Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-15 04:59:05.794 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36620 10 6452 1 2025-11-15 05:00:06.201 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:41978 10 6452 1 2025-11-15 05:01:06.604 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52790 10 6452 1 2025-11-15 05:02:07.014 00:00:10.853 TCP 1.101.0.1:3000 -> 23.104.0.1:33500 10 6452 1 2025-11-15 05:02:43.437 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 05:02:43.378 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 05:02:43.715 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 05:02:43.686 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 05:02:43.797 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 04:59:00.915 00:05:00.168 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-15 05:03:07.901 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:47634 10 6452 1 2025-11-15 05:00:00.913 00:05:00.173 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-15 05:04:08.279 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:56678 10 6452 1 2025-11-15 05:05:08.684 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:50586 10 6452 1 2025-11-15 05:06:09.061 00:00:10.652 TCP 1.101.0.1:3000 -> 23.104.0.1:46630 14 14292 1 2025-11-15 05:07:09.752 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:53204 10 6452 1 2025-11-15 05:07:43.756 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 05:07:43.467 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 05:07:43.676 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 05:07:43.674 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 05:07:43.552 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 05:08:10.151 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43024 10 6452 1 2025-11-15 05:05:00.917 00:05:00.168 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-15 05:09:10.551 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42156 10 6452 1 2025-11-15 05:06:00.915 00:05:00.172 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-15 05:10:10.951 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:45374 10 6452 1 2025-11-15 05:11:11.356 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:41698 10 6452 1 2025-11-15 05:12:11.727 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:47036 10 6452 1 2025-11-15 05:12:43.790 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 05:12:43.725 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 05:12:43.897 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 05:12:43.790 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 05:12:43.981 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 05:13:12.139 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44024 10 6452 1 2025-11-15 05:14:12.543 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42746 10 6452 1 2025-11-15 05:11:00.918 00:05:00.166 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-15 05:15:12.948 00:00:10.400 TCP 1.101.0.1:3000 -> 23.104.0.1:51008 10 6452 1 2025-11-15 05:12:00.920 00:05:00.166 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-15 05:16:13.384 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:57628 10 6452 1 2025-11-15 05:17:13.752 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:36322 10 6452 1 2025-11-15 05:17:43.935 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 05:17:43.850 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 05:17:43.669 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 05:17:43.852 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 05:17:43.727 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 05:18:14.125 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:41876 10 6452 1 2025-11-15 05:19:14.491 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:37360 10 6452 1 2025-11-15 05:20:14.888 00:00:10.397 TCP 1.101.0.1:3000 -> 23.104.0.1:56028 10 6452 1 2025-11-15 05:17:00.922 00:05:00.164 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-15 05:21:15.323 00:00:10.395 TCP 1.101.0.1:3000 -> 23.104.0.1:59282 10 6452 1 2025-11-15 05:18:00.919 00:05:00.169 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-15 05:22:15.765 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:46906 10 6452 1 2025-11-15 05:22:44.033 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 05:22:43.813 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 05:22:43.773 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 05:22:43.949 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 05:22:43.947 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 05:23:16.174 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:58780 10 6452 1 2025-11-15 05:24:16.584 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60594 10 6452 1 2025-11-15 05:25:16.984 00:00:21.519 TCP 1.101.0.1:3000 -> 23.104.0.1:52070 10 6452 1 2025-11-15 05:26:28.539 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:40698 10 6452 1 2025-11-15 05:23:00.925 00:05:00.160 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-15 05:27:28.940 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:48802 10 6452 1 2025-11-15 05:27:44.835 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 05:27:44.738 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 05:27:44.597 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 05:27:44.607 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 05:27:44.681 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 05:24:00.923 00:05:00.165 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-15 05:28:29.361 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:39612 10 6452 1 2025-11-15 05:29:29.722 00:00:41.121 TCP 1.101.0.1:3000 -> 23.104.0.1:36866 10 6452 1 2025-11-15 05:31:00.895 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:35004 10 6452 1 2025-11-15 05:32:01.253 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57792 10 6452 1 2025-11-15 05:32:44.235 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 05:32:44.161 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 05:32:44.122 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 05:32:44.153 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 05:32:44.111 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 05:29:00.927 00:05:00.185 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-15 05:33:01.654 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49414 10 6452 1 2025-11-15 05:30:00.940 00:05:00.159 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-15 05:34:02.067 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55360 10 6452 1 2025-11-15 05:35:02.468 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:47720 10 6452 1 2025-11-15 05:36:02.880 00:00:10.351 TCP 1.101.0.1:3000 -> 23.104.0.1:52144 10 6452 1 2025-11-15 05:37:03.242 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:41666 10 6452 1 2025-11-15 05:37:44.465 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 05:37:44.176 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 05:37:44.004 00:00:00.043 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 05:37:44.382 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 05:37:44.483 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 05:38:03.640 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:35612 10 6452 1 2025-11-15 05:35:00.943 00:05:00.154 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-15 05:39:04.058 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:51720 10 6452 1 2025-11-15 05:36:00.942 00:05:00.159 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-15 05:40:04.464 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58818 10 6452 1 2025-11-15 05:41:04.869 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:52948 10 6452 1 2025-11-15 05:42:05.276 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43286 10 6452 1 2025-11-15 05:42:44.368 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 05:42:44.276 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 05:42:44.348 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 05:42:44.286 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 05:42:44.359 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 05:43:05.684 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:36212 10 6452 1 2025-11-15 05:44:06.121 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:53816 10 6452 1 2025-11-15 05:41:00.947 00:05:00.155 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-15 05:45:06.487 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:39196 10 6452 1 2025-11-15 05:42:00.944 00:05:00.160 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-15 05:46:06.891 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:43908 10 6452 1 2025-11-15 05:47:07.309 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:33358 10 6452 1 2025-11-15 05:47:44.550 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 05:47:44.465 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 05:47:44.507 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 05:47:44.466 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 05:47:44.453 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 05:48:07.709 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:43430 10 6452 1 2025-11-15 05:49:08.112 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50116 10 6452 1 2025-11-15 05:50:08.512 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:37816 10 6452 1 2025-11-15 05:47:00.947 00:05:00.159 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-15 05:51:08.916 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:60074 10 6452 1 2025-11-15 05:48:00.944 00:05:00.164 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-15 05:52:09.311 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:46506 10 6452 1 2025-11-15 05:52:44.582 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 05:52:44.632 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 05:52:44.672 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 05:52:44.572 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 05:52:44.716 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 05:53:09.715 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:51228 10 6452 1 2025-11-15 05:54:10.119 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57120 10 6452 1 2025-11-15 05:55:10.525 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:45180 10 6452 1 2025-11-15 05:56:10.933 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:51838 10 6452 1 2025-11-15 05:53:00.949 00:05:00.157 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-15 05:57:11.355 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:49128 10 6452 1 2025-11-15 05:57:44.666 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-15 05:57:44.648 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-15 05:57:44.675 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 05:57:44.583 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-15 05:57:44.578 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-15 05:54:00.947 00:05:00.163 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-15 05:58:11.755 00:00:22.628 TCP 1.101.0.1:3000 -> 23.104.0.1:33056 10 6452 1 Summary: total flows: 139, total bytes: 418388, total packets: 1014, avg bps: 929, avg pps: 0, avg bpp: 412 Time window: 2025-11-15 04:59:00 - 2025-11-15 05:59:01 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0037s User: 0.0012s Wall: 0.0019s flows/second: 72360.5 Runtime: 0.0019s