Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-23 10:59:31.360 00:00:10.416 TCP 1.101.0.1:3000 -> 23.104.0.1:54862 11 6713 1 2025-11-23 11:00:31.812 00:00:10.476 TCP 1.101.0.1:3000 -> 23.104.0.1:57704 12 10375 1 2025-11-23 11:01:43.661 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 11:01:43.630 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 11:01:43.462 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 11:01:43.578 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 11:01:43.397 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 11:01:32.354 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:43144 10 6452 1 2025-11-23 11:02:32.776 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:55758 10 6452 1 2025-11-23 10:58:05.835 00:05:00.001 TCP 179.21.23.23:179 -> 179.21.23.21:38570 11 667 1 2025-11-23 11:03:33.190 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42000 10 6452 1 2025-11-23 10:59:05.832 00:06:00.002 TCP 179.21.23.21:38570 -> 179.21.23.23:179 13 809 1 2025-11-23 11:04:33.595 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:46076 10 6452 1 2025-11-23 11:05:33.953 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:45840 10 6452 1 2025-11-23 11:06:43.635 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 11:06:43.955 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 11:06:43.454 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 11:06:43.553 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 11:06:43.873 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 11:06:34.359 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:33496 10 6452 1 2025-11-23 11:07:34.765 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:41964 10 6452 1 2025-11-23 11:04:05.022 00:04:00.815 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-23 11:08:35.182 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:38560 10 6452 1 2025-11-23 11:06:05.032 00:03:00.803 TCP 179.21.23.21:38570 -> 179.21.23.23:179 8 492 1 2025-11-23 11:09:35.607 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:35208 10 6452 1 2025-11-23 11:10:35.970 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:60158 10 6452 1 2025-11-23 11:11:43.952 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 11:11:43.921 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 11:11:43.781 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 11:11:43.870 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 11:11:43.629 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 11:11:36.387 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57692 10 6452 1 2025-11-23 11:12:36.792 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34584 10 6452 1 2025-11-23 11:13:37.199 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:46002 10 6452 1 2025-11-23 11:09:05.035 00:06:00.003 TCP 179.21.23.23:179 -> 179.21.23.21:38570 13 809 1 2025-11-23 11:10:05.038 00:04:00.804 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-23 11:14:37.600 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:56304 10 6452 1 2025-11-23 11:15:38.000 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:36572 10 6452 1 2025-11-23 11:16:43.832 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 11:16:43.853 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 11:16:43.728 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 11:16:43.608 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 11:16:43.812 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 11:16:38.398 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44634 10 6452 1 2025-11-23 11:17:38.802 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:37648 10 6452 1 2025-11-23 11:18:39.206 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:59110 10 6452 1 2025-11-23 11:19:39.570 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45018 10 6452 1 2025-11-23 11:15:05.042 00:06:00.001 TCP 179.21.23.21:38570 -> 179.21.23.23:179 13 790 1 2025-11-23 11:15:05.845 00:06:00.005 TCP 179.21.23.23:179 -> 179.21.23.21:38570 13 790 1 2025-11-23 11:20:39.971 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:48384 10 6452 1 2025-11-23 11:21:44.129 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 11:21:43.746 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 11:21:43.917 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 11:21:43.980 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 11:21:44.000 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 11:21:40.380 00:00:11.828 TCP 1.101.0.1:3000 -> 23.104.0.1:49530 10 6452 1 2025-11-23 11:22:42.248 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34486 10 6452 1 2025-11-23 11:23:42.652 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56184 12 6556 1 2025-11-23 11:24:43.062 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:44076 10 6452 1 2025-11-23 11:25:43.425 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:39196 10 6452 1 2025-11-23 11:21:05.847 00:06:00.002 TCP 179.21.23.21:38570 -> 179.21.23.23:179 13 809 1 2025-11-23 11:26:44.147 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 11:26:43.978 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 11:26:44.142 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 11:26:44.054 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 11:26:44.225 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 11:26:43.842 00:00:10.347 TCP 1.101.0.1:3000 -> 23.104.0.1:50802 10 6452 1 2025-11-23 11:22:05.040 00:06:00.002 TCP 179.21.23.23:179 -> 179.21.23.21:38570 13 809 1 2025-11-23 11:27:44.226 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:48222 10 6452 1 2025-11-23 11:28:44.590 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51272 10 6452 1 2025-11-23 11:29:44.992 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:59218 10 6452 1 2025-11-23 11:30:45.397 