Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-24 19:58:59.478 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54472 10 6452 1 2025-11-24 19:59:59.887 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:40312 10 6452 1 2025-11-24 20:01:00.305 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:40016 10 6452 1 2025-11-24 19:58:05.717 00:05:01.064 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 19:58:05.721 00:05:01.058 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 20:02:00.710 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41728 10 6452 1 2025-11-24 20:02:23.194 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 20:02:23.111 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 20:02:23.204 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 20:02:23.174 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 20:02:23.072 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 20:03:01.108 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:38564 10 6452 1 2025-11-24 20:04:01.468 00:00:10.426 TCP 1.101.0.1:3000 -> 23.104.0.1:51650 10 6452 1 2025-11-24 20:05:01.931 00:00:10.356 TCP 1.101.0.1:3000 -> 23.104.0.1:37682 10 6452 1 2025-11-24 20:06:02.325 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55844 10 6452 1 2025-11-24 20:07:02.727 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55690 10 6452 1 2025-11-24 20:07:23.320 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 20:07:23.369 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 20:07:23.471 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 20:07:23.817 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 20:07:23.554 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 20:04:05.726 00:05:01.053 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 20:04:05.724 00:05:01.057 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 20:08:03.131 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39254 10 6452 1 2025-11-24 20:09:03.533 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43428 10 6452 1 2025-11-24 20:10:03.937 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:57618 10 6452 1 2025-11-24 20:11:04.357 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:56074 10 6452 1 2025-11-24 20:12:04.719 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:44196 10 6452 1 2025-11-24 20:12:23.290 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 20:12:23.377 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 20:12:23.280 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 20:12:23.439 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 20:12:23.362 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 20:13:05.134 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55152 10 6452 1 2025-11-24 20:10:05.727 00:05:01.052 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 20:10:05.724 00:05:01.057 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 20:14:05.539 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43212 10 6452 1 2025-11-24 20:15:05.941 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:56118 10 6452 1 2025-11-24 20:16:06.358 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:42896 10 6452 1 2025-11-24 20:17:06.762 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:58604 10 6452 1 2025-11-24 20:17:23.337 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 20:17:23.286 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 20:17:23.468 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 20:17:23.467 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 20:17:23.551 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 20:18:07.179 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:38266 10 6452 1 2025-11-24 20:19:07.604 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:53090 10 6452 1 2025-11-24 20:16:05.727 00:05:01.064 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 20:16:05.730 00:05:01.058 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 20:20:08.025 00:00:10.317 TCP 1.101.0.1:3000 -> 23.104.0.1:46826 10 6452 1 2025-11-24 20:21:08.384 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:40960 10 6452 1 2025-11-24 20:22:08.792 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:50636 10 6452 1 2025-11-24 20:22:23.769 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 20:22:23.387 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 20:22:23.295 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 20:22:23.686 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 20:22:23.713 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 20:23:09.199 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:39584 10 6452 1 2025-11-24 20:24:09.613 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38032 10 6452 1 2025-11-24 20:25:10.022 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41526 10 6452 1 2025-11-24 20:22:05.732 00:05:01.057 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 20:22:05.729 00:05:01.062 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 20:26:10.426 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:37938 10 6452 1 2025-11-24 20:27:23.895 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 20:27:23.813 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 20:27:23.751 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 20:27:10.785 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35428 10 6452 1 2025-11-24 20:27:23.812 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 20:27:23.933 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 20:28:11.185 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:48064 10 6452 1 2025-11-24 20:29:11.580 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48926 10 6452 1 2025-11-24 20:30:11.982 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:36974 10 6452 1 2025-11-24 20:31:12.400 00:00:10.440 TCP 1.101.0.1:3000 -> 23.104.0.1:50570 12 10375 1 2025-11-24 20:28:05.733 00:05:01.058 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 20:28:05.731 00:05:01.062 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 20:32:23.784 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 20:32:12.891 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:39748 12 6556 1 2025-11-24 20:32:23.867 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 20:32:23.803 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 20:32:23.649 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 20:32:23.731 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 20:33:13.297 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37326 10 6452 1 2025-11-24 20:34:13.696 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:47722 10 6452 1 2025-11-24 20:35:14.114 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:42286 10 6452 1 2025-11-24 20:36:14.472 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57572 10 6452 1 2025-11-24 20:37:23.945 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 20:37:23.904 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 20:37:14.877 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:44346 10 6452 1 2025-11-24 20:37:23.867 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 20:37:23.862 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 20:37:23.814 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 20:34:05.738 00:05:01.059 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 20:34:05.736 00:05:01.065 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 20:38:15.279 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51572 10 6452 1 2025-11-24 20:39:15.685 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:60308 10 6452 1 2025-11-24 20:40:16.111 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33772 10 6452 1 2025-11-24 20:41:16.520 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33232 10 6452 1 2025-11-24 20:42:24.071 00:00:00.030 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 20:42:23.952 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 20:42:23.779 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 20:42:23.986 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 20:42:23.837 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 20:42:16.927 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:53696 10 6452 1 2025-11-24 20:43:17.359 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44092 10 6452 1 2025-11-24 20:40:05.743 00:05:01.056 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 20:40:05.740 00:05:01.061 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 20:44:17.763 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:55628 10 6452 1 2025-11-24 20:45:18.179 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38012 10 6452 1 2025-11-24 20:46:18.593 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42918 10 6452 1 2025-11-24 20:47:24.602 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 20:47:24.352 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 20:47:24.360 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 20:47:24.519 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 20:47:24.358 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 20:47:19.008 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56148 12 6556 1 2025-11-24 20:48:19.420 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:44906 10 6452 1 2025-11-24 20:49:19.783 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41786 10 6452 1 2025-11-24 20:46:05.743 00:05:01.057 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 20:46:05.742 00:05:01.062 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 20:50:20.189 00:00:11.068 TCP 1.101.0.1:3000 -> 23.104.0.1:45398 10 6452 1 2025-11-24 20:51:21.296 00:00:10.437 TCP 1.101.0.1:3000 -> 23.104.0.1:36328 12 10369 1 2025-11-24 20:52:23.974 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 20:52:24.153 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 20:52:24.317 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 20:52:24.151 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 20:52:24.400 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 20:52:21.773 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:46354 10 6452 1 2025-11-24 20:53:22.186 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:45780 10 6452 1 2025-11-24 20:54:22.594 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48486 10 6452 1 2025-11-24 20:55:22.996 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:60340 10 6452 1 2025-11-24 20:52:05.744 00:05:01.058 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 20:52:05.743 00:05:01.063 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 20:56:23.399 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:51508 10 6452 1 2025-11-24 20:57:24.184 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 20:57:23.971 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 20:57:24.273 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 20:57:24.276 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 20:57:24.357 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 20:57:23.764 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:57350 10 6452 1 2025-11-24 20:58:24.136 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60790 10 6452 1 Summary: total flows: 140, total bytes: 425048, total packets: 1028, avg bps: 937, avg pps: 0, avg bpp: 413 Time window: 2025-11-24 19:58:05 - 2025-11-24 20:58:34 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0051s User: 0.0010s Wall: 0.0021s flows/second: 67370.6 Runtime: 0.0021s