Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-23 18:59:20.938 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:46564 10 6452 1 2025-11-23 19:00:21.360 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40802 10 6452 1 2025-11-23 19:01:21.761 00:00:10.393 TCP 1.101.0.1:3000 -> 23.104.0.1:46948 10 6452 1 2025-11-23 19:01:53.306 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 19:01:53.179 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 19:01:52.808 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 19:01:53.225 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 19:01:53.008 00:00:00.028 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 18:58:05.185 00:05:00.909 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 18:58:05.187 00:05:00.905 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 19:02:22.188 00:00:11.622 TCP 1.101.0.1:3000 -> 23.104.0.1:50898 10 6452 1 2025-11-23 19:03:23.851 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:58014 10 6452 1 2025-11-23 19:04:24.270 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:60326 10 6452 1 2025-11-23 19:05:24.672 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35870 10 6452 1 2025-11-23 19:06:25.102 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:35664 10 6452 1 2025-11-23 19:06:53.263 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 19:06:53.180 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 19:06:53.037 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 19:06:53.179 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 19:06:53.300 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 19:07:25.503 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52448 10 6452 1 2025-11-23 19:04:05.190 00:05:00.904 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 19:04:05.187 00:05:00.909 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 19:08:25.908 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:37162 10 6452 1 2025-11-23 19:09:26.335 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:55626 10 6452 1 2025-11-23 19:10:26.744 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:58322 10 6452 1 2025-11-23 19:11:27.119 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:51788 10 6452 1 2025-11-23 19:11:53.463 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 19:11:53.343 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 19:11:53.306 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 19:11:53.382 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 19:11:53.194 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 19:12:27.522 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:43878 10 6452 1 2025-11-23 19:13:27.927 00:00:10.394 TCP 1.101.0.1:3000 -> 23.104.0.1:33962 10 6452 1 2025-11-23 19:10:05.189 00:05:00.909 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 19:10:05.192 00:05:00.903 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 19:14:28.359 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:36838 10 6452 1 2025-11-23 19:15:28.765 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:59342 10 6452 1 2025-11-23 19:16:29.182 00:00:14.273 TCP 1.101.0.1:3000 -> 23.104.0.1:53712 10 6452 1 2025-11-23 19:16:53.721 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 19:16:53.785 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 19:16:53.629 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 19:16:53.638 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 19:16:53.725 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 19:17:33.520 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:55784 10 6452 1 2025-11-23 19:18:33.889 00:00:10.743 TCP 1.101.0.1:3000 -> 23.104.0.1:54000 12 6556 1 2025-11-23 19:19:34.672 00:00:10.423 TCP 1.101.0.1:3000 -> 23.104.0.1:49574 11 6504 1 2025-11-23 19:16:05.191 00:05:00.908 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 19:16:05.194 00:05:00.903 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 19:20:35.137 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:44172 10 6452 1 2025-11-23 19:21:35.541 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:44908 10 6452 1 2025-11-23 19:21:53.546 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 19:21:53.348 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 19:21:53.484 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 19:21:53.481 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 19:21:53.567 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 19:22:35.944 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:49284 10 6452 1 2025-11-23 19:23:36.339 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:54284 10 6452 1 2025-11-23 19:24:36.751 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:45884 10 6452 1 2025-11-23 19:25:37.169 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49426 10 6452 1 2025-11-23 19:22:05.194 00:05:00.905 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 19:22:05.191 00:05:00.910 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 19:26:37.573 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33916 10 6452 1 2025-11-23 19:26:53.570 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 19:26:53.406 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 19:26:53.526 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 19:26:53.488 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 19:26:53.681 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 19:27:37.982 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:35386 10 6452 1 2025-11-23 19:28:38.396 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:44710 10 6452 1 2025-11-23 19:29:38.759 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:42288 10 6452 1 2025-11-23 19:30:39.155 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:48818 10 6452 1 2025-11-23 19:31:53.634 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 19:31:39.559 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:40390 10 6452 1 2025-11-23 19:31:53.716 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 19:31:53.651 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 19:31:53.551 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 19:31:53.715 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 19:28:05.195 00:05:00.905 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 19:28:05.193 00:05:00.911 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 19:32:39.968 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54970 10 6452 1 2025-11-23 19:33:40.374 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36200 10 6452 1 2025-11-23 19:34:40.774 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46152 10 6452 1 2025-11-23 19:35:41.180 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:49720 10 6452 1 2025-11-23 19:36:53.820 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 19:36:53.783 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 19:36:41.578 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49116 10 6452 1 2025-11-23 19:36:53.828 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 19:36:53.655 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 19:36:53.903 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 19:37:41.981 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:57410 10 6452 1 2025-11-23 19:34:05.193 00:05:00.914 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 19:34:05.196 00:05:00.909 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 19:38:42.392 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55170 10 6452 1 2025-11-23 19:39:42.798 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:33684 10 6452 1 2025-11-23 19:40:43.209 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58020 10 6452 1 2025-11-23 19:41:53.994 00:00:00.038 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 19:41:53.643 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 19:41:43.615 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33692 10 6452 1 2025-11-23 19:41:53.925 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 19:41:53.994 00:00:00.038 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 19:41:54.009 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 19:42:44.019 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:47828 10 6452 1 2025-11-23 19:43:44.387 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:57716 10 6452 1 2025-11-23 19:40:05.199 00:05:00.911 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 19:40:05.197 00:05:00.916 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 19:44:44.757 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:60924 10 6452 1 2025-11-23 19:45:45.187 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:40048 10 6452 1 2025-11-23 19:46:53.941 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 19:46:53.802 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 19:46:45.593 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47280 10 6452 1 2025-11-23 19:46:53.926 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 19:46:54.002 00:00:00.035 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 19:46:54.010 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 19:47:45.999 00:00:15.097 TCP 1.101.0.1:3000 -> 23.104.0.1:59482 10 6452 1 2025-11-23 19:48:51.161 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:58898 10 6452 1 2025-11-23 19:49:51.558 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:54324 10 6452 1 2025-11-23 19:46:05.211 00:05:00.911 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 19:46:05.208 00:05:00.916 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 19:50:51.922 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:40824 10 6452 1 2025-11-23 19:51:54.142 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 19:51:53.930 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 19:51:54.082 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 19:51:54.082 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 19:51:54.164 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 19:51:52.332 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:32812 10 6452 1 2025-11-23 19:52:52.736 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:46356 10 6452 1 2025-11-23 19:53:53.110 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57320 10 6452 1 2025-11-23 19:54:53.517 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49938 10 6452 1 2025-11-23 19:55:53.924 00:00:10.438 TCP 1.101.0.1:3000 -> 23.104.0.1:53170 12 10375 1 2025-11-23 19:52:05.208 00:05:00.918 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 19:52:05.211 00:05:00.913 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 19:56:54.493 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 19:56:54.277 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 19:56:53.959 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 19:56:54.410 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 19:56:54.141 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 19:56:54.433 00:00:10.714 TCP 1.101.0.1:3000 -> 23.104.0.1:46808 10 6452 1 2025-11-23 19:57:55.188 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:35322 10 6452 1 Summary: total flows: 139, total bytes: 414627, total packets: 1015, avg bps: 921, avg pps: 0, avg bpp: 408 Time window: 2025-11-23 18:58:05 - 2025-11-23 19:58:05 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0048s User: 0.0012s Wall: 0.0037s flows/second: 38040.5 Runtime: 0.0037s