Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-24 15:59:07.739 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:41340 10 6452 1 2025-11-24 16:00:08.122 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60022 10 6452 1 2025-11-24 16:01:08.525 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:46952 10 6452 1 2025-11-24 15:58:05.638 00:05:01.048 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 15:58:05.634 00:05:01.053 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 16:02:18.333 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 16:02:18.194 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 16:02:08.884 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:58100 10 6452 1 2025-11-24 16:02:18.325 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 16:02:18.256 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 16:02:18.408 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 16:03:09.303 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49930 10 6452 1 2025-11-24 16:04:09.702 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:47312 10 6452 1 2025-11-24 16:05:10.122 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:54906 10 6452 1 2025-11-24 16:06:10.522 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44890 10 6452 1 2025-11-24 16:07:18.818 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 16:07:18.779 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 16:07:18.588 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 16:07:18.643 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 16:07:18.900 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 16:07:10.943 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:47650 10 6452 1 2025-11-24 16:04:05.636 00:05:01.051 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 16:04:05.639 00:05:01.046 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 16:08:11.312 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37268 10 6452 1 2025-11-24 16:09:11.720 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:33262 10 6452 1 2025-11-24 16:10:12.138 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33718 10 6452 1 2025-11-24 16:11:12.551 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38426 10 6452 1 2025-11-24 16:12:18.450 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 16:12:18.481 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 16:12:18.627 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 16:12:18.443 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 16:12:18.710 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 16:12:12.948 00:00:16.358 TCP 1.101.0.1:3000 -> 23.104.0.1:38764 10 6452 1 2025-11-24 16:13:19.359 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:56500 10 6452 1 2025-11-24 16:10:05.639 00:05:01.053 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 16:10:05.642 00:05:01.048 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 16:14:19.723 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:35606 10 6452 1 2025-11-24 16:15:20.129 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:39160 10 6452 1 2025-11-24 16:16:20.538 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:42328 10 6452 1 2025-11-24 16:17:18.665 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 16:17:18.495 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 16:17:18.381 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 16:17:18.582 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 16:17:18.665 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 16:17:20.942 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:38138 10 6452 1 2025-11-24 16:18:21.356 00:00:10.471 TCP 1.101.0.1:3000 -> 23.104.0.1:42060 10 6452 1 2025-11-24 16:19:21.863 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:53444 10 6452 1 2025-11-24 16:16:05.639 00:05:01.052 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 16:16:05.641 00:05:01.048 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 16:20:22.278 00:00:11.232 TCP 1.101.0.1:3000 -> 23.104.0.1:37052 10 6452 1 2025-11-24 16:21:23.550 00:00:10.444 TCP 1.101.0.1:3000 -> 23.104.0.1:33962 12 10369 1 2025-11-24 16:22:19.091 00:00:00.040 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 16:22:19.370 00:00:00.028 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 16:22:18.862 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 16:22:19.009 00:00:00.039 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 16:22:19.817 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 16:22:24.032 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34446 10 6452 1 2025-11-24 16:23:24.432 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:57022 10 6452 1 2025-11-24 16:24:24.840 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:35164 10 6452 1 2025-11-24 16:25:25.274 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:39386 10 6452 1 2025-11-24 16:22:05.640 00:05:01.053 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 16:22:05.643 00:05:01.048 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 16:26:25.642 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:59560 10 6452 1 2025-11-24 16:27:18.818 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 16:27:18.626 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 16:27:18.604 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 16:27:18.735 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 16:27:18.730 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 16:27:26.067 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:58772 10 6452 1 2025-11-24 16:28:26.435 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:45880 10 6452 1 2025-11-24 16:29:26.856 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:33684 10 6452 1 2025-11-24 16:30:27.279 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:35370 10 6452 1 2025-11-24 16:31:27.640 00:00:10.444 TCP 1.101.0.1:3000 -> 23.104.0.1:45644 12 10369 1 2025-11-24 16:28:05.641 00:05:01.053 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 16:28:05.644 00:05:01.048 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 16:32:18.838 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 16:32:19.182 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 16:32:19.083 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 16:32:18.902 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 16:32:19.265 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 16:32:28.121 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:44924 10 6452 1 2025-11-24 16:33:28.518 00:00:10.741 TCP 1.101.0.1:3000 -> 23.104.0.1:60284 10 6452 1 2025-11-24 16:34:29.298 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38266 10 6452 1 2025-11-24 16:35:29.703 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:56844 10 6452 1 2025-11-24 16:36:30.113 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:46096 10 6452 1 2025-11-24 16:37:19.228 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 16:37:19.056 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 16:37:18.931 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 16:37:19.063 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 16:37:19.138 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 16:37:30.528 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:41782 10 6452 1 2025-11-24 16:34:05.641 00:05:01.055 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 16:34:05.644 00:05:01.050 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 16:38:30.926 00:00:10.398 TCP 1.101.0.1:3000 -> 23.104.0.1:43148 10 6452 1 2025-11-24 16:39:31.347 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:38938 10 6452 1 2025-11-24 16:40:31.749 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60756 10 6452 1 2025-11-24 16:41:32.149 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48918 10 6452 1 2025-11-24 16:42:19.294 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 16:42:19.216 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 16:42:19.070 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 16:42:19.210 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 16:42:18.931 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 16:42:32.556 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36496 10 6452 1 2025-11-24 16:43:32.962 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43576 10 6452 1 2025-11-24 16:40:05.644 00:05:01.056 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 16:40:05.646 00:05:01.050 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 16:44:33.364 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:39854 10 6452 1 2025-11-24 16:45:33.737 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59558 10 6452 1 2025-11-24 16:46:34.142 00:00:10.442 TCP 1.101.0.1:3000 -> 23.104.0.1:44532 12 10375 1 2025-11-24 16:47:18.560 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 16:47:18.425 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 16:47:18.551 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 16:47:18.547 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 16:47:18.634 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 16:47:34.637 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:48900 10 6452 1 2025-11-24 16:48:35.033 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50262 10 6452 1 2025-11-24 16:49:35.439 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:48092 10 6452 1 2025-11-24 16:46:05.646 00:05:01.056 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 16:46:05.648 00:05:01.050 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 16:50:35.812 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:48972 10 6452 1 2025-11-24 16:51:36.184 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:58820 10 6452 1 2025-11-24 16:52:19.502 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 16:52:19.434 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 16:52:19.451 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 16:52:19.420 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 16:52:19.489 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 16:52:36.593 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54678 10 6452 1 2025-11-24 16:53:37.000 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:48238 10 6452 1 2025-11-24 16:54:37.404 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:33356 10 6452 1 2025-11-24 16:55:37.769 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:33828 10 6452 1 2025-11-24 16:52:05.651 00:05:01.051 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 16:52:05.648 00:05:01.062 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 16:56:38.131 00:00:11.900 TCP 1.101.0.1:3000 -> 23.104.0.1:37064 10 6452 1 2025-11-24 16:57:19.605 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 16:57:19.360 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 16:57:19.690 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 16:57:19.653 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 16:57:19.772 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 16:57:40.089 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:37966 10 6452 1 2025-11-24 16:58:40.490 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:41100 10 6452 1 Summary: total flows: 140, total bytes: 428757, total packets: 1026, avg bps: 940, avg pps: 0, avg bpp: 417 Time window: 2025-11-24 15:58:05 - 2025-11-24 16:58:50 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0032s User: 0.0021s Wall: 0.0016s flows/second: 89458.0 Runtime: 0.0016s