Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-24 20:59:24.538 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59008 10 6452 1 2025-11-24 21:00:24.944 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:46578 10 6452 1 2025-11-24 21:01:25.362 00:00:10.445 TCP 1.101.0.1:3000 -> 23.104.0.1:53224 12 10375 1 2025-11-24 20:58:05.745 00:05:01.058 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 20:58:05.743 00:05:01.063 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 21:02:25.021 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 21:02:24.783 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 21:02:24.363 00:00:00.028 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 21:02:24.937 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 21:02:24.713 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 21:02:25.845 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:50482 10 6452 1 2025-11-24 21:03:26.270 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49290 10 6452 1 2025-11-24 21:04:26.674 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:37174 10 6452 1 2025-11-24 21:05:27.111 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:48566 10 6452 1 2025-11-24 21:06:27.519 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:59656 10 6452 1 2025-11-24 21:07:24.495 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 21:07:24.273 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 21:07:24.500 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 21:07:24.576 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 21:07:24.582 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 21:07:27.889 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:43654 10 6452 1 2025-11-24 21:04:05.749 00:05:01.056 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 21:04:05.746 00:05:01.062 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 21:08:28.260 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50152 10 6452 1 2025-11-24 21:09:28.663 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38370 10 6452 1 2025-11-24 21:10:29.099 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:41710 10 6452 1 2025-11-24 21:11:29.497 00:00:10.440 TCP 1.101.0.1:3000 -> 23.104.0.1:39012 12 10375 1 2025-11-24 21:12:24.627 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 21:12:24.535 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 21:12:24.634 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 21:12:24.512 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 21:12:24.716 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 21:12:29.975 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54626 10 6452 1 2025-11-24 21:13:30.382 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:56690 10 6452 1 2025-11-24 21:10:05.757 00:05:01.050 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 21:10:05.754 00:05:01.055 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 21:14:30.751 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52542 10 6452 1 2025-11-24 21:15:31.154 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44650 10 6452 1 2025-11-24 21:16:31.564 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60874 10 6452 1 2025-11-24 21:17:24.797 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 21:17:24.465 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 21:17:24.789 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 21:17:24.613 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 21:17:24.874 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 21:17:31.964 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:44602 10 6452 1 2025-11-24 21:18:32.371 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53882 10 6452 1 2025-11-24 21:19:32.773 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:37592 10 6452 1 2025-11-24 21:16:05.762 00:05:01.046 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 21:16:05.760 00:05:01.051 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 21:20:33.190 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60372 10 6452 1 2025-11-24 21:21:33.587 00:00:13.674 TCP 1.101.0.1:3000 -> 23.104.0.1:42880 10 6452 1 2025-11-24 21:22:24.654 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 21:22:24.668 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 21:22:24.735 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 21:22:24.918 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 21:22:24.818 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 21:22:37.303 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:49732 10 6452 1 2025-11-24 21:23:37.711 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:44892 10 6452 1 2025-11-24 21:24:38.116 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36428 10 6452 1 2025-11-24 21:25:38.515 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53334 10 6452 1 2025-11-24 21:22:05.766 00:05:01.043 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 21:22:05.763 00:05:01.048 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 21:26:38.917 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:43698 10 6452 1 2025-11-24 21:27:25.066 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 21:27:25.084 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 21:27:24.923 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 21:27:24.983 00:00:00.026 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 21:27:24.902 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 21:27:39.302 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48086 10 6452 1 2025-11-24 21:28:39.700 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:38784 10 6452 1 2025-11-24 21:29:40.107 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38056 10 6452 1 2025-11-24 21:30:40.506 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55984 10 6452 1 2025-11-24 21:31:40.910 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:46354 10 6452 1 2025-11-24 21:28:05.765 00:05:01.047 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 21:28:05.768 00:05:01.042 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 21:32:25.095 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 21:32:24.934 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 21:32:24.960 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 21:32:24.960 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 21:32:25.042 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 21:32:41.277 00:00:16.907 TCP 1.101.0.1:3000 -> 23.104.0.1:52164 10 6452 1 2025-11-24 21:33:48.248 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:46632 10 6452 1 2025-11-24 21:34:48.609 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:57276 10 6452 1 2025-11-24 21:35:49.017 00:00:11.031 TCP 1.101.0.1:3000 -> 23.104.0.1:42152 10 6452 1 2025-11-24 21:36:50.116 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:53846 10 6452 1 2025-11-24 21:37:25.178 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 21:37:25.297 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 21:37:25.191 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 21:37:24.962 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 21:37:25.260 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 21:37:50.484 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:60578 10 6452 1 2025-11-24 21:34:05.770 00:05:01.041 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 21:34:05.767 00:05:01.046 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 21:38:50.898 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:49356 12 6556 1 2025-11-24 21:39:51.303 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:33960 10 6452 1 2025-11-24 21:40:51.704 00:00:10.451 TCP 1.101.0.1:3000 -> 23.104.0.1:36158 12 10369 1 2025-11-24 21:41:52.199 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:42540 10 6452 1 2025-11-24 21:42:25.141 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 21:42:25.055 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 21:42:25.222 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 21:42:25.011 00:00:00.031 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 21:42:25.305 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 21:42:52.561 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:41776 10 6452 1 2025-11-24 21:43:52.925 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39874 10 6452 1 2025-11-24 21:40:05.770 00:05:01.045 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 21:40:05.771 00:05:01.040 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 21:44:53.326 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:54142 10 6452 1 2025-11-24 21:45:53.729 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:33202 10 6452 1 2025-11-24 21:46:54.108 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50150 10 6452 1 2025-11-24 21:47:25.451 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 21:47:25.553 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 21:47:25.440 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 21:47:25.552 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 21:47:25.635 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 21:47:54.516 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:47580 10 6452 1 2025-11-24 21:48:54.915 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:58280 10 6452 1 2025-11-24 21:46:05.771 00:05:01.046 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 21:46:05.775 00:05:01.041 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 21:49:55.318 00:00:16.045 TCP 1.101.0.1:3000 -> 23.104.0.1:42118 10 6452 1 2025-11-24 21:51:01.406 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:34678 10 6452 1 2025-11-24 21:52:01.820 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59686 10 6452 1 2025-11-24 21:52:25.482 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 21:52:25.324 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 21:52:25.354 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 21:52:25.398 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 21:52:25.318 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 21:53:02.226 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:51494 10 6452 1 2025-11-24 21:54:02.631 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:59590 10 6452 1 2025-11-24 21:55:02.994 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:53536 10 6452 1 2025-11-24 21:52:05.772 00:05:01.046 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 21:52:05.775 00:05:01.041 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 21:56:03.401 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:35820 10 6452 1 2025-11-24 21:57:03.764 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:52960 10 6452 1 2025-11-24 21:57:25.684 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 21:57:25.825 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 21:57:25.492 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 21:57:25.602 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 21:57:25.823 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 21:58:04.194 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33932 10 6452 1 Summary: total flows: 139, total bytes: 422415, total packets: 1018, avg bps: 936, avg pps: 0, avg bpp: 414 Time window: 2025-11-24 20:58:05 - 2025-11-24 21:58:14 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0050s User: 0.0000s Wall: 0.0021s flows/second: 66500.3 Runtime: 0.0021s