 00:06:00.227 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-13 12:19:25.357 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:60010 10 6452 1 2025-11-13 12:20:25.764 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:40796 10 6452 1 2025-11-13 12:21:26.178 00:00:11.087 TCP 1.101.0.1:3000 -> 23.104.0.1:58910 10 6452 1 2025-11-13 12:21:54.712 00:00:00.019 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 12:21:54.709 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 12:21:54.530 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 12:21:54.619 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 12:21:54.702 00:00:00.027 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 12:17:00.055 00:06:00.233 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-13 12:22:27.307 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55902 10 6452 1 2025-11-13 12:23:27.715 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42210 10 6452 1 2025-11-13 12:24:28.119 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45806 10 6452 1 2025-11-13 12:25:28.525 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33036 10 6452 1 2025-11-13 12:21:00.060 00:06:00.003 TCP 179.21.23.21:38570 -> 179.21.23.23:179 13 790 1 2025-11-13 12:26:28.937 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:43428 10 6452 1 2025-11-13 12:26:54.982 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 12:26:54.899 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 12:26:54.885 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 12:26:54.884 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 12:26:54.787 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 12:27:29.362 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53938 10 6452 1 2025-11-13 12:27:00.288 00:01:00.000 TCP 179.21.23.21:38570 -> 179.21.23.23:179 3 194 1 2025-11-13 12:28:29.768 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:56972 10 6452 1 2025-11-13 12:24:00.060 00:06:00.233 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-13 12:29:30.142 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:43766 10 6452 1 2025-11-13 12:30:30.577 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33692 12 6556 1 2025-11-13 12:31:30.984 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34114 10 6452 1 2025-11-13 12:31:54.826 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 12:31:54.796 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 12:31:54.731 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 12:31:54.825 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 12:31:54.813 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 12:32:31.388 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:33914 10 6452 1 2025-11-13 12:29:00.062 00:04:00.227 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-13 12:33:31.803 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:44852 10 6452 1 2025-11-13 12:34:32.180 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52278 10 6452 1 2025-11-13 12:35:32.583 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:33128 10 6452 1 2025-11-13 12:31:00.061 00:06:00.002 TCP 179.21.23.23:179 -> 179.21.23.21:38570 13 809 1 2025-11-13 12:36:32.988 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:47926 10 6452 1 2025-11-13 12:36:54.958 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 12:36:54.759 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 12:36:54.702 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 12:36:54.876 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 12:36:54.957 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 12:37:33.353 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:55116 10 6452 1 2025-11-13 12:34:00.064 00:04:00.227 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-13 12:38:33.710 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:33148 10 6452 1 2025-11-13 12:39:34.104 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38146 10 6452 1 2025-11-13 12:40:34.508 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48088 10 6452 1 2025-11-13 12:41:34.913 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:50842 10 6452 1 2025-11-13 12:41:55.039 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 12:41:54.941 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 12:41:54.754 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 12:41:54.956 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 12:41:55.156 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 12:37:00.294 00:06:00.000 TCP 179.21.23.23:179 -> 179.21.23.21:38570 13 790 1 2025-11-13 12:42:35.289 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:42226 10 6452 1 2025-11-13 12:43:35.651 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56966 10 6452 1 2025-11-13 12:39:00.065 00:06:00.225 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-13 12:44:36.061 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:44448 10 6452 1 2025-11-13 12:45:36.428 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:60216 10 6452 1 2025-11-13 12:46:36.791 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:58554 10 6452 1 2025-11-13 12:46:55.257 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 12:46:54.763 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 12:46:55.424 00:00:00.028 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 12:46:55.385 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 12:46:55.508 00:00:00.027 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 12:47:37.145 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37466 10 6452 1 2025-11-13 12:44:00.064 00:04:00.230 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-13 12:48:37.549 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:34602 10 6452 1 2025-11-13 12:49:37.947 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:49102 10 6452 1 2025-11-13 12:50:38.356 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:35002 10 6452 1 2025-11-13 12:46:00.068 00:06:00.229 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-13 12:51:38.726 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:40494 10 6452 1 2025-11-13 12:51:54.925 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 12:51:55.255 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 12:51:55.295 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 12:51:55.246 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 12:51:55.338 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 12:52:39.126 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36402 10 6452 1 2025-11-13 12:53:39.526 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49246 10 6452 1 2025-11-13 12:49:00.068 00:06:00.232 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-13 12:54:39.930 00:00:10.461 TCP 1.101.0.1:3000 -> 23.104.0.1:45508 12 10584 1 2025-11-13 12:55:40.433 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:52732 10 6661 1 2025-11-13 12:56:55.415 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 12:56:55.252 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 12:56:40.801 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:42064 10 6661 1 2025-11-13 12:56:55.318 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 12:56:55.334 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 12:56:55.495 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 12:57:41.213 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47414 10 6661 1 2025-11-13 12:53:00.070 00:06:00.001 TCP 179.21.23.21:38570 -> 179.21.23.23:179 13 790 1 Summary: total flows: 140, total bytes: 426864, total packets: 1020, avg bps: 917, avg pps: 0, avg bpp: 418 Time window: 2025-11-13 11:57:00 - 2025-11-13 12:59:00 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0056s User: 0.0009s Wall: 0.0021s flows/second: 68128.9 Runtime: 0.0021s