Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-25 01:58:54.920 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:55500 10 6452 1 2025-11-25 01:59:55.324 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:47476 10 6452 1 2025-11-25 02:00:55.689 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:53418 10 6452 1 2025-11-25 01:58:05.849 00:05:01.087 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 02:01:56.117 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:45308 10 6452 1 2025-11-25 02:02:30.346 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 02:02:30.402 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 02:02:30.081 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 02:02:30.352 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 02:02:30.434 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 02:02:56.522 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:56684 10 6452 1 2025-11-25 01:59:05.851 00:05:01.082 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 02:03:56.894 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:34200 12 6556 1 2025-11-25 02:04:57.307 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:49680 10 6452 1 2025-11-25 02:05:57.713 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:59198 12 6556 1 2025-11-25 02:06:58.116 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41712 10 6452 1 2025-11-25 02:07:30.481 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 02:07:30.507 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 02:07:30.475 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 02:07:30.324 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 02:07:30.558 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 02:07:58.521 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:53478 10 6452 1 2025-11-25 02:04:05.850 00:05:01.087 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 02:08:58.920 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51336 10 6452 1 2025-11-25 02:05:05.853 00:05:01.081 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 02:09:59.327 00:00:10.343 TCP 1.101.0.1:3000 -> 23.104.0.1:46366 10 6452 1 2025-11-25 02:10:59.711 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:40332 10 6452 1 2025-11-25 02:12:00.134 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37416 10 6452 1 2025-11-25 02:12:30.716 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 02:12:30.810 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 02:12:30.720 00:00:00.026 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 02:12:30.632 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 02:12:30.814 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 02:13:00.537 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:49092 10 6452 1 2025-11-25 02:10:05.852 00:05:01.087 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 02:14:00.921 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55992 10 6452 1 2025-11-25 02:11:05.855 00:05:01.083 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 02:15:01.323 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37960 10 6452 1 2025-11-25 02:16:01.725 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:52712 10 6452 1 2025-11-25 02:17:02.169 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43260 10 6452 1 2025-11-25 02:17:30.547 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 02:17:30.710 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 02:17:30.833 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 02:17:30.489 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 02:17:30.628 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 02:18:02.574 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48106 10 6452 1 2025-11-25 02:19:02.977 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34408 11 6492 1 2025-11-25 02:16:05.853 00:05:01.090 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 02:20:03.375 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:32976 10 6452 1 2025-11-25 02:17:05.856 00:05:01.085 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 02:21:03.775 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:35746 10 6452 1 2025-11-25 02:22:04.183 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39284 10 6452 1 2025-11-25 02:22:30.890 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 02:22:30.791 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 02:22:30.636 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 02:22:30.792 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 02:22:30.875 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 02:23:04.597 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:41422 10 6452 1 2025-11-25 02:24:04.958 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:37138 10 6452 1 2025-11-25 02:25:05.327 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:45824 10 6452 1 2025-11-25 02:22:05.855 00:05:01.089 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 02:26:05.728 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40798 10 6452 1 2025-11-25 02:23:05.857 00:05:01.083 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 02:27:06.130 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:42180 10 6452 1 2025-11-25 02:27:30.791 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 02:27:30.870 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 02:27:30.878 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 02:27:30.818 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 02:27:30.709 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 02:28:06.515 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:60350 10 6452 1 2025-11-25 02:29:06.929 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:58118 10 6452 1 2025-11-25 02:30:07.352 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:40636 10 6452 1 2025-11-25 02:31:07.765 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:56104 10 6452 1 2025-11-25 02:28:05.856 00:05:01.088 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 02:32:08.191 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:35116 10 6452 1 2025-11-25 02:32:31.038 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 02:32:31.046 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 02:32:30.950 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 02:32:30.914 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 02:32:30.956 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 02:29:05.859 00:05:01.083 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 02:33:08.589 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:38350 10 6452 1 2025-11-25 02:34:08.952 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:37930 10 6452 1 2025-11-25 02:35:09.361 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:36734 10 6452 1 2025-11-25 02:36:09.768 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:58818 10 6452 1 2025-11-25 02:37:10.149 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38290 10 6452 1 2025-11-25 02:37:31.343 00:00:00.026 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 02:37:30.960 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 02:37:31.151 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 02:37:31.042 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 02:37:31.259 00:00:00.026 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 02:34:05.859 00:05:01.088 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 02:38:10.552 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:42948 10 6452 1 2025-11-25 02:35:05.861 00:05:01.082 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 02:39:10.959 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:35714 10 6452 1 2025-11-25 02:40:11.363 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:40876 10 6452 1 2025-11-25 02:41:11.738 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:33484 10 6452 1 2025-11-25 02:42:12.114 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:56232 10 6452 1 2025-11-25 02:42:31.312 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 02:42:31.101 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 02:42:31.067 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 02:42:31.158 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 02:42:31.240 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 02:43:12.477 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:34276 10 6452 1 2025-11-25 02:40:05.862 00:05:01.088 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 02:44:12.891 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:35856 10 6452 1 2025-11-25 02:41:05.864 00:05:01.083 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 02:45:13.300 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44912 10 6452 1 2025-11-25 02:46:13.703 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:37270 10 6452 1 2025-11-25 02:47:14.116 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:39618 10 6452 1 2025-11-25 02:47:30.970 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 02:47:31.112 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 02:47:31.289 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 02:47:31.200 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 02:47:31.373 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 02:48:14.475 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:41182 10 6452 1 2025-11-25 02:49:14.845 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:36548 10 6452 1 2025-11-25 02:46:05.863 00:05:01.089 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 02:50:15.264 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:36734 10 6452 1 2025-11-25 02:47:05.868 00:05:01.081 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 02:51:15.662 00:00:11.096 TCP 1.101.0.1:3000 -> 23.104.0.1:38704 10 6452 1 2025-11-25 02:52:16.799 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49054 10 6452 1 2025-11-25 02:52:31.415 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 02:52:31.352 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 02:52:31.302 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 02:52:31.314 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 02:52:31.384 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 02:53:17.200 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34968 10 6452 1 2025-11-25 02:54:17.609 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:42466 10 6452 1 2025-11-25 02:55:17.971 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:39414 10 6452 1 2025-11-25 02:52:05.865 00:05:01.089 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 02:56:18.352 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57798 10 6452 1 2025-11-25 02:53:05.867 00:05:01.084 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 02:57:18.757 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:53260 10 6452 1 2025-11-25 02:57:31.696 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 02:57:31.695 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 02:57:31.633 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 02:57:31.710 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 02:57:31.793 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 02:58:19.181 00:00:11.800 TCP 1.101.0.1:3000 -> 23.104.0.1:34632 11 6504 1 Summary: total flows: 140, total bytes: 417300, total packets: 1026, avg bps: 920, avg pps: 0, avg bpp: 406 Time window: 2025-11-25 01:58:05 - 2025-11-25 02:58:30 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0022s User: 0.0022s Wall: 0.0014s flows/second: 98309.5 Runtime: 0.0014s