Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-23 06:58:43.874 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41336 10 6452 1 2025-11-23 06:59:44.290 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:46238 10 6452 1 2025-11-23 07:00:44.702 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54676 10 6452 1 2025-11-23 07:01:38.478 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 07:01:38.577 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 07:01:38.703 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 07:01:38.697 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 07:01:38.785 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 07:01:45.115 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:58746 10 6452 1 2025-11-23 07:02:45.536 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43158 10 6452 1 2025-11-23 06:59:04.914 00:05:00.762 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 06:59:04.912 00:05:00.767 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 07:03:45.941 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:54146 10 6452 1 2025-11-23 07:04:46.311 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37958 10 6452 1 2025-11-23 07:05:46.716 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:60432 10 6452 1 2025-11-23 07:06:38.849 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 07:06:38.791 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 07:06:38.795 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 07:06:38.793 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 07:06:38.879 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 07:06:47.102 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:52530 10 6452 1 2025-11-23 07:07:47.468 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:39524 10 6452 1 2025-11-23 07:08:47.873 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:51394 10 6452 1 2025-11-23 07:05:04.913 00:05:00.768 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 07:05:04.914 00:05:00.763 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 07:09:48.237 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55554 10 6452 1 2025-11-23 07:10:48.637 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:43816 10 6452 1 2025-11-23 07:11:39.041 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 07:11:38.958 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 07:11:38.963 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 07:11:38.958 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 07:11:39.006 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 07:11:49.038 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:56994 10 6452 1 2025-11-23 07:12:49.447 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:57190 10 6452 1 2025-11-23 07:13:49.857 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:37930 10 6452 1 2025-11-23 07:14:50.230 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36768 10 6452 1 2025-11-23 07:11:04.921 00:05:00.759 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 07:11:04.920 00:05:00.763 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 07:15:50.640 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41918 10 6452 1 2025-11-23 07:16:39.076 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 07:16:39.013 00:00:00.040 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 07:16:39.007 00:00:00.036 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 07:16:38.879 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 07:16:39.088 00:00:00.037 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 07:16:51.041 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45408 10 6452 1 2025-11-23 07:17:51.446 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:50504 10 6452 1 2025-11-23 07:18:51.845 00:00:10.344 TCP 1.101.0.1:3000 -> 23.104.0.1:59854 10 6452 1 2025-11-23 07:19:52.227 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:34776 10 6452 1 2025-11-23 07:20:52.629 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:44538 10 6452 1 2025-11-23 07:17:04.920 00:05:00.764 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 07:17:04.922 00:05:00.759 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 07:21:39.079 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 07:21:38.979 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 07:21:39.129 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 07:21:39.244 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 07:21:39.210 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 07:21:53.033 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:38008 10 6452 1 2025-11-23 07:22:53.440 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:37236 10 6452 1 2025-11-23 07:23:53.844 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:53178 10 6452 1 2025-11-23 07:24:54.269 00:00:11.022 TCP 1.101.0.1:3000 -> 23.104.0.1:37402 10 6452 1 2025-11-23 07:25:55.326 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:42916 10 6452 1 2025-11-23 07:26:39.331 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 07:26:39.071 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 07:26:39.242 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 07:26:38.990 00:00:00.044 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 07:26:39.325 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 07:23:04.927 00:05:00.758 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 07:26:55.733 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:39690 10 6452 1 2025-11-23 07:23:04.925 00:05:00.764 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 07:27:56.140 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:45678 10 6452 1 2025-11-23 07:28:56.552 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39376 10 6452 1 2025-11-23 07:29:56.958 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:38008 10 6452 1 2025-11-23 07:30:57.366 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35300 10 6452 1 2025-11-23 07:31:39.365 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 07:31:39.226 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 07:31:38.842 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 07:31:39.282 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 07:31:39.279 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 07:31:57.762 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:46528 10 6452 1 2025-11-23 07:29:04.925 00:05:00.764 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 07:32:58.186 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50514 10 6452 1 2025-11-23 07:29:04.927 00:05:00.760 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 07:33:58.586 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:47936 10 6452 1 2025-11-23 07:34:58.987 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:38638 10 6452 1 2025-11-23 07:35:59.345 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:35690 10 6452 1 2025-11-23 07:36:39.863 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 07:36:39.992 00:00:00.032 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 07:36:39.932 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 07:36:39.858 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 07:36:40.016 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 07:36:59.704 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56926 10 6452 1 2025-11-23 07:38:00.112 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42540 10 6452 1 2025-11-23 07:39:00.517 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:37624 10 6452 1 2025-11-23 07:35:04.930 00:05:00.789 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 07:35:04.927 00:05:00.794 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 07:40:00.918 00:00:10.583 TCP 1.101.0.1:3000 -> 23.104.0.1:57406 10 6452 1 2025-11-23 07:41:01.549 00:00:10.463 TCP 1.101.0.1:3000 -> 23.104.0.1:50876 12 10375 1 2025-11-23 07:41:39.611 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 07:41:39.409 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 07:41:39.273 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 07:41:39.529 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 07:41:39.479 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 07:42:02.041 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50312 10 6452 1 2025-11-23 07:43:02.442 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:54092 10 6452 1 2025-11-23 07:44:02.845 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:37164 10 6452 1 2025-11-23 07:41:04.932 00:05:00.810 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 07:41:04.930 00:05:00.815 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 07:45:03.274 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:41330 10 6452 1 2025-11-23 07:46:03.637 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:46020 10 6452 1 2025-11-23 07:46:39.513 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 07:46:39.590 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 07:46:39.673 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 07:46:39.512 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 07:46:39.597 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 07:47:04.037 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57164 10 6452 1 2025-11-23 07:48:04.437 00:00:11.838 TCP 1.101.0.1:3000 -> 23.104.0.1:42256 10 6452 1 2025-11-23 07:49:06.314 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:48624 10 6452 1 2025-11-23 07:50:06.676 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:34446 10 6452 1 2025-11-23 07:47:04.931 00:05:00.815 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 07:47:04.935 00:05:00.810 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 07:51:07.101 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:46252 10 6452 1 2025-11-23 07:51:39.841 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 07:51:39.646 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 07:51:39.836 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 07:51:39.628 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 07:51:39.918 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 07:52:07.499 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:36770 10 6452 1 2025-11-23 07:53:07.867 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:41234 10 6452 1 2025-11-23 07:54:08.229 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47628 10 6452 1 2025-11-23 07:55:08.637 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50170 10 6452 1 2025-11-23 07:56:09.036 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49006 10 6452 1 2025-11-23 07:56:39.820 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 07:56:39.589 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 07:56:39.819 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 07:56:39.597 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 07:56:39.901 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 07:53:04.931 00:05:00.817 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 07:53:04.935 00:05:00.812 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 07:57:09.444 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:36020 10 6452 1 2025-11-23 07:58:09.803 00:00:10.345 TCP 1.101.0.1:3000 -> 23.104.0.1:57372 10 6452 1 Summary: total flows: 140, total bytes: 420923, total packets: 1022, avg bps: 941, avg pps: 0, avg bpp: 411 Time window: 2025-11-23 06:58:43 - 2025-11-23 07:58:20 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0040s User: 0.0010s Wall: 0.0025s flows/second: 55892.1 Runtime: 0.0025s