Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-24 15:59:07.740 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:41340 10 6452 1 2025-11-24 16:00:08.122 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60022 10 6452 1 2025-11-24 16:01:08.526 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:46952 10 6452 1 2025-11-24 15:58:05.633 00:05:01.053 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 16:02:18.332 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 16:02:18.256 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 16:02:18.193 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 16:02:08.883 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:58100 10 6452 1 2025-11-24 16:02:18.324 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 16:02:18.407 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 15:59:05.638 00:05:01.047 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 16:03:09.304 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49930 10 6452 1 2025-11-24 16:04:09.702 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:47312 10 6452 1 2025-11-24 16:05:10.121 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:54906 10 6452 1 2025-11-24 16:06:10.522 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44890 10 6452 1 2025-11-24 16:07:18.899 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 16:07:18.642 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 16:07:18.817 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 16:07:18.587 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 16:07:18.778 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 16:07:10.941 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:47650 10 6452 1 2025-11-24 16:04:05.638 00:05:01.051 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 16:08:11.313 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37268 10 6452 1 2025-11-24 16:05:05.639 00:05:01.047 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 16:09:11.720 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:33262 10 6452 1 2025-11-24 16:10:12.137 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33718 10 6452 1 2025-11-24 16:11:12.550 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38426 10 6452 1 2025-11-24 16:12:18.451 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 16:12:18.444 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 16:12:18.481 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 16:12:18.628 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 16:12:18.710 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 16:12:12.948 00:00:16.357 TCP 1.101.0.1:3000 -> 23.104.0.1:38764 10 6452 1 2025-11-24 16:13:19.359 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:56500 10 6452 1 2025-11-24 16:10:05.640 00:05:01.052 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 16:14:19.723 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:35606 10 6452 1 2025-11-24 16:11:05.641 00:05:01.048 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 16:15:20.130 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:39160 10 6452 1 2025-11-24 16:16:20.539 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:42328 10 6452 1 2025-11-24 16:17:18.495 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 16:17:18.664 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 16:17:18.381 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 16:17:18.582 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 16:17:18.666 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 16:17:20.942 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:38138 10 6452 1 2025-11-24 16:18:21.355 00:00:10.472 TCP 1.101.0.1:3000 -> 23.104.0.1:42060 10 6452 1 2025-11-24 16:19:21.862 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:53444 10 6452 1 2025-11-24 16:16:05.639 00:05:01.053 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 16:20:22.279 00:00:11.232 TCP 1.101.0.1:3000 -> 23.104.0.1:37052 10 6452 1 2025-11-24 16:17:05.642 00:05:01.049 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 16:21:23.550 00:00:10.443 TCP 1.101.0.1:3000 -> 23.104.0.1:33962 12 10369 1 2025-11-24 16:22:19.092 00:00:00.040 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 16:22:19.370 00:00:00.028 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 16:22:19.817 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 16:22:18.862 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 16:22:19.009 00:00:00.039 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 16:22:24.032 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34446 10 6452 1 2025-11-24 16:23:24.432 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:57022 10 6452 1 2025-11-24 16:24:24.839 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:35164 10 6452 1 2025-11-24 16:25:25.274 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:39386 10 6452 1 2025-11-24 16:22:05.639 00:05:01.054 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 16:26:25.643 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:59560 10 6452 1 2025-11-24 16:23:05.643 00:05:01.048 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 16:27:18.817 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 16:27:18.626 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 16:27:18.730 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 16:27:18.604 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 16:27:18.735 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 16:27:26.068 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:58772 10 6452 1 2025-11-24 16:28:26.436 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:45880 10 6452 1 2025-11-24 16:29:26.856 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:33684 10 6452 1 2025-11-24 16:30:27.277 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:35370 10 6452 1 2025-11-24 16:31:27.639 00:00:10.444 TCP 1.101.0.1:3000 -> 23.104.0.1:45644 12 10369 1 2025-11-24 16:28:05.640 00:05:01.054 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 16:32:18.901 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 16:32:19.082 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 16:32:18.837 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 16:32:19.181 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 16:32:19.264 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 16:32:28.120 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:44924 10 6452 1 2025-11-24 16:29:05.643 00:05:01.050 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 16:33:28.519 00:00:10.741 TCP 1.101.0.1:3000 -> 23.104.0.1:60284 10 6452 1 2025-11-24 16:34:29.297 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38266 10 6452 1 2025-11-24 16:35:29.704 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:56844 10 6452 1 2025-11-24 16:36:30.115 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:46096 10 6452 1 2025-11-24 16:37:19.139 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 16:37:19.062 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 16:37:18.930 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 16:37:19.227 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 16:37:19.055 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 16:37:30.528 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:41782 10 6452 1 2025-11-24 16:34:05.640 00:05:01.056 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 16:38:30.924 00:00:10.399 TCP 1.101.0.1:3000 -> 23.104.0.1:43148 10 6452 1 2025-11-24 16:35:05.644 00:05:01.051 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 16:39:31.346 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:38938 10 6452 1 2025-11-24 16:40:31.748 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60756 10 6452 1 2025-11-24 16:41:32.148 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48918 10 6452 1 2025-11-24 16:42:19.293 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 16:42:18.931 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 16:42:19.070 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 16:42:19.210 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 16:42:19.216 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 16:42:32.557 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36496 10 6452 1 2025-11-24 16:43:32.962 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43576 10 6452 1 2025-11-24 16:40:05.645 00:05:01.055 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 16:44:33.365 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:39854 10 6452 1 2025-11-24 16:41:05.646 00:05:01.050 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 16:45:33.737 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59558 10 6452 1 2025-11-24 16:46:34.142 00:00:10.442 TCP 1.101.0.1:3000 -> 23.104.0.1:44532 12 10375 1 2025-11-24 16:47:18.559 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 16:47:18.545 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 16:47:18.423 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 16:47:18.550 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 16:47:18.634 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 16:47:34.637 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:48900 10 6452 1 2025-11-24 16:48:35.032 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50262 10 6452 1 2025-11-24 16:49:35.438 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:48092 10 6452 1 2025-11-24 16:46:05.645 00:05:01.055 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 16:50:35.812 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:48972 10 6452 1 2025-11-24 16:47:05.649 00:05:01.049 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 16:51:36.183 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:58820 10 6452 1 2025-11-24 16:52:19.502 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 16:52:19.420 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 16:52:19.435 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 16:52:19.489 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 16:52:19.452 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 16:52:36.593 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54678 10 6452 1 2025-11-24 16:53:37.001 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:48238 10 6452 1 2025-11-24 16:54:37.404 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:33356 10 6452 1 2025-11-24 16:55:37.768 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:33828 10 6452 1 2025-11-24 16:52:05.648 00:05:01.062 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 16:56:38.131 00:00:11.900 TCP 1.101.0.1:3000 -> 23.104.0.1:37064 10 6452 1 2025-11-24 16:53:05.651 00:05:01.049 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 16:57:19.605 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 16:57:19.652 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 16:57:19.360 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 16:57:19.690 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 16:57:19.772 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 16:57:40.089 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:37966 10 6452 1 Summary: total flows: 139, total bytes: 422305, total packets: 1016, avg bps: 938, avg pps: 0, avg bpp: 415 Time window: 2025-11-24 15:58:05 - 2025-11-24 16:58:06 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0035s User: 0.0018s Wall: 0.0026s flows/second: 54172.9 Runtime: 0.0026s