00:00:10.403 TCP 1.101.0.1:3000 -> 23.104.0.1:37228 12 10375 1 2025-11-23 11:31:44.461 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 11:31:44.226 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 11:31:44.216 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 11:31:44.379 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 11:31:44.445 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 11:31:45.840 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:38752 10 6452 1 2025-11-23 11:32:46.279 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:59642 10 6452 1 2025-11-23 11:28:05.851 00:05:59.192 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 11:28:05.045 00:06:00.002 TCP 179.21.23.21:38570 -> 179.21.23.23:179 13 790 1 2025-11-23 11:33:46.699 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:46094 10 6452 1 2025-11-23 11:34:47.113 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:52844 10 6452 1 2025-11-23 11:34:05.854 00:01:00.000 TCP 179.21.23.23:179 -> 179.21.23.21:38570 3 175 1 2025-11-23 11:35:47.476 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:42900 12 6556 1 2025-11-23 11:36:44.489 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 11:36:44.079 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 11:36:44.425 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 11:36:44.621 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 11:36:44.506 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 11:36:47.879 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:56972 10 6452 1 2025-11-23 11:37:48.287 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:60042 10 6452 1 2025-11-23 11:38:48.652 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:43946 10 6452 1 2025-11-23 11:34:05.852 00:05:59.196 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 11:39:49.076 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:36514 10 6452 1 2025-11-23 11:36:05.044 00:04:00.811 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-23 11:40:49.479 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:42398 10 6452 1 2025-11-23 11:41:44.315 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 11:41:44.261 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 11:41:44.389 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 11:41:44.474 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 11:41:44.472 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 11:41:49.887 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:55112 10 6452 1 2025-11-23 11:42:50.318 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43574 10 6452 1 2025-11-23 11:43:50.722 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:38188 10 6452 1 2025-11-23 11:44:51.146 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:53066 10 6452 1 2025-11-23 11:40:05.852 00:05:59.195 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 11:41:05.045 00:06:00.001 TCP 179.21.23.23:179 -> 179.21.23.21:38570 13 809 1 2025-11-23 11:45:51.549 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45216 10 6452 1 2025-11-23 11:46:05.861 00:00:00.000 TCP 179.21.23.21:38570 -> 179.21.23.23:179 1 71 1 2025-11-23 11:46:44.821 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 11:46:44.732 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 11:46:44.544 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 11:46:44.738 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 11:46:44.810 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 11:46:51.951 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52814 10 6452 1 2025-11-23 11:47:52.359 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48150 10 6452 1 2025-11-23 11:48:52.762 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:54514 10 6452 1 2025-11-23 11:49:53.186 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:47784 10 6452 1 2025-11-23 11:50:53.542 00:00:10.408 TCP 1.101.0.1:3000 -> 23.104.0.1:60790 10 6452 1 2025-11-23 11:51:44.568 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 11:51:44.490 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 11:51:44.519 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 11:51:44.485 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 11:51:44.558 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 11:47:05.863 00:06:00.003 TCP 179.21.23.23:179 -> 179.21.23.21:38570 13 790 1 2025-11-23 11:51:53.985 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:42822 10 6452 1 2025-11-23 11:47:05.048 00:06:00.003 TCP 179.21.23.21:38570 -> 179.21.23.23:179 13 790 1 2025-11-23 11:52:54.396 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:51490 10 6452 1 2025-11-23 11:53:54.795 00:00:10.345 TCP 1.101.0.1:3000 -> 23.104.0.1:34170 10 6452 1 2025-11-23 11:54:55.176 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:57466 10 6452 1 2025-11-23 11:55:55.592 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:34646 10 6452 1 2025-11-23 11:56:44.622 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 11:56:44.322 00:00:00.032 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 11:56:44.404 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 11:56:44.774 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 11:56:44.487 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 11:56:56.012 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59396 10 6452 1 2025-11-23 11:53:05.863 00:06:00.003 TCP 179.21.23.21:38570 -> 179.21.23.23:179 13 809 1 2025-11-23 11:57:56.419 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:54024 10 6452 1 Summary: total flows: 140, total bytes: 418371, total packets: 1011, avg bps: 914, avg pps: 0, avg bpp: 413 Time window: 2025-11-23 10:58:05 - 2025-11-23 11:59:05 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0030s User: 0.0020s Wall: 0.0018s flows/second: 77304.2 Runtime: 0.0018s