Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-23 20:59:20.178 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33252 10 6452 1 2025-11-23 21:00:20.585 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55276 10 6452 1 2025-11-23 21:01:20.987 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52256 10 6452 1 2025-11-23 21:01:55.759 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 21:01:55.576 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 21:01:55.261 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 21:01:55.684 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 21:01:55.766 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 20:58:05.232 00:05:00.921 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 21:02:21.387 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33226 10 6452 1 2025-11-23 20:59:05.235 00:05:00.915 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 21:03:21.789 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:34568 10 6452 1 2025-11-23 21:04:22.192 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56794 10 6452 1 2025-11-23 21:05:22.594 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40504 10 6452 1 2025-11-23 21:06:22.994 00:00:11.036 TCP 1.101.0.1:3000 -> 23.104.0.1:47120 10 6452 1 2025-11-23 21:06:55.812 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 21:06:55.858 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 21:06:55.739 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 21:06:55.804 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 21:06:55.887 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 21:07:24.101 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:38726 10 6452 1 2025-11-23 21:04:05.234 00:05:00.918 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 21:08:24.501 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40190 10 6452 1 2025-11-23 21:05:05.237 00:05:00.913 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 21:09:24.907 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:44764 10 6452 1 2025-11-23 21:10:25.329 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58492 10 6452 1 2025-11-23 21:11:25.734 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:58440 10 6452 1 2025-11-23 21:11:55.627 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 21:11:55.548 00:00:00.031 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 21:11:55.713 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 21:11:55.575 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 21:11:55.543 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 21:12:26.138 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:58150 10 6452 1 2025-11-23 21:13:26.501 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:44586 10 6452 1 2025-11-23 21:10:05.238 00:05:00.919 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 21:14:26.902 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:56242 10 6452 1 2025-11-23 21:11:05.239 00:05:00.914 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 21:15:27.282 00:00:10.890 TCP 1.101.0.1:3000 -> 23.104.0.1:60576 10 6452 1 2025-11-23 21:16:28.212 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33148 10 6452 1 2025-11-23 21:16:55.765 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 21:16:55.878 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 21:16:55.872 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 21:16:55.881 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 21:16:55.963 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 21:17:28.615 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33602 10 6452 1 2025-11-23 21:18:29.020 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56504 10 6452 1 2025-11-23 21:19:29.423 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:41514 10 6452 1 2025-11-23 21:16:05.242 00:05:00.917 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 21:20:29.790 00:00:10.442 TCP 1.101.0.1:3000 -> 23.104.0.1:51008 12 10369 1 2025-11-23 21:17:05.244 00:05:00.912 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 21:21:30.270 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:51704 10 6452 1 2025-11-23 21:21:55.997 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 21:21:56.295 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 21:21:56.337 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 21:21:55.955 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 21:21:55.916 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 21:22:30.671 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:53860 10 6452 1 2025-11-23 21:23:31.041 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:36046 10 6452 1 2025-11-23 21:24:31.443 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:41576 10 6452 1 2025-11-23 21:25:31.806 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56158 10 6452 1 2025-11-23 21:22:05.243 00:05:00.922 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 21:26:32.203 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:54158 10 6452 1 2025-11-23 21:26:55.902 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 21:26:55.809 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 21:26:55.952 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 21:26:55.764 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 21:26:55.820 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 21:23:05.246 00:05:00.916 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 21:27:32.600 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54566 10 6452 1 2025-11-23 21:28:33.001 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:57398 10 6452 1 2025-11-23 21:29:33.360 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58734 10 6452 1 2025-11-23 21:30:33.763 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:38306 10 6452 1 2025-11-23 21:31:34.177 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:36420 10 6452 1 2025-11-23 21:31:56.228 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 21:31:56.307 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 21:31:56.290 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 21:31:56.239 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 21:31:56.321 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 21:28:05.244 00:05:00.920 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 21:32:34.579 00:00:10.413 TCP 1.101.0.1:3000 -> 23.104.0.1:53386 11 6504 1 2025-11-23 21:29:05.247 00:05:00.915 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 21:33:35.043 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55046 10 6452 1 2025-11-23 21:34:35.444 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54972 10 6452 1 2025-11-23 21:35:35.854 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:42054 10 6452 1 2025-11-23 21:36:36.278 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40350 10 6452 1 2025-11-23 21:36:56.346 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 21:36:55.903 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 21:36:56.139 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 21:36:56.142 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 21:36:56.263 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 21:37:36.681 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:56762 10 6452 1 2025-11-23 21:34:05.246 00:05:00.920 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 21:38:37.108 00:00:10.687 TCP 1.101.0.1:3000 -> 23.104.0.1:43396 10 6452 1 2025-11-23 21:35:05.248 00:05:00.927 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 21:39:37.833 00:00:10.349 TCP 1.101.0.1:3000 -> 23.104.0.1:37626 10 6452 1 2025-11-23 21:40:38.222 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:33958 10 6452 1 2025-11-23 21:41:38.628 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:38620 10 6452 1 2025-11-23 21:41:56.236 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 21:41:56.237 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 21:41:55.993 00:00:00.045 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 21:41:56.324 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 21:41:56.408 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 21:42:39.002 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58416 10 6452 1 2025-11-23 21:43:39.407 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:47668 10 6452 1 2025-11-23 21:40:05.248 00:05:00.930 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 21:44:39.815 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:56120 10 6452 1 2025-11-23 21:41:05.249 00:05:00.926 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 21:45:40.186 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:52698 10 6452 1 2025-11-23 21:46:40.586 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37018 10 6452 1 2025-11-23 21:46:56.540 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 21:46:56.323 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 21:46:56.157 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 21:46:56.503 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 21:46:56.586 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 21:47:40.990 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:56630 10 6452 1 2025-11-23 21:48:41.350 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:55530 10 6452 1 2025-11-23 21:49:41.751 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:35574 10 6452 1 2025-11-23 21:46:05.249 00:05:00.930 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 21:50:42.157 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:33596 10 6452 1 2025-11-23 21:47:05.251 00:05:00.924 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 21:51:42.562 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:47452 10 6452 1 2025-11-23 21:51:56.441 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 21:51:56.504 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 21:51:56.392 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 21:51:56.553 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 21:51:56.637 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 21:52:42.961 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:38078 10 6452 1 2025-11-23 21:53:43.367 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:39710 10 6452 1 2025-11-23 21:54:43.727 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:48460 10 6452 1 2025-11-23 21:55:44.144 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44758 10 6452 1 2025-11-23 21:52:05.250 00:05:00.929 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 21:56:44.551 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34574 10 6452 1 2025-11-23 21:56:56.329 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 21:56:56.710 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 21:56:56.650 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 21:56:56.623 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 21:56:56.706 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 21:53:05.252 00:05:00.924 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 21:57:44.960 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:34308 10 6452 1 Summary: total flows: 139, total bytes: 414517, total packets: 1013, avg bps: 920, avg pps: 0, avg bpp: 409 Time window: 2025-11-23 20:58:05 - 2025-11-23 21:58:06 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0020s User: 0.0030s Wall: 0.0018s flows/second: 75294.9 Runtime: 0.0019s