Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-24 23:58:55.006 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:34522 10 6870 1 2025-11-24 23:59:55.367 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43626 10 6870 1 2025-11-25 00:00:55.773 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:48820 10 6870 1 2025-11-25 00:01:56.156 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45000 10 6870 1 2025-11-24 23:58:05.817 00:05:01.063 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 00:02:28.259 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 00:02:28.172 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 00:02:28.062 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 00:02:28.222 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 00:02:28.305 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-24 23:59:05.818 00:05:01.059 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 00:02:56.570 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:56462 10 6870 1 2025-11-25 00:03:56.990 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:56410 10 6870 1 2025-11-25 00:04:57.365 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43494 10 6870 1 2025-11-25 00:05:57.767 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:39478 10 6870 1 2025-11-25 00:06:58.189 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:46550 10 6870 1 2025-11-25 00:07:28.218 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 00:07:28.131 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 00:07:27.989 00:00:00.051 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 00:07:27.972 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 00:07:28.136 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 00:04:05.818 00:05:01.068 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 00:07:58.597 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41990 10 6870 1 2025-11-25 00:05:05.821 00:05:01.062 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 00:08:59.002 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55876 10 6870 1 2025-11-25 00:09:59.404 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58446 10 6870 1 2025-11-25 00:10:59.813 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:42328 10 6870 1 2025-11-25 00:12:00.224 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:47910 10 6870 1 2025-11-25 00:12:28.270 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 00:12:27.937 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 00:12:28.190 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 00:12:28.259 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 00:12:28.270 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 00:13:00.626 00:00:11.840 TCP 1.101.0.1:3000 -> 23.104.0.1:39076 10 6870 1 2025-11-25 00:10:05.822 00:05:01.065 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 00:14:02.502 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:37130 10 6870 1 2025-11-25 00:11:05.825 00:05:01.059 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 00:15:02.870 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:35280 10 6870 1 2025-11-25 00:16:03.282 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:55190 10 6870 1 2025-11-25 00:17:03.648 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45192 10 6870 1 2025-11-25 00:17:28.393 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 00:17:28.339 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 00:17:28.475 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 00:17:28.304 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 00:17:28.559 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 00:18:04.065 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53358 10 6870 1 2025-11-25 00:19:04.471 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36508 10 6870 1 2025-11-25 00:16:05.824 00:05:01.064 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 00:20:04.876 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:58716 10 6870 1 2025-11-25 00:17:05.828 00:05:01.058 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 00:21:05.290 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:39632 10 6870 1 2025-11-25 00:22:05.699 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:60854 10 6870 1 2025-11-25 00:22:28.289 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 00:22:28.344 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 00:22:28.128 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 00:22:28.298 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 00:22:28.380 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 00:23:06.071 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:47684 10 6870 1 2025-11-25 00:24:06.440 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51420 10 6870 1 2025-11-25 00:25:06.851 00:00:10.394 TCP 1.101.0.1:3000 -> 23.104.0.1:35510 10 6870 1 2025-11-25 00:22:05.828 00:05:01.065 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 00:26:07.285 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:42774 10 6870 1 2025-11-25 00:23:05.831 00:05:01.059 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 00:27:07.687 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:50170 10 6870 1 2025-11-25 00:27:28.420 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 00:27:28.312 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 00:27:28.355 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 00:27:28.331 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 00:27:28.414 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 00:28:08.110 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34132 10 6870 1 2025-11-25 00:29:08.514 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:51092 10 6870 1 2025-11-25 00:30:08.886 00:00:10.347 TCP 1.101.0.1:3000 -> 23.104.0.1:55032 10 6870 1 2025-11-25 00:31:09.272 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:46108 10 6870 1 2025-11-25 00:28:05.827 00:05:01.066 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 00:32:09.636 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:57582 10 6870 1 2025-11-25 00:32:28.573 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 00:32:28.503 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 00:32:28.603 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 00:32:28.580 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 00:32:28.662 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 00:29:05.830 00:05:01.060 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 00:33:10.041 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:44232 10 6870 1 2025-11-25 00:34:10.446 00:00:11.885 TCP 1.101.0.1:3000 -> 23.104.0.1:54976 10 6870 1 2025-11-25 00:35:12.371 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:60004 10 6870 1 2025-11-25 00:36:12.726 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:34364 10 6870 1 2025-11-25 00:37:13.114 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41910 10 6870 1 2025-11-25 00:37:28.689 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 00:37:28.497 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 00:37:28.643 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 00:37:28.777 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 00:37:28.860 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 00:34:05.827 00:05:01.076 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 00:38:13.521 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:54984 10 6870 1 2025-11-25 00:35:05.831 00:05:01.064 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 00:39:13.922 00:00:10.761 TCP 1.101.0.1:3000 -> 23.104.0.1:53104 10 6870 1 2025-11-25 00:40:14.723 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:36612 10 6870 1 2025-11-25 00:41:15.139 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60800 10 6870 1 2025-11-25 00:42:28.799 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 00:42:28.734 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 00:42:28.741 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 00:42:15.539 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52228 10 6870 1 2025-11-25 00:42:28.638 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 00:42:28.723 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 00:43:15.946 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:49330 10 6870 1 2025-11-25 00:40:05.829 00:05:01.068 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 00:44:16.350 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47640 10 6870 1 2025-11-25 00:41:05.831 00:05:01.065 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 00:45:16.757 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:42872 10 6870 1 2025-11-25 00:46:17.141 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:54572 10 6870 1 2025-11-25 00:47:28.898 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 00:47:28.816 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 00:47:28.742 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 00:47:28.832 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 00:47:28.816 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 00:47:17.547 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:57350 10 6870 1 2025-11-25 00:48:17.949 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:34454 10 6870 1 2025-11-25 00:49:18.359 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:36178 10 6870 1 2025-11-25 00:46:05.830 00:05:01.072 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 00:50:18.720 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:60454 10 6870 1 2025-11-25 00:47:05.833 00:05:01.067 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 00:51:19.116 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58668 10 6870 1 2025-11-25 00:52:28.962 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 00:52:19.525 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46552 10 6870 1 2025-11-25 00:52:28.922 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 00:52:28.813 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 00:52:28.926 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 00:52:29.009 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 00:53:19.925 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:35674 10 6870 1 2025-11-25 00:54:20.347 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54950 10 6870 1 2025-11-25 00:55:20.751 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:45234 10 6870 1 2025-11-25 00:52:05.831 00:05:01.073 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 00:56:21.116 00:00:10.456 TCP 1.101.0.1:3000 -> 23.104.0.1:35592 14 10479 1 2025-11-25 00:53:05.833 00:05:01.068 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 00:57:29.122 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 00:57:29.121 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 00:57:28.936 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 00:57:29.073 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 00:57:29.154 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 00:57:21.612 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:59754 10 6452 1 2025-11-25 00:58:22.014 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:35820 10 6452 1 Summary: total flows: 140, total bytes: 444853, total packets: 1024, avg bps: 981, avg pps: 0, avg bpp: 434 Time window: 2025-11-24 23:58:05 - 2025-11-25 00:58:32 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0046s User: 0.0009s Wall: 0.0017s flows/second: 83338.4 Runtime: 0.0017s