Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-13 17:59:31.403 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:60704 10 6452 1 2025-11-13 18:00:31.762 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:52750 10 6452 1 2025-11-13 18:01:32.183 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:56920 10 6452 1 2025-11-13 18:02:01.560 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 18:02:01.408 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 18:02:01.371 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 18:02:01.477 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 18:02:01.560 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 18:02:32.589 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:42098 10 6452 1 2025-11-13 17:59:00.165 00:04:00.229 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-13 17:59:00.163 00:04:00.234 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-13 18:03:32.998 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60558 10 6452 1 2025-11-13 18:04:33.401 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:34586 10 6452 1 2025-11-13 18:05:33.799 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:33166 10 6452 1 2025-11-13 18:06:34.202 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47438 10 6452 1 2025-11-13 18:07:01.552 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 18:07:01.335 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 18:07:01.477 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 18:07:01.248 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 18:07:01.560 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 18:07:34.600 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:46394 10 6452 1 2025-11-13 18:04:00.166 00:04:00.234 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-13 18:04:00.165 00:04:00.240 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-13 18:08:35.002 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:53804 10 6452 1 2025-11-13 18:09:35.362 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:36226 10 6452 1 2025-11-13 18:10:35.771 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:46774 10 6452 1 2025-11-13 18:11:36.183 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54666 10 6452 1 2025-11-13 18:12:01.500 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 18:12:01.578 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 18:12:01.600 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 18:12:01.557 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 18:12:01.683 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 18:12:36.584 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:34744 10 6452 1 2025-11-13 18:09:00.168 00:04:00.229 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-13 18:09:00.166 00:04:00.234 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-13 18:13:36.998 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48948 10 6452 1 2025-11-13 18:14:37.398 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60276 10 6452 1 2025-11-13 18:15:37.799 00:00:10.346 TCP 1.101.0.1:3000 -> 23.104.0.1:51882 10 6452 1 2025-11-13 18:16:38.179 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55656 10 6452 1 2025-11-13 18:17:01.750 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 18:17:01.749 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 18:17:01.749 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 18:17:01.790 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 18:17:01.834 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 18:17:38.586 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54582 10 6452 1 2025-11-13 18:14:00.171 00:04:00.227 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-13 18:14:00.168 00:04:00.233 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-13 18:18:38.992 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:57160 10 6452 1 2025-11-13 18:19:39.351 00:00:10.437 TCP 1.101.0.1:3000 -> 23.104.0.1:57178 12 10375 1 2025-11-13 18:20:39.829 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:37496 10 6452 1 2025-11-13 18:21:40.244 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:60210 10 6452 1 2025-11-13 18:22:01.860 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 18:22:01.659 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 18:22:01.861 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 18:22:01.862 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 18:22:01.943 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 18:22:40.700 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:37588 10 6452 1 2025-11-13 18:19:00.170 00:04:00.233 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-13 18:23:41.074 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:35950 10 6452 1 2025-11-13 18:19:00.172 00:06:00.228 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-13 18:24:41.474 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42168 10 6452 1 2025-11-13 18:25:41.874 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:51472 10 6452 1 2025-11-13 18:26:42.236 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:55816 10 6452 1 2025-11-13 18:27:01.827 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 18:27:01.669 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 18:27:01.875 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 18:27:01.823 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 18:27:01.959 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 18:27:42.634 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42084 10 6452 1 2025-11-13 18:28:43.057 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:45758 10 6452 1 2025-11-13 18:24:00.172 00:06:00.232 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-13 18:29:43.415 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:53850 10 6452 1 2025-11-13 18:26:00.173 00:04:00.227 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-13 18:30:43.820 00:00:10.964 TCP 1.101.0.1:3000 -> 23.104.0.1:57242 10 6452 1 2025-11-13 18:31:44.838 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:42962 10 6452 1 2025-11-13 18:32:01.974 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 18:32:01.929 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 18:32:02.061 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 18:32:02.057 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 18:32:02.144 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 18:32:45.265 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:40470 10 6452 1 2025-11-13 18:33:45.668 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:54708 10 6452 1 2025-11-13 18:31:00.171 00:04:00.239 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-13 18:34:46.093 00:00:10.513 TCP 1.101.0.1:3000 -> 23.104.0.1:38418 14 14292 1 2025-11-13 18:31:00.174 00:04:00.233 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-13 18:35:46.650 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:35624 10 6452 1 2025-11-13 18:36:47.064 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60248 10 6452 1 2025-11-13 18:37:02.450 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 18:37:02.214 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 18:37:01.993 00:00:00.052 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 18:37:02.367 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 18:37:02.215 00:00:00.031 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 18:37:47.475 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56838 10 6452 1 2025-11-13 18:38:47.875 00:00:10.417 TCP 1.101.0.1:3000 -> 23.104.0.1:49286 11 6504 1 2025-11-13 18:36:00.172 00:04:00.236 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-13 18:39:48.333 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41440 10 6452 1 2025-11-13 18:36:00.175 00:04:00.231 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-13 18:40:48.738 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47346 10 6452 1 2025-11-13 18:41:49.143 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40450 10 6452 1 2025-11-13 18:42:02.509 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 18:42:02.350 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 18:42:02.214 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 18:42:02.426 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 18:42:02.352 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 18:42:49.545 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59214 10 6452 1 2025-11-13 18:43:49.945 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58202 10 6452 1 2025-11-13 18:44:50.355 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44474 10 6452 1 2025-11-13 18:41:00.179 00:04:00.228 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-13 18:41:00.176 00:04:00.233 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-13 18:45:50.762 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:43036 10 6452 1 2025-11-13 18:47:02.308 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 18:47:02.408 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 18:47:01.951 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 18:47:02.224 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 18:47:02.317 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 18:46:51.185 00:00:11.018 TCP 1.101.0.1:3000 -> 23.104.0.1:38212 11 6504 1 2025-11-13 18:47:52.245 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:45924 10 6452 1 2025-11-13 18:48:52.645 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:32810 10 6452 1 2025-11-13 18:46:00.178 00:04:00.234 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-13 18:46:00.180 00:04:00.229 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-13 18:49:53.024 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:53134 10 6452 1 2025-11-13 18:50:53.453 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:35022 10 6452 1 2025-11-13 18:51:00.184 00:01:00.226 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-11-13 18:51:00.183 00:01:00.230 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-11-13 18:52:01.983 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 18:52:01.901 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 18:52:02.080 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 18:51:53.852 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:36288 10 6452 1 2025-11-13 18:52:01.729 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 18:52:01.788 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 18:52:54.279 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58992 10 6452 1 2025-11-13 18:53:54.683 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:44114 10 6452 1 2025-11-13 18:54:55.111 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59956 10 6452 1 2025-11-13 18:55:55.514 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44760 10 6452 1 2025-11-13 18:53:00.184 00:04:00.226 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-13 18:53:00.183 00:04:00.231 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-13 18:57:02.577 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 18:57:02.317 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 18:57:02.205 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 18:57:02.495 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 18:57:02.497 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 18:56:55.920 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:43280 12 6556 1 2025-11-13 18:57:56.340 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38468 10 6452 1 Summary: total flows: 143, total bytes: 422273, total packets: 1016, avg bps: 952, avg pps: 0, avg bpp: 415 Time window: 2025-11-13 17:59:00 - 2025-11-13 18:58:06 Total flows processed: 143, passed: 143, Blocks skipped: 0, Bytes read: 14936 Sys: 0.0046s User: 0.0013s Wall: 0.0025s flows/second: 58225.9 Runtime: 0.0025s