Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-24 03:59:27.524 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:35348 10 6452 1 2025-11-24 04:00:27.931 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:55310 10 6452 1 2025-11-24 04:01:28.372 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47394 10 6452 1 2025-11-24 04:02:03.958 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 04:02:03.902 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 04:02:03.633 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 04:02:03.963 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 04:02:04.046 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 03:58:05.381 00:05:00.971 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 04:02:28.772 00:00:10.423 TCP 1.101.0.1:3000 -> 23.104.0.1:34442 11 6504 1 2025-11-24 03:59:05.384 00:05:00.966 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 04:03:29.236 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:48208 10 6452 1 2025-11-24 04:04:29.601 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60004 10 6452 1 2025-11-24 04:05:30.002 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59722 10 6452 1 2025-11-24 04:06:30.400 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59922 10 6452 1 2025-11-24 04:07:03.978 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 04:07:03.807 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 04:07:03.969 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 04:07:03.811 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 04:07:03.895 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 04:07:30.808 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:57074 10 6452 1 2025-11-24 04:04:05.383 00:05:00.971 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 04:08:31.215 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47360 10 6452 1 2025-11-24 04:05:05.385 00:05:00.966 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 04:09:31.619 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:39434 10 6452 1 2025-11-24 04:10:31.987 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:35316 10 6452 1 2025-11-24 04:11:32.358 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53888 10 6452 1 2025-11-24 04:12:04.223 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 04:12:03.824 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 04:12:03.828 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 04:12:04.205 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 04:12:04.140 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 04:12:32.758 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:52124 10 6452 1 2025-11-24 04:13:33.178 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:34108 10 6452 1 2025-11-24 04:10:05.384 00:05:00.970 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 04:14:33.579 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:43170 10 6452 1 2025-11-24 04:11:05.387 00:05:00.965 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 04:15:33.941 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:38440 10 6452 1 2025-11-24 04:16:34.315 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:49412 10 6452 1 2025-11-24 04:17:04.434 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 04:17:04.420 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 04:17:04.424 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 04:17:04.371 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 04:17:04.353 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 04:17:34.683 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:39880 10 6452 1 2025-11-24 04:18:35.105 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:55772 10 6452 1 2025-11-24 04:19:35.525 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36248 10 6452 1 2025-11-24 04:16:05.388 00:05:00.970 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 04:20:35.934 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:46350 10 6452 1 2025-11-24 04:17:05.392 00:05:00.964 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 04:21:36.367 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:46944 10 6452 1 2025-11-24 04:22:04.297 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 04:22:04.406 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 04:22:04.300 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 04:22:03.976 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 04:22:04.380 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 04:22:36.771 00:00:10.773 TCP 1.101.0.1:3000 -> 23.104.0.1:36324 10 6452 1 2025-11-24 04:23:37.584 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:57394 10 6452 1 2025-11-24 04:24:37.950 00:00:10.344 TCP 1.101.0.1:3000 -> 23.104.0.1:40536 10 6452 1 2025-11-24 04:25:38.365 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53394 10 6452 1 2025-11-24 04:22:05.389 00:05:00.970 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 04:26:38.768 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:34302 10 6452 1 2025-11-24 04:27:04.348 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 04:27:04.252 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 04:27:04.431 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 04:27:04.248 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 04:27:04.331 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 04:23:05.392 00:05:00.964 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 04:27:39.141 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45674 10 6452 1 2025-11-24 04:28:39.542 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41228 10 6452 1 2025-11-24 04:29:39.944 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:55616 10 6452 1 2025-11-24 04:30:40.356 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40974 10 6452 1 2025-11-24 04:31:40.758 00:00:11.131 TCP 1.101.0.1:3000 -> 23.104.0.1:36642 10 6452 1 2025-11-24 04:32:04.494 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 04:32:04.334 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 04:32:04.520 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 04:32:04.345 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 04:32:04.428 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 04:28:05.391 00:05:00.969 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 04:32:41.928 00:00:10.393 TCP 1.101.0.1:3000 -> 23.104.0.1:53340 10 6452 1 2025-11-24 04:29:05.394 00:05:00.963 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 04:33:42.360 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43476 10 6452 1 2025-11-24 04:34:42.762 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:56530 10 6452 1 2025-11-24 04:35:43.198 00:00:10.436 TCP 1.101.0.1:3000 -> 23.104.0.1:59274 12 10369 1 2025-11-24 04:36:43.673 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60754 10 6452 1 2025-11-24 04:37:04.678 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 04:37:04.607 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 04:37:04.472 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 04:37:04.594 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 04:37:04.704 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 04:37:44.106 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:34220 10 6452 1 2025-11-24 04:34:05.393 00:05:00.967 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 04:38:44.516 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59584 10 6452 1 2025-11-24 04:35:05.396 00:05:00.962 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 04:39:44.914 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41952 10 6452 1 2025-11-24 04:40:45.320 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54656 10 6452 1 2025-11-24 04:41:45.726 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:45624 10 6452 1 2025-11-24 04:42:04.745 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 04:42:04.751 00:00:00.029 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 04:42:04.833 00:00:00.029 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 04:42:04.988 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 04:42:05.011 00:00:00.027 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 04:42:46.137 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:36684 10 6452 1 2025-11-24 04:43:46.549 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:43460 10 6452 1 2025-11-24 04:40:05.396 00:05:00.965 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 04:44:46.905 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:53140 12 6556 1 2025-11-24 04:41:05.399 00:05:00.960 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 04:45:47.313 00:00:10.437 TCP 1.101.0.1:3000 -> 23.104.0.1:52668 12 10375 1 2025-11-24 04:46:47.789 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33128 10 6452 1 2025-11-24 04:47:04.769 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 04:47:04.714 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 04:47:04.769 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 04:47:04.946 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 04:47:04.851 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 04:47:48.194 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47316 10 6452 1 2025-11-24 04:48:48.598 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39696 10 6452 1 2025-11-24 04:49:49.003 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:44108 10 6452 1 2025-11-24 04:46:05.399 00:05:00.966 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 04:50:49.404 00:00:10.412 TCP 1.101.0.1:3000 -> 23.104.0.1:59388 12 10375 1 2025-11-24 04:47:05.401 00:05:00.961 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 04:52:04.970 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 04:52:04.876 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 04:52:04.613 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 04:51:49.866 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:43634 10 6452 1 2025-11-24 04:52:04.883 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 04:52:04.966 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 04:52:50.280 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:57878 10 6452 1 2025-11-24 04:53:50.685 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44090 10 6452 1 2025-11-24 04:54:51.110 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:38234 10 6452 1 2025-11-24 04:55:51.520 00:00:10.440 TCP 1.101.0.1:3000 -> 23.104.0.1:50762 14 10688 1 2025-11-24 04:52:05.398 00:05:00.969 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 04:57:04.883 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 04:56:51.996 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56920 10 6661 1 2025-11-24 04:57:04.767 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 04:57:04.971 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 04:57:04.850 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 04:53:05.401 00:05:00.963 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 04:57:05.119 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 04:57:52.404 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:58604 10 6661 1 Summary: total flows: 139, total bytes: 427121, total packets: 1023, avg bps: 948, avg pps: 0, avg bpp: 417 Time window: 2025-11-24 03:58:05 - 2025-11-24 04:58:06 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0045s User: 0.0018s Wall: 0.0020s flows/second: 67870.6 Runtime: 0.0021s