Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-24 17:59:04.585 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:36686 10 6452 1 2025-11-24 18:00:04.988 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:43522 10 6452 1 2025-11-24 18:01:05.352 00:00:10.436 TCP 1.101.0.1:3000 -> 23.104.0.1:42268 12 10369 1 2025-11-24 17:58:05.672 00:05:01.039 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 17:58:05.671 00:05:01.043 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 18:02:21.077 00:00:00.032 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 18:02:20.608 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 18:02:20.952 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 18:02:05.825 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:58716 10 6452 1 2025-11-24 18:02:20.996 00:00:00.046 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 18:02:20.995 00:00:00.033 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 18:03:06.186 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53504 10 6452 1 2025-11-24 18:04:06.595 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:58136 10 6452 1 2025-11-24 18:05:06.961 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41260 10 6452 1 2025-11-24 18:06:07.365 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:44868 10 6452 1 2025-11-24 18:07:20.903 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 18:07:20.905 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 18:07:20.502 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 18:07:20.820 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 18:07:20.957 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 18:07:07.761 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:38798 10 6452 1 2025-11-24 18:04:05.673 00:05:01.042 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 18:04:05.676 00:05:01.037 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 18:08:08.128 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37658 10 6452 1 2025-11-24 18:09:08.534 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57648 10 6452 1 2025-11-24 18:10:08.941 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:59792 10 6452 1 2025-11-24 18:11:09.358 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52432 10 6452 1 2025-11-24 18:12:20.964 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 18:12:20.861 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 18:12:20.958 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 18:12:20.953 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 18:12:09.766 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:37224 10 6452 1 2025-11-24 18:12:21.042 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 18:13:10.164 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:33110 10 6452 1 2025-11-24 18:10:05.677 00:05:01.037 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 18:10:05.674 00:05:01.042 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 18:14:10.565 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:40486 10 6452 1 2025-11-24 18:15:10.926 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:57268 12 6556 1 2025-11-24 18:16:11.346 00:00:10.397 TCP 1.101.0.1:3000 -> 23.104.0.1:55906 10 6452 1 2025-11-24 18:17:20.963 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 18:17:21.108 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 18:17:21.099 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 18:17:21.096 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 18:17:11.783 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56492 10 6452 1 2025-11-24 18:17:21.181 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 18:18:12.188 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:36558 10 6452 1 2025-11-24 18:19:12.595 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:48846 10 6452 1 2025-11-24 18:16:05.678 00:05:01.058 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 18:16:05.680 00:05:01.053 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 18:20:12.994 00:00:10.402 TCP 1.101.0.1:3000 -> 23.104.0.1:38438 10 6452 1 2025-11-24 18:21:13.443 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60100 10 6452 1 2025-11-24 18:22:20.866 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 18:22:21.159 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 18:22:13.845 00:00:10.394 TCP 1.101.0.1:3000 -> 23.104.0.1:56104 10 6452 1 2025-11-24 18:22:21.187 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 18:22:21.077 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 18:22:21.072 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 18:23:14.278 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44184 10 6452 1 2025-11-24 18:24:14.685 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:34758 10 6452 1 2025-11-24 18:25:15.057 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51030 10 6452 1 2025-11-24 18:22:05.682 00:05:01.052 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 18:22:05.680 00:05:01.056 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 18:26:15.459 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:57442 10 6452 1 2025-11-24 18:27:20.974 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 18:27:21.190 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 18:27:21.268 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 18:27:21.107 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 18:27:21.268 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 18:27:15.874 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36312 10 6452 1 2025-11-24 18:28:16.275 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:45792 10 6452 1 2025-11-24 18:29:16.699 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:34930 10 6452 1 2025-11-24 18:30:17.117 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47572 10 6452 1 2025-11-24 18:31:17.520 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56560 10 6452 1 2025-11-24 18:28:05.690 00:05:01.052 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 18:28:05.686 00:05:01.057 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 18:32:21.492 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 18:32:21.061 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 18:32:21.554 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 18:32:21.489 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 18:32:21.637 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 18:32:17.918 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41232 10 6452 1 2025-11-24 18:33:18.321 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:39158 10 6452 1 2025-11-24 18:34:18.719 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:54226 10 6452 1 2025-11-24 18:35:19.139 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:33996 10 6452 1 2025-11-24 18:36:19.558 00:00:10.434 TCP 1.101.0.1:3000 -> 23.104.0.1:50960 12 10375 1 2025-11-24 18:37:21.429 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 18:37:21.262 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 18:37:21.421 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 18:37:21.204 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 18:37:21.503 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 18:37:20.034 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:55994 10 6452 1 2025-11-24 18:34:05.691 00:05:01.051 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 18:34:05.688 00:05:01.056 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 18:38:20.389 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:40518 10 6452 1 2025-11-24 18:39:20.789 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52406 10 6452 1 2025-11-24 18:40:21.195 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46024 10 6452 1 2025-11-24 18:41:21.596 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:39802 10 6452 1 2025-11-24 18:42:21.513 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 18:42:21.598 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 18:42:21.572 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 18:42:21.632 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 18:42:21.655 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 18:42:21.980 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39766 10 6452 1 2025-11-24 18:43:22.379 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:47732 10 6452 1 2025-11-24 18:40:05.693 00:05:01.052 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 18:40:05.695 00:05:01.047 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 18:44:22.781 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:53304 10 6452 1 2025-11-24 18:45:23.145 00:00:11.830 TCP 1.101.0.1:3000 -> 23.104.0.1:51406 11 6504 1 2025-11-24 18:46:25.013 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:35950 10 6452 1 2025-11-24 18:47:21.676 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 18:47:21.550 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 18:47:21.721 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 18:47:21.677 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 18:47:21.803 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 18:47:25.415 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:36324 10 6452 1 2025-11-24 18:48:25.826 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:50288 10 6452 1 2025-11-24 18:49:26.241 00:00:10.852 TCP 1.101.0.1:3000 -> 23.104.0.1:53304 10 6452 1 2025-11-24 18:46:05.696 00:05:01.047 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 18:46:05.694 00:05:01.053 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 18:50:27.135 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:36218 10 6452 1 2025-11-24 18:51:27.533 00:00:10.437 TCP 1.101.0.1:3000 -> 23.104.0.1:39472 12 10375 1 2025-11-24 18:52:22.057 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 18:52:21.983 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 18:52:21.714 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 18:52:21.975 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 18:52:22.105 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 18:52:28.013 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:39902 10 6452 1 2025-11-24 18:53:28.371 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34308 10 6452 1 2025-11-24 18:54:28.771 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46252 10 6452 1 2025-11-24 18:55:29.179 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:33002 10 6452 1 2025-11-24 18:52:05.697 00:05:01.049 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 18:52:05.694 00:05:01.054 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 18:56:29.541 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:38462 10 6452 1 2025-11-24 18:57:21.909 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 18:57:21.724 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 18:57:21.687 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 18:57:21.909 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 18:57:21.770 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 18:57:29.904 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:51396 12 6556 1 2025-11-24 18:58:30.316 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:38804 10 6452 1 Summary: total flows: 140, total bytes: 429023, total packets: 1031, avg bps: 944, avg pps: 0, avg bpp: 416 Time window: 2025-11-24 17:58:05 - 2025-11-24 18:58:40 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0059s User: 0.0000s Wall: 0.0018s flows/second: 78429.6 Runtime: 0.0018s