Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-13 18:58:56.741 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49704 10 6452 1 2025-11-13 18:59:57.145 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47480 10 6452 1 2025-11-13 19:00:57.551 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:50140 10 6452 1 2025-11-13 18:58:00.189 00:04:00.226 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-13 18:58:00.191 00:04:00.221 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-13 19:02:02.736 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 19:02:02.654 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 19:02:02.535 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 19:02:02.609 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 19:02:02.458 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 19:01:57.950 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:40204 10 6452 1 2025-11-13 19:02:58.360 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:40266 10 6452 1 2025-11-13 19:03:58.760 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:41374 10 6452 1 2025-11-13 19:04:59.174 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:50244 10 6452 1 2025-11-13 19:05:59.553 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39110 10 6452 1 2025-11-13 19:03:00.191 00:04:00.225 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-13 19:03:00.194 00:04:00.219 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-13 19:07:02.853 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 19:07:02.692 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 19:07:02.868 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 19:07:02.848 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 19:07:02.955 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 19:06:59.959 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39770 10 6452 1 2025-11-13 19:08:00.366 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:53566 10 6452 1 2025-11-13 19:09:00.729 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55700 12 6556 1 2025-11-13 19:10:01.137 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:49466 10 6452 1 2025-11-13 19:11:01.549 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:34966 10 6452 1 2025-11-13 19:08:00.194 00:04:00.221 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-13 19:12:02.822 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 19:12:02.701 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 19:12:02.743 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 19:12:02.874 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 19:08:00.192 00:04:00.226 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-13 19:12:02.826 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 19:12:01.953 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40250 10 6452 1 2025-11-13 19:13:02.357 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:58842 10 6452 1 2025-11-13 19:14:02.724 00:00:11.247 TCP 1.101.0.1:3000 -> 23.104.0.1:34288 10 6452 1 2025-11-13 19:15:04.009 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:52372 10 6452 1 2025-11-13 19:16:04.408 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:36692 10 6452 1 2025-11-13 19:13:00.194 00:04:00.223 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-13 19:17:02.832 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 19:17:02.913 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 19:17:02.820 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 19:17:02.899 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 19:13:00.192 00:04:00.228 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-13 19:17:02.903 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 19:17:04.820 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:36428 10 6452 1 2025-11-13 19:18:05.228 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:58080 10 6452 1 2025-11-13 19:19:05.629 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56350 10 6452 1 2025-11-13 19:20:06.030 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36154 10 6452 1 2025-11-13 19:21:06.431 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44914 10 6452 1 2025-11-13 19:18:00.197 00:04:00.221 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-13 19:18:00.195 00:04:00.226 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-13 19:22:03.078 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 19:22:03.100 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 19:22:02.930 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 19:22:02.997 00:00:00.043 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 19:22:03.015 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 19:22:06.836 00:00:11.008 TCP 1.101.0.1:3000 -> 23.104.0.1:47590 10 6452 1 2025-11-13 19:23:07.883 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:42162 10 6452 1 2025-11-13 19:24:08.295 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39328 10 6452 1 2025-11-13 19:25:08.696 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:40352 10 6452 1 2025-11-13 19:26:09.109 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:56534 10 6452 1 2025-11-13 19:27:03.242 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 19:27:03.153 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 19:27:03.224 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 19:27:03.160 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 19:27:03.158 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 19:27:09.465 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37718 10 6452 1 2025-11-13 19:23:00.197 00:06:00.225 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-13 19:23:00.194 00:06:00.231 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-13 19:28:09.863 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:34888 10 6452 1 2025-11-13 19:29:10.274 00:00:21.424 TCP 1.101.0.1:3000 -> 23.104.0.1:41632 