Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-24 08:59:00.654 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:42754 10 6452 1 2025-11-24 09:00:01.061 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:33026 10 6452 1 2025-11-24 09:01:01.423 00:00:10.440 TCP 1.101.0.1:3000 -> 23.104.0.1:37352 12 10375 1 2025-11-24 08:58:05.482 00:05:00.995 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 09:02:10.394 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 09:02:10.151 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 09:02:10.361 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 09:02:10.163 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 09:02:01.899 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:59056 12 6556 1 2025-11-24 09:02:10.310 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 08:59:05.485 00:05:00.989 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 09:03:02.327 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49652 10 6452 1 2025-11-24 09:04:02.732 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:47858 10 6452 1 2025-11-24 09:05:03.136 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:39320 10 6452 1 2025-11-24 09:06:03.537 00:00:10.502 TCP 1.101.0.1:3000 -> 23.104.0.1:41998 10 6452 1 2025-11-24 09:07:09.964 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 09:07:09.719 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 09:07:09.880 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 09:07:10.124 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 09:07:10.119 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 09:07:04.108 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:44794 10 6452 1 2025-11-24 09:04:05.483 00:05:00.995 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 09:08:04.464 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:55548 10 6452 1 2025-11-24 09:05:05.486 00:05:00.990 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 09:09:04.832 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:44278 10 6452 1 2025-11-24 09:10:05.244 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:50304 10 6452 1 2025-11-24 09:11:05.606 00:00:10.794 TCP 1.101.0.1:3000 -> 23.104.0.1:56680 10 6452 1 2025-11-24 09:12:09.754 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 09:12:10.265 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 09:12:10.066 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 09:12:10.063 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 09:12:10.183 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 09:12:06.437 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:37014 10 6452 1 2025-11-24 09:13:06.842 00:00:31.263 TCP 1.101.0.1:3000 -> 23.104.0.1:60386 10 6452 1 2025-11-24 09:10:05.485 00:05:00.994 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 09:14:28.180 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:45606 10 6452 1 2025-11-24 09:11:05.489 00:05:00.989 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 09:15:28.581 00:00:10.760 TCP 1.101.0.1:3000 -> 23.104.0.1:38822 10 6452 1 2025-11-24 09:16:29.375 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41912 10 6452 1 2025-11-24 09:17:10.471 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 09:17:10.407 00:00:00.026 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 09:17:10.272 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 09:17:10.322 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 09:17:10.404 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 09:17:29.779 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:48948 10 6452 1 2025-11-24 09:18:30.188 00:00:10.317 TCP 1.101.0.1:3000 -> 23.104.0.1:37084 10 6452 1 2025-11-24 09:19:30.550 00:00:10.939 TCP 1.101.0.1:3000 -> 23.104.0.1:34916 10 6452 1 2025-11-24 09:16:05.490 00:05:00.990 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 09:20:31.528 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:51976 10 6452 1 2025-11-24 09:17:05.492 00:05:00.985 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 09:21:31.890 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:41488 12 6556 1 2025-11-24 09:22:10.360 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 09:22:10.417 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 09:22:10.222 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 09:22:10.407 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 09:22:10.491 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 09:22:32.300 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41154 10 6452 1 2025-11-24 09:23:32.703 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44024 10 6452 1 2025-11-24 09:24:33.114 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:60716 10 6452 1 2025-11-24 09:25:33.517 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:49688 10 6452 1 2025-11-24 09:22:05.491 00:05:00.990 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 09:26:33.933 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:42522 10 6452 1 2025-11-24 09:23:05.494 00:05:00.984 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 09:27:10.356 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 09:27:10.453 00:00:00.032 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 09:27:10.380 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 09:27:10.416 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 09:27:10.273 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 09:27:34.363 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39922 10 6452 1 2025-11-24 09:28:34.767 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:52578 10 6452 1 2025-11-24 09:29:35.140 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:45614 10 6452 1 2025-11-24 09:30:35.539 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:36310 10 6452 1 2025-11-24 09:31:35.896 00:00:10.446 TCP 1.101.0.1:3000 -> 23.104.0.1:45670 14 10479 1 2025-11-24 09:28:05.495 00:05:00.986 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 09:32:10.642 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 09:32:10.493 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 09:32:10.496 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 09:32:10.368 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 09:32:10.560 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 09:32:36.382 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:42644 10 6452 1 2025-11-24 09:29:05.499 00:05:00.981 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 09:33:36.746 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:46248 10 6452 1 2025-11-24 09:34:37.147 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34278 10 6452 1 2025-11-24 09:35:37.560 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:50426 10 6452 1 2025-11-24 09:36:37.967 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:49104 10 6452 1 2025-11-24 09:37:10.727 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 09:37:10.642 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 09:37:10.463 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 09:37:10.671 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 09:37:10.644 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 09:37:38.374 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43544 10 6452 1 2025-11-24 09:34:05.498 00:05:00.988 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 09:38:38.774 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:36994 10 6452 1 2025-11-24 09:35:05.500 00:05:01.005 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 09:39:39.183 00:00:10.877 TCP 1.101.0.1:3000 -> 23.104.0.1:34632 10 6452 1 2025-11-24 09:40:40.116 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:37912 10 6452 1 2025-11-24 09:41:40.533 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:60238 10 6452 1 2025-11-24 09:42:10.986 00:00:00.035 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 09:42:11.536 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 09:42:10.904 00:00:00.046 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 09:42:11.382 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 09:42:10.904 00:00:00.034 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 09:42:40.944 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:53478 10 6452 1 2025-11-24 09:43:41.367 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58606 10 6452 1 2025-11-24 09:40:05.499 00:05:00.991 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 09:44:41.777 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:34490 10 6452 1 2025-11-24 09:41:05.502 00:05:00.986 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 09:45:42.152 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:37210 10 6452 1 2025-11-24 09:46:42.554 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:54554 10 6452 1 2025-11-24 09:47:10.857 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 09:47:10.670 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 09:47:10.659 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 09:47:10.628 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 09:47:10.775 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 09:47:42.916 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47014 10 6452 1 2025-11-24 09:48:43.318 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35448 10 6452 1 2025-11-24 09:49:43.728 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:48358 10 6452 1 2025-11-24 09:46:05.502 00:05:00.990 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 09:50:44.133 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:45920 10 6452 1 2025-11-24 09:47:05.505 00:05:00.985 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 09:51:44.540 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44608 10 6452 1 2025-11-24 09:52:10.958 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 09:52:10.874 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 09:52:10.875 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 09:52:10.896 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 09:52:10.876 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 09:52:44.940 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:47722 10 6452 1 2025-11-24 09:53:45.365 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:50392 10 6452 1 2025-11-24 09:54:45.766 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:40090 10 6452 1 2025-11-24 09:55:46.202 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:57486 10 6452 1 2025-11-24 09:52:05.503 00:05:00.991 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 09:56:46.562 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37886 10 6452 1 2025-11-24 09:53:05.509 00:05:00.983 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 09:57:11.105 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 09:57:11.107 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 09:57:10.855 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 09:57:10.862 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 09:57:10.945 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 09:57:46.962 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54338 10 6452 1 Summary: total flows: 139, total bytes: 418706, total packets: 1020, avg bps: 930, avg pps: 0, avg bpp: 410 Time window: 2025-11-24 08:58:05 - 2025-11-24 09:58:06 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0031s User: 0.0021s Wall: 0.0024s flows/second: 58895.7 Runtime: 0.0024s