Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-23 14:59:14.520 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56494 10 6452 1 2025-11-23 15:00:14.922 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:40584 10 6452 1 2025-11-23 15:01:15.330 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60698 10 6452 1 2025-11-23 15:01:48.202 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 15:01:48.223 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 15:01:48.154 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 15:01:48.119 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 15:01:48.315 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 14:58:05.097 00:04:00.859 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-23 15:02:15.740 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39828 10 6452 1 2025-11-23 14:59:05.101 00:04:00.854 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-23 15:03:16.146 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:49444 10 6452 1 2025-11-23 15:04:16.547 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:44978 10 6452 1 2025-11-23 15:05:16.948 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:44728 10 6452 1 2025-11-23 15:06:17.371 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35584 10 6452 1 2025-11-23 15:06:48.457 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 15:06:48.299 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 15:06:48.387 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 15:06:48.375 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 15:06:48.378 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 15:07:17.776 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:55434 10 6452 1 2025-11-23 15:04:05.103 00:04:00.854 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-23 15:03:05.100 00:06:00.003 TCP 179.21.23.23:179 -> 179.21.23.21:38570 13 809 1 2025-11-23 15:08:18.143 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35754 10 6452 1 2025-11-23 15:09:18.545 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57108 10 6452 1 2025-11-23 15:10:18.948 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:43160 10 6452 1 2025-11-23 15:11:19.373 00:00:10.407 TCP 1.101.0.1:3000 -> 23.104.0.1:58552 10 6452 1 2025-11-23 15:11:48.565 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 15:11:48.479 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 15:11:48.450 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 15:11:48.482 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 15:11:48.537 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 15:12:19.851 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:43284 11 6504 1 2025-11-23 15:13:20.286 00:00:14.101 TCP 1.101.0.1:3000 -> 23.104.0.1:39674 11 6492 1 2025-11-23 15:09:05.960 00:06:00.000 TCP 179.21.23.23:179 -> 179.21.23.21:38570 13 790 1 2025-11-23 15:09:05.107 00:06:00.000 TCP 179.21.23.21:38570 -> 179.21.23.23:179 13 790 1 2025-11-23 15:14:24.438 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36620 10 6452 1 2025-11-23 15:15:24.839 00:00:10.347 TCP 1.101.0.1:3000 -> 23.104.0.1:34360 10 6452 1 2025-11-23 15:16:25.224 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:55200 10 6452 1 2025-11-23 15:16:48.584 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 15:16:48.281 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 15:16:48.517 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 15:16:48.517 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 15:16:48.600 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 15:17:25.638 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:35528 10 6452 1 2025-11-23 15:18:25.998 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:59850 10 6452 1 2025-11-23 15:16:05.103 00:03:00.857 TCP 179.21.23.23:179 -> 179.21.23.21:38570 8 492 1 2025-11-23 15:19:26.367 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33850 10 6452 1 2025-11-23 15:15:05.957 00:06:00.003 TCP 179.21.23.21:38570 -> 179.21.23.23:179 13 809 1 2025-11-23 15:20:26.774 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:34458 10 6452 1 2025-11-23 15:21:27.187 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43034 10 6452 1 2025-11-23 15:21:48.797 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 15:21:48.669 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 15:21:48.546 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 15:21:48.714 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 15:21:48.663 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 15:22:27.585 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46032 10 6452 1 2025-11-23 15:23:27.987 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36154 10 6452 1 2025-11-23 15:20:05.105 00:04:00.860 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-23 15:24:28.396 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:37578 10 6452 1 2025-11-23 15:22:05.107 00:03:00.856 TCP 179.21.23.21:38570 -> 179.21.23.23:179 8 492 1 2025-11-23 15:25:28.811 00:00:10.342 TCP 1.101.0.1:3000 -> 23.104.0.1:51002 10 6452 1 2025-11-23 15:26:29.186 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41578 10 6452 1 2025-11-23 15:26:48.586 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 15:26:48.868 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 15:26:48.615 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 15:26:48.503 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 15:26:48.765 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 15:27:29.588 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:45650 10 6452 1 2025-11-23 15:28:29.996 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:45738 10 6452 1 2025-11-23 15:25:05.106 00:04:00.864 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-23 15:29:30.400 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:39414 10 6452 1 