Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-17 04:59:35.198 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:38970 10 6452 1 2025-11-17 04:56:01.933 00:05:00.147 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-17 04:56:01.937 00:05:00.141 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-17 05:00:35.629 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:41390 10 6452 1 2025-11-17 05:01:36.016 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:33618 10 6452 1 2025-11-17 05:02:36.379 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:36374 10 6452 1 2025-11-17 05:03:41.628 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 05:03:41.505 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 05:03:40.990 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 05:03:41.544 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 05:03:41.624 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 05:03:36.787 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54436 10 6452 1 2025-11-17 05:04:37.188 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:34704 10 6452 1 2025-11-17 05:05:37.553 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:55762 10 6452 1 2025-11-17 05:02:01.938 00:05:00.140 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-17 05:02:01.935 00:05:00.145 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-17 05:06:37.958 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38582 10 6452 1 2025-11-17 05:07:38.369 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50390 10 6452 1 2025-11-17 05:08:41.368 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 05:08:41.178 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 05:08:41.310 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 05:08:41.286 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 05:08:41.403 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 05:08:38.773 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:49892 10 6452 1 2025-11-17 05:09:39.184 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:39138 10 6452 1 2025-11-17 05:10:39.576 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:59426 10 6452 1 2025-11-17 05:11:39.940 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:56316 10 6452 1 2025-11-17 05:08:01.936 00:05:00.149 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-17 05:08:01.939 00:05:00.144 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-17 05:12:40.359 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34160 10 6452 1 2025-11-17 05:13:41.498 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 05:13:41.394 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 05:13:41.622 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 05:13:41.499 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 05:13:41.704 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 05:13:40.764 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:56580 10 6452 1 2025-11-17 05:14:41.174 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:43718 10 6452 1 2025-11-17 05:15:41.575 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59298 10 6452 1 2025-11-17 05:16:41.977 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:56640 10 6452 1 2025-11-17 05:17:42.389 00:00:10.461 TCP 1.101.0.1:3000 -> 23.104.0.1:40206 10 6452 1 2025-11-17 05:14:01.937 00:05:00.148 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-17 05:14:01.940 00:05:00.142 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-17 05:18:41.686 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 05:18:42.132 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 05:18:41.373 00:00:00.045 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 05:18:41.605 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 05:18:42.204 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 05:18:42.904 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:59354 10 6452 1 2025-11-17 05:19:43.323 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:33346 10 6452 1 2025-11-17 05:20:43.746 00:00:10.619 TCP 1.101.0.1:3000 -> 23.104.0.1:38968 10 6452 1 2025-11-17 05:21:44.403 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:37200 10 6452 1 2025-11-17 05:22:44.820 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:39346 10 6452 1 2025-11-17 05:23:41.860 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 05:23:41.615 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 05:23:41.435 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 05:23:41.777 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 05:23:41.840 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 05:23:45.191 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:34580 10 6452 1 2025-11-17 05:20:01.938 00:05:00.148 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-17 05:20:01.943 00:05:00.142 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-17 05:24:45.591 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:34874 10 6452 1 2025-11-17 05:25:46.001 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48752 10 6452 1 2025-11-17 05:26:46.400 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:59360 10 6452 1 2025-11-17 05:27:46.768 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:38386 10 6452 1 2025-11-17 05:28:41.721 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 05:28:41.553 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 05:28:41.719 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 05:28:41.710 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 05:28:41.801 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 05:28:47.143 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60032 10 6452 1 2025-11-17 05:29:47.546 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:54584 10 6452 1 2025-11-17 05:26:01.943 00:05:00.147 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-17 05:26:01.946 00:05:00.142 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-17 05:30:47.965 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:58992 10 6452 1 2025-11-17 05:31:48.379 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48582 10 6452 1 2025-11-17 05:32:48.786 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:53812 10 6452 1 2025-11-17 05:33:42.179 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 05:33:41.914 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 05:33:41.937 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 05:33:42.095 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 05:33:41.917 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 05:33:49.197 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:56996 10 6452 1 2025-11-17 05:34:49.559 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:54670 10 6452 1 2025-11-17 05:35:49.964 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:46038 10 6452 1 2025-11-17 05:32:01.948 00:05:00.138 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-17 05:32:01.945 00:05:00.143 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-17 05:36:50.328 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:37456 10 6452 1 2025-11-17 05:37:50.695 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:59488 10 6452 1 2025-11-17 05:38:42.051 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 05:38:41.687 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 05:38:41.866 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 05:38:41.969 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 05:38:41.887 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 05:38:51.111 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56334 10 6452 1 2025-11-17 05:39:51.526 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:42154 10 6452 1 2025-11-17 05:40:51.931 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:60514 10 6452 1 2025-11-17 05:38:01.946 00:05:00.143 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-17 05:41:52.344 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:40130 10 6452 1 2025-11-17 05:38:01.949 00:05:00.139 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-17 05:42:52.755 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:40632 10 6452 1 2025-11-17 05:43:42.151 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 05:43:42.111 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 05:43:41.969 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 05:43:42.148 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 05:43:42.053 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 05:43:53.197 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:46630 10 6452 1 2025-11-17 05:44:53.594 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:43520 10 6452 1 2025-11-17 05:45:53.957 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60956 10 6452 1 2025-11-17 05:46:54.367 00:00:10.446 TCP 1.101.0.1:3000 -> 23.104.0.1:37002 12 10375 1 2025-11-17 05:47:54.862 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:47530 10 6452 1 2025-11-17 05:44:01.949 00:05:00.139 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-17 05:44:01.946 00:05:00.144 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-17 05:48:42.249 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 05:48:41.971 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 05:48:42.049 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 05:48:42.250 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 05:48:42.132 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 05:48:55.280 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:49214 10 6452 1 2025-11-17 05:49:55.680 00:00:11.272 TCP 1.101.0.1:3000 -> 23.104.0.1:48098 10 6452 1 2025-11-17 05:50:56.992 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:46154 10 6452 1 2025-11-17 05:51:57.402 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59888 10 6452 1 2025-11-17 05:52:57.801 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:34452 10 6452 1 2025-11-17 05:53:42.211 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 05:53:42.272 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 05:53:42.168 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 05:53:42.129 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 05:53:42.343 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 05:50:01.950 00:05:00.140 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-17 05:50:01.947 00:05:00.144 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-17 05:53:58.177 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38048 10 6452 1 2025-11-17 05:54:58.578 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36286 10 6452 1 2025-11-17 05:55:58.986 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:45310 10 6452 1 2025-11-17 05:56:59.349 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:42508 10 6452 1 2025-11-17 05:57:59.751 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50902 10 6452 1 2025-11-17 05:58:42.569 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 05:58:42.315 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 05:58:42.493 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 05:58:42.487 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 05:58:42.412 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 Summary: total flows: 139, total bytes: 414471, total packets: 1012, avg bps: 881, avg pps: 0, avg bpp: 409 Time window: 2025-11-17 04:56:01 - 2025-11-17 05:58:42 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0031s User: 0.0020s Wall: 0.0019s flows/second: 74136.3 Runtime: 0.0019s