Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-23 17:58:56.105 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:33398 10 6452 1 2025-11-23 17:59:56.468 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55080 10 6452 1 2025-11-23 18:00:56.880 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59222 10 6452 1 2025-11-23 18:01:52.048 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 18:01:51.970 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 18:01:51.824 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 18:01:51.674 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 18:01:51.756 00:00:00.031 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 18:01:57.288 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:52258 10 6452 1 2025-11-23 17:58:05.156 00:05:00.919 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 17:59:05.159 00:05:00.913 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 18:02:57.646 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:42328 10 6452 1 2025-11-23 18:03:58.056 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:54446 10 6452 1 2025-11-23 18:04:58.457 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37512 10 6452 1 2025-11-23 18:05:58.859 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:58208 10 6452 1 2025-11-23 18:06:52.399 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 18:06:52.399 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 18:06:52.092 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 18:06:52.292 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 18:06:52.482 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 18:06:59.228 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:55756 10 6452 1 2025-11-23 18:07:59.606 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38174 10 6452 1 2025-11-23 18:04:05.161 00:05:00.916 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 18:05:05.165 00:05:00.908 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 18:09:00.016 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33034 10 6452 1 2025-11-23 18:10:00.421 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:40762 10 6452 1 2025-11-23 18:11:00.780 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47168 10 6452 1 2025-11-23 18:11:52.273 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 18:11:52.003 00:00:00.042 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 18:11:52.111 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 18:11:52.062 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 18:11:52.191 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 18:12:01.184 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:59138 10 6452 1 2025-11-23 18:13:01.548 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:34664 10 6452 1 2025-11-23 18:10:05.166 00:05:00.915 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 18:14:01.948 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:47600 10 6452 1 2025-11-23 18:11:05.169 00:05:00.910 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 18:15:02.361 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:52478 10 6452 1 2025-11-23 18:16:02.778 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:45104 10 6452 1 2025-11-23 18:16:52.296 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 18:16:52.288 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 18:16:52.244 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 18:16:52.282 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 18:16:52.380 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 18:17:03.155 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:56384 10 6452 1 2025-11-23 18:18:03.569 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:42562 12 6556 1 2025-11-23 18:19:03.985 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:36126 10 6452 1 2025-11-23 18:16:05.168 00:05:00.916 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 18:20:04.395 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:51980 10 6452 1 2025-11-23 18:17:05.171 00:05:00.910 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 18:21:04.798 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:60772 10 6452 1 2025-11-23 18:21:52.101 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 18:21:52.266 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 18:21:52.072 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 18:21:52.366 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 18:21:52.448 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 18:22:05.213 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:34668 10 6452 1 2025-11-23 18:23:05.610 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36670 10 6452 1 2025-11-23 18:24:06.012 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:53980 10 6452 1 2025-11-23 18:25:06.418 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:58234 10 6452 1 2025-11-23 18:22:05.173 00:05:00.913 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 18:26:06.780 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:52650 10 6452 1 2025-11-23 18:26:52.617 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 18:26:52.317 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 18:26:52.315 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 18:26:52.470 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 18:26:52.535 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 18:23:05.174 00:05:00.908 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 18:27:07.185 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:35046 10 6452 1 2025-11-23 18:28:07.550 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34130 10 6452 1 2025-11-23 18:29:07.956 00:00:10.350 TCP 1.101.0.1:3000 -> 23.104.0.1:57522 10 6452 1 2025-11-23 18:30:08.343 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:39260 10 6452 1 2025-11-23 18:31:08.707 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46502 10 6452 1 2025-11-23 18:31:52.920 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 18:31:52.800 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 18:31:52.561 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 18:31:52.398 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 18:31:52.838 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 18:28:05.174 00:05:00.912 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 18:32:09.117 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:37218 10 6452 1 2025-11-23 18:29:05.177 00:05:00.906 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 18:33:09.514 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:51466 10 6452 1 2025-11-23 18:34:09.878 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47282 10 6452 1 2025-11-23 18:35:10.277 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51524 10 6452 1 2025-11-23 18:36:10.681 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:59732 10 6452 1 2025-11-23 18:36:52.332 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 18:36:52.521 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 18:36:52.453 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 18:36:52.603 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 18:36:52.686 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 18:37:11.106 00:00:11.203 TCP 1.101.0.1:3000 -> 23.104.0.1:46738 10 6452 1 2025-11-23 18:34:05.175 00:05:00.912 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 18:38:12.347 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:42648 10 6452 1 2025-11-23 18:35:05.178 00:05:00.907 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 18:39:12.745 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50430 10 6452 1 2025-11-23 18:40:13.153 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:40352 10 6452 1 2025-11-23 18:41:13.521 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:60758 10 6452 1 2025-11-23 18:41:52.818 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 18:41:52.735 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 18:41:52.779 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 18:41:52.734 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 18:41:52.766 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 18:42:13.933 00:00:10.343 TCP 1.101.0.1:3000 -> 23.104.0.1:60228 10 6452 1 2025-11-23 18:43:14.318 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:58078 10 6452 1 2025-11-23 18:40:05.178 00:05:00.912 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 18:44:14.677 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:60576 10 6452 1 2025-11-23 18:41:05.182 00:05:00.904 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 18:45:15.113 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:53406 10 6452 1 2025-11-23 18:46:15.517 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33724 10 6452 1 2025-11-23 18:46:52.688 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 18:46:52.608 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 18:46:52.864 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 18:46:52.652 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 18:46:52.606 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 18:47:15.920 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:39590 10 6452 1 2025-11-23 18:48:16.292 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:48180 10 6452 1 2025-11-23 18:49:16.706 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38422 10 6452 1 2025-11-23 18:46:05.180 00:05:00.910 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 18:50:17.113 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:55212 10 6452 1 2025-11-23 18:47:05.183 00:05:00.905 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 18:51:17.516 00:00:10.448 TCP 1.101.0.1:3000 -> 23.104.0.1:54850 12 10375 1 2025-11-23 18:51:53.438 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 18:51:53.277 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 18:51:53.279 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 18:51:53.196 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 18:51:53.354 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 18:52:17.996 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:58432 10 6452 1 2025-11-23 18:53:18.445 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54740 10 6452 1 2025-11-23 18:54:18.847 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:43198 10 6452 1 2025-11-23 18:55:19.271 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:41772 10 6452 1 2025-11-23 18:52:05.183 00:05:00.909 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 18:56:19.643 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:35072 10 6452 1 2025-11-23 18:56:53.054 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 18:56:53.048 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 18:56:52.870 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 18:56:52.889 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 18:56:52.972 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 18:53:05.186 00:05:00.904 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 18:57:20.070 00:00:10.419 TCP 1.101.0.1:3000 -> 23.104.0.1:42280 11 6504 1 2025-11-23 18:58:20.530 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51392 10 6452 1 Summary: total flows: 140, total bytes: 421079, total packets: 1025, avg bps: 929, avg pps: 0, avg bpp: 410 Time window: 2025-11-23 17:58:05 - 2025-11-23 18:58:30 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0052s User: 0.0010s Wall: 0.0021s flows/second: 65948.2 Runtime: 0.0021s