Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-23 12:59:20.937 00:00:10.342 TCP 1.101.0.1:3000 -> 23.104.0.1:48142 10 6452 1 2025-11-23 13:00:21.323 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:46760 10 6452 1 2025-11-23 12:56:05.071 00:06:00.001 TCP 179.21.23.21:38570 -> 179.21.23.23:179 13 790 1 2025-11-23 12:56:05.908 00:06:00.006 TCP 179.21.23.23:179 -> 179.21.23.21:38570 13 790 1 2025-11-23 13:01:21.728 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:52792 10 6452 1 2025-11-23 13:01:45.757 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 13:01:45.933 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 13:01:46.066 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 13:01:46.213 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 13:01:46.148 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 13:02:22.111 00:00:10.393 TCP 1.101.0.1:3000 -> 23.104.0.1:52006 10 6452 1 2025-11-23 13:03:22.552 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:33050 10 6452 1 2025-11-23 13:04:22.981 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:39706 10 6452 1 2025-11-23 13:05:23.350 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:51082 10 6452 1 2025-11-23 13:06:23.707 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35954 10 6452 1 2025-11-23 13:06:45.814 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 13:06:45.865 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 13:06:46.264 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 13:06:46.179 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 13:06:46.181 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 13:02:05.911 00:06:00.001 TCP 179.21.23.21:38570 -> 179.21.23.23:179 13 809 1 2025-11-23 13:07:24.115 00:00:10.753 TCP 1.101.0.1:3000 -> 23.104.0.1:49872 10 6452 1 2025-11-23 13:03:05.071 00:06:00.001 TCP 179.21.23.23:179 -> 179.21.23.21:38570 13 809 1 2025-11-23 13:08:24.909 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:50270 10 6452 1 2025-11-23 13:09:25.314 00:00:10.749 TCP 1.101.0.1:3000 -> 23.104.0.1:37200 10 6452 1 2025-11-23 13:10:26.126 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34716 10 6452 1 2025-11-23 13:09:05.916 00:02:00.001 TCP 179.21.23.23:179 -> 179.21.23.21:38570 5 298 1 2025-11-23 13:11:26.528 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46532 10 6452 1 2025-11-23 13:11:45.909 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 13:11:46.146 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 13:11:46.061 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 13:11:46.063 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 13:11:46.067 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 13:12:26.934 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:36330 10 6452 1 2025-11-23 13:13:27.356 00:00:11.028 TCP 1.101.0.1:3000 -> 23.104.0.1:45180 10 6452 1 2025-11-23 13:09:05.074 00:06:00.001 TCP 179.21.23.21:38570 -> 179.21.23.23:179 13 790 1 2025-11-23 13:14:28.420 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36682 10 6452 1 2025-11-23 13:15:28.820 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46528 10 6452 1 2025-11-23 13:12:05.073 00:04:00.845 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-23 13:16:29.225 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:33944 10 6452 1 2025-11-23 13:16:46.427 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 13:16:46.273 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 13:16:46.403 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 13:16:46.197 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 13:16:46.344 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 13:15:05.915 00:02:00.000 TCP 179.21.23.21:38570 -> 179.21.23.23:179 5 317 1 2025-11-23 13:17:29.586 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46780 10 6452 1 2025-11-23 13:18:29.992 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50352 10 6452 1 2025-11-23 13:19:30.396 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34210 10 6452 1 2025-11-23 13:20:30.798 00:00:10.353 TCP 1.101.0.1:3000 -> 23.104.0.1:38696 10 6452 1 2025-11-23 13:17:05.074 00:04:00.845 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-23 13:21:31.186 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:51460 10 6452 1 2025-11-23 13:21:46.291 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 13:21:46.293 00:00:00.027 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 13:21:46.297 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 13:21:46.403 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 13:21:46.373 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 13:18:05.076 00:04:00.840 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-23 13:22:31.549 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:38730 10 6452 1 2025-11-23 13:23:31.913 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43944 10 6452 1 2025-11-23 13:24:32.317 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:37178 10 6452 1 2025-11-23 13:25:32.722 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:60248 10 6452 1 2025-11-23 13:26:46.417 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 13:26:33.106 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:57554 10 6452 1 2025-11-23 13:26:46.425 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 13:26:46.367 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 13:26:46.335 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 13:26:46.234 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 13:22:05.074 00:06:00.001 TCP 179.21.23.23:179 -> 179.21.23.21:38570 13 809 1 2025-11-23 13:23:05.076 00:04:00.841 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-23 13:27:33.471 00:00:10.407 TCP 1.101.0.1:3000 -> 23.104.0.1:58020 10 6452 1 2025-11-23 13:28:33.941 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:36136 10 6452 1 2025-11-23 