Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-24 14:58:40.911 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44938 10 6452 1 2025-11-24 14:59:41.318 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:49628 10 6452 1 2025-11-24 15:00:41.722 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:35174 10 6452 1 2025-11-24 15:01:42.130 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36092 10 6452 1 2025-11-24 14:58:05.617 00:05:01.041 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 15:02:17.186 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 15:02:17.259 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 15:02:17.309 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 15:02:17.144 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 15:02:17.268 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 15:02:42.534 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:45450 10 6452 1 2025-11-24 14:59:05.619 00:05:01.036 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 15:03:42.935 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:52890 10 6452 1 2025-11-24 15:04:43.357 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:34594 10 6452 1 2025-11-24 15:05:43.763 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:47498 10 6452 1 2025-11-24 15:06:44.184 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:43492 10 6452 1 2025-11-24 15:07:17.307 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 15:07:17.141 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 15:07:17.166 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 15:07:17.135 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 15:07:17.219 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 15:07:44.581 00:00:11.031 TCP 1.101.0.1:3000 -> 23.104.0.1:53934 10 6452 1 2025-11-24 15:04:05.619 00:05:01.041 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 15:08:45.649 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49252 10 6452 1 2025-11-24 15:05:05.622 00:05:01.036 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 15:09:46.065 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:54358 10 6452 1 2025-11-24 15:10:46.467 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:38520 10 6452 1 2025-11-24 15:11:46.867 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:40456 10 6452 1 2025-11-24 15:12:17.282 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 15:12:17.293 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 15:12:17.290 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 15:12:17.387 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 15:12:17.199 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 15:12:47.232 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49142 10 6452 1 2025-11-24 15:13:47.646 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:45316 10 6452 1 2025-11-24 15:10:05.620 00:05:01.041 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 15:14:48.113 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54692 10 6452 1 2025-11-24 15:11:05.624 00:05:01.035 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 15:15:48.515 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:59092 10 6452 1 2025-11-24 15:16:48.882 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:39478 10 6452 1 2025-11-24 15:17:17.454 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 15:17:17.545 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 15:17:17.394 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 15:17:17.387 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 15:17:17.469 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 15:17:49.249 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:45146 10 6452 1 2025-11-24 15:18:49.610 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40378 10 6452 1 2025-11-24 15:19:50.017 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:42572 10 6452 1 2025-11-24 15:16:05.628 00:05:01.038 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 15:20:50.418 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:57220 10 6452 1 2025-11-24 15:17:05.629 00:05:01.034 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 15:21:50.824 00:00:10.859 TCP 1.101.0.1:3000 -> 23.104.0.1:45306 10 6452 1 2025-11-24 15:22:17.643 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 15:22:17.570 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 15:22:17.725 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 15:22:17.177 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 15:22:17.561 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 15:22:51.722 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:34466 10 6452 1 2025-11-24 15:23:52.141 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55494 10 6452 1 2025-11-24 15:24:52.551 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:41838 10 6452 1 2025-11-24 15:25:52.955 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:45220 10 6452 1 2025-11-24 15:22:05.627 00:05:01.040 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 15:26:53.370 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:47876 10 6452 1 2025-11-24 15:23:05.630 00:05:01.035 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 15:27:17.730 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 15:27:17.676 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 15:27:17.529 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 15:27:17.675 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 15:27:17.757 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 15:27:53.742 00:00:10.421 TCP 1.101.0.1:3000 -> 23.104.0.1:54560 11 6504 1 2025-11-24 15:28:54.207 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:56680 10 6452 1 2025-11-24 15:29:54.613 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:47690 10 6452 1 2025-11-24 15:30:55.027 00:00:10.405 TCP 1.101.0.1:3000 -> 23.104.0.1:54818 10 6452 1 2025-11-24 15:28:05.627 00:05:01.040 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 15:31:55.468 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:38234 10 6452 1 2025-11-24 15:32:17.688 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 15:32:17.756 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 15:32:17.811 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 15:32:17.685 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 15:32:17.769 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 15:32:55.832 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:52666 10 6452 1 2025-11-24 15:29:05.629 00:05:01.035 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 15:33:56.258 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58356 10 6452 1 2025-11-24 15:34:56.660 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:60474 10 6452 1 2025-11-24 15:35:57.024 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:57742 10 6452 1 2025-11-24 15:36:57.426 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:53482 10 6452 1 2025-11-24 15:37:17.935 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 15:37:17.853 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 15:37:17.969 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 15:37:17.630 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 15:37:17.853 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 15:37:57.825 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47930 10 6452 1 2025-11-24 15:34:05.629 00:05:01.040 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 15:35:05.631 00:05:01.035 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 15:38:58.228 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58200 10 6452 1 2025-11-24 15:39:58.633 00:00:11.789 TCP 1.101.0.1:3000 -> 23.104.0.1:56772 10 6452 1 2025-11-24 15:41:00.475 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:55658 10 6452 1 2025-11-24 15:42:00.840 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:48974 10 6452 1 2025-11-24 15:42:17.991 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 15:42:18.077 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 15:42:17.911 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 15:42:17.563 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 15:42:17.909 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 15:43:01.260 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:35934 10 6452 1 2025-11-24 15:40:05.630 00:05:01.039 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 15:44:01.660 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56384 10 6452 1 2025-11-24 15:41:05.632 00:05:01.035 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 15:45:02.068 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55868 10 6452 1 2025-11-24 15:46:02.471 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:39448 10 6452 1 2025-11-24 15:47:02.890 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:51394 10 6452 1 2025-11-24 15:47:18.942 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 15:47:19.222 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 15:47:18.810 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 15:47:19.262 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 15:47:19.345 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 15:48:03.310 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:40650 10 6452 1 2025-11-24 15:49:03.671 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48460 10 6452 1 2025-11-24 15:46:05.631 00:05:01.052 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 15:50:04.108 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:38240 10 6452 1 2025-11-24 15:47:05.634 00:05:01.046 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 15:51:04.508 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49500 10 6452 1 2025-11-24 15:52:18.233 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 15:52:18.175 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 15:52:17.721 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 15:52:04.914 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40120 10 6452 1 2025-11-24 15:52:18.116 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 15:52:18.198 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 15:53:05.316 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36062 10 6452 1 2025-11-24 15:54:05.716 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59510 10 6452 1 2025-11-24 15:55:06.120 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45000 10 6452 1 2025-11-24 15:52:05.633 00:05:01.051 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 15:56:06.521 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50022 10 6452 1 2025-11-24 15:53:05.637 00:05:01.046 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 15:57:18.433 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 15:57:18.217 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 15:57:18.459 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 15:57:18.162 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 15:57:06.924 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:50142 10 6452 1 2025-11-24 15:57:18.350 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 15:58:07.334 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49314 10 6452 1 Summary: total flows: 140, total bytes: 417052, total packets: 1021, avg bps: 923, avg pps: 0, avg bpp: 408 Time window: 2025-11-24 14:58:05 - 2025-11-24 15:58:17 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0030s User: 0.0030s Wall: 0.0020s flows/second: 70738.8 Runtime: 0.0020s