Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-22 19:58:41.276 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:39922 10 6452 1 2025-11-22 19:59:41.676 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:35454 10 6452 1 2025-11-22 20:00:42.037 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41820 10 6452 1 2025-11-22 20:01:25.217 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 20:01:25.491 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 20:01:25.493 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 20:01:25.401 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 20:01:25.577 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 20:01:42.443 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:34580 10 6452 1 2025-11-22 20:02:42.808 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:37134 10 6452 1 2025-11-22 19:59:04.714 00:05:00.502 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-22 19:59:04.711 00:05:00.508 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-22 20:03:43.248 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:51776 10 6452 1 2025-11-22 20:04:43.658 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:47834 10 6452 1 2025-11-22 20:05:44.098 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:48774 10 6452 1 2025-11-22 20:06:25.477 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 20:06:25.474 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 20:06:25.396 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 20:06:25.130 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 20:06:25.560 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 20:06:44.465 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:37052 10 6452 1 2025-11-22 20:07:44.829 00:00:10.348 TCP 1.101.0.1:3000 -> 23.104.0.1:53198 10 6452 1 2025-11-22 20:08:45.220 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:54212 10 6452 1 2025-11-22 20:05:04.712 00:05:00.508 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-22 20:05:04.714 00:05:00.504 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-22 20:09:45.580 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:35664 10 6452 1 2025-11-22 20:10:45.980 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:56370 10 6452 1 2025-11-22 20:11:25.906 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 20:11:25.657 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 20:11:25.910 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 20:11:25.823 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 20:11:25.753 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 20:11:46.385 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:53434 10 6452 1 2025-11-22 20:12:46.784 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:40736 10 6452 1 2025-11-22 20:13:47.185 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60410 10 6452 1 2025-11-22 20:14:47.591 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:52408 10 6452 1 2025-11-22 20:11:04.712 00:05:00.513 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-22 20:11:04.715 00:05:00.508 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-22 20:15:48.009 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:59762 10 6452 1 2025-11-22 20:16:25.500 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 20:16:25.513 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 20:16:25.940 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 20:16:25.646 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 20:16:26.023 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 20:16:48.370 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58552 10 6452 1 2025-11-22 20:17:48.770 00:00:10.495 TCP 1.101.0.1:3000 -> 23.104.0.1:56022 10 6452 1 2025-11-22 20:18:49.300 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34926 10 6452 1 2025-11-22 20:19:49.700 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:60516 10 6452 1 2025-11-22 20:20:50.065 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:50542 10 6452 1 2025-11-22 20:17:04.716 00:05:00.512 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-22 20:17:04.718 00:05:00.507 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-22 20:21:25.597 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 20:21:25.773 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 20:21:25.761 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 20:21:25.678 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 20:21:25.843 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 20:21:50.474 00:00:10.317 TCP 1.101.0.1:3000 -> 23.104.0.1:54588 10 6452 1 2025-11-22 20:22:50.836 00:00:10.398 TCP 1.101.0.1:3000 -> 23.104.0.1:46694 10 6452 1 2025-11-22 20:23:51.271 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51862 10 6452 1 2025-11-22 20:24:51.674 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:48414 10 6452 1 2025-11-22 20:25:52.038 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:42478 10 6452 1 2025-11-22 20:26:25.892 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 20:26:25.789 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 20:26:25.896 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 20:26:25.739 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 20:26:25.978 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 20:26:52.410 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44728 10 6452 1 2025-11-22 20:23:04.728 00:05:00.501 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-22 20:23:04.723 00:05:00.506 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-22 20:27:52.812 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:60614 10 6452 1 2025-11-22 20:28:53.221 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52150 10 6452 1 2025-11-22 20:29:53.626 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:35222 10 6452 1 2025-11-22 20:30:54.034 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:46542 10 6452 1 2025-11-22 20:31:25.965 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 20:31:25.645 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 20:31:25.912 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 20:31:25.746 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 20:31:25.995 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 20:31:54.435 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42636 10 6452 1 2025-11-22 20:32:54.837 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:50284 10 6452 1 2025-11-22 20:29:04.728 00:05:00.505 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-22 20:29:04.729 00:05:00.500 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-22 20:33:55.265 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:36474 10 6452 1 2025-11-22 20:34:55.663 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:45990 10 6452 1 2025-11-22 20:35:56.122 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:44290 10 6452 1 2025-11-22 20:36:25.862 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 20:36:25.706 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 20:36:25.962 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 20:36:26.142 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 20:36:26.059 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 20:36:56.527 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44792 10 6452 1 2025-11-22 20:37:56.932 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:45582 10 6452 1 2025-11-22 20:35:04.731 00:05:00.508 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-22 20:35:04.728 00:05:00.514 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-22 20:38:57.361 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43388 10 6452 1 2025-11-22 20:39:57.771 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:36046 10 6452 1 2025-11-22 20:40:58.189 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:41284 10 6452 1 2025-11-22 20:41:25.976 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 20:41:26.166 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 20:41:26.220 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 20:41:26.220 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 20:41:26.303 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 20:41:58.590 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51752 10 6452 1 2025-11-22 20:42:58.991 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:58656 10 6452 1 2025-11-22 20:43:59.403 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:57368 10 6452 1 2025-11-22 20:41:04.728 00:05:00.515 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-22 20:41:04.732 00:05:00.510 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-22 20:44:59.802 00:00:12.565 TCP 1.101.0.1:3000 -> 23.104.0.1:38708 10 6452 1 2025-11-22 20:46:02.424 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:53580 10 6452 1 2025-11-22 20:46:26.242 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 20:46:26.172 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 20:46:26.242 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 20:46:26.365 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 20:46:26.326 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 20:47:02.839 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:52520 10 6452 1 2025-11-22 20:48:03.267 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40484 10 6452 1 2025-11-22 20:49:03.669 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:47126 10 6452 1 2025-11-22 20:50:04.030 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:39552 10 6452 1 2025-11-22 20:47:04.733 00:05:00.510 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-22 20:47:04.730 00:05:00.515 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-22 20:51:04.425 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:60550 10 6452 1 2025-11-22 20:51:26.381 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 20:51:26.294 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 20:51:26.247 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 20:51:26.298 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 20:51:26.407 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 20:52:04.836 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:60984 10 6452 1 2025-11-22 20:53:05.262 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:53558 10 6452 1 2025-11-22 20:54:05.622 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:33160 10 6452 1 2025-11-22 20:55:06.026 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:40728 10 6452 1 2025-11-22 20:56:06.439 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:59302 10 6452 1 2025-11-22 20:56:26.529 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-22 20:56:26.370 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-22 20:56:26.477 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 20:56:26.446 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-22 20:56:26.452 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-22 20:53:04.735 00:05:00.511 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-22 20:53:04.732 00:05:00.515 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-22 20:57:06.851 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:56120 10 6452 1 2025-11-22 20:58:07.275 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:49686 10 6452 1 Summary: total flows: 140, total bytes: 417000, total packets: 1020, avg bps: 932, avg pps: 0, avg bpp: 408 Time window: 2025-11-22 19:58:41 - 2025-11-22 20:58:17 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0019s User: 0.0028s Wall: 0.0020s flows/second: 71029.7 Runtime: 0.0020s