2025-11-23 15:26:05.108 00:04:00.860 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-23 15:30:30.804 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:46814 10 6452 1 2025-11-23 15:31:48.754 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 15:31:31.208 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:38348 10 6452 1 2025-11-23 15:31:49.082 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 15:31:48.727 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 15:31:48.672 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 15:31:48.908 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 15:32:31.616 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:36550 10 6452 1 2025-11-23 15:33:31.981 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39254 10 6452 1 2025-11-23 15:30:05.106 00:04:00.867 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-23 15:34:32.384 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:45182 10 6452 1 2025-11-23 15:31:05.108 00:04:00.862 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-23 15:35:32.764 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:57080 10 6452 1 2025-11-23 15:36:33.186 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:43552 10 6452 1 2025-11-23 15:36:49.010 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 15:36:48.986 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 15:36:48.961 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 15:36:48.925 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 15:36:48.928 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 15:37:33.594 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:41256 10 6452 1 2025-11-23 15:38:33.959 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57610 10 6452 1 2025-11-23 15:39:34.362 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34038 10 6452 1 2025-11-23 15:35:05.106 00:06:00.001 TCP 179.21.23.23:179 -> 179.21.23.21:38570 13 809 1 2025-11-23 15:36:05.110 00:04:00.862 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-23 15:40:34.767 00:00:15.491 TCP 1.101.0.1:3000 -> 23.104.0.1:41614 10 6452 1 2025-11-23 15:41:49.237 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 15:41:49.156 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 15:41:49.110 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 15:41:40.312 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:52980 10 6452 1 2025-11-23 15:41:49.105 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 15:41:49.116 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 15:42:40.715 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:49142 10 6452 1 2025-11-23 15:43:41.122 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:60262 10 6452 1 2025-11-23 15:44:41.522 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:44236 10 6452 1 2025-11-23 15:45:41.924 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58672 10 6452 1 2025-11-23 15:41:05.975 00:06:00.003 TCP 179.21.23.23:179 -> 179.21.23.21:38570 13 790 1 2025-11-23 15:41:05.110 00:06:00.002 TCP 179.21.23.21:38570 -> 179.21.23.23:179 13 790 1 2025-11-23 15:46:49.408 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 15:46:49.322 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 15:46:49.045 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 15:46:49.325 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 15:46:49.413 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 15:46:42.333 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38668 10 6452 1 2025-11-23 15:47:42.737 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:53736 10 6452 1 2025-11-23 15:48:43.146 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:38668 10 6452 1 2025-11-23 15:49:43.506 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:52700 10 6452 1 2025-11-23 15:50:43.908 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:44720 12 6556 1 2025-11-23 15:48:05.110 00:03:00.870 TCP 179.21.23.23:179 -> 179.21.23.21:38570 8 492 1 2025-11-23 15:51:49.339 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 15:51:49.251 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 15:51:49.220 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 15:51:49.256 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 15:51:49.319 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 15:51:44.312 00:00:10.584 TCP 1.101.0.1:3000 -> 23.104.0.1:36740 10 6452 1 2025-11-23 15:47:05.975 00:06:00.003 TCP 179.21.23.21:38570 -> 179.21.23.23:179 13 809 1 2025-11-23 15:52:44.936 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:42458 10 6452 1 2025-11-23 15:53:45.352 00:00:10.762 TCP 1.101.0.1:3000 -> 23.104.0.1:41992 10 6452 1 2025-11-23 15:54:46.157 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:38362 10 6452 1 2025-11-23 15:55:46.516 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:60184 10 6452 1 2025-11-23 15:52:05.110 00:04:00.871 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-23 15:56:49.360 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 15:56:49.294 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 15:56:49.355 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 15:56:49.293 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 15:56:49.437 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 15:56:46.913 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46936 10 6452 1 2025-11-23 15:54:05.115 00:03:00.864 TCP 179.21.23.21:38570 -> 179.21.23.23:179 8 492 1 2025-11-23 15:57:47.320 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43046 10 6452 1 Summary: total flows: 141, total bytes: 410498, total packets: 1010, avg bps: 914, avg pps: 0, avg bpp: 406 Time window: 2025-11-23 14:58:05 - 2025-11-23 15:57:57 Total flows processed: 141, passed: 141, Blocks skipped: 0, Bytes read: 14728 Sys: 0.0141s User: 0.0035s Wall: 0.0034s flows/second: 41169.3 Runtime: 0.0035s