Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-23 21:58:45.338 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:36490 10 6452 1 2025-11-23 21:59:45.738 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:44966 11 6504 1 2025-11-23 22:00:46.155 00:00:10.356 TCP 1.101.0.1:3000 -> 23.104.0.1:46208 10 6452 1 2025-11-23 22:01:56.702 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 22:01:56.775 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 22:01:56.642 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 22:01:46.547 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50676 10 6452 1 2025-11-23 22:01:56.619 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 22:01:56.681 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 21:58:05.253 00:05:00.925 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 21:58:05.251 00:05:00.930 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 22:02:46.948 00:00:10.481 TCP 1.101.0.1:3000 -> 23.104.0.1:49180 10 6452 1 2025-11-23 22:03:47.474 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:37832 10 6452 1 2025-11-23 22:04:47.876 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:53044 10 6452 1 2025-11-23 22:05:48.286 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47066 10 6452 1 2025-11-23 22:06:56.720 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 22:06:56.866 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 22:06:56.917 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 22:06:56.826 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 22:06:48.684 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:55374 10 6452 1 2025-11-23 22:06:57.001 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 22:07:49.112 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49770 10 6452 1 2025-11-23 22:04:05.258 00:05:00.921 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 22:04:05.255 00:05:00.926 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 22:08:49.511 00:00:10.484 TCP 1.101.0.1:3000 -> 23.104.0.1:39882 10 6452 1 2025-11-23 22:09:50.035 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55668 10 6452 1 2025-11-23 22:10:50.442 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:33650 10 6452 1 2025-11-23 22:11:56.661 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 22:11:56.882 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 22:11:56.775 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 22:11:56.579 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 22:11:56.833 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 22:11:50.845 00:00:10.393 TCP 1.101.0.1:3000 -> 23.104.0.1:46674 10 6452 1 2025-11-23 22:12:51.279 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:56184 10 6452 1 2025-11-23 22:13:51.688 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:57024 10 6452 1 2025-11-23 22:10:05.259 00:05:00.921 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 22:10:05.257 00:05:00.927 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 22:14:52.107 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:52916 10 6452 1 2025-11-23 22:15:52.508 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:35328 10 6452 1 2025-11-23 22:16:57.363 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 22:16:56.907 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 22:16:57.269 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 22:16:57.278 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 22:16:57.353 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 22:16:52.909 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:33796 10 6452 1 2025-11-23 22:17:53.275 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:39184 10 6452 1 2025-11-23 22:18:53.698 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:56104 10 6452 1 2025-11-23 22:19:54.112 00:00:10.739 TCP 1.101.0.1:3000 -> 23.104.0.1:48104 10 6452 1 2025-11-23 22:16:05.257 00:05:00.926 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 22:16:05.260 00:05:00.922 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 22:20:54.887 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:41870 12 6556 1 2025-11-23 22:21:57.147 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 22:21:57.167 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 22:21:57.179 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 22:21:57.065 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 22:21:57.071 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 22:21:55.319 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34516 10 6452 1 2025-11-23 22:22:55.726 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:41338 10 6452 1 2025-11-23 22:23:56.146 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:36280 10 6452 1 2025-11-23 22:24:56.509 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53888 10 6452 1 2025-11-23 22:22:05.260 00:05:00.926 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 22:25:56.915 00:00:10.436 TCP 1.101.0.1:3000 -> 23.104.0.1:37548 12 10375 1 2025-11-23 22:22:05.262 00:05:00.921 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 22:26:57.183 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 22:26:57.353 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 22:26:57.192 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 22:26:57.100 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 22:26:57.188 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 22:26:57.392 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43420 10 6452 1 2025-11-23 22:27:57.788 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:42598 10 6452 1 2025-11-23 22:28:58.197 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:52480 10 6452 1 2025-11-23 22:29:58.616 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42804 10 6452 1 2025-11-23 22:30:59.020 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:44838 10 6452 1 2025-11-23 22:31:57.191 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 22:31:57.236 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 22:31:57.349 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 22:31:57.305 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 22:31:57.317 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 22:31:59.381 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:43200 10 6452 1 2025-11-23 22:28:05.262 00:05:00.921 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 22:28:05.260 00:05:00.926 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 22:32:59.758 00:00:10.393 TCP 1.101.0.1:3000 -> 23.104.0.1:51994 12 6556 1 2025-11-23 22:34:00.191 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:48728 10 6452 1 2025-11-23 22:35:00.591 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:34090 10 6452 1 2025-11-23 22:36:00.996 00:00:10.437 TCP 1.101.0.1:3000 -> 23.104.0.1:47288 12 10369 1 2025-11-23 22:36:57.166 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 22:36:57.239 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 22:36:57.467 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 22:36:57.446 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 22:36:57.550 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 22:37:01.473 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37846 10 6452 1 2025-11-23 22:34:05.262 00:05:00.927 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 22:34:05.265 00:05:00.922 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 22:38:01.874 00:00:10.996 TCP 1.101.0.1:3000 -> 23.104.0.1:39704 10 6452 1 2025-11-23 22:39:02.909 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34856 10 6452 1 2025-11-23 22:40:03.314 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:33430 10 6452 1 2025-11-23 22:41:03.740 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:33606 10 6452 1 2025-11-23 22:41:57.538 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 22:41:57.643 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 22:41:57.209 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 22:41:57.456 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 22:41:57.678 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 22:42:04.111 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:50744 10 6452 1 2025-11-23 22:43:04.514 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39792 10 6452 1 2025-11-23 22:40:05.266 00:05:00.924 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 22:40:05.262 00:05:00.929 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 22:44:04.917 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58822 10 6452 1 2025-11-23 22:45:05.322 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41496 10 6452 1 2025-11-23 22:46:05.729 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:49512 10 6452 1 2025-11-23 22:46:57.627 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 22:46:57.650 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 22:46:57.628 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 22:46:57.719 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 22:46:57.711 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 22:47:06.133 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:55848 10 6452 1 2025-11-23 22:48:06.540 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:43040 10 6452 1 2025-11-23 22:49:06.905 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:37190 12 6556 1 2025-11-23 22:46:05.268 00:05:00.923 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 22:46:05.266 00:05:00.928 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 22:50:07.309 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:53064 10 6452 1 2025-11-23 22:51:07.718 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:40120 10 6452 1 2025-11-23 22:51:57.574 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 22:51:57.572 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 22:51:57.802 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 22:51:57.577 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 22:51:57.886 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 22:52:08.105 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47594 10 6452 1 2025-11-23 22:53:08.505 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:32968 10 6452 1 2025-11-23 22:54:08.871 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:56398 10 6452 1 2025-11-23 22:55:09.280 00:00:10.514 TCP 1.101.0.1:3000 -> 23.104.0.1:40266 10 6452 1 2025-11-23 22:52:05.269 00:05:00.923 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 22:52:05.266 00:05:00.928 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 22:56:09.829 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35722 10 6452 1 2025-11-23 22:56:57.821 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 22:56:58.200 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 22:56:57.649 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 22:56:57.738 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 22:56:57.936 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 22:57:10.234 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46300 10 6452 1 2025-11-23 22:58:10.640 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:42080 10 6452 1 Summary: total flows: 140, total bytes: 425204, total packets: 1031, avg bps: 940, avg pps: 0, avg bpp: 412 Time window: 2025-11-23 21:58:05 - 2025-11-23 22:58:21 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0030s User: 0.0020s Wall: 0.0020s flows/second: 69107.0 Runtime: 0.0020s