Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-25 03:58:44.949 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:47106 10 6452 1 2025-11-25 03:59:45.354 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:34304 10 6452 1 2025-11-25 04:00:45.718 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:53582 10 6452 1 2025-11-25 04:01:46.137 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:56326 10 6452 1 2025-11-25 03:58:05.892 00:05:01.108 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 04:02:32.977 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 04:02:32.928 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 04:02:32.849 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 04:02:32.714 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 04:02:32.893 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 04:02:46.498 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:51704 10 6452 1 2025-11-25 03:59:05.894 00:05:01.102 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 04:03:46.865 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39542 10 6452 1 2025-11-25 04:04:47.271 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:55196 10 6452 1 2025-11-25 04:05:47.675 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57706 10 6452 1 2025-11-25 04:06:48.108 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42030 10 6452 1 2025-11-25 04:07:32.756 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 04:07:32.831 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 04:07:32.602 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 04:07:32.843 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 04:07:32.926 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 04:07:48.515 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49560 10 6452 1 2025-11-25 04:04:05.894 00:05:01.107 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 04:08:48.915 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:51260 10 6452 1 2025-11-25 04:05:05.897 00:05:01.100 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 04:09:49.278 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39198 10 6452 1 2025-11-25 04:10:49.686 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47766 10 6452 1 2025-11-25 04:11:50.114 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39760 10 6452 1 2025-11-25 04:12:33.324 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 04:12:33.226 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 04:12:33.359 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 04:12:33.341 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 04:12:33.241 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 04:12:50.517 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:45280 10 6452 1 2025-11-25 04:13:50.919 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57320 10 6452 1 2025-11-25 04:10:05.895 00:05:01.110 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 04:14:51.319 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:37618 10 6452 1 2025-11-25 04:11:05.897 00:05:01.105 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 04:15:51.723 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:58266 10 6452 1 2025-11-25 04:16:52.133 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:42388 10 6452 1 2025-11-25 04:17:32.989 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 04:17:32.975 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 04:17:32.838 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 04:17:32.979 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 04:17:33.062 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 04:17:52.493 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:44808 10 6452 1 2025-11-25 04:18:52.850 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:52598 10 6452 1 2025-11-25 04:19:53.280 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:53168 10 6452 1 2025-11-25 04:16:05.900 00:05:01.122 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 04:20:53.679 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:34432 10 6452 1 2025-11-25 04:17:05.903 00:05:01.130 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 04:21:54.123 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:55786 10 6452 1 2025-11-25 04:22:33.180 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 04:22:33.180 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 04:22:33.238 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 04:22:33.073 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 04:22:33.264 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 04:22:54.481 00:00:11.309 TCP 1.101.0.1:3000 -> 23.104.0.1:54964 10 6452 1 2025-11-25 04:23:55.833 00:00:10.395 TCP 1.101.0.1:3000 -> 23.104.0.1:53280 10 6452 1 2025-11-25 04:24:56.261 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36582 10 6452 1 2025-11-25 04:25:56.667 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56132 10 6452 1 2025-11-25 04:22:05.901 00:05:01.135 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 04:23:05.903 00:05:01.130 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 04:26:57.085 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:59576 10 6452 1 2025-11-25 04:27:33.190 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 04:27:33.355 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 04:27:33.386 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 04:27:33.474 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 04:27:33.470 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 04:27:57.512 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:45312 10 6452 1 2025-11-25 04:28:57.915 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58094 10 6452 1 2025-11-25 04:29:58.319 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57172 10 6452 1 2025-11-25 04:30:58.724 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:50468 10 6452 1 2025-11-25 04:28:05.905 00:05:01.131 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 04:31:59.144 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:58380 10 6452 1 2025-11-25 04:32:33.459 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 04:32:33.292 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 04:32:33.228 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 04:32:33.379 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 04:32:33.376 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 04:29:05.907 00:05:01.127 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 04:32:59.526 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57614 10 6452 1 2025-11-25 04:33:59.936 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:49508 10 6452 1 2025-11-25 04:35:00.361 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:43460 10 6452 1 2025-11-25 04:36:00.725 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:41984 10 6452 1 2025-11-25 04:37:01.142 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40052 10 6452 1 2025-11-25 04:37:33.516 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 04:37:33.497 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 04:37:33.426 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 04:37:33.310 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 04:37:33.434 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 04:34:05.908 00:05:01.131 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 04:38:01.547 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:51906 10 6452 1 2025-11-25 04:35:05.909 00:05:01.127 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 04:39:01.908 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:37528 12 6556 1 2025-11-25 04:40:02.317 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56300 10 6452 1 2025-11-25 04:41:02.725 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:40506 10 6452 1 2025-11-25 04:42:03.133 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34950 10 6452 1 2025-11-25 04:42:33.685 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 04:42:33.529 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 04:42:33.371 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 04:42:33.525 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 04:42:33.609 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 04:43:03.534 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42636 10 6452 1 2025-11-25 04:40:05.912 00:05:01.134 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 04:44:03.936 00:00:10.436 TCP 1.101.0.1:3000 -> 23.104.0.1:46320 10 6452 1 2025-11-25 04:41:05.914 00:05:01.129 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 04:45:04.416 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60812 10 6452 1 2025-11-25 04:46:04.819 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:51954 10 6452 1 2025-11-25 04:47:05.189 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:53492 10 6452 1 2025-11-25 04:47:33.730 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 04:47:33.566 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 04:47:33.699 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 04:47:33.803 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 04:47:33.886 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 04:48:05.604 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37718 10 6452 1 2025-11-25 04:49:06.008 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:34852 10 6452 1 2025-11-25 04:46:05.912 00:05:01.138 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 04:50:06.429 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:41216 10 6452 1 2025-11-25 04:47:05.915 00:05:01.132 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 04:51:06.794 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:48374 10 6452 1 2025-11-25 04:52:07.239 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51202 10 6452 1 2025-11-25 04:52:33.720 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 04:52:33.886 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 04:52:33.543 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 04:52:33.948 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 04:52:34.032 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 04:53:07.647 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:53774 10 6452 1 2025-11-25 04:54:08.021 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57632 10 6452 1 2025-11-25 04:55:08.425 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:55140 10 6452 1 2025-11-25 04:52:05.914 00:05:01.138 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 04:56:08.830 00:00:10.728 TCP 1.101.0.1:3000 -> 23.104.0.1:37152 10 6452 1 2025-11-25 04:53:05.917 00:05:01.133 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 04:57:09.595 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38138 10 6452 1 2025-11-25 04:57:33.987 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 04:57:33.922 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 04:57:33.685 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 04:57:33.928 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 04:57:34.012 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 04:58:09.997 00:00:10.414 TCP 1.101.0.1:3000 -> 23.104.0.1:34006 11 6504 1 Summary: total flows: 140, total bytes: 417156, total packets: 1023, avg bps: 923, avg pps: 0, avg bpp: 407 Time window: 2025-11-25 03:58:05 - 2025-11-25 04:58:20 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0062s User: 0.0000s Wall: 0.0023s flows/second: 60812.2 Runtime: 0.0023s