Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-24 17:59:04.585 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:36686 10 6452 1 2025-11-24 18:00:04.988 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:43522 10 6452 1 2025-11-24 18:01:05.351 00:00:10.436 TCP 1.101.0.1:3000 -> 23.104.0.1:42268 12 10369 1 2025-11-24 17:58:05.671 00:05:01.044 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 18:02:05.823 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:58716 10 6452 1 2025-11-24 18:02:21.077 00:00:00.032 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 18:02:20.995 00:00:00.047 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 18:02:20.607 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 18:02:20.951 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 18:02:20.994 00:00:00.034 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 17:59:05.674 00:05:01.038 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 18:03:06.186 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53504 10 6452 1 2025-11-24 18:04:06.595 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:58136 10 6452 1 2025-11-24 18:05:06.961 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41260 10 6452 1 2025-11-24 18:06:07.364 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:44868 10 6452 1 2025-11-24 18:07:07.761 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:38798 10 6452 1 2025-11-24 18:07:20.905 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 18:07:20.957 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 18:07:20.502 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 18:07:20.820 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 18:07:20.903 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 18:04:05.674 00:05:01.041 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 18:08:08.130 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37658 10 6452 1 2025-11-24 18:05:05.675 00:05:01.036 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 18:09:08.534 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57648 10 6452 1 2025-11-24 18:10:08.941 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:59792 10 6452 1 2025-11-24 18:11:09.357 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52432 10 6452 1 2025-11-24 18:12:20.964 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 18:12:20.953 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 18:12:20.861 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 18:12:20.958 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 18:12:09.766 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:37224 10 6452 1 2025-11-24 18:12:21.041 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 18:13:10.165 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:33110 10 6452 1 2025-11-24 18:10:05.675 00:05:01.042 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 18:14:10.566 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:40486 10 6452 1 2025-11-24 18:11:05.678 00:05:01.035 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 18:15:10.927 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:57268 12 6556 1 2025-11-24 18:16:11.346 00:00:10.397 TCP 1.101.0.1:3000 -> 23.104.0.1:55906 10 6452 1 2025-11-24 18:17:21.108 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 18:17:21.095 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 18:17:20.963 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 18:17:11.782 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56492 10 6452 1 2025-11-24 18:17:21.098 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 18:17:21.182 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 18:18:12.187 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:36558 10 6452 1 2025-11-24 18:19:12.596 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:48846 10 6452 1 2025-11-24 18:16:05.677 00:05:01.059 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 18:20:12.994 00:00:10.403 TCP 1.101.0.1:3000 -> 23.104.0.1:38438 10 6452 1 2025-11-24 18:17:05.680 00:05:01.054 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 18:21:13.443 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60100 10 6452 1 2025-11-24 18:22:13.845 00:00:10.393 TCP 1.101.0.1:3000 -> 23.104.0.1:56104 10 6452 1 2025-11-24 18:22:20.864 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 18:22:21.071 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 18:22:21.186 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 18:22:21.076 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 18:22:21.159 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 18:23:14.278 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44184 10 6452 1 2025-11-24 18:24:14.687 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:34758 10 6452 1 2025-11-24 18:25:15.057 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51030 10 6452 1 2025-11-24 18:22:05.679 00:05:01.057 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 18:26:15.460 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:57442 10 6452 1 2025-11-24 18:23:05.683 00:05:01.052 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 18:27:21.190 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 18:27:21.268 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 18:27:21.268 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 18:27:20.975 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 18:27:21.108 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 18:27:15.873 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36312 10 6452 1 2025-11-24 18:28:16.274 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:45792 10 6452 1 2025-11-24 18:29:16.698 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:34930 10 6452 1 2025-11-24 18:30:17.117 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47572 10 6452 1 2025-11-24 18:31:17.520 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56560 10 6452 1 2025-11-24 18:28:05.686 00:05:01.057 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 18:32:21.637 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 18:32:21.492 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 18:32:21.489 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 18:32:21.061 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 18:32:21.554 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 18:32:17.918 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41232 10 6452 1 2025-11-24 18:29:05.689 00:05:01.051 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 18:33:18.321 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:39158 10 6452 1 2025-11-24 18:34:18.720 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:54226 10 6452 1 2025-11-24 18:35:19.140 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:33996 10 6452 1 2025-11-24 18:36:19.557 00:00:10.434 TCP 1.101.0.1:3000 -> 23.104.0.1:50960 12 10375 1 2025-11-24 18:37:21.428 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 18:37:21.203 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 18:37:21.261 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 18:37:21.420 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 18:37:21.502 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 18:37:20.033 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:55994 10 6452 1 2025-11-24 18:34:05.687 00:05:01.056 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 18:38:20.390 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:40518 10 6452 1 2025-11-24 18:35:05.694 00:05:01.049 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 18:39:20.789 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52406 10 6452 1 2025-11-24 18:40:21.196 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46024 10 6452 1 2025-11-24 18:41:21.597 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:39802 10 6452 1 2025-11-24 18:42:21.633 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 18:42:21.599 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 18:42:21.573 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 18:42:21.515 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 18:42:21.657 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 18:42:21.981 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39766 10 6452 1 2025-11-24 18:43:22.378 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:47732 10 6452 1 2025-11-24 18:40:05.693 00:05:01.052 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 18:44:22.782 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:53304 10 6452 1 2025-11-24 18:41:05.695 00:05:01.047 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 18:45:23.144 00:00:11.830 TCP 1.101.0.1:3000 -> 23.104.0.1:51406 11 6504 1 2025-11-24 18:46:25.014 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:35950 10 6452 1 2025-11-24 18:47:21.803 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 18:47:21.675 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 18:47:21.676 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 18:47:21.549 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 18:47:21.720 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 18:47:25.414 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:36324 10 6452 1 2025-11-24 18:48:25.826 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:50288 10 6452 1 2025-11-24 18:49:26.241 00:00:10.852 TCP 1.101.0.1:3000 -> 23.104.0.1:53304 10 6452 1 2025-11-24 18:46:05.693 00:05:01.053 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 18:50:27.134 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:36218 10 6452 1 2025-11-24 18:47:05.696 00:05:01.047 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 18:51:27.534 00:00:10.436 TCP 1.101.0.1:3000 -> 23.104.0.1:39472 12 10375 1 2025-11-24 18:52:21.982 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 18:52:22.104 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 18:52:21.713 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 18:52:21.974 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 18:52:22.057 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 18:52:28.013 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:39902 10 6452 1 2025-11-24 18:53:28.371 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34308 10 6452 1 2025-11-24 18:54:28.772 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46252 10 6452 1 2025-11-24 18:55:29.178 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:33002 10 6452 1 2025-11-24 18:52:05.695 00:05:01.053 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 18:56:29.541 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:38462 10 6452 1 2025-11-24 18:53:05.697 00:05:01.049 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 18:57:21.908 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 18:57:21.908 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 18:57:21.724 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 18:57:21.687 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 18:57:21.769 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 18:57:29.904 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:51396 12 6556 1 2025-11-24 18:58:30.317 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:38804 10 6452 1 Summary: total flows: 140, total bytes: 429023, total packets: 1031, avg bps: 944, avg pps: 0, avg bpp: 416 Time window: 2025-11-24 17:58:05 - 2025-11-24 18:58:40 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0025s User: 0.0025s Wall: 0.0044s flows/second: 31673.9 Runtime: 0.0044s