Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-24 00:59:12.875 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43900 10 6452 1 2025-11-24 01:00:13.285 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43106 10 6452 1 2025-11-24 01:01:13.686 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49834 10 6452 1 2025-11-24 01:02:00.643 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 01:02:00.551 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 01:02:00.517 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 01:02:00.711 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 01:02:00.794 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 00:58:05.301 00:05:00.952 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 01:02:14.108 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:41084 10 6452 1 2025-11-24 00:59:05.305 00:05:00.947 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 01:03:14.474 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:54000 10 6452 1 2025-11-24 01:04:14.837 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:54492 10 6452 1 2025-11-24 01:05:15.260 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38692 10 6452 1 2025-11-24 01:06:15.667 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43260 10 6452 1 2025-11-24 01:07:00.642 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 01:07:00.494 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 01:07:00.398 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 01:07:00.592 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 01:07:00.560 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 01:07:16.097 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:39690 10 6452 1 2025-11-24 01:04:05.306 00:05:00.960 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 01:08:16.496 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:43502 10 6452 1 2025-11-24 01:05:05.309 00:05:00.955 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 01:09:16.901 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34738 10 6452 1 2025-11-24 01:10:17.308 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35826 10 6452 1 2025-11-24 01:11:17.714 00:00:10.439 TCP 1.101.0.1:3000 -> 23.104.0.1:34506 13 13955 1 2025-11-24 01:12:00.558 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 01:12:00.473 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 01:12:00.401 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 01:12:00.627 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 01:12:00.710 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 01:12:18.191 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58104 10 6452 1 2025-11-24 01:13:18.592 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59504 10 6452 1 2025-11-24 01:10:05.309 00:05:00.960 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 01:14:18.997 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:39068 10 6452 1 2025-11-24 01:11:05.311 00:05:00.956 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 01:15:19.386 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:42710 10 6452 1 2025-11-24 01:16:19.791 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56042 10 6452 1 2025-11-24 01:17:00.495 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 01:17:00.664 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 01:17:00.749 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 01:17:00.577 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 01:17:00.579 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 01:17:20.194 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:38772 10 6452 1 2025-11-24 01:18:20.556 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:52554 10 6452 1 2025-11-24 01:19:20.917 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:37410 10 6452 1 2025-11-24 01:16:05.309 00:05:00.961 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 01:20:21.312 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44556 10 6452 1 2025-11-24 01:17:05.313 00:05:00.956 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 01:21:21.719 00:00:10.432 TCP 1.101.0.1:3000 -> 23.104.0.1:59642 12 10369 1 2025-11-24 01:22:00.805 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 01:22:01.087 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 01:22:00.701 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 01:22:00.618 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 01:22:00.886 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 01:22:22.191 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46076 10 6452 1 2025-11-24 01:23:22.596 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44836 10 6452 1 2025-11-24 01:24:23.000 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:44022 10 6452 1 2025-11-24 01:25:23.404 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:38648 10 6452 1 2025-11-24 01:22:05.311 00:05:00.972 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 01:26:23.807 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:44198 10 6452 1 2025-11-24 01:27:01.073 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 01:27:00.900 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 01:27:00.856 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 01:27:01.045 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 01:27:00.938 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 01:23:05.314 00:05:00.966 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 01:27:24.221 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:57644 10 6452 1 2025-11-24 01:28:24.625 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:48362 10 6452 1 2025-11-24 01:29:25.028 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:57072 10 6452 1 2025-11-24 01:30:25.390 00:00:10.356 TCP 1.101.0.1:3000 -> 23.104.0.1:60406 10 6452 1 2025-11-24 01:31:25.787 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55380 10 6452 1 2025-11-24 01:32:00.775 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 01:32:00.775 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 01:32:00.981 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 01:32:00.947 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 01:32:01.031 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 01:28:05.313 00:05:00.970 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 01:32:26.190 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59420 10 6452 1 2025-11-24 01:29:05.316 00:05:00.965 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 01:33:26.595 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33276 10 6452 1 2025-11-24 01:34:26.995 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39186 10 6452 1 2025-11-24 01:35:27.396 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:47038 10 6452 1 2025-11-24 01:36:27.755 00:00:10.423 TCP 1.101.0.1:3000 -> 23.104.0.1:59004 10 6452 1 2025-11-24 01:37:01.001 00:00:00.029 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 01:37:01.138 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 01:37:00.902 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 01:37:01.092 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 01:37:01.175 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 01:37:28.214 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36440 10 6452 1 2025-11-24 01:34:05.315 00:05:00.970 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 01:38:28.620 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58370 10 6452 1 2025-11-24 01:35:05.317 00:05:00.965 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 01:39:29.022 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:44458 10 6452 1 2025-11-24 01:40:29.384 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:33576 10 6452 1 2025-11-24 01:41:29.782 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:32882 10 6452 1 2025-11-24 01:42:01.245 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 01:42:01.070 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 01:42:01.116 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 01:42:00.833 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 01:42:01.162 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 01:42:30.187 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:58366 10 6452 1 2025-11-24 01:43:30.553 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:34950 10 6452 1 2025-11-24 01:40:05.315 00:05:00.973 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 01:44:30.923 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:32924 10 6452 1 2025-11-24 01:41:05.319 00:05:00.968 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 01:45:31.341 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:52622 10 6452 1 2025-11-24 01:46:31.749 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49116 10 6452 1 2025-11-24 01:47:01.510 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 01:47:01.437 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 01:47:01.347 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 01:47:01.392 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 01:47:01.474 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 01:47:32.153 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49590 10 6452 1 2025-11-24 01:48:32.554 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58270 10 6452 1 2025-11-24 01:49:32.953 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:35330 10 6452 1 2025-11-24 01:46:05.318 00:05:00.972 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 01:50:33.372 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:44584 10 6452 1 2025-11-24 01:47:05.320 00:05:00.967 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 01:51:33.740 00:00:11.042 TCP 1.101.0.1:3000 -> 23.104.0.1:52096 11 6504 1 2025-11-24 01:52:01.378 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 01:52:01.213 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 01:52:01.139 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 01:52:01.285 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 01:52:01.369 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 01:52:34.818 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58720 10 6452 1 2025-11-24 01:53:35.221 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59282 10 6452 1 2025-11-24 01:54:35.620 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:54882 10 6452 1 2025-11-24 01:55:35.982 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52326 10 6452 1 2025-11-24 01:52:05.318 00:05:00.972 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 01:56:36.381 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:40638 10 6452 1 2025-11-24 01:57:01.350 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 01:57:01.354 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 01:57:01.371 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 01:57:01.488 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 01:57:01.572 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 01:53:05.322 00:05:00.966 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 01:57:36.787 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:42728 10 6452 1 2025-11-24 01:58:37.153 00:00:11.454 TCP 1.101.0.1:3000 -> 23.104.0.1:47332 10 6452 1 Summary: total flows: 140, total bytes: 428472, total packets: 1026, avg bps: 940, avg pps: 0, avg bpp: 417 Time window: 2025-11-24 00:58:05 - 2025-11-24 01:58:48 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0056s User: 0.0000s Wall: 0.0037s flows/second: 37754.9 Runtime: 0.0037s