Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-24 02:59:03.186 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:50802 10 6452 1 2025-11-24 03:00:03.593 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:51262 10 6452 1 2025-11-24 03:01:03.956 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:57210 10 6452 1 2025-11-24 03:02:02.685 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 03:02:02.705 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 03:02:02.598 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 03:02:02.652 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 03:02:02.602 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 02:58:05.355 00:05:00.967 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 03:02:04.368 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:50518 10 6452 1 2025-11-24 02:59:05.357 00:05:00.962 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 03:03:04.738 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:54468 10 6452 1 2025-11-24 03:04:05.117 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:46190 10 6452 1 2025-11-24 03:05:05.477 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40136 10 6452 1 2025-11-24 03:06:05.905 00:00:10.580 TCP 1.101.0.1:3000 -> 23.104.0.1:60774 10 6452 1 2025-11-24 03:07:02.993 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 03:07:02.954 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 03:07:02.811 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 03:07:02.575 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 03:07:02.911 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 03:07:06.525 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51286 10 6452 1 2025-11-24 03:04:05.356 00:05:00.974 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 03:08:06.929 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:47558 10 6452 1 2025-11-24 03:05:05.358 00:05:00.969 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 03:09:07.349 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37924 10 6452 1 2025-11-24 03:10:07.750 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60732 10 6452 1 2025-11-24 03:11:08.154 00:00:10.396 TCP 1.101.0.1:3000 -> 23.104.0.1:60098 12 10375 1 2025-11-24 03:12:02.961 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 03:12:02.886 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 03:12:02.679 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 03:12:02.889 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 03:12:02.971 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 03:12:08.624 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:43434 10 6452 1 2025-11-24 03:13:09.027 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46966 10 6452 1 2025-11-24 03:10:05.357 00:05:00.974 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 03:14:09.436 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:40250 10 6452 1 2025-11-24 03:11:05.358 00:05:00.970 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 03:15:09.838 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:47596 10 6452 1 2025-11-24 03:16:10.252 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55670 10 6452 1 2025-11-24 03:17:02.950 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 03:17:02.891 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 03:17:02.603 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 03:17:02.893 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 03:17:02.976 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 03:17:10.663 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:49158 10 6452 1 2025-11-24 03:18:11.033 00:00:10.348 TCP 1.101.0.1:3000 -> 23.104.0.1:42806 10 6452 1 2025-11-24 03:19:11.416 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:56056 10 6452 1 2025-11-24 03:16:05.357 00:05:00.975 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 03:20:11.776 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:34450 10 6452 1 2025-11-24 03:17:05.359 00:05:00.971 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 03:21:12.202 00:00:10.395 TCP 1.101.0.1:3000 -> 23.104.0.1:51592 12 10369 1 2025-11-24 03:22:03.269 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 03:22:03.187 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 03:22:03.068 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 03:22:03.188 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 03:22:02.860 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 03:22:12.640 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:46188 10 6452 1 2025-11-24 03:23:13.004 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56868 10 6452 1 2025-11-24 03:24:13.409 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:40548 10 6452 1 2025-11-24 03:25:13.826 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:48452 10 6452 1 2025-11-24 03:22:05.366 00:05:00.968 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 03:26:14.235 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:38176 10 6452 1 2025-11-24 03:27:03.265 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 03:27:03.186 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 03:27:03.314 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 03:27:02.822 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 03:27:03.181 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 03:23:05.368 00:05:00.962 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 03:27:14.633 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38670 10 6452 1 2025-11-24 03:28:15.041 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:43948 10 6452 1 2025-11-24 03:29:15.443 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42390 10 6452 1 2025-11-24 03:30:15.849 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:44794 10 6452 1 2025-11-24 03:31:16.289 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:60962 10 6452 1 2025-11-24 03:32:03.403 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 03:32:03.403 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 03:32:03.357 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 03:32:03.400 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 03:32:03.482 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 03:28:05.367 00:05:00.969 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 03:32:16.709 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:50380 10 6452 1 2025-11-24 03:29:05.370 00:05:00.965 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 03:33:17.120 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:52066 10 6452 1 2025-11-24 03:34:17.483 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:50552 10 6452 1 2025-11-24 03:35:17.891 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:43836 10 6452 1 2025-11-24 03:36:18.320 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:42758 10 6452 1 2025-11-24 03:37:03.548 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 03:37:03.377 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 03:37:03.544 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 03:37:03.388 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 03:37:03.466 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 03:37:18.720 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:58200 10 6452 1 2025-11-24 03:34:05.369 00:05:00.970 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 03:38:19.134 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:41490 10 6452 1 2025-11-24 03:35:05.373 00:05:00.965 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 03:39:19.497 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:60976 12 6556 1 2025-11-24 03:40:19.903 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:38212 10 6452 1 2025-11-24 03:41:20.316 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46198 10 6452 1 2025-11-24 03:42:03.783 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 03:42:03.783 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 03:42:03.849 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 03:42:03.848 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 03:42:03.932 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 03:42:20.719 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:59720 10 6452 1 2025-11-24 03:43:21.141 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:59910 10 6452 1 2025-11-24 03:40:05.374 00:05:00.971 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 03:44:21.503 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:35910 10 6452 1 2025-11-24 03:41:05.378 00:05:00.966 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 03:45:21.905 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40738 10 6452 1 2025-11-24 03:46:22.313 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:45434 10 6452 1 2025-11-24 03:47:03.718 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 03:47:03.634 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 03:47:03.628 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 03:47:03.590 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 03:47:03.635 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 03:47:22.689 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:37148 10 6452 1 2025-11-24 03:48:23.104 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:51166 10 6452 1 2025-11-24 03:49:23.462 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:33788 10 6452 1 2025-11-24 03:46:05.376 00:05:00.970 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 03:50:23.864 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:33684 10 6452 1 2025-11-24 03:47:05.378 00:05:00.966 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 03:51:24.278 00:00:10.434 TCP 1.101.0.1:3000 -> 23.104.0.1:48296 12 10375 1 2025-11-24 03:52:03.583 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 03:52:03.652 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 03:52:03.626 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 03:52:03.703 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 03:52:03.785 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 03:52:24.751 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:59288 10 6452 1 2025-11-24 03:53:25.115 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:34638 10 6452 1 2025-11-24 03:54:25.481 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:44120 10 6452 1 2025-11-24 03:55:25.887 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:35412 10 6452 1 2025-11-24 03:52:05.379 00:05:00.970 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 03:56:26.304 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:38658 10 6452 1 2025-11-24 03:57:03.881 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 03:57:03.740 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 03:57:03.713 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 03:57:03.848 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 03:57:03.802 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 03:53:05.382 00:05:00.965 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 03:57:26.708 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:52148 10 6452 1 2025-11-24 03:58:27.112 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:47172 10 6452 1 Summary: total flows: 140, total bytes: 428867, total packets: 1028, avg bps: 944, avg pps: 0, avg bpp: 417 Time window: 2025-11-24 02:58:05 - 2025-11-24 03:58:37 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0046s User: 0.0015s Wall: 0.0024s flows/second: 58696.8 Runtime: 0.0024s