Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-24 11:58:59.519 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:39500 10 6452 1 2025-11-24 11:59:59.891 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:32880 12 6556 1 2025-11-24 12:01:00.311 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:39826 10 6452 1 2025-11-24 11:58:05.543 00:05:01.013 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 11:58:05.547 00:05:01.007 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 12:02:13.469 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 12:02:13.488 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 12:02:13.324 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 12:02:13.477 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 12:02:13.408 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 12:02:00.678 00:00:26.351 TCP 1.101.0.1:3000 -> 23.104.0.1:45688 10 6452 1 2025-11-24 12:03:17.114 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:50328 10 6452 1 2025-11-24 12:04:17.511 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57670 10 6452 1 2025-11-24 12:05:17.918 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:39746 10 6452 1 2025-11-24 12:06:18.323 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43652 10 6452 1 2025-11-24 12:07:13.763 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 12:07:13.540 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 12:07:13.670 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 12:07:13.507 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 12:07:13.753 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 12:07:18.725 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:41864 10 6452 1 2025-11-24 12:04:05.550 00:05:01.005 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 12:04:05.547 00:05:01.010 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 12:08:19.110 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:56046 10 6452 1 2025-11-24 12:09:19.475 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:52638 10 6452 1 2025-11-24 12:10:19.875 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56744 10 6452 1 2025-11-24 12:11:20.284 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:38694 10 6452 1 2025-11-24 12:12:14.002 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 12:12:13.918 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 12:12:13.705 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 12:12:13.787 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 12:12:13.707 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 12:12:20.727 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:46566 10 6452 1 2025-11-24 12:13:21.142 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:42622 10 6452 1 2025-11-24 12:10:05.550 00:05:01.006 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 12:10:05.547 00:05:01.011 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 12:14:21.524 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:44504 10 6452 1 2025-11-24 12:15:21.937 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:48866 10 6452 1 2025-11-24 12:16:22.356 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59882 10 6452 1 2025-11-24 12:17:13.825 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 12:17:13.645 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 12:17:13.757 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 12:17:13.742 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 12:17:13.739 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 12:17:22.763 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:41940 10 6452 1 2025-11-24 12:18:23.178 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:34268 10 6452 1 2025-11-24 12:19:23.579 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34612 10 6452 1 2025-11-24 12:16:05.551 00:05:01.007 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 12:16:05.547 00:05:01.013 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 12:20:23.984 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:54326 10 6452 1 2025-11-24 12:21:24.403 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:35532 10 6452 1 2025-11-24 12:22:13.726 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 12:22:13.648 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 12:22:13.719 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 12:22:13.808 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 12:22:13.802 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 12:22:24.766 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:39090 10 6452 1 2025-11-24 12:23:25.181 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39482 10 6452 1 2025-11-24 12:24:25.587 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:53502 10 6452 1 2025-11-24 12:25:25.999 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:56668 10 6452 1 2025-11-24 12:22:05.550 00:05:01.009 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 12:22:05.547 00:05:01.014 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 12:26:26.356 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:51048 10 6452 1 2025-11-24 12:27:14.154 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 12:27:13.985 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 12:27:14.071 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 12:27:14.084 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 12:27:13.953 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 12:27:26.757 00:00:11.650 TCP 1.101.0.1:3000 -> 23.104.0.1:42342 10 6452 1 2025-11-24 12:28:28.448 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:44728 10 6452 1 2025-11-24 12:29:28.861 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:53820 10 6452 1 2025-11-24 12:30:29.275 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:38126 10 6452 1 2025-11-24 12:31:29.682 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:59158 10 6452 1 2025-11-24 12:28:05.556 00:05:01.004 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 12:28:05.554 00:05:01.009 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 12:32:14.342 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 12:32:14.261 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 12:32:14.217 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 12:32:14.260 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 12:32:14.187 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 12:32:30.117 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51180 10 6452 1 2025-11-24 12:33:30.520 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50672 10 6452 1 2025-11-24 12:34:30.923 00:00:10.398 TCP 1.101.0.1:3000 -> 23.104.0.1:50460 13 6608 1 2025-11-24 12:35:31.356 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54586 10 6452 1 2025-11-24 12:36:31.757 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:54382 10 6452 1 2025-11-24 12:37:14.249 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 12:37:14.541 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 12:37:14.390 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 12:37:14.390 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 12:37:14.623 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 12:37:32.197 00:00:10.423 TCP 1.101.0.1:3000 -> 23.104.0.1:58154 11 6504 1 2025-11-24 12:34:05.559 00:05:01.003 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 12:34:05.557 00:05:01.008 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 12:38:32.666 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48452 10 6452 1 2025-11-24 12:39:33.099 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:44770 10 6452 1 2025-11-24 12:40:33.506 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60540 10 6452 1 2025-11-24 12:41:33.914 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:38832 10 6452 1 2025-11-24 12:42:14.492 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 12:42:14.314 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 12:42:14.499 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 12:42:14.567 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 12:42:14.582 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 12:42:34.339 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:51944 10 6452 1 2025-11-24 12:43:34.750 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:43916 10 6452 1 2025-11-24 12:40:05.563 00:05:01.001 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 12:40:05.560 00:05:01.006 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 12:44:35.117 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:42528 10 6452 1 2025-11-24 12:45:35.527 00:00:10.415 TCP 1.101.0.1:3000 -> 23.104.0.1:48902 10 6452 1 2025-11-24 12:46:35.986 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54230 10 6452 1 2025-11-24 12:47:14.716 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 12:47:14.580 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 12:47:14.307 00:00:00.027 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 12:47:14.634 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 12:47:14.637 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 12:47:36.395 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43650 10 6452 1 2025-11-24 12:48:36.795 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:56566 10 6452 1 2025-11-24 12:49:37.208 00:00:10.977 TCP 1.101.0.1:3000 -> 23.104.0.1:53158 10 6452 1 2025-11-24 12:46:05.564 00:05:01.001 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 12:46:05.561 00:05:01.007 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 12:50:38.222 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:33994 10 6452 1 2025-11-24 12:51:38.629 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53230 10 6452 1 2025-11-24 12:52:14.585 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 12:52:14.536 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 12:52:14.513 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 12:52:14.645 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 12:52:14.596 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 12:52:39.037 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59622 10 6452 1 2025-11-24 12:53:39.439 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42584 10 6452 1 2025-11-24 12:54:39.839 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:41160 10 6452 1 2025-11-24 12:55:40.255 00:00:10.471 TCP 1.101.0.1:3000 -> 23.104.0.1:57344 14 14298 1 2025-11-24 12:52:05.562 00:05:01.007 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 12:52:05.565 00:05:01.001 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 12:56:40.776 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:49244 10 6452 1 2025-11-24 12:57:14.646 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 12:57:14.575 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 12:57:14.576 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 12:57:14.738 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 12:57:14.657 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 12:57:41.184 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:45584 10 6452 1 Summary: total flows: 139, total bytes: 418706, total packets: 1020, avg bps: 934, avg pps: 0, avg bpp: 410 Time window: 2025-11-24 11:58:05 - 2025-11-24 12:57:51 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0052s User: 0.0009s Wall: 0.0025s flows/second: 55094.3 Runtime: 0.0025s