Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-24 22:59:30.391 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:38682 10 6870 1 2025-11-24 23:00:30.750 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:44124 10 6870 1 2025-11-24 23:01:31.115 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:37252 10 6870 1 2025-11-24 22:58:05.792 00:05:01.043 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 22:58:05.796 00:05:01.037 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 23:02:26.734 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 23:02:26.553 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 23:02:26.615 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 23:02:26.515 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 23:02:26.698 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 23:02:31.479 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:48798 10 6870 1 2025-11-24 23:03:31.881 00:00:10.526 TCP 1.101.0.1:3000 -> 23.104.0.1:46788 10 6870 1 2025-11-24 23:04:32.442 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:51084 10 6870 1 2025-11-24 23:05:32.848 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:35926 10 6870 1 2025-11-24 23:06:33.272 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:58574 10 6870 1 2025-11-24 23:07:26.922 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 23:07:26.741 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 23:07:26.744 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 23:07:26.839 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 23:07:26.922 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 23:07:33.628 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54450 10 6870 1 2025-11-24 23:04:05.796 00:05:01.040 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 23:04:05.793 00:05:01.046 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 23:08:34.055 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56370 10 6870 1 2025-11-24 23:09:34.452 00:00:10.316 TCP 1.101.0.1:3000 -> 23.104.0.1:34840 10 6870 1 2025-11-24 23:10:34.806 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:56848 10 6870 1 2025-11-24 23:11:35.181 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:45108 10 6870 1 2025-11-24 23:12:26.933 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 23:12:26.947 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 23:12:26.871 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 23:12:26.865 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 23:12:26.954 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 23:12:35.577 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33088 10 6870 1 2025-11-24 23:13:35.984 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:42494 10 6870 1 2025-11-24 23:10:05.800 00:05:01.038 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 23:10:05.797 00:05:01.043 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 23:14:36.387 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37518 10 6870 1 2025-11-24 23:15:36.791 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:55994 10 6870 1 2025-11-24 23:16:37.191 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:37948 10 6870 1 2025-11-24 23:17:27.283 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 23:17:27.100 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 23:17:27.043 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 23:17:26.651 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 23:17:27.201 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 23:17:37.552 00:00:10.486 TCP 1.101.0.1:3000 -> 23.104.0.1:37994 10 6870 1 2025-11-24 23:18:38.105 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:48652 10 6870 1 2025-11-24 23:19:38.525 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:36918 10 6870 1 2025-11-24 23:16:05.804 00:05:01.034 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 23:16:05.802 00:05:01.039 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 23:20:38.946 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:39058 10 6870 1 2025-11-24 23:21:39.312 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51092 10 6870 1 2025-11-24 23:22:27.389 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 23:22:27.177 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 23:22:26.821 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 23:22:27.306 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 23:22:27.107 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 23:22:39.713 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:55514 10 6870 1 2025-11-24 23:23:40.160 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43258 10 6870 1 2025-11-24 23:24:40.565 00:00:10.409 TCP 1.101.0.1:3000 -> 23.104.0.1:57994 10 6870 1 2025-11-24 23:25:41.007 00:00:10.356 TCP 1.101.0.1:3000 -> 23.104.0.1:60952 10 6870 1 2025-11-24 23:22:05.807 00:05:01.053 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 23:22:05.804 00:05:01.059 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 23:26:41.420 00:00:10.393 TCP 1.101.0.1:3000 -> 23.104.0.1:50776 10 6870 1 2025-11-24 23:27:27.208 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 23:27:27.368 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 23:27:26.929 00:00:00.026 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 23:27:27.125 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 23:27:27.121 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 23:27:41.887 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:44578 10 6870 1 2025-11-24 23:28:42.259 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54454 10 6870 1 2025-11-24 23:29:42.662 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:40704 10 6870 1 2025-11-24 23:30:43.084 00:00:11.137 TCP 1.101.0.1:3000 -> 23.104.0.1:45616 12 6974 1 2025-11-24 23:31:44.260 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54654 12 6974 1 2025-11-24 23:28:05.806 00:05:01.058 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 23:28:05.807 00:05:01.054 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 23:32:27.057 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 23:32:27.339 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 23:32:27.337 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 23:32:27.232 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 23:32:27.422 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 23:32:44.664 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:54594 10 6870 1 2025-11-24 23:33:45.028 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:52842 10 6870 1 2025-11-24 23:34:45.384 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44682 10 6870 1 2025-11-24 23:35:45.785 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52766 10 6870 1 2025-11-24 23:36:46.191 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:34904 10 6870 1 2025-11-24 23:37:27.730 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 23:37:27.543 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 23:37:27.563 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 23:37:27.647 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 23:37:27.402 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 23:37:46.596 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:55988 10 6870 1 2025-11-24 23:34:05.807 00:05:01.058 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 23:34:05.809 00:05:01.053 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 23:38:47.004 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:50526 10 6870 1 2025-11-24 23:39:47.411 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:35218 10 6870 1 2025-11-24 23:40:47.818 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53780 10 6870 1 2025-11-24 23:41:48.217 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49216 10 6870 1 2025-11-24 23:42:27.690 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 23:42:27.699 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 23:42:27.389 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 23:42:27.607 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 23:42:27.605 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 23:42:48.623 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57838 10 6870 1 2025-11-24 23:43:49.019 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34864 10 6870 1 2025-11-24 23:40:05.806 00:05:01.058 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 23:40:05.811 00:05:01.053 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 23:44:49.418 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53352 10 6870 1 2025-11-24 23:45:49.824 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55558 10 6870 1 2025-11-24 23:46:50.225 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:44196 10 6870 1 2025-11-24 23:47:27.730 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 23:47:27.387 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 23:47:27.731 00:00:00.027 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 23:47:27.646 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 23:47:27.815 00:00:00.026 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 23:47:50.633 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59434 10 6870 1 2025-11-24 23:48:51.037 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:60448 10 6870 1 2025-11-24 23:49:51.396 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:38090 10 6870 1 2025-11-24 23:46:05.814 00:05:01.054 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 23:46:05.811 00:05:01.059 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 23:50:51.763 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:57528 10 6870 1 2025-11-24 23:51:52.181 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58196 10 6870 1 2025-11-24 23:52:27.727 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 23:52:27.538 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 23:52:27.730 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 23:52:27.897 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 23:52:27.812 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 23:52:52.585 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:36982 10 6870 1 2025-11-24 23:53:52.990 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:40050 10 6870 1 2025-11-24 23:54:53.409 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:53244 10 6870 1 2025-11-24 23:55:53.808 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:49252 10 6870 1 2025-11-24 23:52:05.814 00:05:01.061 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-24 23:52:05.816 00:05:01.056 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-24 23:56:54.216 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:60262 10 6870 1 2025-11-24 23:57:27.767 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 23:57:27.732 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 23:57:27.768 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-24 23:57:27.680 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 23:57:27.852 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 23:57:54.643 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:36494 10 6870 1 Summary: total flows: 139, total bytes: 435418, total packets: 1014, avg bps: 967, avg pps: 0, avg bpp: 429 Time window: 2025-11-24 22:58:05 - 2025-11-24 23:58:04 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0026s User: 0.0026s Wall: 0.0023s flows/second: 59224.7 Runtime: 0.0024s