13:29:34.359 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:46098 10 6452 1 2025-11-23 13:30:34.727 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:41266 10 6452 1 2025-11-23 13:31:35.113 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:59276 10 6452 1 2025-11-23 13:31:46.647 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 13:31:46.565 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 13:31:46.506 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 13:31:46.565 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 13:31:46.474 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 13:32:35.482 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:50616 10 6452 1 2025-11-23 13:28:05.077 00:06:00.003 TCP 179.21.23.21:38570 -> 179.21.23.23:179 13 790 1 2025-11-23 13:28:05.919 00:06:00.002 TCP 179.21.23.23:179 -> 179.21.23.21:38570 13 790 1 2025-11-23 13:33:35.900 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:38750 12 6556 1 2025-11-23 13:34:36.320 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:50230 10 6452 1 2025-11-23 13:35:36.685 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:36054 10 6452 1 2025-11-23 13:36:46.691 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 13:36:37.112 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:42652 10 6452 1 2025-11-23 13:36:46.700 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 13:36:46.629 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 13:36:46.688 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 13:36:46.712 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 13:37:37.474 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:54098 10 6452 1 2025-11-23 13:38:37.841 00:00:10.353 TCP 1.101.0.1:3000 -> 23.104.0.1:41152 10 6452 1 2025-11-23 13:34:05.919 00:06:00.001 TCP 179.21.23.21:38570 -> 179.21.23.23:179 13 809 1 2025-11-23 13:39:38.232 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:34248 10 6452 1 2025-11-23 13:35:05.077 00:06:00.003 TCP 179.21.23.23:179 -> 179.21.23.21:38570 13 809 1 2025-11-23 13:40:38.641 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:45070 10 6452 1 2025-11-23 13:41:46.919 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 13:41:39.011 00:00:10.455 TCP 1.101.0.1:3000 -> 23.104.0.1:36278 10 6452 1 2025-11-23 13:41:46.881 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 13:41:46.679 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 13:41:46.836 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 13:41:46.879 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 13:42:39.504 00:00:11.710 TCP 1.101.0.1:3000 -> 23.104.0.1:59416 10 6452 1 2025-11-23 13:43:41.254 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:38580 10 6452 1 2025-11-23 13:44:41.659 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:49018 10 6452 1 2025-11-23 13:45:42.018 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49098 10 6452 1 2025-11-23 13:41:05.922 00:05:59.160 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 13:41:05.082 00:06:00.003 TCP 179.21.23.21:38570 -> 179.21.23.23:179 13 790 1 2025-11-23 13:46:46.945 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 13:46:46.954 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 13:46:46.628 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 13:46:46.862 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 13:46:46.621 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 13:46:42.424 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:60124 10 6452 1 2025-11-23 13:47:42.829 00:00:10.355 TCP 1.101.0.1:3000 -> 23.104.0.1:52938 10 6452 1 2025-11-23 13:47:05.923 00:01:00.007 TCP 179.21.23.23:179 -> 179.21.23.21:38570 3 175 1 2025-11-23 13:48:43.223 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:60672 10 6452 1 2025-11-23 13:47:05.920 00:02:00.008 TCP 179.21.23.21:38570 -> 179.21.23.23:179 5 317 1 2025-11-23 13:49:43.633 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38982 10 6452 1 2025-11-23 13:50:44.034 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58036 10 6452 1 2025-11-23 13:51:46.897 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 13:51:46.606 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 13:51:47.114 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 13:51:46.903 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 13:51:47.197 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 13:51:44.436 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60618 10 6452 1 2025-11-23 13:52:44.846 00:00:10.441 TCP 1.101.0.1:3000 -> 23.104.0.1:49980 11 6504 1 2025-11-23 13:49:05.083 00:04:00.857 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-23 13:53:45.329 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:42772 10 6452 1 2025-11-23 13:50:05.085 00:04:00.844 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-23 13:54:45.691 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55152 10 6452 1 2025-11-23 13:55:46.106 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:40264 10 6452 1 2025-11-23 13:56:47.296 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 13:56:47.146 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 13:56:47.370 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 13:56:47.296 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 13:56:47.454 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 13:56:46.468 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:47354 10 6452 1 2025-11-23 13:57:46.885 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42020 10 6452 1 Summary: total flows: 141, total bytes: 410264, total packets: 1006, avg bps: 884, avg pps: 0, avg bpp: 407 Time window: 2025-11-23 12:56:05 - 2025-11-23 13:57:57 Total flows processed: 141, passed: 141, Blocks skipped: 0, Bytes read: 14728 Sys: 0.0047s User: 0.0009s Wall: 0.0012s flows/second: 121761.8 Runtime: 0.0012s