Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-24 00:59:12.876 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43900 10 6452 1 2025-11-24 01:00:13.284 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43106 10 6452 1 2025-11-24 01:01:13.686 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49834 10 6452 1 2025-11-24 01:02:00.644 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 01:02:00.517 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 01:02:00.712 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 01:02:00.551 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 01:02:00.794 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 00:58:05.301 00:05:00.952 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 00:58:05.305 00:05:00.947 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 01:02:14.109 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:41084 10 6452 1 2025-11-24 01:03:14.474 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:54000 10 6452 1 2025-11-24 01:04:14.836 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:54492 10 6452 1 2025-11-24 01:05:15.261 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38692 10 6452 1 2025-11-24 01:06:15.666 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43260 10 6452 1 2025-11-24 01:07:00.493 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 01:07:00.591 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 01:07:00.559 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 01:07:00.397 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 01:07:00.643 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 01:07:16.097 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:39690 10 6452 1 2025-11-24 01:04:05.309 00:05:00.954 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 01:04:05.307 00:05:00.959 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 01:08:16.496 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:43502 10 6452 1 2025-11-24 01:09:16.901 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34738 10 6452 1 2025-11-24 01:10:17.307 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35826 10 6452 1 2025-11-24 01:11:17.716 00:00:10.438 TCP 1.101.0.1:3000 -> 23.104.0.1:34506 13 13955 1 2025-11-24 01:12:00.711 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 01:12:00.558 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 01:12:00.401 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 01:12:00.627 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 01:12:00.473 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 01:12:18.191 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58104 10 6452 1 2025-11-24 01:13:18.590 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59504 10 6452 1 2025-11-24 01:10:05.311 00:05:00.955 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 01:10:05.309 00:05:00.961 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 01:14:18.997 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:39068 10 6452 1 2025-11-24 01:15:19.386 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:42710 10 6452 1 2025-11-24 01:16:19.790 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56042 10 6452 1 2025-11-24 01:17:00.578 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 01:17:00.665 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 01:17:00.578 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 01:17:00.496 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 01:17:00.749 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 01:17:20.195 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:38772 10 6452 1 2025-11-24 01:18:20.556 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:52554 10 6452 1 2025-11-24 01:19:20.917 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:37410 10 6452 1 2025-11-24 01:16:05.312 00:05:00.956 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 01:16:05.309 00:05:00.961 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 01:20:21.312 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44556 10 6452 1 2025-11-24 01:21:21.718 00:00:10.433 TCP 1.101.0.1:3000 -> 23.104.0.1:59642 12 10369 1 2025-11-24 01:22:00.889 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 01:22:00.616 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 01:22:00.804 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 01:22:00.700 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 01:22:01.086 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 01:22:22.192 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46076 10 6452 1 2025-11-24 01:23:22.596 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:44836 10 6452 1 2025-11-24 01:24:23.001 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:44022 10 6452 1 2025-11-24 01:25:23.404 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:38648 10 6452 1 2025-11-24 01:22:05.310 00:05:00.972 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 01:22:05.313 00:05:00.967 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 01:26:23.806 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:44198 10 6452 1 2025-11-24 01:27:00.938 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 01:27:00.900 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 01:27:00.856 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 01:27:01.045 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 01:27:01.073 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 01:27:24.220 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:57644 10 6452 1 2025-11-24 01:28:24.624 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:48362 10 6452 1 2025-11-24 01:29:25.027 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:57072 10 6452 1 2025-11-24 01:30:25.390 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:60406 10 6452 1 2025-11-24 01:31:25.787 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55380 10 6452 1 2025-11-24 01:32:00.774 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 01:32:00.946 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 01:32:00.774 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 01:32:01.029 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 01:32:00.980 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 01:28:05.316 00:05:00.965 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 01:28:05.314 00:05:00.971 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 01:32:26.191 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59420 10 6452 1 2025-11-24 01:33:26.595 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33276 10 6452 1 2025-11-24 01:34:26.996 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39186 10 6452 1 2025-11-24 01:35:27.396 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:47038 10 6452 1 2025-11-24 01:36:27.754 00:00:10.423 TCP 1.101.0.1:3000 -> 23.104.0.1:59004 10 6452 1 2025-11-24 01:37:00.903 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 01:37:01.174 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 01:37:01.003 00:00:00.029 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 01:37:01.093 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 01:37:01.140 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 01:37:28.214 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36440 10 6452 1 2025-11-24 01:34:05.317 00:05:00.966 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 01:34:05.314 00:05:00.971 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 01:38:28.618 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58370 10 6452 1 2025-11-24 01:39:29.022 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:44458 10 6452 1 2025-11-24 01:40:29.383 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:33576 10 6452 1 2025-11-24 01:41:29.782 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:32882 10 6452 1 2025-11-24 01:42:00.834 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 01:42:01.245 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 01:42:01.070 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 01:42:01.163 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 01:42:01.116 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 01:42:30.188 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:58366 10 6452 1 2025-11-24 01:43:30.554 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:34950 10 6452 1 2025-11-24 01:40:05.317 00:05:00.968 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 01:40:05.316 00:05:00.972 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 01:44:30.923 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:32924 10 6452 1 2025-11-24 01:45:31.341 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:52622 10 6452 1 2025-11-24 01:46:31.750 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49116 10 6452 1 2025-11-24 01:47:01.510 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 01:47:01.347 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 01:47:01.392 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 01:47:01.437 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 01:47:01.476 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 01:47:32.153 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49590 10 6452 1 2025-11-24 01:48:32.554 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58270 10 6452 1 2025-11-24 01:49:32.953 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:35330 10 6452 1 2025-11-24 01:46:05.319 00:05:00.972 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 01:46:05.321 00:05:00.966 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 01:50:33.372 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:44584 10 6452 1 2025-11-24 01:51:33.740 00:00:11.042 TCP 1.101.0.1:3000 -> 23.104.0.1:52096 11 6504 1 2025-11-24 01:52:01.378 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 01:52:01.139 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 01:52:01.285 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 01:52:01.213 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 01:52:01.368 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 01:52:34.818 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58720 10 6452 1 2025-11-24 01:53:35.222 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59282 10 6452 1 2025-11-24 01:54:35.622 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:54882 10 6452 1 2025-11-24 01:55:35.982 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52326 10 6452 1 2025-11-24 01:52:05.322 00:05:00.966 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 01:52:05.320 00:05:00.971 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 01:56:36.382 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:40638 10 6452 1 2025-11-24 01:57:01.570 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 01:57:01.348 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 01:57:01.369 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 01:57:01.487 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 01:57:01.353 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 01:57:36.789 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:42728 10 6452 1 2025-11-24 01:58:37.153 00:00:11.455 TCP 1.101.0.1:3000 -> 23.104.0.1:47332 10 6452 1 Summary: total flows: 140, total bytes: 428472, total packets: 1026, avg bps: 940, avg pps: 0, avg bpp: 417 Time window: 2025-11-24 00:58:05 - 2025-11-24 01:58:48 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0031s User: 0.0020s Wall: 0.0018s flows/second: 78116.6 Runtime: 0.0018s