Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-23 07:59:10.184 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47782 10 6452 1 2025-11-23 08:00:10.594 00:00:10.445 TCP 1.101.0.1:3000 -> 23.104.0.1:60842 12 10375 1 2025-11-23 08:01:11.111 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:52438 10 6452 1 2025-11-23 08:01:39.883 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 08:01:39.676 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 08:01:39.825 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 08:01:39.885 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 08:01:39.907 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 08:02:11.520 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:36196 10 6452 1 2025-11-23 07:59:04.933 00:05:00.817 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 07:59:04.937 00:05:00.813 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 08:03:11.891 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:58304 12 6556 1 2025-11-23 08:04:12.309 00:00:11.538 TCP 1.101.0.1:3000 -> 23.104.0.1:33222 10 6452 1 2025-11-23 08:05:13.890 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:37394 10 6452 1 2025-11-23 08:06:14.304 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55298 10 6452 1 2025-11-23 08:06:40.363 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 08:06:40.043 00:00:00.026 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 08:06:39.891 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 08:06:40.281 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 08:06:40.345 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 08:07:14.704 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60492 10 6452 1 2025-11-23 08:08:15.114 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:49756 10 6452 1 2025-11-23 08:05:04.939 00:05:00.810 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 08:05:04.936 00:05:00.815 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 08:09:15.476 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:50632 10 6452 1 2025-11-23 08:10:15.873 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:52898 10 6452 1 2025-11-23 08:11:16.280 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:37650 10 6452 1 2025-11-23 08:11:40.065 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 08:11:39.807 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 08:11:39.981 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 08:11:40.250 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 08:11:40.198 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 08:12:16.653 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:53360 10 6452 1 2025-11-23 08:13:17.024 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:44542 10 6452 1 2025-11-23 08:14:17.431 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45214 10 6452 1 2025-11-23 08:11:04.937 00:05:00.816 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 08:11:04.940 00:05:00.811 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 08:15:17.837 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:40136 10 6452 1 2025-11-23 08:16:18.268 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42388 10 6452 1 2025-11-23 08:16:40.478 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 08:16:40.524 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 08:16:40.621 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 08:16:40.706 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 08:16:40.703 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 08:17:18.672 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:50504 10 6452 1 2025-11-23 08:18:19.042 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:35328 10 6452 1 2025-11-23 08:19:19.448 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:47794 10 6452 1 2025-11-23 08:20:19.853 00:00:10.462 TCP 1.101.0.1:3000 -> 23.104.0.1:56824 12 10375 1 2025-11-23 08:17:04.945 00:05:00.812 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 08:17:04.942 00:05:00.817 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 08:21:20.359 00:00:10.406 TCP 1.101.0.1:3000 -> 23.104.0.1:40436 13 6608 1 2025-11-23 08:21:40.296 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 08:21:40.501 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 08:21:40.296 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 08:21:40.298 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 08:21:40.378 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 08:22:20.799 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:36854 10 6452 1 2025-11-23 08:23:21.208 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:51238 10 6452 1 2025-11-23 08:24:21.566 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:51814 10 6452 1 2025-11-23 08:25:21.975 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46834 10 6452 1 2025-11-23 08:26:22.380 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33130 10 6452 1 2025-11-23 08:26:41.420 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 08:26:41.437 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 08:26:41.336 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 08:26:41.337 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 08:26:41.328 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 08:23:04.948 00:05:00.814 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 08:23:04.946 00:05:00.818 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 08:27:22.780 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35530 10 6452 1 2025-11-23 08:28:23.188 00:00:10.355 TCP 1.101.0.1:3000 -> 23.104.0.1:55278 10 6452 1 2025-11-23 08:29:23.584 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53504 10 6452 1 2025-11-23 08:30:23.991 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:58902 10 6452 1 2025-11-23 08:31:24.352 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:41956 10 6452 1 2025-11-23 08:31:40.555 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 08:31:40.526 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 08:31:40.560 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 08:31:40.554 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 08:31:40.643 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 08:32:24.757 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:39518 10 6452 1 2025-11-23 08:29:04.951 00:05:00.811 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 08:29:04.949 00:05:00.816 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 08:33:25.179 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:37408 10 6452 1 2025-11-23 08:34:25.585 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44118 10 6452 1 2025-11-23 08:35:25.987 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:42852 10 6452 1 2025-11-23 08:36:40.853 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 08:36:26.402 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57820 10 6452 1 2025-11-23 08:36:40.944 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 08:36:40.807 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 08:36:40.772 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 08:36:40.955 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 08:37:26.808 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54416 10 6452 1 2025-11-23 08:38:27.215 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:52924 10 6452 1 2025-11-23 08:35:04.951 00:05:00.811 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 08:35:04.949 00:05:00.817 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 08:39:27.611 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51606 10 6452 1 2025-11-23 08:40:28.018 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50240 10 6452 1 2025-11-23 08:41:40.727 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 08:41:40.558 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 08:41:40.900 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 08:41:40.800 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 08:41:28.418 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43630 10 6452 1 2025-11-23 08:41:40.982 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 08:42:28.819 00:00:10.928 TCP 1.101.0.1:3000 -> 23.104.0.1:35412 10 6452 1 2025-11-23 08:43:29.788 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:53024 10 6452 1 2025-11-23 08:44:30.190 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34672 10 6452 1 2025-11-23 08:41:04.952 00:05:00.815 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 08:41:04.954 00:05:00.811 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 08:45:30.594 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:60850 10 6452 1 2025-11-23 08:46:40.906 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 08:46:40.530 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 08:46:40.946 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 08:46:41.029 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 08:46:31.003 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60738 10 6452 1 2025-11-23 08:46:40.997 00:00:00.032 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 08:47:31.407 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51030 10 6452 1 2025-11-23 08:48:31.810 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:49610 10 6452 1 2025-11-23 08:49:32.176 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:46198 10 6452 1 2025-11-23 08:50:32.579 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:34500 10 6452 1 2025-11-23 08:47:04.954 00:05:00.811 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 08:47:04.950 00:05:00.817 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 08:51:40.856 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 08:51:40.893 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 08:51:40.777 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 08:51:40.861 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 08:51:41.021 00:00:00.032 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 08:51:32.943 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:51252 10 6452 1 2025-11-23 08:52:33.312 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:33440 10 6452 1 2025-11-23 08:53:33.673 00:00:10.676 TCP 1.101.0.1:3000 -> 23.104.0.1:58988 10 6452 1 2025-11-23 08:54:34.394 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:56892 10 6452 1 2025-11-23 08:55:34.802 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:55888 10 6452 1 2025-11-23 08:56:40.946 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 08:56:40.944 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 08:56:40.946 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 08:56:41.187 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 08:56:35.221 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:60720 10 6452 1 2025-11-23 08:56:41.027 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 08:53:04.952 00:05:00.819 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 08:53:04.955 00:05:00.814 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 08:57:35.641 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35026 10 6452 1 2025-11-23 08:58:36.046 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:39640 10 6452 1 Summary: total flows: 140, total bytes: 425106, total packets: 1029, avg bps: 949, avg pps: 0, avg bpp: 413 Time window: 2025-11-23 07:59:04 - 2025-11-23 08:58:46 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0045s User: 0.0009s Wall: 0.0040s flows/second: 34894.4 Runtime: 0.0040s