Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-23 17:58:56.107 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:33398 10 6452 1 2025-11-23 17:59:56.468 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55080 10 6452 1 2025-11-23 18:00:56.881 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59222 10 6452 1 2025-11-23 18:01:51.756 00:00:00.032 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 18:01:52.048 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 18:01:51.823 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 18:01:51.673 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 18:01:51.969 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 17:58:05.157 00:05:00.919 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 18:01:57.288 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:52258 10 6452 1 2025-11-23 17:58:05.159 00:05:00.914 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 18:02:57.647 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:42328 10 6452 1 2025-11-23 18:03:58.054 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54446 10 6452 1 2025-11-23 18:04:58.456 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37512 10 6452 1 2025-11-23 18:05:58.859 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:58208 10 6452 1 2025-11-23 18:06:52.399 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 18:06:52.292 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 18:06:52.399 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 18:06:52.093 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 18:06:52.482 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 18:06:59.228 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:55756 10 6452 1 2025-11-23 18:04:05.164 00:05:00.911 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 18:07:59.607 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:38174 10 6452 1 2025-11-23 18:04:05.161 00:05:00.916 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 18:09:00.015 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33034 10 6452 1 2025-11-23 18:10:00.421 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:40762 10 6452 1 2025-11-23 18:11:00.781 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47168 10 6452 1 2025-11-23 18:11:52.003 00:00:00.043 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 18:11:52.062 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 18:11:52.191 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 18:11:52.111 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 18:11:52.275 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 18:12:01.184 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:59138 10 6452 1 2025-11-23 18:13:01.547 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:34664 10 6452 1 2025-11-23 18:10:05.169 00:05:00.910 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 18:10:05.167 00:05:00.915 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 18:14:01.948 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:47600 10 6452 1 2025-11-23 18:15:02.362 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:52478 10 6452 1 2025-11-23 18:16:02.779 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:45104 10 6452 1 2025-11-23 18:16:52.283 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 18:16:52.298 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 18:16:52.245 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 18:16:52.290 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 18:16:52.379 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 18:17:03.154 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:56384 10 6452 1 2025-11-23 18:18:03.570 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:42562 12 6556 1 2025-11-23 18:19:03.985 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:36126 10 6452 1 2025-11-23 18:16:05.170 00:05:00.911 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 18:16:05.166 00:05:00.917 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 18:20:04.397 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:51980 10 6452 1 2025-11-23 18:21:04.800 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:60772 10 6452 1 2025-11-23 18:21:52.101 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 18:21:52.072 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 18:21:52.365 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 18:21:52.266 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 18:21:52.448 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 18:22:05.215 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:34668 10 6452 1 2025-11-23 18:23:05.611 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36670 10 6452 1 2025-11-23 18:24:06.013 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:53980 10 6452 1 2025-11-23 18:25:06.417 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:58234 10 6452 1 2025-11-23 18:22:05.175 00:05:00.908 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 18:22:05.173 00:05:00.912 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 18:26:06.780 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:52650 10 6452 1 2025-11-23 18:26:52.316 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 18:26:52.469 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 18:26:52.534 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 18:26:52.314 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 18:26:52.616 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 18:27:07.186 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:35046 10 6452 1 2025-11-23 18:28:07.551 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34130 10 6452 1 2025-11-23 18:29:07.954 00:00:10.351 TCP 1.101.0.1:3000 -> 23.104.0.1:57522 10 6452 1 2025-11-23 18:30:08.343 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:39260 10 6452 1 2025-11-23 18:31:08.706 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46502 10 6452 1 2025-11-23 18:31:52.800 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 18:31:52.398 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 18:31:52.837 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 18:31:52.560 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 18:31:52.921 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 18:28:05.174 00:05:00.911 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 18:28:05.177 00:05:00.907 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 18:32:09.117 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:37218 10 6452 1 2025-11-23 18:33:09.514 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:51466 10 6452 1 2025-11-23 18:34:09.878 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47282 10 6452 1 2025-11-23 18:35:10.278 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51524 10 6452 1 2025-11-23 18:36:10.682 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:59732 10 6452 1 2025-11-23 18:36:52.686 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 18:36:52.333 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 18:36:52.454 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 18:36:52.604 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 18:36:52.522 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 18:37:11.107 00:00:11.203 TCP 1.101.0.1:3000 -> 23.104.0.1:46738 10 6452 1 2025-11-23 18:34:05.176 00:05:00.911 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 18:34:05.179 00:05:00.906 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 18:38:12.348 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:42648 10 6452 1 2025-11-23 18:39:12.744 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50430 10 6452 1 2025-11-23 18:40:13.152 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:40352 10 6452 1 2025-11-23 18:41:13.521 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:60758 10 6452 1 2025-11-23 18:41:52.778 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 18:41:52.765 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 18:41:52.735 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 18:41:52.733 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 18:41:52.817 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 18:42:13.933 00:00:10.343 TCP 1.101.0.1:3000 -> 23.104.0.1:60228 10 6452 1 2025-11-23 18:43:14.317 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:58078 10 6452 1 2025-11-23 18:40:05.180 00:05:00.906 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 18:40:05.179 00:05:00.911 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 18:44:14.677 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:60576 10 6452 1 2025-11-23 18:45:15.112 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:53406 10 6452 1 2025-11-23 18:46:15.517 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33724 10 6452 1 2025-11-23 18:46:52.688 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 18:46:52.606 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 18:46:52.864 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 18:46:52.608 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 18:46:52.652 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 18:47:15.921 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:39590 10 6452 1 2025-11-23 18:48:16.293 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:48180 10 6452 1 2025-11-23 18:49:16.706 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38422 10 6452 1 2025-11-23 18:46:05.183 00:05:00.905 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 18:46:05.181 00:05:00.910 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 18:50:17.112 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:55212 10 6452 1 2025-11-23 18:51:17.516 00:00:10.447 TCP 1.101.0.1:3000 -> 23.104.0.1:54850 12 10375 1 2025-11-23 18:51:53.277 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 18:51:53.196 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 18:51:53.354 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 18:51:53.279 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 18:51:53.437 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 18:52:17.997 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:58432 10 6452 1 2025-11-23 18:53:18.445 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54740 10 6452 1 2025-11-23 18:54:18.847 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:43198 10 6452 1 2025-11-23 18:55:19.271 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:41772 10 6452 1 2025-11-23 18:52:05.185 00:05:00.904 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 18:52:05.182 00:05:00.910 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 18:56:19.643 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:35072 10 6452 1 2025-11-23 18:56:53.053 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 18:56:52.869 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 18:56:52.889 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 18:56:53.048 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 18:56:52.972 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 18:57:20.069 00:00:10.419 TCP 1.101.0.1:3000 -> 23.104.0.1:42280 11 6504 1 2025-11-23 18:58:20.530 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51392 10 6452 1 Summary: total flows: 140, total bytes: 421079, total packets: 1025, avg bps: 929, avg pps: 0, avg bpp: 410 Time window: 2025-11-23 17:58:05 - 2025-11-23 18:58:30 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0032s User: 0.0016s Wall: 0.0020s flows/second: 70205.9 Runtime: 0.0020s