Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-25 04:59:10.452 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:59188 10 6452 1 2025-11-25 05:00:10.815 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:34640 10 6452 1 2025-11-25 05:01:11.221 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50080 10 6452 1 2025-11-25 04:58:05.920 00:05:01.134 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 05:02:11.624 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58954 10 6452 1 2025-11-25 05:02:33.973 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 05:02:34.054 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 05:02:34.117 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 05:02:33.979 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 05:02:34.198 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 04:59:05.923 00:05:01.130 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 05:03:12.026 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41498 10 6452 1 2025-11-25 05:04:12.430 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:38520 10 6452 1 2025-11-25 05:05:12.831 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:47714 10 6452 1 2025-11-25 05:06:13.250 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:60462 10 6452 1 2025-11-25 05:07:13.668 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33862 10 6452 1 2025-11-25 05:07:34.254 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 05:07:34.172 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 05:07:34.232 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 05:07:34.126 00:00:00.027 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 05:07:33.977 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 05:04:05.923 00:05:01.134 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 05:08:14.096 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:48878 10 6452 1 2025-11-25 05:05:05.925 00:05:01.130 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 05:09:14.499 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:49078 10 6452 1 2025-11-25 05:10:14.904 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:48538 10 6452 1 2025-11-25 05:11:15.311 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:35642 10 6452 1 2025-11-25 05:12:15.717 00:00:10.681 TCP 1.101.0.1:3000 -> 23.104.0.1:51794 10 6452 1 2025-11-25 05:12:34.337 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 05:12:34.304 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 05:12:34.258 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 05:12:34.080 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 05:12:34.255 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 05:13:16.434 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:40756 10 6452 1 2025-11-25 05:10:05.925 00:05:01.143 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 05:14:16.802 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34250 10 6452 1 2025-11-25 05:11:05.927 00:05:01.128 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 05:15:17.204 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:39882 10 6452 1 2025-11-25 05:16:17.579 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46558 10 6452 1 2025-11-25 05:17:17.980 00:00:10.343 TCP 1.101.0.1:3000 -> 23.104.0.1:35614 10 6452 1 2025-11-25 05:17:34.321 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 05:17:34.128 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 05:17:34.351 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 05:17:34.300 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 05:17:34.211 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 05:18:18.364 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56852 10 6452 1 2025-11-25 05:19:18.768 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:48196 10 6452 1 2025-11-25 05:16:05.930 00:05:01.131 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 05:20:19.179 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:35868 10 6452 1 2025-11-25 05:17:05.933 00:05:01.125 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 05:21:19.598 00:00:10.971 TCP 1.101.0.1:3000 -> 23.104.0.1:49084 10 6452 1 2025-11-25 05:22:34.535 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 05:22:34.154 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 05:22:34.573 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 05:22:34.422 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 05:22:34.453 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 05:22:20.603 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:41408 10 6452 1 2025-11-25 05:23:21.005 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:37278 10 6452 1 2025-11-25 05:24:21.409 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46876 10 6452 1 2025-11-25 05:25:21.807 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:49428 10 6452 1 2025-11-25 05:22:05.930 00:05:01.131 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 05:26:22.184 00:00:10.437 TCP 1.101.0.1:3000 -> 23.104.0.1:56052 12 10369 1 2025-11-25 05:23:05.934 00:05:01.124 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 05:27:34.531 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 05:27:34.722 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 05:27:34.842 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 05:27:34.780 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 05:27:22.661 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55022 10 6452 1 2025-11-25 05:27:34.863 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 05:28:23.094 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:48706 10 6452 1 2025-11-25 05:29:23.502 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:57294 10 6452 1 2025-11-25 05:30:23.868 00:00:11.034 TCP 1.101.0.1:3000 -> 23.104.0.1:47880 10 6452 1 2025-11-25 05:31:24.937 00:00:10.455 TCP 1.101.0.1:3000 -> 23.104.0.1:37176 12 10369 1 2025-11-25 05:28:05.931 00:05:01.134 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 05:32:34.701 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 05:32:34.752 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 05:32:34.571 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 05:32:34.703 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 05:32:34.787 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 05:32:25.431 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45772 10 6452 1 2025-11-25 05:29:05.934 00:05:01.128 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 05:33:25.835 00:00:10.396 TCP 1.101.0.1:3000 -> 23.104.0.1:42286 10 6452 1 2025-11-25 05:34:26.272 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:46372 10 6452 1 2025-11-25 05:35:26.639 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:60044 10 6452 1 2025-11-25 05:36:27.070 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:54458 10 6452 1 2025-11-25 05:37:34.822 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 05:37:34.750 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 05:37:34.641 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 05:37:34.788 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 05:37:34.871 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 05:37:27.487 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:46170 10 6452 1 2025-11-25 05:34:05.933 00:05:01.134 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 05:38:27.896 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:38974 10 6452 1 2025-11-25 05:35:05.935 00:05:01.132 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 05:39:28.304 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:32886 10 6452 1 2025-11-25 05:40:28.705 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:56842 10 6452 1 2025-11-25 05:41:29.123 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:38760 10 6452 1 2025-11-25 05:42:34.852 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 05:42:34.851 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 05:42:34.626 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 05:42:34.640 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 05:42:34.935 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 05:42:29.524 00:00:10.415 TCP 1.101.0.1:3000 -> 23.104.0.1:37896 11 6504 1 2025-11-25 05:43:29.983 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:51756 10 6452 1 2025-11-25 05:40:05.934 00:05:01.136 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 05:44:30.400 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36460 10 6452 1 2025-11-25 05:41:05.936 00:05:01.133 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 05:45:30.806 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:43434 10 6452 1 2025-11-25 05:46:31.216 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:60576 10 6452 1 2025-11-25 05:47:34.724 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 05:47:34.598 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 05:47:34.847 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 05:47:34.850 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 05:47:34.807 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 05:47:31.640 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:33524 10 6452 1 2025-11-25 05:48:32.010 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:58516 10 6452 1 2025-11-25 05:49:32.371 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:32866 10 6452 1 2025-11-25 05:46:05.935 00:05:01.138 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 05:50:32.783 00:00:10.345 TCP 1.101.0.1:3000 -> 23.104.0.1:44746 10 6452 1 2025-11-25 05:47:05.937 00:05:01.144 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 05:51:33.169 00:00:10.436 TCP 1.101.0.1:3000 -> 23.104.0.1:37304 12 10375 1 2025-11-25 05:52:34.905 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 05:52:34.901 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 05:52:34.551 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 05:52:35.179 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 05:52:35.096 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 05:52:33.646 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:50954 10 6452 1 2025-11-25 05:53:34.092 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45498 12 6556 1 2025-11-25 05:54:34.490 00:00:10.709 TCP 1.101.0.1:3000 -> 23.104.0.1:48486 10 6452 1 2025-11-25 05:55:35.240 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:41004 10 6452 1 2025-11-25 05:52:05.936 00:05:01.144 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 05:56:35.640 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:56440 10 6452 1 2025-11-25 05:53:05.944 00:05:01.133 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 05:57:34.787 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 05:57:35.147 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 05:57:35.194 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 05:57:35.049 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 05:57:35.130 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 05:57:36.067 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:36978 10 6452 1 2025-11-25 05:58:36.425 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:60746 10 6452 1 Summary: total flows: 140, total bytes: 428913, total packets: 1029, avg bps: 942, avg pps: 0, avg bpp: 416 Time window: 2025-11-25 04:58:05 - 2025-11-25 05:58:46 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0028s User: 0.0018s Wall: 0.0021s flows/second: 68287.3 Runtime: 0.0021s