Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-22 17:58:51.558 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:56156 10 6452 1 2025-11-22 17:59:51.960 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45152 10 6452 1 2025-11-22 18:00:52.371 00:00:10.635 TCP 1.101.0.1:3000 -> 23.104.0.1:36758 10 6452 1 2025-11-22 18:01:22.867 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 18:01:22.943 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 18:01:22.868 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 18:01:22.906 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 18:01:22.950 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 18:01:53.071 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57216 10 6452 1 2025-11-22 18:02:53.476 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35438 10 6452 1 2025-11-22 17:59:04.660 00:05:00.499 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-22 17:59:04.663 00:05:00.494 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-22 18:03:53.881 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:43414 10 6452 1 2025-11-22 18:04:54.243 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39938 10 6452 1 2025-11-22 18:05:54.657 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:37740 10 6452 1 2025-11-22 18:06:23.428 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 18:06:23.090 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 18:06:23.346 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 18:06:23.160 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 18:06:23.234 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 18:06:55.073 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:53976 10 6452 1 2025-11-22 18:07:55.493 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:36726 10 6452 1 2025-11-22 18:05:04.663 00:05:00.495 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-22 18:08:55.899 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:44948 10 6452 1 2025-11-22 18:05:04.661 00:05:00.501 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-22 18:09:56.334 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:38962 10 6452 1 2025-11-22 18:10:56.732 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:37566 10 6452 1 2025-11-22 18:11:23.303 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 18:11:23.364 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 18:11:23.099 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 18:11:23.220 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 18:11:23.314 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 18:11:57.112 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:50918 10 6452 1 2025-11-22 18:12:57.514 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:43414 10 6452 1 2025-11-22 18:13:57.921 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:52912 10 6452 1 2025-11-22 18:11:04.662 00:05:00.511 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-22 18:11:04.666 00:05:00.505 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-22 18:14:58.319 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:49902 10 6452 1 2025-11-22 18:15:58.726 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:48384 10 6452 1 2025-11-22 18:16:23.292 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 18:16:23.327 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 18:16:23.385 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 18:16:23.382 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 18:16:23.467 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 18:16:59.135 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:34402 10 6452 1 2025-11-22 18:17:59.502 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35248 10 6452 1 2025-11-22 18:18:59.908 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:58688 10 6452 1 2025-11-22 18:20:00.314 00:00:10.438 TCP 1.101.0.1:3000 -> 23.104.0.1:40246 12 10375 1 2025-11-22 18:17:04.664 00:05:00.511 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-22 18:17:04.667 00:05:00.506 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-22 18:21:00.791 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38364 10 6452 1 2025-11-22 18:21:23.533 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 18:21:23.295 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 18:21:23.212 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 18:21:23.450 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 18:21:23.364 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 18:22:01.196 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47664 10 6452 1 2025-11-22 18:23:01.599 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:44836 10 6452 1 2025-11-22 18:24:02.014 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:45472 10 6452 1 2025-11-22 18:25:02.415 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36734 10 6452 1 2025-11-22 18:26:02.822 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:57790 10 6452 1 2025-11-22 18:26:23.698 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 18:26:23.606 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 18:26:23.614 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 18:26:23.615 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 18:26:23.674 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 18:23:04.668 00:05:00.507 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-22 18:23:04.664 00:05:00.513 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-22 18:27:03.202 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56226 10 6452 1 2025-11-22 18:28:03.606 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55144 10 6452 1 2025-11-22 18:29:04.005 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:40848 10 6452 1 2025-11-22 18:30:04.376 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:44916 10 6452 1 2025-11-22 18:31:04.790 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:43450 10 6452 1 2025-11-22 18:31:23.694 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 18:31:23.548 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 18:31:23.325 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 18:31:23.612 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 18:31:23.645 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 18:32:05.204 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:32866 10 6452 1 2025-11-22 18:29:04.668 00:05:00.507 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-22 18:29:04.665 00:05:00.512 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-22 18:33:05.603 00:00:10.415 TCP 1.101.0.1:3000 -> 23.104.0.1:39842 11 6504 1 2025-11-22 18:34:06.063 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:45642 10 6452 1 2025-11-22 18:35:06.489 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57380 10 6452 1 2025-11-22 18:36:06.897 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:38644 10 6452 1 2025-11-22 18:36:23.636 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 18:36:23.672 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 18:36:23.715 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 18:36:23.717 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 18:36:23.797 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 18:37:07.275 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:52910 10 6452 1 2025-11-22 18:38:07.640 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:41610 10 6452 1 2025-11-22 18:35:04.670 00:05:00.506 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-22 18:35:04.669 00:05:00.511 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-22 18:39:08.012 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49018 10 6452 1 2025-11-22 18:40:08.423 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:49616 10 6452 1 2025-11-22 18:41:23.874 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 18:41:08.830 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:51498 10 6452 1 2025-11-22 18:41:23.850 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 18:41:23.795 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 18:41:23.792 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 18:41:23.843 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 18:42:09.198 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:45462 10 6452 1 2025-11-22 18:43:09.602 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54622 10 6452 1 2025-11-22 18:44:10.011 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:45400 10 6452 1 2025-11-22 18:41:04.670 00:05:00.515 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-22 18:41:04.673 00:05:00.510 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-22 18:45:10.388 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:57732 10 6452 1 2025-11-22 18:46:24.324 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 18:46:24.197 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 18:46:10.797 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:42320 10 6452 1 2025-11-22 18:46:23.984 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 18:46:24.241 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 18:46:24.083 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 18:47:11.209 00:00:10.438 TCP 1.101.0.1:3000 -> 23.104.0.1:44274 10 6452 1 2025-11-22 18:48:11.687 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:53764 10 6452 1 2025-11-22 18:49:12.054 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:51748 10 6452 1 2025-11-22 18:50:12.417 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:42540 10 6452 1 2025-11-22 18:47:04.674 00:05:00.510 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-22 18:47:04.670 00:05:00.516 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-22 18:51:23.998 00:00:00.028 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 18:51:24.078 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 18:51:12.820 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:49692 10 6452 1 2025-11-22 18:51:23.918 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 18:51:23.930 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 18:51:24.081 00:00:00.028 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 18:52:13.227 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57920 10 6452 1 2025-11-22 18:53:13.626 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:50586 10 6452 1 2025-11-22 18:54:14.033 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49884 10 6452 1 2025-11-22 18:55:14.438 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38624 10 6452 1 2025-11-22 18:56:24.135 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 18:56:14.840 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:34708 10 6452 1 2025-11-22 18:56:24.049 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 18:56:23.952 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 18:56:24.053 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 18:56:24.045 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 18:53:04.674 00:05:00.514 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-22 18:53:04.676 00:05:00.508 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-22 18:57:15.250 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52176 10 6452 1 2025-11-22 18:58:15.653 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:48410 10 6452 1 Summary: total flows: 140, total bytes: 420975, total packets: 1023, avg bps: 942, avg pps: 0, avg bpp: 411 Time window: 2025-11-22 17:58:51 - 2025-11-22 18:58:25 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0038s User: 0.0025s Wall: 0.0028s flows/second: 50145.4 Runtime: 0.0028s