10 6452 1 2025-11-13 19:30:21.733 00:00:10.439 TCP 1.101.0.1:3000 -> 23.104.0.1:37558 12 10369 1 2025-11-13 19:31:22.217 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:43594 10 6452 1 2025-11-13 19:32:03.387 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 19:32:03.272 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 19:32:03.316 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 19:32:03.304 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 19:32:03.301 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 19:32:22.618 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:36072 10 6452 1 2025-11-13 19:33:22.978 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43724 10 6452 1 2025-11-13 19:30:00.199 00:04:00.223 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-13 19:30:00.197 00:04:00.228 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-13 19:34:23.384 00:00:10.455 TCP 1.101.0.1:3000 -> 23.104.0.1:33620 10 6452 1 2025-11-13 19:35:23.879 00:00:10.393 TCP 1.101.0.1:3000 -> 23.104.0.1:48550 12 6556 1 2025-11-13 19:36:24.314 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36350 10 6452 1 2025-11-13 19:37:03.417 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 19:37:03.169 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 19:37:03.336 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 19:37:03.403 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 19:37:03.469 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 19:37:24.711 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44120 10 6452 1 2025-11-13 19:38:25.118 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:50650 10 6452 1 2025-11-13 19:35:00.200 00:04:00.224 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-13 19:35:00.199 00:04:00.229 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-13 19:39:25.476 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39652 10 6452 1 2025-11-13 19:40:25.878 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:44906 10 6452 1 2025-11-13 19:41:26.283 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:37462 10 6452 1 2025-11-13 19:42:03.518 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 19:42:03.452 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 19:42:03.566 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 19:42:03.570 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 19:42:03.649 00:00:00.044 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 19:42:26.692 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36318 10 6452 1 2025-11-13 19:43:27.114 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:50622 10 6452 1 2025-11-13 19:40:00.202 00:04:00.224 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-13 19:40:00.200 00:04:00.229 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-13 19:44:27.477 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:58138 10 6452 1 2025-11-13 19:45:27.840 00:00:10.393 TCP 1.101.0.1:3000 -> 23.104.0.1:51960 10 6452 1 2025-11-13 19:46:28.272 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:53400 10 6452 1 2025-11-13 19:47:03.731 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 19:47:03.650 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 19:47:03.368 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 19:47:03.649 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 19:47:03.770 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 19:47:28.634 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:43126 10 6452 1 2025-11-13 19:48:29.034 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:46684 10 6452 1 2025-11-13 19:45:00.203 00:04:00.223 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-13 19:45:00.200 00:04:00.228 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-13 19:49:29.392 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40174 10 6452 1 2025-11-13 19:50:29.798 00:00:10.354 TCP 1.101.0.1:3000 -> 23.104.0.1:51648 10 6452 1 2025-11-13 19:51:30.192 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53820 10 6452 1 2025-11-13 19:52:03.762 00:00:00.029 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 19:52:03.759 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 19:52:03.425 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 19:52:03.681 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 19:52:03.755 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 19:52:30.593 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:57284 10 6452 1 2025-11-13 19:53:30.955 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39526 10 6452 1 2025-11-13 19:50:00.205 00:04:00.226 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-13 19:50:00.201 00:04:00.231 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-13 19:54:31.364 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46796 10 6452 1 2025-11-13 19:55:31.769 00:00:10.618 TCP 1.101.0.1:3000 -> 23.104.0.1:58604 10 6452 1 2025-11-13 19:55:00.204 00:01:00.229 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-11-13 19:56:32.424 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:60640 10 6452 1 2025-11-13 19:57:03.739 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 19:57:03.691 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 19:57:03.660 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 19:57:03.871 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 19:57:03.744 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 19:57:32.833 00:00:10.396 TCP 1.101.0.1:3000 -> 23.104.0.1:39298 10 6452 1 2025-11-13 19:58:33.263 00:00:10.872 TCP 1.101.0.1:3000 -> 23.104.0.1:32806 10 6452 1 Summary: total flows: 143, total bytes: 420633, total packets: 1018, avg bps: 923, avg pps: 0, avg bpp: 413 Time window: 2025-11-13 18:58:00 - 2025-11-13 19:58:44 Total flows processed: 143, passed: 143, Blocks skipped: 0, Bytes read: 14936 Sys: 0.0038s User: 0.0013s Wall: 0.0023s flows/second: 62582.0 Runtime: 0.0023s