Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-22 15:59:02.591 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:47172 10 6661 1 2025-11-22 16:00:02.950 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:49772 10 6661 1 2025-11-22 16:01:03.369 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58530 10 6661 1 2025-11-22 16:01:20.638 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 16:01:20.288 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 16:01:20.503 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 16:01:20.556 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 16:01:20.666 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 16:02:03.775 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55344 10 6661 1 2025-11-22 15:59:04.629 00:05:00.458 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-22 15:59:04.627 00:05:00.463 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-22 16:03:04.181 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:44460 10 6661 1 2025-11-22 16:04:04.541 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:34528 10 6661 1 2025-11-22 16:05:04.900 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:50686 10 6661 1 2025-11-22 16:06:05.320 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:57044 10 6661 1 2025-11-22 16:06:20.693 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 16:06:20.603 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 16:06:20.333 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 16:06:20.610 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 16:06:20.597 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 16:07:05.720 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:43536 10 6661 1 2025-11-22 16:08:06.148 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:54258 10 6661 1 2025-11-22 16:05:04.627 00:05:00.465 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-22 16:05:04.630 00:05:00.461 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-22 16:09:06.558 00:00:10.400 TCP 1.101.0.1:3000 -> 23.104.0.1:57456 12 10578 1 2025-11-22 16:10:06.994 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33938 10 6661 1 2025-11-22 16:11:20.824 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 16:11:07.401 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:33844 10 6661 1 2025-11-22 16:11:20.748 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 16:11:20.809 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 16:11:20.741 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 16:11:20.944 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 16:12:07.817 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:35522 10 6661 1 2025-11-22 16:13:08.220 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40688 10 6661 1 2025-11-22 16:14:08.620 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:51770 10 6661 1 2025-11-22 16:11:04.630 00:05:00.464 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-22 16:11:04.630 00:05:00.460 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-22 16:15:09.025 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:38630 10 6661 1 2025-11-22 16:16:20.838 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 16:16:20.755 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 16:16:20.764 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 16:16:20.756 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 16:16:20.753 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 16:16:09.433 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:59746 10 6661 1 2025-11-22 16:17:09.801 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58866 10 6661 1 2025-11-22 16:18:10.205 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:60956 10 6661 1 2025-11-22 16:19:10.600 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53240 10 6661 1 2025-11-22 16:20:11.004 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:45464 10 6661 1 2025-11-22 16:17:04.631 00:05:00.460 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-22 16:17:04.628 00:05:00.465 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-22 16:21:21.072 00:00:00.036 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 16:21:20.764 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 16:21:21.123 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 16:21:11.371 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:48484 10 6661 1 2025-11-22 16:21:20.990 00:00:00.036 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 16:21:21.187 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 16:22:11.769 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:39212 10 6661 1 2025-11-22 16:23:12.180 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:54038 10 6661 1 2025-11-22 16:24:12.597 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43192 10 6661 1 2025-11-22 16:25:13.007 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:34898 10 6661 1 2025-11-22 16:26:20.783 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 16:26:20.942 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 16:26:13.442 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45930 10 6661 1 2025-11-22 16:26:21.236 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 16:26:21.180 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 16:26:21.321 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 16:23:04.630 00:05:00.471 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-22 16:23:04.633 00:05:00.466 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-22 16:27:13.848 00:00:10.350 TCP 1.101.0.1:3000 -> 23.104.0.1:58526 10 6661 1 2025-11-22 16:28:14.235 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:52448 10 6661 1 2025-11-22 16:29:14.630 00:00:10.444 TCP 1.101.0.1:3000 -> 23.104.0.1:35078 12 10369 1 2025-11-22 16:30:15.113 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:45276 10 6452 1 2025-11-22 16:31:20.977 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 16:31:20.774 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 16:31:21.252 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 16:31:21.170 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 16:31:21.101 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 16:31:15.473 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:41764 10 6452 1 2025-11-22 16:32:15.838 00:00:10.607 TCP 1.101.0.1:3000 -> 23.104.0.1:51260 10 6452 1 2025-11-22 16:29:04.634 00:05:00.466 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-22 16:29:04.631 00:05:00.472 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-22 16:33:16.480 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43684 10 6452 1 2025-11-22 16:34:16.879 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33052 10 6452 1 2025-11-22 16:35:17.283 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:42242 10 6452 1 2025-11-22 16:36:20.925 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 16:36:21.241 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 16:36:21.321 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 16:36:21.486 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 16:36:21.403 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 16:36:17.690 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36014 10 6452 1 2025-11-22 16:37:18.113 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:56130 10 6452 1 2025-11-22 16:38:18.522 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:32982 10 6452 1 2025-11-22 16:35:04.632 00:05:00.473 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-22 16:35:04.634 00:05:00.468 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-22 16:39:18.921 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35740 10 6452 1 2025-11-22 16:40:19.315 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:54264 10 6452 1 2025-11-22 16:41:21.436 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 16:41:21.353 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 16:41:21.443 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 16:41:21.353 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 16:41:21.276 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 16:41:19.692 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:53256 10 6452 1 2025-11-22 16:42:20.111 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:40630 10 6452 1 2025-11-22 16:43:20.480 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:39334 10 6452 1 2025-11-22 16:44:20.839 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:45058 10 6452 1 2025-11-22 16:41:04.637 00:05:00.467 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-22 16:41:04.633 00:05:00.473 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-22 16:45:21.216 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:52376 10 6452 1 2025-11-22 16:46:21.434 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 16:46:21.523 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 16:46:21.154 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 16:46:21.352 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 16:46:21.522 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 16:46:21.613 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:59482 10 6452 1 2025-11-22 16:47:22.013 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:35856 10 6452 1 2025-11-22 16:48:22.379 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44590 10 6452 1 2025-11-22 16:49:22.783 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:39576 10 6452 1 2025-11-22 16:50:23.195 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37584 10 6452 1 2025-11-22 16:47:04.637 00:05:00.478 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-22 16:47:04.633 00:05:00.484 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-22 16:51:21.786 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 16:51:21.647 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 16:51:21.245 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 16:51:21.703 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 16:51:21.703 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 16:51:23.602 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:46282 10 6452 1 2025-11-22 16:52:24.012 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:37234 10 6452 1 2025-11-22 16:53:24.375 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:40712 10 6452 1 2025-11-22 16:54:24.785 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55538 10 6452 1 2025-11-22 16:55:25.184 00:00:10.400 TCP 1.101.0.1:3000 -> 23.104.0.1:44132 10 6452 1 2025-11-22 16:56:21.903 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 16:56:21.762 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 16:56:21.904 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 16:56:21.716 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 16:56:21.988 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 16:56:25.634 00:00:10.410 TCP 1.101.0.1:3000 -> 23.104.0.1:43344 11 6504 1 2025-11-22 16:53:04.639 00:05:00.478 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-22 16:53:04.635 00:05:00.484 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-22 16:57:26.115 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:32982 10 6452 1 2025-11-22 16:58:26.527 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:42404 10 6452 1 Summary: total flows: 140, total bytes: 431156, total packets: 1025, avg bps: 965, avg pps: 0, avg bpp: 420 Time window: 2025-11-22 15:59:02 - 2025-11-22 16:58:36 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0039s User: 0.0010s Wall: 0.0019s flows/second: 74038.9 Runtime: 0.0019s