Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-13 15:59:33.155 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34150 10 6452 1 2025-11-13 15:56:00.127 00:04:00.228 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-13 15:56:00.130 00:04:00.223 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-13 16:00:33.558 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60970 10 6452 1 2025-11-13 16:01:33.956 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37824 10 6452 1 2025-11-13 16:01:58.879 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 16:01:58.933 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 16:01:58.797 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 16:01:59.006 00:00:00.040 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 16:01:58.832 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 16:02:34.361 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57638 10 6452 1 2025-11-13 16:03:34.762 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:42450 10 6452 1 2025-11-13 16:04:35.187 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:60106 10 6452 1 2025-11-13 16:01:00.129 00:04:00.228 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-13 16:05:35.556 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:36384 10 6452 1 2025-11-13 16:01:00.131 00:06:00.224 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-13 16:06:35.955 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:53038 10 6452 1 2025-11-13 16:06:59.431 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 16:06:59.272 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 16:06:58.922 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 16:06:59.348 00:00:00.026 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 16:06:59.313 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 16:07:36.363 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49002 10 6452 1 2025-11-13 16:08:36.770 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:37498 10 6452 1 2025-11-13 16:09:37.181 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:52882 10 6452 1 2025-11-13 16:06:00.131 00:04:00.228 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-13 16:10:37.579 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56464 10 6452 1 2025-11-13 16:11:37.981 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60036 10 6452 1 2025-11-13 16:11:59.004 00:00:00.048 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 16:11:58.831 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 16:11:59.211 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 16:11:59.209 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 16:08:00.135 00:04:00.223 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-13 16:11:59.293 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 16:12:38.388 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:40452 10 6452 1 2025-11-13 16:13:38.826 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49102 10 6452 1 2025-11-13 16:14:39.231 00:00:10.620 TCP 1.101.0.1:3000 -> 23.104.0.1:47142 12 10375 1 2025-11-13 16:15:39.891 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:48658 10 6452 1 2025-11-13 16:11:00.130 00:06:00.232 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-13 16:16:40.266 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:36922 10 6452 1 2025-11-13 16:16:59.378 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 16:16:59.355 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 16:16:59.275 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 16:16:59.296 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 16:16:59.304 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 16:13:00.134 00:04:00.226 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-13 16:17:40.681 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:41414 10 6452 1 2025-11-13 16:18:41.108 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:54538 10 6452 1 2025-11-13 16:19:41.471 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40538 10 6452 1 2025-11-13 16:20:41.875 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:41462 10 6452 1 2025-11-13 16:21:42.238 00:00:10.786 TCP 1.101.0.1:3000 -> 23.104.0.1:54184 10 6452 1 2025-11-13 16:18:00.133 00:04:00.232 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-13 16:21:59.495 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 16:21:59.353 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 16:21:59.203 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 16:21:59.413 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 16:21:59.412 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 16:18:00.135 00:04:00.228 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-13 16:22:43.062 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56800 10 6452 1 2025-11-13 16:23:43.467 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:59324 10 6452 1 2025-11-13 16:24:43.830 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:40546 10 6452 1 2025-11-13 16:25:44.239 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41550 10 6452 1 2025-11-13 16:26:44.639 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38358 10 6452 1 2025-11-13 16:23:00.134 00:04:00.234 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-13 16:26:59.556 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 16:26:59.479 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 16:26:59.435 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 16:26:59.474 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 16:26:59.571 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 16:23:00.136 00:04:00.229 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-13 16:27:45.068 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:45424 10 6452 1 2025-11-13 16:28:45.469 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:54356 10 6452 1 2025-11-13 16:29:45.834 00:00:10.351 TCP 1.101.0.1:3000 -> 23.104.0.1:34512 10 6452 1 2025-11-13 16:30:46.225 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:44082 10 6452 1 2025-11-13 16:31:59.668 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 16:31:59.466 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 16:31:59.675 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 16:31:59.625 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 16:31:46.628 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:38178 10 6452 1 2025-11-13 16:28:00.137 00:04:00.226 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-13 16:28:00.134 00:04:00.232 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-13 16:31:59.758 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 16:32:47.027 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48856 10 6452 1 2025-11-13 16:33:47.432 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57794 10 6452 1 2025-11-13 16:34:47.836 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:55820 10 6452 1 2025-11-13 16:35:48.248 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:50078 10 6452 1 2025-11-13 16:36:59.770 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 16:36:48.648 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37740 12 6556 1 2025-11-13 16:36:59.605 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 16:36:59.718 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 16:36:59.433 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 16:33:00.138 00:04:00.227 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-13 16:33:00.135 00:04:00.233 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-13 16:36:59.801 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 16:37:49.065 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:45418 10 6452 1 2025-11-13 16:38:49.470 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60406 10 6452 1 2025-11-13 16:39:49.872 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:45672 10 6452 1 2025-11-13 16:40:50.237 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:53512 10 6452 1 2025-11-13 16:41:50.646 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:55114 10 6452 1 2025-11-13 16:41:59.836 00:00:00.026 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 16:41:59.633 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 16:41:59.878 00:00:00.029 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 16:42:00.332 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 16:38:00.136 00:04:00.234 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-13 16:41:59.961 00:00:00.028 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 16:38:00.138 00:06:00.229 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-13 16:42:51.011 00:00:10.317 TCP 1.101.0.1:3000 -> 23.104.0.1:50972 10 6452 1 2025-11-13 16:43:51.366 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54506 10 6452 1 2025-11-13 16:44:51.772 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:56590 10 6452 1 2025-11-13 16:45:52.190 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52776 10 6452 1 2025-11-13 16:46:59.695 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 16:46:59.640 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 16:46:59.963 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 16:46:59.801 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 16:47:00.045 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 16:43:00.137 00:04:00.238 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-13 16:46:52.593 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48170 10 6452 1 2025-11-13 16:47:52.995 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44968 10 6452 1 2025-11-13 16:45:00.139 00:04:00.232 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-13 16:48:53.396 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:52068 10 6452 1 2025-11-13 16:49:53.797 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44980 10 6452 1 2025-11-13 16:50:54.198 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36714 10 6452 1 2025-11-13 16:52:00.067 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 16:51:59.923 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 16:51:59.940 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 16:51:59.984 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 16:51:59.920 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 16:51:54.599 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38556 10 6452 1 2025-11-13 16:48:00.138 00:06:00.238 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-13 16:52:55.001 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46106 10 6452 1 2025-11-13 16:50:00.141 00:04:00.233 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-13 16:53:55.410 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43830 10 6452 1 2025-11-13 16:54:55.812 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49482 10 6452 1 2025-11-13 16:55:56.219 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43802 10 6452 1 2025-11-13 16:57:00.132 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 16:57:00.163 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 16:56:59.961 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 16:57:00.049 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 16:57:00.162 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 16:56:56.621 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49960 10 6452 1 2025-11-13 16:57:57.025 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:42544 10 6452 1 Summary: total flows: 141, total bytes: 414329, total packets: 1010, avg bps: 889, avg pps: 0, avg bpp: 410 Time window: 2025-11-13 15:56:00 - 2025-11-13 16:58:07 Total flows processed: 141, passed: 141, Blocks skipped: 0, Bytes read: 14728 Sys: 0.0051s User: 0.0021s Wall: 0.0024s flows/second: 58048.4 Runtime: 0.0024s