Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-24 14:58:40.910 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44938 10 6452 1 2025-11-24 14:59:41.318 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:49628 10 6452 1 2025-11-24 15:00:41.721 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:35174 10 6452 1 2025-11-24 15:01:42.131 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36092 10 6452 1 2025-11-24 14:58:05.620 00:05:01.036 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 14:58:05.618 00:05:01.041 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 15:02:17.259 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 15:02:17.144 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 15:02:17.186 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 15:02:17.309 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 15:02:17.269 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 15:02:42.534 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:45450 10 6452 1 2025-11-24 15:03:42.934 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:52890 10 6452 1 2025-11-24 15:04:43.358 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:34594 10 6452 1 2025-11-24 15:05:43.761 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:47498 10 6452 1 2025-11-24 15:06:44.183 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43492 10 6452 1 2025-11-24 15:07:17.219 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 15:07:17.307 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 15:07:17.167 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 15:07:17.136 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 15:07:17.142 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 15:07:44.582 00:00:11.030 TCP 1.101.0.1:3000 -> 23.104.0.1:53934 10 6452 1 2025-11-24 15:04:05.621 00:05:01.036 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 15:04:05.619 00:05:01.041 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 15:08:45.649 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49252 10 6452 1 2025-11-24 15:09:46.065 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:54358 10 6452 1 2025-11-24 15:10:46.467 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:38520 10 6452 1 2025-11-24 15:11:46.867 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:40456 10 6452 1 2025-11-24 15:12:17.282 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 15:12:17.294 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 15:12:17.388 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 15:12:17.200 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 15:12:17.291 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 15:12:47.233 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49142 10 6452 1 2025-11-24 15:13:47.648 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:45316 10 6452 1 2025-11-24 15:10:05.620 00:05:01.041 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 15:10:05.622 00:05:01.036 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 15:14:48.113 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54692 10 6452 1 2025-11-24 15:15:48.514 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:59092 10 6452 1 2025-11-24 15:16:48.881 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:39478 10 6452 1 2025-11-24 15:17:17.386 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 15:17:17.544 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 15:17:17.453 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 15:17:17.393 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 15:17:17.470 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 15:17:49.249 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:45146 10 6452 1 2025-11-24 15:18:49.611 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40378 10 6452 1 2025-11-24 15:19:50.018 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:42572 10 6452 1 2025-11-24 15:16:05.628 00:05:01.034 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 15:16:05.626 00:05:01.038 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 15:20:50.419 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:57220 10 6452 1 2025-11-24 15:21:50.824 00:00:10.858 TCP 1.101.0.1:3000 -> 23.104.0.1:45306 10 6452 1 2025-11-24 15:22:17.570 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 15:22:17.178 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 15:22:17.561 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 15:22:17.726 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 15:22:17.643 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 15:22:51.721 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:34466 10 6452 1 2025-11-24 15:23:52.141 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55494 10 6452 1 2025-11-24 15:24:52.550 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41838 10 6452 1 2025-11-24 15:25:52.955 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:45220 10 6452 1 2025-11-24 15:22:05.629 00:05:01.035 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 15:22:05.628 00:05:01.040 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 15:26:53.369 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:47876 10 6452 1 2025-11-24 15:27:17.730 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 15:27:17.529 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 15:27:17.675 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 15:27:17.675 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 15:27:17.757 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 15:27:53.742 00:00:10.421 TCP 1.101.0.1:3000 -> 23.104.0.1:54560 11 6504 1 2025-11-24 15:28:54.206 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:56680 10 6452 1 2025-11-24 15:29:54.613 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:47690 10 6452 1 2025-11-24 15:30:55.026 00:00:10.406 TCP 1.101.0.1:3000 -> 23.104.0.1:54818 10 6452 1 2025-11-24 15:31:55.469 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:38234 10 6452 1 2025-11-24 15:28:05.631 00:05:01.034 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 15:28:05.628 00:05:01.040 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 15:32:17.689 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 15:32:17.812 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 15:32:17.686 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 15:32:17.757 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 15:32:17.768 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 15:32:55.833 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:52666 10 6452 1 2025-11-24 15:33:56.258 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58356 10 6452 1 2025-11-24 15:34:56.659 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:60474 10 6452 1 2025-11-24 15:35:57.025 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:57742 10 6452 1 2025-11-24 15:36:57.426 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:53482 10 6452 1 2025-11-24 15:37:17.935 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 15:37:17.853 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 15:37:17.630 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 15:37:17.853 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 15:37:17.969 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 15:37:57.825 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47930 10 6452 1 2025-11-24 15:34:05.632 00:05:01.034 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 15:34:05.629 00:05:01.039 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 15:38:58.227 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58200 10 6452 1 2025-11-24 15:39:58.632 00:00:11.789 TCP 1.101.0.1:3000 -> 23.104.0.1:56772 10 6452 1 2025-11-24 15:41:00.476 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:55658 10 6452 1 2025-11-24 15:42:00.840 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:48974 10 6452 1 2025-11-24 15:42:17.991 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 15:42:18.076 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 15:42:17.562 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 15:42:17.907 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 15:42:17.909 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 15:43:01.261 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:35934 10 6452 1 2025-11-24 15:40:05.630 00:05:01.040 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 15:40:05.632 00:05:01.035 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 15:44:01.660 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56384 10 6452 1 2025-11-24 15:45:02.067 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55868 10 6452 1 2025-11-24 15:46:02.470 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:39448 10 6452 1 2025-11-24 15:47:02.890 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:51394 10 6452 1 2025-11-24 15:47:18.940 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 15:47:18.809 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 15:47:19.261 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 15:47:19.221 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 15:47:19.345 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 15:48:03.310 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:40650 10 6452 1 2025-11-24 15:49:03.670 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48460 10 6452 1 2025-11-24 15:46:05.633 00:05:01.046 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 15:46:05.631 00:05:01.052 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 15:50:04.108 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:38240 10 6452 1 2025-11-24 15:51:04.508 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49500 10 6452 1 2025-11-24 15:52:04.914 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40120 10 6452 1 2025-11-24 15:52:18.198 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 15:52:18.233 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 15:52:17.721 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 15:52:18.115 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 15:52:18.174 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 15:53:05.316 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36062 10 6452 1 2025-11-24 15:54:05.715 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59510 10 6452 1 2025-11-24 15:55:06.119 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45000 10 6452 1 2025-11-24 15:52:05.637 00:05:01.045 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 15:52:05.634 00:05:01.050 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 15:56:06.521 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50022 10 6452 1 2025-11-24 15:57:18.217 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 15:57:18.162 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 15:57:18.350 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 15:57:18.459 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 15:57:06.925 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:50142 10 6452 1 2025-11-24 15:57:18.433 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 15:58:07.334 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49314 10 6452 1 Summary: total flows: 140, total bytes: 417052, total packets: 1021, avg bps: 923, avg pps: 0, avg bpp: 408 Time window: 2025-11-24 14:58:05 - 2025-11-24 15:58:17 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0040s User: 0.0020s Wall: 0.0020s flows/second: 69821.9 Runtime: 0.0020s