Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-24 18:59:30.719 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:49954 10 6452 1 2025-11-24 19:00:31.137 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:40102 10 6452 1 2025-11-24 19:01:31.542 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:51722 10 6452 1 2025-11-24 18:58:05.697 00:05:01.064 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 19:02:21.920 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 19:02:21.827 00:00:00.036 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 19:02:21.957 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 19:02:21.950 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 19:02:21.911 00:00:00.036 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 19:02:31.946 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:34294 10 6452 1 2025-11-24 18:59:05.700 00:05:01.059 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 19:03:32.355 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49118 10 6452 1 2025-11-24 19:04:32.764 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:33506 10 6452 1 2025-11-24 19:05:33.174 00:00:10.624 TCP 1.101.0.1:3000 -> 23.104.0.1:38388 10 6452 1 2025-11-24 19:06:33.877 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:34682 10 6452 1 2025-11-24 19:07:22.187 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 19:07:22.075 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 19:07:21.877 00:00:00.037 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 19:07:22.073 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 19:07:22.155 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 19:07:34.243 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:58836 10 6452 1 2025-11-24 19:04:05.697 00:05:01.064 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 19:08:34.613 00:00:10.455 TCP 1.101.0.1:3000 -> 23.104.0.1:44024 10 6452 1 2025-11-24 19:05:05.701 00:05:01.058 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 19:09:35.112 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39520 10 6452 1 2025-11-24 19:10:35.519 00:00:10.317 TCP 1.101.0.1:3000 -> 23.104.0.1:49978 10 6452 1 2025-11-24 19:11:35.876 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33728 10 6452 1 2025-11-24 19:12:22.117 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 19:12:21.811 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 19:12:22.195 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 19:12:22.288 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 19:12:22.279 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 19:12:36.280 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:35914 10 6452 1 2025-11-24 19:13:36.654 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51434 10 6452 1 2025-11-24 19:10:05.700 00:05:01.076 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 19:14:37.061 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45704 10 6452 1 2025-11-24 19:11:05.704 00:05:01.060 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 19:15:37.466 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:47348 10 6452 1 2025-11-24 19:16:37.848 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:54384 10 6452 1 2025-11-24 19:17:22.119 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 19:17:22.200 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 19:17:22.230 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 19:17:22.344 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 19:17:22.427 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 19:17:38.274 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:60438 10 6452 1 2025-11-24 19:18:38.643 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60106 10 6452 1 2025-11-24 19:19:39.063 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:36152 10 6452 1 2025-11-24 19:16:05.710 00:05:01.057 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 19:20:39.480 00:00:10.447 TCP 1.101.0.1:3000 -> 23.104.0.1:58560 12 10375 1 2025-11-24 19:17:05.714 00:05:01.051 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 19:21:39.972 00:00:10.822 TCP 1.101.0.1:3000 -> 23.104.0.1:60126 10 6452 1 2025-11-24 19:22:22.299 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 19:22:22.425 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 19:22:22.209 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 19:22:22.300 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 19:22:22.383 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 19:22:40.832 00:00:10.395 TCP 1.101.0.1:3000 -> 23.104.0.1:59090 10 6452 1 2025-11-24 19:23:41.269 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:34536 10 6452 1 2025-11-24 19:24:41.632 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:39554 10 6452 1 2025-11-24 19:25:42.052 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:52824 10 6452 1 2025-11-24 19:22:05.712 00:05:01.058 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 19:26:42.460 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:58206 10 6452 1 2025-11-24 19:23:05.715 00:05:01.052 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 19:27:22.883 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 19:27:22.889 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 19:27:22.779 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 19:27:22.966 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 19:27:23.059 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 19:27:42.873 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:44908 10 6452 1 2025-11-24 19:28:43.280 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:37400 10 6452 1 2025-11-24 19:29:43.680 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:37882 10 6452 1 2025-11-24 19:30:44.109 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:44144 10 6452 1 2025-11-24 19:31:44.474 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50370 10 6452 1 2025-11-24 19:28:05.713 00:05:01.057 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 19:32:22.571 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 19:32:22.675 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 19:32:22.407 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 19:32:22.443 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 19:32:22.489 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 19:32:44.882 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38000 10 6452 1 2025-11-24 19:29:05.716 00:05:01.052 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 19:33:45.290 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:51044 10 6452 1 2025-11-24 19:34:45.694 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:49984 10 6452 1 2025-11-24 19:35:46.067 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:57206 10 6452 1 2025-11-24 19:36:46.429 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:34520 10 6452 1 2025-11-24 19:37:22.668 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 19:37:22.677 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 19:37:22.683 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 19:37:22.532 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 19:37:22.586 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 19:37:46.832 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:53670 10 6452 1 2025-11-24 19:34:05.714 00:05:01.058 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 19:38:47.216 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:55002 10 6452 1 2025-11-24 19:35:05.716 00:05:01.055 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 19:39:47.614 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59720 10 6452 1 2025-11-24 19:40:48.021 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52876 10 6452 1 2025-11-24 19:41:48.423 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:48354 10 6452 1 2025-11-24 19:42:22.855 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 19:42:22.769 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 19:42:22.703 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 19:42:22.846 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 19:42:22.772 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 19:42:48.783 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:42542 10 6452 1 2025-11-24 19:43:49.186 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34462 10 6452 1 2025-11-24 19:40:05.714 00:05:01.063 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 19:44:49.588 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:42376 10 6452 1 2025-11-24 19:41:05.718 00:05:01.057 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 19:45:49.989 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:58432 10 6452 1 2025-11-24 19:46:50.401 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:40278 10 6452 1 2025-11-24 19:47:22.778 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 19:47:22.897 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 19:47:22.725 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 19:47:22.696 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 19:47:22.582 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 19:47:50.809 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:45884 10 6452 1 2025-11-24 19:48:51.184 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:51000 12 6556 1 2025-11-24 19:49:51.609 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50774 10 6452 1 2025-11-24 19:46:05.716 00:05:01.063 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 19:47:05.717 00:05:01.058 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 19:50:52.017 00:00:14.175 TCP 1.101.0.1:3000 -> 23.104.0.1:34198 10 6452 1 2025-11-24 19:51:56.288 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49960 10 6452 1 2025-11-24 19:52:22.958 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 19:52:22.952 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 19:52:22.676 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 19:52:22.948 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 19:52:22.875 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 19:52:56.687 00:00:10.630 TCP 1.101.0.1:3000 -> 23.104.0.1:44300 10 6452 1 2025-11-24 19:53:57.363 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:45744 10 6452 1 2025-11-24 19:54:57.759 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:43496 10 6452 1 2025-11-24 19:55:58.184 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:60698 10 6452 1 2025-11-24 19:52:05.717 00:05:01.063 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 19:53:05.718 00:05:01.059 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 19:56:58.592 00:00:10.486 TCP 1.101.0.1:3000 -> 23.104.0.1:39346 10 6452 1 2025-11-24 19:57:23.524 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 19:57:23.271 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 19:57:23.137 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 19:57:23.153 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 19:57:23.441 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 19:57:59.118 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:46914 10 6452 1 Summary: total flows: 139, total bytes: 414575, total packets: 1014, avg bps: 920, avg pps: 0, avg bpp: 408 Time window: 2025-11-24 18:58:05 - 2025-11-24 19:58:09 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0044s User: 0.0022s Wall: 0.0024s flows/second: 57535.6 Runtime: 0.0024s