Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-23 01:59:10.071 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:37544 10 6452 1 2025-11-23 02:00:10.479 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41554 10 6452 1 2025-11-23 02:01:10.882 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34442 10 6452 1 2025-11-23 02:01:32.732 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 02:01:32.482 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 02:01:32.632 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 02:01:32.629 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 02:01:32.716 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 02:02:11.288 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47512 10 6452 1 2025-11-23 01:59:04.811 00:05:00.684 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 01:59:04.812 00:05:00.680 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 02:03:11.694 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:41478 10 6452 1 2025-11-23 02:04:12.096 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42048 10 6452 1 2025-11-23 02:05:12.494 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:34054 12 6556 1 2025-11-23 02:06:12.905 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46698 10 6452 1 2025-11-23 02:06:32.626 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 02:06:32.572 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 02:06:32.423 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 02:06:32.641 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 02:06:32.507 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 02:07:13.307 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56092 10 6452 1 2025-11-23 02:08:13.713 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59002 10 6452 1 2025-11-23 02:05:04.815 00:05:00.679 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 02:05:04.810 00:05:00.685 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 02:09:14.121 00:00:10.722 TCP 1.101.0.1:3000 -> 23.104.0.1:49554 10 6452 1 2025-11-23 02:10:14.882 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49190 10 6452 1 2025-11-23 02:11:15.286 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59432 10 6452 1 2025-11-23 02:11:32.954 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 02:11:32.854 00:00:00.032 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 02:11:32.742 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 02:11:32.871 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 02:11:32.799 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 02:12:15.688 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:56728 10 6452 1 2025-11-23 02:13:16.109 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33588 10 6452 1 2025-11-23 02:14:16.513 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49752 10 6452 1 2025-11-23 02:11:04.812 00:05:00.688 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 02:11:04.814 00:05:00.683 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 02:15:16.917 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:41980 10 6452 1 2025-11-23 02:16:32.977 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 02:16:17.336 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:47590 10 6452 1 2025-11-23 02:16:32.888 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 02:16:32.632 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 02:16:32.891 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 02:16:32.893 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 02:17:17.736 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45606 10 6452 1 2025-11-23 02:18:18.140 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:51240 10 6452 1 2025-11-23 02:19:18.497 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:48340 10 6452 1 2025-11-23 02:20:18.900 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:39030 12 6556 1 2025-11-23 02:17:04.813 00:05:00.689 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 02:17:04.814 00:05:00.684 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 02:21:19.322 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39236 10 6452 1 2025-11-23 02:21:33.069 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 02:21:32.978 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 02:21:32.928 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 02:21:32.986 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 02:21:32.898 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 02:22:19.728 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:59562 10 6452 1 2025-11-23 02:23:20.142 00:00:10.862 TCP 1.101.0.1:3000 -> 23.104.0.1:35840 10 6452 1 2025-11-23 02:24:21.060 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:60146 10 6452 1 2025-11-23 02:25:21.470 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54326 10 6452 1 2025-11-23 02:26:21.869 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60790 10 6452 1 2025-11-23 02:26:33.030 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 02:26:33.086 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 02:26:33.043 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 02:26:33.055 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 02:26:33.126 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 02:23:04.816 00:05:00.686 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 02:23:04.814 00:05:00.691 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 02:27:22.273 00:00:10.423 TCP 1.101.0.1:3000 -> 23.104.0.1:50678 11 6504 1 2025-11-23 02:28:22.731 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:55684 10 6452 1 2025-11-23 02:29:23.132 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45508 10 6452 1 2025-11-23 02:30:23.542 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:49452 10 6452 1 2025-11-23 02:31:33.211 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 02:31:32.940 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 02:31:23.941 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:57754 10 6452 1 2025-11-23 02:31:33.255 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 02:31:33.216 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 02:31:33.338 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 02:32:24.318 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:36586 10 6452 1 2025-11-23 02:29:04.817 00:05:00.688 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 02:29:04.821 00:05:00.682 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 02:33:24.720 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:56840 10 6452 1 2025-11-23 02:34:25.131 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:50966 10 6452 1 2025-11-23 02:35:25.538 00:00:10.437 TCP 1.101.0.1:3000 -> 23.104.0.1:33212 12 10369 1 2025-11-23 02:36:33.325 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 02:36:33.311 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 02:36:33.158 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 02:36:33.257 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 02:36:33.393 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 02:36:26.019 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57396 10 6452 1 2025-11-23 02:37:26.423 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55248 10 6452 1 2025-11-23 02:38:26.829 00:00:10.469 TCP 1.101.0.1:3000 -> 23.104.0.1:53654 10 6452 1 2025-11-23 02:35:04.821 00:05:00.683 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 02:35:04.819 00:05:00.688 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 02:39:27.333 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53214 10 6452 1 2025-11-23 02:40:27.741 00:00:10.439 TCP 1.101.0.1:3000 -> 23.104.0.1:40002 12 10375 1 2025-11-23 02:41:33.340 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 02:41:33.090 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 02:41:33.359 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 02:41:33.256 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 02:41:33.241 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 02:41:28.226 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60114 10 6452 1 2025-11-23 02:42:28.634 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49278 10 6452 1 2025-11-23 02:43:29.064 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:57604 10 6452 1 2025-11-23 02:44:29.434 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:42078 10 6452 1 2025-11-23 02:41:04.821 00:05:00.688 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 02:41:04.824 00:05:00.682 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 02:45:29.833 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:52376 10 6452 1 2025-11-23 02:46:34.284 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 02:46:33.717 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 02:46:33.793 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 02:46:34.201 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 02:46:33.720 00:00:00.026 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 02:46:30.242 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:54088 10 6452 1 2025-11-23 02:47:30.652 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44850 10 6452 1 2025-11-23 02:48:31.063 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57986 10 6452 1 2025-11-23 02:49:31.465 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:48228 10 6452 1 2025-11-23 02:50:31.838 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:54210 10 6452 1 2025-11-23 02:47:04.826 00:05:00.682 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 02:47:04.823 00:05:00.687 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 02:51:33.556 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 02:51:33.556 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 02:51:33.553 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 02:51:33.473 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 02:51:33.704 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 02:51:32.262 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:35806 10 6452 1 2025-11-23 02:52:32.666 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45018 10 6452 1 2025-11-23 02:53:33.099 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:42466 10 6452 1 2025-11-23 02:54:33.466 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:51172 10 6452 1 2025-11-23 02:55:33.826 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46928 10 6452 1 2025-11-23 02:56:34.147 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 02:56:34.056 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 02:56:33.583 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 02:56:34.064 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 02:56:33.999 00:00:00.038 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 02:56:34.227 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:56864 10 6452 1 2025-11-23 02:53:04.824 00:05:00.687 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 02:53:04.827 00:05:00.682 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 02:57:34.595 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:46418 10 6452 1 2025-11-23 02:58:35.002 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:43934 10 6452 1 Summary: total flows: 140, total bytes: 425100, total packets: 1029, avg bps: 949, avg pps: 0, avg bpp: 413 Time window: 2025-11-23 01:59:04 - 2025-11-23 02:58:45 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0041s User: 0.0020s Wall: 0.0022s flows/second: 62896.6 Runtime: 0.0022s