Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-24 10:59:15.015 00:00:10.608 TCP 1.101.0.1:3000 -> 23.104.0.1:33914 10 6452 1 2025-11-24 11:00:15.697 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36058 12 6556 1 2025-11-24 11:01:16.112 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51500 10 6452 1 2025-11-24 10:58:05.526 00:05:00.999 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 11:02:12.150 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 11:02:12.137 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 11:02:12.363 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 11:02:12.242 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 11:02:12.325 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 11:02:16.521 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:50534 10 6452 1 2025-11-24 10:59:05.530 00:05:00.993 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 11:03:16.885 00:00:10.349 TCP 1.101.0.1:3000 -> 23.104.0.1:52740 10 6452 1 2025-11-24 11:04:17.276 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:42356 10 6452 1 2025-11-24 11:05:17.630 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58328 10 6452 1 2025-11-24 11:06:18.039 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59258 10 6452 1 2025-11-24 11:07:12.270 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 11:07:12.359 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 11:07:12.310 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 11:07:12.365 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 11:07:12.447 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 11:07:18.444 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:46202 10 6452 1 2025-11-24 11:04:05.527 00:05:01.006 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 11:08:18.861 00:00:18.179 TCP 1.101.0.1:3000 -> 23.104.0.1:41686 10 6452 1 2025-11-24 11:05:05.530 00:05:01.000 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 11:09:27.100 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41770 10 6452 1 2025-11-24 11:10:27.502 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57746 10 6452 1 2025-11-24 11:11:27.901 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:59086 10 6452 1 2025-11-24 11:12:12.500 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 11:12:12.432 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 11:12:12.574 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 11:12:12.272 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 11:12:12.582 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 11:12:28.312 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50008 10 6452 1 2025-11-24 11:13:28.718 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:59484 10 6452 1 2025-11-24 11:10:05.529 00:05:01.008 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 11:14:29.138 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60224 10 6452 1 2025-11-24 11:11:05.532 00:05:01.003 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 11:15:29.544 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:34888 10 6452 1 2025-11-24 11:16:29.911 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59914 10 6452 1 2025-11-24 11:17:13.111 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 11:17:12.531 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 11:17:12.829 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 11:17:12.721 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 11:17:12.803 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 11:17:30.317 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:57942 10 6452 1 2025-11-24 11:18:30.716 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:45278 10 6452 1 2025-11-24 11:19:31.145 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38040 10 6452 1 2025-11-24 11:16:05.530 00:05:01.007 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 11:20:31.551 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:45686 10 6452 1 2025-11-24 11:17:05.534 00:05:01.001 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 11:21:31.964 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50300 10 6452 1 2025-11-24 11:22:12.792 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 11:22:12.776 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 11:22:12.708 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 11:22:12.568 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 11:22:12.709 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 11:22:32.362 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:43476 10 6452 1 2025-11-24 11:23:32.762 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:41860 10 6452 1 2025-11-24 11:24:33.140 00:00:11.081 TCP 1.101.0.1:3000 -> 23.104.0.1:46900 10 6452 1 2025-11-24 11:25:34.264 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52476 10 6452 1 2025-11-24 11:22:05.537 00:05:01.002 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 11:26:34.669 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:32990 10 6452 1 2025-11-24 11:23:05.539 00:05:00.998 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 11:27:12.835 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 11:27:12.825 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 11:27:12.783 00:00:00.019 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 11:27:12.745 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 11:27:12.828 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 11:27:35.037 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:43062 10 6452 1 2025-11-24 11:28:35.445 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:41942 10 6452 1 2025-11-24 11:29:35.854 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:44998 10 6452 1 2025-11-24 11:30:36.279 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:42886 10 6452 1 2025-11-24 11:31:36.689 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:35634 10 6452 1 2025-11-24 11:28:05.538 00:05:01.003 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 11:32:12.923 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 11:32:12.920 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 11:32:12.883 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 11:32:12.839 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 11:32:13.032 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 11:32:37.113 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45090 10 6452 1 2025-11-24 11:29:05.540 00:05:00.998 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 11:33:37.517 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:39968 10 6452 1 2025-11-24 11:34:37.923 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:34224 10 6452 1 2025-11-24 11:35:38.344 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40406 10 6452 1 2025-11-24 11:36:38.745 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:55294 10 6452 1 2025-11-24 11:37:13.097 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 11:37:13.104 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 11:37:12.760 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 11:37:12.919 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 11:37:13.001 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 11:37:39.150 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55252 10 6452 1 2025-11-24 11:34:05.539 00:05:01.006 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 11:38:39.553 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55412 10 6452 1 2025-11-24 11:35:05.542 00:05:01.001 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 11:39:39.960 00:00:11.051 TCP 1.101.0.1:3000 -> 23.104.0.1:42290 10 6452 1 2025-11-24 11:40:41.065 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:49168 10 6452 1 2025-11-24 11:41:41.432 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33038 10 6452 1 2025-11-24 11:42:13.156 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 11:42:13.151 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 11:42:13.198 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 11:42:12.979 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 11:42:13.074 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 11:42:41.835 00:00:10.352 TCP 1.101.0.1:3000 -> 23.104.0.1:54908 10 6452 1 2025-11-24 11:43:42.222 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:51004 10 6452 1 2025-11-24 11:40:05.541 00:05:01.011 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 11:44:42.627 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45742 10 6452 1 2025-11-24 11:41:05.543 00:05:01.006 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 11:45:43.030 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39434 10 6452 1 2025-11-24 11:46:43.436 00:00:20.559 TCP 1.101.0.1:3000 -> 23.104.0.1:45268 10 6452 1 2025-11-24 11:47:13.248 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 11:47:13.312 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 11:47:12.969 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 11:47:13.216 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 11:47:13.299 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 11:47:54.061 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:43552 10 6452 1 2025-11-24 11:48:54.465 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:39696 10 6452 1 2025-11-24 11:49:54.830 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:47200 10 6452 1 2025-11-24 11:46:05.542 00:05:01.012 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 11:47:05.544 00:05:01.007 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 11:50:55.209 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58320 10 6452 1 2025-11-24 11:52:13.289 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 11:51:55.609 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:40160 10 6452 1 2025-11-24 11:52:13.426 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 11:52:13.379 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 11:52:13.441 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 11:52:13.207 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 11:52:55.967 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38336 10 6452 1 2025-11-24 11:53:56.373 00:00:11.355 TCP 1.101.0.1:3000 -> 23.104.0.1:43004 10 6452 1 2025-11-24 11:54:57.770 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:44566 10 6452 1 2025-11-24 11:52:05.543 00:05:01.013 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 11:55:58.191 00:00:10.439 TCP 1.101.0.1:3000 -> 23.104.0.1:57424 12 10369 1 2025-11-24 11:56:58.670 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37576 10 6452 1 2025-11-24 11:53:05.544 00:05:01.008 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 11:57:13.502 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 11:57:13.365 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 11:57:13.425 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 11:57:13.159 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 11:57:13.420 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 11:57:59.114 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42804 10 6452 1 Summary: total flows: 139, total bytes: 414569, total packets: 1014, avg bps: 920, avg pps: 0, avg bpp: 408 Time window: 2025-11-24 10:58:05 - 2025-11-24 11:58:09 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0048s User: 0.0019s Wall: 0.0021s flows/second: 65169.7 Runtime: 0.0022s