Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-23 08:59:36.454 00:00:11.186 TCP 1.101.0.1:3000 -> 23.104.0.1:44584 10 6452 1 2025-11-23 09:00:37.687 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:34482 10 6452 1 2025-11-23 09:01:41.228 00:00:00.029 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 09:01:41.411 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 09:01:41.375 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 09:01:41.146 00:00:00.029 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 09:01:41.415 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 09:01:38.113 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36424 10 6452 1 2025-11-23 09:02:38.521 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:33388 10 6452 1 2025-11-23 08:59:04.955 00:05:00.817 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 08:59:04.952 00:05:00.822 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 09:03:38.921 00:00:10.754 TCP 1.101.0.1:3000 -> 23.104.0.1:49544 10 6452 1 2025-11-23 09:04:39.710 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:34784 10 6452 1 2025-11-23 09:05:40.114 00:00:10.449 TCP 1.101.0.1:3000 -> 23.104.0.1:57974 12 10369 1 2025-11-23 09:06:41.347 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 09:06:41.056 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 09:06:41.088 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 09:06:41.087 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 09:06:41.171 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 09:06:40.591 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:39562 10 6452 1 2025-11-23 09:07:40.956 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:52884 10 6452 1 2025-11-23 09:08:41.376 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:58924 10 6452 1 2025-11-23 09:05:04.954 00:05:00.824 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 09:05:04.958 00:05:00.819 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 09:09:41.774 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:39822 10 6452 1 2025-11-23 09:10:42.186 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:36676 10 6452 1 2025-11-23 09:11:41.423 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 09:11:41.431 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 09:11:41.305 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 09:11:41.340 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 09:11:41.188 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 09:11:42.594 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44974 10 6452 1 2025-11-23 09:12:42.996 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46318 10 6452 1 2025-11-23 09:13:43.397 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47140 10 6452 1 2025-11-23 09:14:43.800 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52510 10 6452 1 2025-11-23 09:11:04.955 00:05:00.829 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 09:11:04.958 00:05:00.824 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 09:15:44.205 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:40396 10 6452 1 2025-11-23 09:16:41.340 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 09:16:41.196 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 09:16:41.482 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 09:16:41.424 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 09:16:41.565 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 09:16:44.570 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38164 10 6452 1 2025-11-23 09:17:44.975 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:40762 10 6452 1 2025-11-23 09:18:45.341 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:50904 10 6452 1 2025-11-23 09:19:45.745 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:32922 10 6452 1 2025-11-23 09:20:46.148 00:00:10.506 TCP 1.101.0.1:3000 -> 23.104.0.1:59080 12 10375 1 2025-11-23 09:17:04.963 00:05:00.820 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 09:17:04.960 00:05:00.825 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 09:21:41.592 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 09:21:41.496 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 09:21:41.678 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 09:21:41.509 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 09:21:41.506 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 09:21:46.694 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:33540 10 6452 1 2025-11-23 09:22:47.114 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:34654 10 6452 1 2025-11-23 09:23:47.491 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:48444 10 6452 1 2025-11-23 09:24:47.896 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:57388 10 6452 1 2025-11-23 09:25:48.320 00:00:10.436 TCP 1.101.0.1:3000 -> 23.104.0.1:52936 12 10375 1 2025-11-23 09:26:41.748 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 09:26:41.586 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 09:26:41.600 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 09:26:41.664 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 09:26:41.768 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 09:26:48.791 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34930 10 6452 1 2025-11-23 09:23:04.968 00:05:00.818 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 09:23:04.965 00:05:00.824 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 09:27:49.196 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:47964 10 6452 1 2025-11-23 09:28:49.602 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:56890 10 6452 1 2025-11-23 09:29:49.961 00:00:10.664 TCP 1.101.0.1:3000 -> 23.104.0.1:36522 10 6452 1 2025-11-23 09:30:50.664 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39146 10 6452 1 2025-11-23 09:31:41.600 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 09:31:41.530 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 09:31:41.594 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 09:31:41.818 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 09:31:41.676 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 09:31:51.096 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:38678 10 6452 1 2025-11-23 09:32:51.463 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:36364 10 6452 1 2025-11-23 09:29:04.973 00:05:00.816 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 09:29:04.970 00:05:00.822 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 09:33:51.872 00:00:12.939 TCP 1.101.0.1:3000 -> 23.104.0.1:53754 10 6452 1 2025-11-23 09:34:54.858 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:39532 10 6452 1 2025-11-23 09:35:55.226 00:00:10.532 TCP 1.101.0.1:3000 -> 23.104.0.1:58648 10 6452 1 2025-11-23 09:36:42.285 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 09:36:41.799 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 09:36:42.333 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 09:36:42.282 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 09:36:42.417 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 09:36:55.797 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41836 10 6452 1 2025-11-23 09:37:56.203 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:39388 10 6452 1 2025-11-23 09:35:04.975 00:05:00.817 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 09:38:56.607 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:52298 10 6452 1 2025-11-23 09:35:04.977 00:05:00.812 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 09:39:57.011 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34242 10 6452 1 2025-11-23 09:40:57.414 00:00:10.434 TCP 1.101.0.1:3000 -> 23.104.0.1:46388 12 10369 1 2025-11-23 09:41:41.921 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 09:41:42.073 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 09:41:41.967 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 09:41:41.838 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 09:41:41.846 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 09:41:57.889 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:45002 10 6452 1 2025-11-23 09:42:58.255 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54450 10 6452 1 2025-11-23 09:43:58.660 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:35908 10 6452 1 2025-11-23 09:41:04.979 00:05:00.811 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 09:41:04.976 00:05:00.817 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 09:44:59.095 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:57796 10 6452 1 2025-11-23 09:45:59.461 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:33478 10 6452 1 2025-11-23 09:46:42.036 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 09:46:41.958 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 09:46:42.255 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 09:46:41.941 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 09:46:42.337 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 09:46:59.827 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:57090 10 6452 1 2025-11-23 09:48:00.203 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:51176 10 6452 1 2025-11-23 09:49:00.608 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43234 10 6452 1 2025-11-23 09:50:01.015 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60270 10 6452 1 2025-11-23 09:47:04.977 00:05:00.818 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 09:47:04.979 00:05:00.812 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 09:51:01.418 00:00:10.400 TCP 1.101.0.1:3000 -> 23.104.0.1:46554 12 10578 1 2025-11-23 09:51:42.033 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 09:51:42.224 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 09:51:42.195 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 09:51:41.945 00:00:00.028 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 09:51:42.279 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 09:52:01.859 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:46730 10 6661 1 2025-11-23 09:53:02.274 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47994 10 6661 1 2025-11-23 09:54:02.680 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:43500 10 6661 1 2025-11-23 09:55:03.116 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:50470 10 6661 1 2025-11-23 09:56:03.550 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:53702 10 6661 1 2025-11-23 09:56:42.237 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 09:56:42.392 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 09:56:42.361 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 09:56:42.236 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 09:56:42.443 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 09:53:04.980 00:05:00.813 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 09:53:04.978 00:05:00.818 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 09:57:03.959 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:38836 10 6661 1 2025-11-23 09:58:04.363 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:56794 10 6661 1 Summary: total flows: 139, total bytes: 431817, total packets: 1020, avg bps: 973, avg pps: 0, avg bpp: 423 Time window: 2025-11-23 08:59:04 - 2025-11-23 09:58:14 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0012s User: 0.0036s Wall: 0.0021s flows/second: 66160.7 Runtime: 0.0021s