Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-23 23:58:45.365 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45930 10 6452 1 2025-11-23 23:59:45.767 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:40948 10 6452 1 2025-11-24 00:00:46.185 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:44364 10 6452 1 2025-11-24 00:01:59.132 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 00:01:46.590 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:38726 10 6452 1 2025-11-24 00:01:58.969 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 00:01:59.098 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 00:01:58.981 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 00:01:59.063 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 23:58:05.284 00:05:00.948 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 00:02:46.993 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59434 10 6452 1 2025-11-23 23:59:05.287 00:05:00.943 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 00:03:47.399 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35350 10 6452 1 2025-11-24 00:04:47.804 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47972 10 6452 1 2025-11-24 00:05:48.204 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60922 10 6452 1 2025-11-24 00:06:59.231 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 00:06:59.073 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 00:06:48.609 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40408 10 6452 1 2025-11-24 00:06:59.151 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 00:06:59.133 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 00:06:59.150 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 00:07:49.010 00:00:10.422 TCP 1.101.0.1:3000 -> 23.104.0.1:44776 10 6452 1 2025-11-24 00:04:05.288 00:05:00.948 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 00:08:49.467 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34076 10 6452 1 2025-11-24 00:05:05.289 00:05:00.943 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 00:09:49.868 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:50992 10 6452 1 2025-11-24 00:10:50.279 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:57326 10 6452 1 2025-11-24 00:11:59.389 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 00:11:59.396 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 00:11:59.591 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 00:11:59.306 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 00:11:59.305 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 00:11:50.699 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:38600 10 6452 1 2025-11-24 00:12:51.130 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:55346 10 6452 1 2025-11-24 00:13:51.490 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:54478 10 6452 1 2025-11-24 00:10:05.288 00:05:00.950 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 00:14:51.895 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:35122 10 6452 1 2025-11-24 00:11:05.290 00:05:00.945 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 00:15:52.313 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44356 10 6452 1 2025-11-24 00:16:59.863 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 00:16:59.712 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 00:16:59.800 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 00:16:59.617 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 00:16:59.945 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 00:16:52.720 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:43710 10 6452 1 2025-11-24 00:17:53.135 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:42540 10 6452 1 2025-11-24 00:18:53.539 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:57326 10 6452 1 2025-11-24 00:19:53.913 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:33278 10 6452 1 2025-11-24 00:16:05.291 00:05:00.951 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 00:20:54.320 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52404 10 6452 1 2025-11-24 00:17:05.292 00:05:00.945 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 00:21:59.739 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 00:21:59.622 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 00:21:59.557 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 00:21:59.657 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 00:21:59.661 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 00:21:54.725 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:33448 10 6452 1 2025-11-24 00:22:55.135 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40266 10 6452 1 2025-11-24 00:23:55.545 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55766 10 6452 1 2025-11-24 00:24:55.949 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:53246 10 6452 1 2025-11-24 00:22:05.291 00:05:00.950 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 00:25:56.364 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:53292 10 6452 1 2025-11-24 00:26:59.768 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 00:26:59.549 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 00:26:59.555 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 00:26:59.766 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 00:26:59.849 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 00:26:56.727 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:40496 10 6452 1 2025-11-24 00:23:05.294 00:05:00.944 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 00:27:57.135 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41730 10 6452 1 2025-11-24 00:28:57.543 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:56338 10 6452 1 2025-11-24 00:29:57.906 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:42330 10 6452 1 2025-11-24 00:30:58.313 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:50046 10 6452 1 2025-11-24 00:31:59.642 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 00:31:59.743 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 00:31:59.883 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 00:31:59.746 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 00:31:59.829 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 00:31:58.724 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:48658 10 6452 1 2025-11-24 00:28:05.295 00:05:00.950 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 00:32:59.137 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51024 10 6452 1 2025-11-24 00:29:05.299 00:05:00.945 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 00:33:59.539 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:50758 10 6452 1 2025-11-24 00:34:59.938 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:37192 10 6452 1 2025-11-24 00:36:00.315 00:00:10.352 TCP 1.101.0.1:3000 -> 23.104.0.1:57814 10 6452 1 2025-11-24 00:36:59.696 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 00:36:59.709 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 00:37:00.188 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 00:37:00.241 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 00:37:00.324 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 00:37:00.702 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36444 10 6452 1 2025-11-24 00:34:05.297 00:05:00.949 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 00:38:01.111 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:54652 10 6452 1 2025-11-24 00:35:05.300 00:05:00.943 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 00:39:01.485 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:38552 10 6452 1 2025-11-24 00:40:01.886 00:00:10.350 TCP 1.101.0.1:3000 -> 23.104.0.1:58342 10 6452 1 2025-11-24 00:41:02.272 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:48764 10 6452 1 2025-11-24 00:41:59.916 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 00:41:59.902 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 00:41:59.912 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 00:41:59.833 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 00:41:59.998 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 00:42:02.690 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52726 10 6452 1 2025-11-24 00:43:03.116 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60258 10 6452 1 2025-11-24 00:40:05.297 00:05:00.953 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 00:44:03.524 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:46332 10 6452 1 2025-11-24 00:41:05.300 00:05:00.948 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 00:45:03.890 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:58536 10 6452 1 2025-11-24 00:46:04.318 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49958 10 6452 1 2025-11-24 00:47:00.169 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 00:47:00.166 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 00:47:00.123 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 00:47:00.280 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 00:47:00.363 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 00:47:04.721 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:59934 10 6452 1 2025-11-24 00:48:05.113 00:00:10.356 TCP 1.101.0.1:3000 -> 23.104.0.1:43888 10 6452 1 2025-11-24 00:49:05.507 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35842 10 6452 1 2025-11-24 00:46:05.299 00:05:00.958 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 00:50:05.909 00:00:12.203 TCP 1.101.0.1:3000 -> 23.104.0.1:38198 10 6452 1 2025-11-24 00:47:05.301 00:05:00.948 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 00:51:08.150 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:42200 10 6452 1 2025-11-24 00:51:59.835 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 00:52:00.142 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 00:52:00.206 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 00:52:00.272 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 00:52:00.357 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 00:52:08.520 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:53996 10 6452 1 2025-11-24 00:53:08.923 00:00:11.195 TCP 1.101.0.1:3000 -> 23.104.0.1:54178 11 6504 1 2025-11-24 00:54:10.156 00:00:11.152 TCP 1.101.0.1:3000 -> 23.104.0.1:44302 10 6452 1 2025-11-24 00:55:11.341 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54148 10 6452 1 2025-11-24 00:52:05.299 00:05:00.952 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 00:56:11.744 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:57188 10 6452 1 2025-11-24 00:57:00.422 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 00:57:00.339 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 00:57:00.290 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 00:57:00.204 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 00:57:00.010 00:00:00.040 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 00:53:05.303 00:05:00.947 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 00:57:12.112 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48606 10 6452 1 2025-11-24 00:58:12.517 00:00:10.317 TCP 1.101.0.1:3000 -> 23.104.0.1:49820 10 6452 1 Summary: total flows: 140, total bytes: 417052, total packets: 1021, avg bps: 922, avg pps: 0, avg bpp: 408 Time window: 2025-11-23 23:58:05 - 2025-11-24 00:58:22 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0053s User: 0.0011s Wall: 0.0023s flows/second: 60449.1 Runtime: 0.0023s