Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-24 09:58:47.363 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39186 10 6452 1 2025-11-24 09:59:47.761 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:45476 10 6452 1 2025-11-24 10:00:48.122 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39234 10 6452 1 2025-11-24 10:01:48.528 00:00:10.317 TCP 1.101.0.1:3000 -> 23.104.0.1:60932 10 6452 1 2025-11-24 09:58:05.507 00:05:00.990 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 10:02:11.200 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 10:02:11.388 00:00:00.027 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 10:02:10.837 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 10:02:10.867 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 10:02:11.117 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 10:02:48.882 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37718 10 6452 1 2025-11-24 09:59:05.511 00:05:00.984 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 10:03:49.289 00:00:10.415 TCP 1.101.0.1:3000 -> 23.104.0.1:35706 11 6504 1 2025-11-24 10:04:49.745 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51904 10 6452 1 2025-11-24 10:05:50.155 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:53634 10 6452 1 2025-11-24 10:06:50.521 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:42706 10 6452 1 2025-11-24 10:07:11.266 00:00:00.037 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 10:07:11.176 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 10:07:11.199 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 10:07:11.160 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 10:07:11.262 00:00:00.009 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 10:07:50.928 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:55472 10 6452 1 2025-11-24 10:04:05.510 00:05:00.987 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 10:08:51.350 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:35122 10 6452 1 2025-11-24 10:05:05.513 00:05:00.982 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 10:09:51.754 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:52486 10 6452 1 2025-11-24 10:10:52.162 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:33318 10 6452 1 2025-11-24 10:11:52.568 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:46510 10 6452 1 2025-11-24 10:12:11.364 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 10:12:11.284 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 10:12:11.427 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 10:12:11.254 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 10:12:11.282 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 10:12:52.985 00:00:10.342 TCP 1.101.0.1:3000 -> 23.104.0.1:50840 10 6452 1 2025-11-24 10:13:53.365 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:50970 10 6452 1 2025-11-24 10:10:05.511 00:05:00.987 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 10:14:53.734 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:37884 10 6452 1 2025-11-24 10:11:05.514 00:05:00.983 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 10:15:54.141 00:00:10.444 TCP 1.101.0.1:3000 -> 23.104.0.1:60178 12 10369 1 2025-11-24 10:16:54.622 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:35214 10 6452 1 2025-11-24 10:17:11.358 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 10:17:11.428 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 10:17:11.286 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 10:17:11.473 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 10:17:11.558 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 10:17:54.990 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:58006 10 6452 1 2025-11-24 10:18:55.404 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:55870 10 6452 1 2025-11-24 10:16:05.512 00:05:00.987 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 10:19:55.811 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36862 10 6452 1 2025-11-24 10:17:05.515 00:05:00.982 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 10:20:56.214 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37982 10 6452 1 2025-11-24 10:21:56.614 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39362 10 6452 1 2025-11-24 10:22:11.474 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 10:22:11.585 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 10:22:11.609 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 10:22:11.585 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 10:22:11.668 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 10:22:57.023 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:45664 10 6452 1 2025-11-24 10:23:57.423 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37672 10 6452 1 2025-11-24 10:24:57.833 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:39244 10 6452 1 2025-11-24 10:22:05.514 00:05:00.987 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 10:25:58.250 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41700 10 6452 1 2025-11-24 10:27:11.674 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 10:23:05.517 00:05:00.981 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 10:26:58.655 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:58164 10 6452 1 2025-11-24 10:27:11.712 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 10:27:11.644 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 10:27:11.512 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 10:27:11.591 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 10:27:59.068 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42958 10 6452 1 2025-11-24 10:28:59.472 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:45364 10 6452 1 2025-11-24 10:29:59.877 00:00:10.601 TCP 1.101.0.1:3000 -> 23.104.0.1:33552 10 6452 1 2025-11-24 10:31:00.518 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:58224 10 6452 1 2025-11-24 10:32:11.689 00:00:00.028 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 10:32:11.824 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 10:32:11.628 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 10:32:11.680 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 10:32:00.922 00:00:10.317 TCP 1.101.0.1:3000 -> 23.104.0.1:33568 10 6452 1 2025-11-24 10:28:05.516 00:05:00.985 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 10:32:11.763 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 10:29:05.519 00:05:00.980 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 10:33:01.278 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47730 12 6556 1 2025-11-24 10:34:01.680 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54782 10 6452 1 2025-11-24 10:35:02.109 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:48832 10 6452 1 2025-11-24 10:36:02.511 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60818 10 6452 1 2025-11-24 10:37:11.733 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 10:37:11.729 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 10:37:11.802 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 10:37:11.756 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 10:37:11.814 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 10:37:02.914 00:00:13.361 TCP 1.101.0.1:3000 -> 23.104.0.1:46924 10 6452 1 2025-11-24 10:34:05.520 00:05:00.994 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 10:38:06.378 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:45788 10 6452 1 2025-11-24 10:35:05.523 00:05:00.989 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 10:39:06.781 00:00:10.450 TCP 1.101.0.1:3000 -> 23.104.0.1:58864 10 6452 1 2025-11-24 10:40:07.269 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:51096 10 6452 1 2025-11-24 10:41:07.672 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59080 10 6452 1 2025-11-24 10:42:11.915 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 10:42:11.917 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 10:42:11.571 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 10:42:11.916 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 10:42:12.000 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 10:42:08.097 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:35090 10 6452 1 2025-11-24 10:43:08.499 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:43568 10 6452 1 2025-11-24 10:40:05.522 00:05:00.993 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 10:44:08.901 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:38300 10 6452 1 2025-11-24 10:41:05.524 00:05:00.988 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 10:45:09.316 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:44222 10 6452 1 2025-11-24 10:46:09.726 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:35232 10 6452 1 2025-11-24 10:47:11.945 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 10:47:12.063 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 10:47:11.880 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 10:47:11.847 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 10:47:11.930 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 10:47:10.135 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50764 10 6452 1 2025-11-24 10:48:10.542 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35462 10 6452 1 2025-11-24 10:49:10.949 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42058 10 6452 1 2025-11-24 10:46:05.524 00:05:01.007 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 10:50:11.357 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59078 10 6452 1 2025-11-24 10:47:05.526 00:05:00.991 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 10:51:11.766 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:49740 10 6452 1 2025-11-24 10:52:12.831 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 10:52:12.689 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 10:52:12.807 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 10:52:12.771 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 10:52:12.854 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 10:52:12.186 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35532 10 6452 1 2025-11-24 10:53:12.585 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41504 10 6452 1 2025-11-24 10:54:12.986 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:57776 10 6452 1 2025-11-24 10:55:13.356 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53422 10 6452 1 2025-11-24 10:52:05.528 00:05:00.996 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 10:56:13.758 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:59458 10 6452 1 2025-11-24 10:53:05.527 00:05:00.994 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 10:57:12.575 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 10:57:12.169 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 10:57:12.189 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 10:57:12.493 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 10:57:12.255 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 10:57:14.181 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47860 10 6452 1 2025-11-24 10:58:14.604 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39216 10 6452 1 Summary: total flows: 140, total bytes: 421073, total packets: 1025, avg bps: 930, avg pps: 0, avg bpp: 410 Time window: 2025-11-24 09:58:05 - 2025-11-24 10:58:24 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0043s User: 0.0017s Wall: 0.0020s flows/second: 69797.0 Runtime: 0.0020s