Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-15 02:58:47.144 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54072 10 6452 1 2025-11-15 02:59:47.549 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:44368 10 6452 1 2025-11-15 03:00:47.952 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:35840 10 6452 1 2025-11-15 03:01:48.356 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:42702 10 6452 1 2025-11-15 03:02:40.877 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 03:02:40.967 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 03:02:40.796 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 03:02:41.219 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 03:02:41.095 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 03:02:48.714 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58214 10 6452 1 2025-11-15 02:59:00.870 00:05:00.182 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-15 03:03:49.125 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57544 10 6452 1 2025-11-15 03:00:00.868 00:05:00.187 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-15 03:04:49.528 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:55298 10 6452 1 2025-11-15 03:05:49.936 00:00:10.458 TCP 1.101.0.1:3000 -> 23.104.0.1:59706 12 10369 1 2025-11-15 03:06:50.440 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:41632 10 6452 1 2025-11-15 03:07:41.257 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 03:07:41.066 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 03:07:41.253 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 03:07:41.318 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 03:07:41.335 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 03:07:50.815 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:48072 10 6452 1 2025-11-15 03:08:51.222 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:48930 10 6452 1 2025-11-15 03:05:00.871 00:05:00.186 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-15 03:06:00.869 00:05:00.192 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-15 03:09:51.629 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59814 10 6452 1 2025-11-15 03:10:52.030 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:47198 10 6452 1 2025-11-15 03:11:52.397 00:00:10.417 TCP 1.101.0.1:3000 -> 23.104.0.1:43242 11 6504 1 2025-11-15 03:12:41.114 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 03:12:41.330 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 03:12:41.345 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 03:12:41.032 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 03:12:41.388 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 03:12:52.856 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:51382 10 6452 1 2025-11-15 03:13:53.274 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34528 10 6452 1 2025-11-15 03:14:53.672 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56046 10 6452 1 2025-11-15 03:11:00.873 00:05:00.186 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-15 03:15:54.100 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:56212 10 6452 1 2025-11-15 03:12:00.869 00:05:00.193 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-15 03:16:54.465 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:36208 10 6452 1 2025-11-15 03:17:41.531 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 03:17:41.400 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 03:17:41.111 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 03:17:41.448 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 03:17:41.395 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 03:17:54.827 00:00:16.624 TCP 1.101.0.1:3000 -> 23.104.0.1:52078 10 6452 1 2025-11-15 03:19:01.510 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60616 10 6452 1 2025-11-15 03:20:01.917 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60240 10 6452 1 2025-11-15 03:17:00.874 00:05:00.187 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-15 03:21:02.322 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:43180 10 6452 1 2025-11-15 03:18:00.871 00:05:00.192 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-15 03:22:02.688 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33720 10 6452 1 2025-11-15 03:22:41.902 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 03:22:41.819 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 03:22:41.966 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 03:22:41.908 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 03:22:41.738 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 03:23:03.112 00:00:13.722 TCP 1.101.0.1:3000 -> 23.104.0.1:52260 10 6452 1 2025-11-15 03:24:06.875 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:34458 10 6452 1 2025-11-15 03:25:07.282 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:33280 10 6452 1 2025-11-15 03:26:07.681 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59684 10 6452 1 2025-11-15 03:23:00.880 00:05:00.181 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-15 03:27:08.107 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59824 10 6452 1 2025-11-15 03:27:41.728 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 03:27:41.695 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 03:27:41.663 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 03:27:41.645 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 03:27:41.646 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 03:24:00.872 00:05:00.191 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-15 03:28:08.508 00:00:10.757 TCP 1.101.0.1:3000 -> 23.104.0.1:42680 10 6452 1 2025-11-15 03:29:09.298 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:45754 10 6452 1 2025-11-15 03:30:09.702 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:60146 10 6452 1 2025-11-15 03:31:10.094 00:00:10.438 TCP 1.101.0.1:3000 -> 23.104.0.1:39782 12 10375 1 2025-11-15 03:32:10.571 00:00:10.420 TCP 1.101.0.1:3000 -> 23.104.0.1:46522 11 6504 1 2025-11-15 03:32:41.730 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 03:32:41.459 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 03:32:41.781 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 03:32:41.660 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 03:32:41.863 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 03:29:00.878 00:05:00.185 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-15 03:33:11.450 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34538 10 6452 1 2025-11-15 03:30:00.875 00:05:00.190 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-15 03:34:11.858 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:36472 10 6452 1 2025-11-15 03:35:12.273 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:57136 10 6452 1 2025-11-15 03:36:12.674 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:38802 10 6452 1 2025-11-15 03:37:13.101 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:60796 10 6452 1 2025-11-15 03:37:42.033 00:00:00.063 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 03:37:41.900 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 03:37:42.149 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 03:37:42.321 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 03:37:42.234 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 03:38:13.501 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:53552 10 6452 1 2025-11-15 03:35:00.880 00:05:00.183 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-15 03:39:13.898 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:58452 10 6452 1 2025-11-15 03:36:00.878 00:05:00.189 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-15 03:40:14.309 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46338 10 6452 1 2025-11-15 03:41:14.716 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:35104 10 6452 1 2025-11-15 03:42:15.119 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:53564 10 6452 1 2025-11-15 03:42:41.886 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 03:42:41.805 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 03:42:41.654 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 03:42:41.803 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 03:42:41.809 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 03:43:15.524 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:35430 10 6452 1 2025-11-15 03:44:15.931 00:00:10.344 TCP 1.101.0.1:3000 -> 23.104.0.1:53364 10 6452 1 2025-11-15 03:41:00.881 00:05:00.185 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-15 03:45:16.316 00:00:10.935 TCP 1.101.0.1:3000 -> 23.104.0.1:42510 10 6452 1 2025-11-15 03:42:00.879 00:05:00.190 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-15 03:46:17.288 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:37794 10 6452 1 2025-11-15 03:47:17.698 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:36990 10 6452 1 2025-11-15 03:47:41.902 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 03:47:41.815 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 03:47:41.815 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 03:47:41.972 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 03:47:41.896 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 03:48:18.117 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36684 10 6452 1 2025-11-15 03:49:18.520 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:45964 10 6452 1 2025-11-15 03:50:18.884 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53996 10 6452 1 2025-11-15 03:47:00.883 00:05:00.184 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-15 03:51:19.284 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47400 10 6452 1 2025-11-15 03:48:00.880 00:05:00.189 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-15 03:52:19.687 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59730 10 6452 1 2025-11-15 03:52:42.180 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 03:52:42.190 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 03:52:42.119 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 03:52:42.098 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 03:52:42.083 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 03:53:20.110 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36632 10 6452 1 2025-11-15 03:54:20.514 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:50492 10 6452 1 2025-11-15 03:55:20.916 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:59494 10 6452 1 2025-11-15 03:56:21.282 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37160 10 6452 1 2025-11-15 03:53:00.885 00:05:00.184 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-15 03:57:21.690 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41060 10 6452 1 2025-11-15 03:57:42.222 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 03:57:41.935 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 03:57:41.998 00:00:00.029 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 03:57:42.296 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 03:57:42.079 00:00:00.028 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 03:54:00.883 00:05:00.189 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-15 03:58:22.105 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46676 10 6452 1 Summary: total flows: 140, total bytes: 424944, total packets: 1026, avg bps: 940, avg pps: 0, avg bpp: 414 Time window: 2025-11-15 02:58:47 - 2025-11-15 03:59:01 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0039s User: 0.0010s Wall: 0.0019s flows/second: 72989.8 Runtime: 0.0019s