Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-24 12:58:41.557 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42516 10 6452 1 2025-11-24 12:59:41.964 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:35418 10 6452 1 2025-11-24 13:00:42.365 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:59148 10 6452 1 2025-11-24 13:01:42.733 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:33770 11 6492 1 2025-11-24 12:58:05.564 00:05:01.006 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 13:02:14.781 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 13:02:14.689 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 13:02:14.800 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 13:02:14.704 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 13:02:14.786 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 13:02:43.141 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37980 10 6452 1 2025-11-24 12:59:05.569 00:05:00.999 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 13:03:43.547 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48374 10 6452 1 2025-11-24 13:04:43.958 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:59970 10 6452 1 2025-11-24 13:05:44.361 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:58808 10 6452 1 2025-11-24 13:06:44.739 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:33178 10 6452 1 2025-11-24 13:07:14.808 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 13:07:14.811 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 13:07:14.484 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 13:07:14.907 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 13:07:14.990 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 13:07:45.147 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:53032 10 6452 1 2025-11-24 13:04:05.572 00:05:00.999 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 13:08:45.513 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:40518 10 6452 1 2025-11-24 13:05:05.574 00:05:00.994 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 13:09:45.913 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:38214 10 6452 1 2025-11-24 13:10:46.282 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:45108 10 6452 1 2025-11-24 13:11:46.638 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:55054 10 6452 1 2025-11-24 13:12:14.542 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 13:12:14.936 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 13:12:15.020 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 13:12:15.009 00:00:00.031 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 13:12:15.022 00:00:00.033 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 13:12:47.006 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:33866 10 6452 1 2025-11-24 13:13:47.409 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45304 10 6452 1 2025-11-24 13:10:05.573 00:05:01.001 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 13:14:47.815 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:53032 10 6452 1 2025-11-24 13:11:05.575 00:05:00.995 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 13:15:48.221 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:58196 10 6452 1 2025-11-24 13:16:48.650 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52476 10 6452 1 2025-11-24 13:17:14.908 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 13:17:15.215 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 13:17:15.164 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 13:17:15.082 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 13:17:15.133 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 13:17:49.064 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56690 10 6452 1 2025-11-24 13:18:49.470 00:00:10.397 TCP 1.101.0.1:3000 -> 23.104.0.1:57206 10 6452 1 2025-11-24 13:19:49.910 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:50120 10 6452 1 2025-11-24 13:16:05.575 00:05:01.000 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 13:20:50.319 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:53956 10 6452 1 2025-11-24 13:17:05.578 00:05:00.995 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 13:21:50.717 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:38154 10 6452 1 2025-11-24 13:22:14.848 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 13:22:15.006 00:00:00.034 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 13:22:15.196 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 13:22:15.125 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 13:22:15.208 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 13:22:51.109 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42418 10 6452 1 2025-11-24 13:23:51.513 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42822 10 6452 1 2025-11-24 13:24:51.934 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:48308 10 6452 1 2025-11-24 13:25:52.348 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:39692 10 6452 1 2025-11-24 13:22:05.575 00:05:01.000 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 13:26:52.761 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:37092 10 6452 1 2025-11-24 13:23:05.578 00:05:00.995 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 13:27:15.117 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 13:27:15.114 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 13:27:15.185 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 13:27:15.428 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 13:27:15.511 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 13:27:53.153 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55198 10 6452 1 2025-11-24 13:28:53.563 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37722 10 6452 1 2025-11-24 13:29:53.968 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34014 10 6452 1 2025-11-24 13:30:54.370 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48610 10 6452 1 2025-11-24 13:28:05.579 00:05:00.999 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 13:31:54.773 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:53988 10 6452 1 2025-11-24 13:32:15.405 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 13:32:15.459 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 13:32:15.190 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 13:32:15.404 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 13:32:15.486 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 13:32:55.195 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:51974 10 6452 1 2025-11-24 13:29:05.580 00:05:00.994 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 13:33:55.624 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53668 10 6452 1 2025-11-24 13:34:56.031 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49386 10 6452 1 2025-11-24 13:35:56.436 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:35528 10 6452 1 2025-11-24 13:36:56.801 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:40078 10 6452 1 2025-11-24 13:37:15.597 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 13:37:15.495 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 13:37:15.505 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 13:37:15.577 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 13:37:15.514 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 13:34:05.579 00:05:01.002 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 13:37:57.174 00:00:19.704 TCP 1.101.0.1:3000 -> 23.104.0.1:33736 10 6452 1 2025-11-24 13:35:05.581 00:05:00.996 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 13:39:06.939 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:35462 10 6452 1 2025-11-24 13:40:07.365 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:41078 10 6452 1 2025-11-24 13:41:07.725 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:35748 10 6452 1 2025-11-24 13:42:15.984 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 13:42:15.822 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 13:42:15.722 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 13:42:15.623 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 13:42:08.140 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:56474 10 6452 1 2025-11-24 13:42:15.902 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 13:43:08.545 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:39364 10 6452 1 2025-11-24 13:40:05.580 00:05:01.021 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 13:44:08.913 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:44002 10 6452 1 2025-11-24 13:41:05.584 00:05:01.015 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 13:45:09.323 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55840 10 6452 1 2025-11-24 13:46:09.726 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:36480 10 6452 1 2025-11-24 13:47:15.707 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 13:47:15.635 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 13:47:15.629 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 13:47:15.578 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 13:47:15.624 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 13:47:10.113 00:00:10.408 TCP 1.101.0.1:3000 -> 23.104.0.1:49854 10 6452 1 2025-11-24 13:48:10.556 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45446 10 6452 1 2025-11-24 13:49:10.960 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:39446 10 6452 1 2025-11-24 13:46:05.583 00:05:01.019 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 13:50:11.323 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:37460 10 6452 1 2025-11-24 13:47:05.587 00:05:01.013 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 13:51:11.727 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:39520 10 6452 1 2025-11-24 13:52:15.602 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 13:52:15.783 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 13:52:15.767 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 13:52:15.697 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 13:52:15.685 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 13:52:12.104 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:40848 10 6452 1 2025-11-24 13:53:12.511 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:53924 10 6452 1 2025-11-24 13:54:12.880 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:53202 10 6452 1 2025-11-24 13:55:13.299 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:46350 10 6452 1 2025-11-24 13:52:05.588 00:05:01.023 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 13:56:13.673 00:00:10.815 TCP 1.101.0.1:3000 -> 23.104.0.1:41192 10 6452 1 2025-11-24 13:53:05.591 00:05:01.017 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 13:57:16.273 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 13:57:16.158 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 13:57:16.157 00:00:00.026 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 13:57:15.780 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 13:57:16.190 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 13:57:14.527 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:53196 10 6452 1 2025-11-24 13:58:14.893 00:00:10.342 TCP 1.101.0.1:3000 -> 23.104.0.1:48128 10 6452 1 Summary: total flows: 140, total bytes: 417040, total packets: 1021, avg bps: 921, avg pps: 0, avg bpp: 408 Time window: 2025-11-24 12:58:05 - 2025-11-24 13:58:25 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0049s User: 0.0008s Wall: 0.0020s flows/second: 70815.6 Runtime: 0.0020s