Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-24 10:59:15.015 00:00:10.608 TCP 1.101.0.1:3000 -> 23.104.0.1:33914 10 6452 1 2025-11-24 11:00:15.697 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36058 12 6556 1 2025-11-24 11:01:16.113 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51500 10 6452 1 2025-11-24 10:58:05.528 00:05:00.994 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 10:58:05.527 00:05:00.998 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 11:02:12.325 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 11:02:12.150 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 11:02:12.363 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 11:02:12.241 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 11:02:12.137 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 11:02:16.522 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:50534 10 6452 1 2025-11-24 11:03:16.885 00:00:10.350 TCP 1.101.0.1:3000 -> 23.104.0.1:52740 10 6452 1 2025-11-24 11:04:17.274 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:42356 10 6452 1 2025-11-24 11:05:17.630 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58328 10 6452 1 2025-11-24 11:06:18.038 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59258 10 6452 1 2025-11-24 11:07:12.448 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 11:07:12.311 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 11:07:12.366 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 11:07:12.359 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 11:07:12.271 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 11:07:18.443 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:46202 10 6452 1 2025-11-24 11:04:05.527 00:05:01.006 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 11:04:05.530 00:05:01.001 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 11:08:18.861 00:00:18.178 TCP 1.101.0.1:3000 -> 23.104.0.1:41686 10 6452 1 2025-11-24 11:09:27.100 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41770 10 6452 1 2025-11-24 11:10:27.501 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57746 10 6452 1 2025-11-24 11:11:27.902 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:59086 10 6452 1 2025-11-24 11:12:12.432 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 11:12:12.272 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 11:12:12.500 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 11:12:12.574 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 11:12:12.582 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 11:12:28.312 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50008 10 6452 1 2025-11-24 11:13:28.718 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:59484 10 6452 1 2025-11-24 11:10:05.528 00:05:01.008 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 11:10:05.530 00:05:01.004 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 11:14:29.138 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60224 10 6452 1 2025-11-24 11:15:29.543 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:34888 10 6452 1 2025-11-24 11:16:29.911 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59914 10 6452 1 2025-11-24 11:17:12.805 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 11:17:13.112 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 11:17:12.830 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 11:17:12.722 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 11:17:12.532 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 11:17:30.317 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:57942 10 6452 1 2025-11-24 11:18:30.716 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:45278 10 6452 1 2025-11-24 11:19:31.144 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38040 10 6452 1 2025-11-24 11:16:05.531 00:05:01.007 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 11:16:05.534 00:05:01.001 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 11:20:31.551 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:45686 10 6452 1 2025-11-24 11:21:31.964 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50300 10 6452 1 2025-11-24 11:22:12.792 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 11:22:12.778 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 11:22:12.570 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 11:22:12.711 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 11:22:12.710 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 11:22:32.363 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:43476 10 6452 1 2025-11-24 11:23:32.761 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:41860 10 6452 1 2025-11-24 11:24:33.140 00:00:11.081 TCP 1.101.0.1:3000 -> 23.104.0.1:46900 10 6452 1 2025-11-24 11:25:34.263 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52476 10 6452 1 2025-11-24 11:22:05.539 00:05:00.997 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 11:22:05.536 00:05:01.003 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 11:26:34.668 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:32990 10 6452 1 2025-11-24 11:27:12.835 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 11:27:12.783 00:00:00.019 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 11:27:12.745 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 11:27:12.825 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 11:27:12.828 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 11:27:35.037 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:43062 10 6452 1 2025-11-24 11:28:35.445 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:41942 10 6452 1 2025-11-24 11:29:35.853 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:44998 10 6452 1 2025-11-24 11:30:36.278 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:42886 10 6452 1 2025-11-24 11:31:36.689 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:35634 10 6452 1 2025-11-24 11:28:05.540 00:05:00.998 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 11:32:13.034 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 11:32:12.884 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 11:32:12.840 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 11:32:12.922 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 11:28:05.538 00:05:01.003 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 11:32:12.923 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 11:32:37.112 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45090 10 6452 1 2025-11-24 11:33:37.517 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:39968 10 6452 1 2025-11-24 11:34:37.925 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:34224 10 6452 1 2025-11-24 11:35:38.343 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40406 10 6452 1 2025-11-24 11:36:38.746 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:55294 10 6452 1 2025-11-24 11:37:13.002 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 11:37:13.098 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 11:37:12.761 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 11:37:12.919 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 11:37:13.105 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 11:37:39.152 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55252 10 6452 1 2025-11-24 11:34:05.540 00:05:01.006 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 11:34:05.542 00:05:01.001 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 11:38:39.553 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55412 10 6452 1 2025-11-24 11:39:39.960 00:00:11.051 TCP 1.101.0.1:3000 -> 23.104.0.1:42290 10 6452 1 2025-11-24 11:40:41.066 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:49168 10 6452 1 2025-11-24 11:41:41.431 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33038 10 6452 1 2025-11-24 11:42:13.156 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 11:42:13.151 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 11:42:12.979 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 11:42:13.073 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 11:42:13.197 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 11:42:41.836 00:00:10.353 TCP 1.101.0.1:3000 -> 23.104.0.1:54908 10 6452 1 2025-11-24 11:43:42.222 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:51004 10 6452 1 2025-11-24 11:40:05.544 00:05:01.005 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 11:40:05.542 00:05:01.010 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 11:44:42.627 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45742 10 6452 1 2025-11-24 11:45:43.029 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39434 10 6452 1 2025-11-24 11:46:43.437 00:00:20.559 TCP 1.101.0.1:3000 -> 23.104.0.1:45268 10 6452 1 2025-11-24 11:47:13.249 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 11:47:12.970 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 11:47:13.216 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 11:47:13.312 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 11:47:13.299 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 11:47:54.061 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:43552 10 6452 1 2025-11-24 11:48:54.463 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:39696 10 6452 1 2025-11-24 11:49:54.830 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:47200 10 6452 1 2025-11-24 11:46:05.542 00:05:01.012 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 11:46:05.544 00:05:01.007 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 11:50:55.208 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58320 10 6452 1 2025-11-24 11:51:55.609 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:40160 10 6452 1 2025-11-24 11:52:13.426 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 11:52:13.441 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 11:52:13.206 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 11:52:13.378 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 11:52:13.289 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 11:52:55.967 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38336 10 6452 1 2025-11-24 11:53:56.374 00:00:11.355 TCP 1.101.0.1:3000 -> 23.104.0.1:43004 10 6452 1 2025-11-24 11:54:57.770 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:44566 10 6452 1 2025-11-24 11:52:05.543 00:05:01.013 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 11:55:58.192 00:00:10.438 TCP 1.101.0.1:3000 -> 23.104.0.1:57424 12 10369 1 2025-11-24 11:52:05.546 00:05:01.008 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 11:56:58.670 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:37576 10 6452 1 2025-11-24 11:57:13.363 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 11:57:13.158 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 11:57:13.418 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 11:57:13.423 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 11:57:13.502 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 11:57:59.114 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42804 10 6452 1 Summary: total flows: 139, total bytes: 414569, total packets: 1014, avg bps: 920, avg pps: 0, avg bpp: 408 Time window: 2025-11-24 10:58:05 - 2025-11-24 11:58:09 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0030s User: 0.0020s Wall: 0.0020s flows/second: 70064.7 Runtime: 0.0020s