Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-24 11:58:59.519 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:39500 10 6452 1 2025-11-24 11:59:59.891 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:32880 12 6556 1 2025-11-24 12:01:00.312 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:39826 10 6452 1 2025-11-24 11:58:05.545 00:05:01.012 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 12:02:13.469 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 12:02:13.476 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 12:02:13.487 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 12:02:13.323 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 12:02:13.406 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 12:02:00.679 00:00:26.350 TCP 1.101.0.1:3000 -> 23.104.0.1:45688 10 6452 1 2025-11-24 11:59:05.548 00:05:01.006 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 12:03:17.113 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:50328 10 6452 1 2025-11-24 12:04:17.511 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57670 10 6452 1 2025-11-24 12:05:17.918 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:39746 10 6452 1 2025-11-24 12:06:18.321 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43652 10 6452 1 2025-11-24 12:07:13.752 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 12:07:13.762 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 12:07:13.506 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 12:07:13.539 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 12:07:13.669 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 12:07:18.726 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:41864 10 6452 1 2025-11-24 12:04:05.546 00:05:01.011 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 12:08:19.110 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:56046 10 6452 1 2025-11-24 12:05:05.552 00:05:01.003 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 12:09:19.474 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:52638 10 6452 1 2025-11-24 12:10:19.874 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:56744 10 6452 1 2025-11-24 12:11:20.284 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:38694 10 6452 1 2025-11-24 12:12:14.002 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 12:12:13.788 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 12:12:13.705 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 12:12:13.707 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 12:12:13.919 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 12:12:20.726 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:46566 10 6452 1 2025-11-24 12:13:21.143 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:42622 10 6452 1 2025-11-24 12:10:05.548 00:05:01.011 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 12:14:21.524 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:44504 10 6452 1 2025-11-24 12:11:05.549 00:05:01.007 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 12:15:21.937 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:48866 10 6452 1 2025-11-24 12:16:22.355 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59882 10 6452 1 2025-11-24 12:17:13.646 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 12:17:13.740 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 12:17:13.757 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 12:17:13.743 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 12:17:13.826 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 12:17:22.762 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:41940 10 6452 1 2025-11-24 12:18:23.179 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:34268 10 6452 1 2025-11-24 12:19:23.579 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34612 10 6452 1 2025-11-24 12:16:05.548 00:05:01.012 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 12:20:23.984 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:54326 10 6452 1 2025-11-24 12:17:05.550 00:05:01.008 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 12:21:24.404 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:35532 10 6452 1 2025-11-24 12:22:13.719 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 12:22:13.725 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 12:22:13.808 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 12:22:13.648 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 12:22:13.802 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 12:22:24.767 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:39090 10 6452 1 2025-11-24 12:23:25.182 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39482 10 6452 1 2025-11-24 12:24:25.586 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:53502 10 6452 1 2025-11-24 12:25:25.998 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:56668 10 6452 1 2025-11-24 12:22:05.548 00:05:01.013 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 12:26:26.357 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:51048 10 6452 1 2025-11-24 12:23:05.551 00:05:01.008 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 12:27:14.152 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 12:27:13.952 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 12:27:14.082 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 12:27:13.984 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 12:27:14.070 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 12:27:26.758 00:00:11.650 TCP 1.101.0.1:3000 -> 23.104.0.1:42342 10 6452 1 2025-11-24 12:28:28.448 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:44728 10 6452 1 2025-11-24 12:29:28.861 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:53820 10 6452 1 2025-11-24 12:30:29.274 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:38126 10 6452 1 2025-11-24 12:31:29.683 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:59158 10 6452 1 2025-11-24 12:28:05.554 00:05:01.009 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 12:32:14.341 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 12:32:14.260 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 12:32:14.186 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 12:32:14.216 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 12:32:14.259 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 12:32:30.117 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:51180 10 6452 1 2025-11-24 12:29:05.556 00:05:01.004 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 12:33:30.520 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50672 10 6452 1 2025-11-24 12:34:30.922 00:00:10.398 TCP 1.101.0.1:3000 -> 23.104.0.1:50460 13 6608 1 2025-11-24 12:35:31.355 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54586 10 6452 1 2025-11-24 12:36:31.758 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:54382 10 6452 1 2025-11-24 12:37:14.249 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 12:37:14.541 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 12:37:14.390 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 12:37:14.390 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 12:37:14.625 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 12:37:32.197 00:00:10.423 TCP 1.101.0.1:3000 -> 23.104.0.1:58154 11 6504 1 2025-11-24 12:34:05.556 00:05:01.008 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 12:38:32.665 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48452 10 6452 1 2025-11-24 12:35:05.559 00:05:01.003 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 12:39:33.100 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:44770 10 6452 1 2025-11-24 12:40:33.506 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:60540 10 6452 1 2025-11-24 12:41:33.914 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:38832 10 6452 1 2025-11-24 12:42:14.582 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 12:42:14.569 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 12:42:14.316 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 12:42:14.500 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 12:42:14.493 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 12:42:34.338 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:51944 10 6452 1 2025-11-24 12:43:34.747 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:43916 10 6452 1 2025-11-24 12:40:05.560 00:05:01.006 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 12:44:35.117 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:42528 10 6452 1 2025-11-24 12:41:05.563 00:05:01.001 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 12:45:35.527 00:00:10.416 TCP 1.101.0.1:3000 -> 23.104.0.1:48902 10 6452 1 2025-11-24 12:46:35.986 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54230 10 6452 1 2025-11-24 12:47:14.717 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 12:47:14.581 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 12:47:14.639 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 12:47:14.308 00:00:00.027 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 12:47:14.636 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 12:47:36.395 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43650 10 6452 1 2025-11-24 12:48:36.795 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:56566 10 6452 1 2025-11-24 12:49:37.207 00:00:10.978 TCP 1.101.0.1:3000 -> 23.104.0.1:53158 10 6452 1 2025-11-24 12:46:05.561 00:05:01.007 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 12:50:38.223 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:33994 10 6452 1 2025-11-24 12:47:05.564 00:05:01.002 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 12:51:38.629 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53230 10 6452 1 2025-11-24 12:52:14.596 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 12:52:14.586 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 12:52:14.646 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 12:52:14.537 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 12:52:14.513 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 12:52:39.038 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59622 10 6452 1 2025-11-24 12:53:39.440 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42584 10 6452 1 2025-11-24 12:54:39.839 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:41160 10 6452 1 2025-11-24 12:55:40.255 00:00:10.471 TCP 1.101.0.1:3000 -> 23.104.0.1:57344 14 14298 1 2025-11-24 12:52:05.562 00:05:01.007 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 12:56:40.776 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:49244 10 6452 1 2025-11-24 12:53:05.566 00:05:01.001 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 12:57:14.646 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 12:57:14.738 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 12:57:14.575 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 12:57:14.575 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 12:57:14.658 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 12:57:41.183 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:45584 10 6452 1 Summary: total flows: 139, total bytes: 418706, total packets: 1020, avg bps: 930, avg pps: 0, avg bpp: 410 Time window: 2025-11-24 11:58:05 - 2025-11-24 12:58:06 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0039s User: 0.0019s Wall: 0.0021s flows/second: 67112.7 Runtime: 0.0021s