Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-24 02:59:03.186 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:50802 10 6452 1 2025-11-24 03:00:03.593 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:51262 10 6452 1 2025-11-24 03:01:03.956 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:57210 10 6452 1 2025-11-24 03:02:02.685 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 02:58:05.355 00:05:00.966 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 03:02:02.705 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 03:02:02.652 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 03:02:02.602 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 03:02:02.599 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 02:58:05.357 00:05:00.961 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 03:02:04.368 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:50518 10 6452 1 2025-11-24 03:03:04.740 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:54468 10 6452 1 2025-11-24 03:04:05.117 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:46190 10 6452 1 2025-11-24 03:05:05.477 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40136 10 6452 1 2025-11-24 03:06:05.905 00:00:10.580 TCP 1.101.0.1:3000 -> 23.104.0.1:60774 10 6452 1 2025-11-24 03:07:02.954 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 03:07:02.575 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 03:07:02.911 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 03:07:02.811 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 03:07:02.994 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 03:07:06.525 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51286 10 6452 1 2025-11-24 03:04:05.359 00:05:00.969 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 03:04:05.354 00:05:00.975 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 03:08:06.930 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:47558 10 6452 1 2025-11-24 03:09:07.348 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37924 10 6452 1 2025-11-24 03:10:07.750 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60732 10 6452 1 2025-11-24 03:11:08.154 00:00:10.396 TCP 1.101.0.1:3000 -> 23.104.0.1:60098 12 10375 1 2025-11-24 03:12:02.971 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 03:12:02.678 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 03:12:02.888 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 03:12:02.885 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 03:12:02.960 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 03:12:08.624 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43434 10 6452 1 2025-11-24 03:13:09.026 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46966 10 6452 1 2025-11-24 03:10:05.358 00:05:00.970 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 03:10:05.356 00:05:00.975 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 03:14:09.436 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:40250 10 6452 1 2025-11-24 03:15:09.837 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:47596 10 6452 1 2025-11-24 03:16:10.253 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55670 10 6452 1 2025-11-24 03:17:02.976 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 03:17:02.949 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 03:17:02.602 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 03:17:02.892 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 03:17:02.890 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 03:17:10.662 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:49158 10 6452 1 2025-11-24 03:18:11.035 00:00:10.348 TCP 1.101.0.1:3000 -> 23.104.0.1:42806 10 6452 1 2025-11-24 03:19:11.415 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:56056 10 6452 1 2025-11-24 03:16:05.357 00:05:00.975 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 03:16:05.359 00:05:00.970 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 03:20:11.776 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:34450 10 6452 1 2025-11-24 03:21:12.201 00:00:10.396 TCP 1.101.0.1:3000 -> 23.104.0.1:51592 12 10369 1 2025-11-24 03:22:03.269 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 03:22:03.068 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 03:22:02.860 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 03:22:03.187 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 03:22:03.188 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 03:22:12.639 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:46188 10 6452 1 2025-11-24 03:23:13.002 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56868 10 6452 1 2025-11-24 03:24:13.410 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:40548 10 6452 1 2025-11-24 03:25:13.827 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:48452 10 6452 1 2025-11-24 03:22:05.365 00:05:00.968 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 03:22:05.369 00:05:00.962 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 03:26:14.234 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:38176 10 6452 1 2025-11-24 03:27:03.181 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 03:27:03.314 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 03:27:03.186 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 03:27:02.822 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 03:27:03.265 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 03:27:14.632 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38670 10 6452 1 2025-11-24 03:28:15.039 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:43948 10 6452 1 2025-11-24 03:29:15.442 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42390 10 6452 1 2025-11-24 03:30:15.850 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:44794 10 6452 1 2025-11-24 03:31:16.288 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:60962 10 6452 1 2025-11-24 03:32:03.399 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 03:32:03.402 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 03:32:03.402 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 03:32:03.356 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 03:28:05.371 00:05:00.964 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 03:32:03.484 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 03:28:05.368 00:05:00.970 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 03:32:16.709 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:50380 10 6452 1 2025-11-24 03:33:17.120 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:52066 10 6452 1 2025-11-24 03:34:17.483 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:50552 10 6452 1 2025-11-24 03:35:17.891 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:43836 10 6452 1 2025-11-24 03:36:18.321 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:42758 10 6452 1 2025-11-24 03:37:03.378 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 03:37:03.389 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 03:37:03.467 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 03:37:03.545 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 03:37:03.550 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 03:37:18.720 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:58200 10 6452 1 2025-11-24 03:34:05.370 00:05:00.969 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 03:34:05.372 00:05:00.964 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 03:38:19.133 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:41490 10 6452 1 2025-11-24 03:39:19.496 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:60976 12 6556 1 2025-11-24 03:40:19.904 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:38212 10 6452 1 2025-11-24 03:41:20.315 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46198 10 6452 1 2025-11-24 03:42:03.783 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 03:42:03.849 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 03:42:03.848 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 03:42:03.782 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 03:42:03.931 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 03:42:20.719 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:59720 10 6452 1 2025-11-24 03:43:21.141 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:59910 10 6452 1 2025-11-24 03:40:05.374 00:05:00.971 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 03:40:05.376 00:05:00.967 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 03:44:21.501 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35910 10 6452 1 2025-11-24 03:45:21.904 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40738 10 6452 1 2025-11-24 03:46:22.313 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:45434 10 6452 1 2025-11-24 03:47:03.718 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 03:47:03.636 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 03:47:03.591 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 03:47:03.637 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 03:47:03.629 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 03:47:22.690 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:37148 10 6452 1 2025-11-24 03:48:23.104 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:51166 10 6452 1 2025-11-24 03:49:23.463 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:33788 10 6452 1 2025-11-24 03:46:05.379 00:05:00.966 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 03:46:05.376 00:05:00.970 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 03:50:23.863 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:33684 10 6452 1 2025-11-24 03:51:24.279 00:00:10.434 TCP 1.101.0.1:3000 -> 23.104.0.1:48296 12 10375 1 2025-11-24 03:52:03.583 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 03:52:03.626 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 03:52:03.702 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 03:52:03.651 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 03:52:03.784 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 03:52:24.751 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:59288 10 6452 1 2025-11-24 03:53:25.115 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:34638 10 6452 1 2025-11-24 03:54:25.482 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:44120 10 6452 1 2025-11-24 03:55:25.887 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:35412 10 6452 1 2025-11-24 03:52:05.379 00:05:00.970 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 03:52:05.382 00:05:00.965 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 03:56:26.303 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:38658 10 6452 1 2025-11-24 03:57:03.847 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 03:57:03.739 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 03:57:03.712 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 03:57:03.880 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 03:57:03.802 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 03:57:26.708 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:52148 10 6452 1 2025-11-24 03:58:27.112 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:47172 10 6452 1 Summary: total flows: 140, total bytes: 428867, total packets: 1028, avg bps: 944, avg pps: 0, avg bpp: 417 Time window: 2025-11-24 02:58:05 - 2025-11-24 03:58:37 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0052s User: 0.0010s Wall: 0.0019s flows/second: 74745.7 Runtime: 0.0019s