Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-24 01:59:38.646 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:47624 10 6452 1 2025-11-24 02:00:39.009 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:54250 10 6452 1 2025-11-24 02:01:39.412 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46844 10 6452 1 2025-11-24 02:02:01.648 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 02:02:01.563 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 02:02:01.301 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 02:02:01.566 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 02:02:01.442 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 01:58:05.328 00:05:00.966 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 01:58:05.325 00:05:00.971 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 02:02:39.816 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51346 10 6452 1 2025-11-24 02:03:40.217 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58152 10 6452 1 2025-11-24 02:04:40.617 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:40188 10 6452 1 2025-11-24 02:05:40.979 00:00:10.438 TCP 1.101.0.1:3000 -> 23.104.0.1:52058 12 10375 1 2025-11-24 02:06:41.451 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51466 10 6452 1 2025-11-24 02:07:01.591 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 02:07:01.557 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 02:07:01.793 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 02:07:01.581 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 02:07:01.876 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 02:07:41.858 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:36300 10 6452 1 2025-11-24 02:04:05.327 00:05:00.968 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 02:04:05.325 00:05:00.972 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 02:08:42.273 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44566 10 6452 1 2025-11-24 02:09:42.679 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:38154 10 6452 1 2025-11-24 02:10:43.104 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:58488 10 6452 1 2025-11-24 02:11:43.463 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57830 10 6452 1 2025-11-24 02:12:01.724 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 02:12:01.636 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 02:12:01.467 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 02:12:01.640 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 02:12:01.721 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 02:12:43.863 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:46290 10 6452 1 2025-11-24 02:13:44.236 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:36858 10 6452 1 2025-11-24 02:10:05.334 00:05:00.966 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 02:10:05.339 00:05:00.960 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 02:14:44.635 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:35068 10 6452 1 2025-11-24 02:15:45.001 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40184 10 6452 1 2025-11-24 02:16:45.407 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:34046 10 6452 1 2025-11-24 02:17:01.693 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 02:17:01.859 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 02:17:01.926 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 02:17:01.826 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 02:17:01.941 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 02:17:45.826 00:00:10.966 TCP 1.101.0.1:3000 -> 23.104.0.1:54450 10 6452 1 2025-11-24 02:18:46.840 00:00:10.348 TCP 1.101.0.1:3000 -> 23.104.0.1:49638 10 6452 1 2025-11-24 02:19:47.224 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41408 10 6452 1 2025-11-24 02:16:05.340 00:05:00.964 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 02:16:05.342 00:05:00.959 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 02:20:47.627 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43194 10 6452 1 2025-11-24 02:21:48.030 00:00:10.417 TCP 1.101.0.1:3000 -> 23.104.0.1:39816 11 6504 1 2025-11-24 02:22:01.902 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 02:22:01.882 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 02:22:01.827 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 02:22:01.819 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 02:22:01.924 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 02:22:48.491 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:55884 11 6492 1 2025-11-24 02:23:48.876 00:00:10.407 TCP 1.101.0.1:3000 -> 23.104.0.1:43924 10 6452 1 2025-11-24 02:24:49.319 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40660 10 6452 1 2025-11-24 02:25:49.724 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:59754 10 6452 1 2025-11-24 02:22:05.342 00:05:00.964 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 02:22:05.346 00:05:00.960 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 02:26:50.134 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:41488 10 6452 1 2025-11-24 02:27:01.884 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 02:27:02.043 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 02:27:01.959 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 02:27:01.965 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 02:27:02.042 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 02:27:50.501 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59838 10 6452 1 2025-11-24 02:28:50.899 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34260 10 6452 1 2025-11-24 02:29:51.304 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40282 10 6452 1 2025-11-24 02:30:51.709 00:00:10.440 TCP 1.101.0.1:3000 -> 23.104.0.1:41216 12 10375 1 2025-11-24 02:32:02.380 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 02:28:05.344 00:05:00.961 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 02:32:02.096 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 02:32:02.274 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 02:31:52.190 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:40816 10 6452 1 2025-11-24 02:32:02.297 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 02:32:02.100 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 02:28:05.346 00:05:00.956 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 02:32:52.588 00:00:10.559 TCP 1.101.0.1:3000 -> 23.104.0.1:47684 10 6452 1 2025-11-24 02:33:53.189 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53390 10 6452 1 2025-11-24 02:34:53.589 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48016 10 6452 1 2025-11-24 02:35:53.990 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37908 10 6452 1 2025-11-24 02:37:02.264 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 02:37:02.168 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 02:37:02.130 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 02:37:02.195 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 02:36:54.389 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:52162 10 6452 1 2025-11-24 02:37:02.212 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 02:37:54.794 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:37162 10 6452 1 2025-11-24 02:34:05.345 00:05:00.961 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 02:34:05.349 00:05:00.956 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 02:38:55.197 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:42396 10 6452 1 2025-11-24 02:39:55.563 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:51258 10 6452 1 2025-11-24 02:40:55.969 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:45280 10 6452 1 2025-11-24 02:42:02.440 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 02:42:02.168 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 02:42:02.438 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 02:42:02.432 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 02:42:02.520 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 02:41:56.348 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:60644 10 6452 1 2025-11-24 02:42:56.709 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:56278 10 6452 1 2025-11-24 02:40:05.352 00:05:00.955 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 02:43:57.138 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38330 10 6452 1 2025-11-24 02:40:05.350 00:05:00.960 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 02:44:57.538 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:47702 10 6452 1 2025-11-24 02:45:57.955 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:56692 10 6452 1 2025-11-24 02:47:02.539 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 02:47:02.370 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 02:47:02.046 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 02:47:02.458 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 02:47:02.288 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 02:46:58.324 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46982 10 6452 1 2025-11-24 02:47:58.732 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:49336 10 6452 1 2025-11-24 02:48:59.153 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46528 10 6452 1 2025-11-24 02:49:59.550 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54864 12 6556 1 2025-11-24 02:46:05.352 00:05:00.964 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 02:46:05.351 00:05:00.968 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 02:50:59.956 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:49266 10 6452 1 2025-11-24 02:52:02.649 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 02:52:02.283 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 02:52:02.220 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 02:52:02.566 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 02:52:02.639 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 02:52:00.365 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56858 10 6452 1 2025-11-24 02:53:00.799 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35320 10 6452 1 2025-11-24 02:54:01.205 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56018 10 6452 1 2025-11-24 02:55:01.607 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45022 10 6452 1 2025-11-24 02:52:05.353 00:05:00.964 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 02:52:05.351 00:05:00.970 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 02:56:02.014 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:57300 10 6452 1 2025-11-24 02:57:02.668 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 02:57:02.576 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 02:57:02.503 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 02:57:02.821 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 02:57:02.586 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 02:57:02.428 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:56404 10 6452 1 2025-11-24 02:58:02.793 00:00:10.351 TCP 1.101.0.1:3000 -> 23.104.0.1:55600 10 6452 1 Summary: total flows: 139, total bytes: 418590, total packets: 1018, avg bps: 928, avg pps: 0, avg bpp: 411 Time window: 2025-11-24 01:58:05 - 2025-11-24 02:58:13 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0045s User: 0.0018s Wall: 0.0022s flows/second: 63501.6 Runtime: 0.0022s