Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-25 06:59:01.422 00:00:11.093 TCP 1.101.0.1:3000 -> 23.104.0.1:38108 10 6452 1 2025-11-25 07:00:02.554 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:42936 10 6452 1 2025-11-25 07:01:02.959 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:55198 10 6452 1 2025-11-25 06:58:05.960 00:05:01.152 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 07:02:03.370 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34394 10 6452 1 2025-11-25 07:02:36.543 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 07:02:36.355 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 07:02:36.361 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 07:02:36.389 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 07:02:36.626 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 06:59:05.963 00:05:01.148 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 07:03:03.769 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:49556 10 6452 1 2025-11-25 07:04:04.180 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56098 10 6452 1 2025-11-25 07:05:04.583 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:33064 10 6452 1 2025-11-25 07:06:04.951 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:55422 10 6452 1 2025-11-25 07:07:05.323 00:00:10.417 TCP 1.101.0.1:3000 -> 23.104.0.1:42164 11 6504 1 2025-11-25 07:07:36.643 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 07:07:36.629 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 07:07:36.483 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 07:07:36.429 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 07:07:36.511 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 07:04:05.961 00:05:01.153 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 07:08:05.778 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:38072 10 6452 1 2025-11-25 07:05:05.963 00:05:01.149 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 07:09:06.186 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:46702 10 6452 1 2025-11-25 07:10:06.558 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:33338 10 6452 1 2025-11-25 07:11:06.916 00:00:10.355 TCP 1.101.0.1:3000 -> 23.104.0.1:49916 10 6452 1 2025-11-25 07:12:07.306 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40122 10 6452 1 2025-11-25 07:12:36.688 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 07:12:36.554 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 07:12:36.523 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 07:12:36.550 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 07:12:36.633 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 07:13:07.709 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:54888 10 6452 1 2025-11-25 07:10:05.965 00:05:01.150 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 07:14:08.114 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56104 10 6452 1 2025-11-25 07:11:05.968 00:05:01.145 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 07:15:08.514 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:42908 10 6452 1 2025-11-25 07:16:08.925 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52578 10 6452 1 2025-11-25 07:17:09.330 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:52766 10 6452 1 2025-11-25 07:17:37.055 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 07:17:37.066 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 07:17:37.090 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 07:17:36.943 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 07:17:37.027 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 07:18:09.694 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:43880 10 6452 1 2025-11-25 07:19:10.067 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47638 10 6452 1 2025-11-25 07:16:05.967 00:05:01.154 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 07:20:10.470 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52130 10 6452 1 2025-11-25 07:17:05.971 00:05:01.148 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 07:21:10.871 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:50710 10 6452 1 2025-11-25 07:22:11.284 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58458 10 6452 1 2025-11-25 07:22:37.143 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 07:22:36.879 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 07:22:37.100 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 07:22:36.797 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 07:22:37.060 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 07:23:11.686 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:59582 10 6452 1 2025-11-25 07:24:12.135 00:00:10.671 TCP 1.101.0.1:3000 -> 23.104.0.1:49162 10 6452 1 2025-11-25 07:25:12.853 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:50154 10 6452 1 2025-11-25 07:22:05.968 00:05:01.154 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 07:26:13.273 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39910 10 6452 1 2025-11-25 07:23:05.972 00:05:01.149 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 07:27:13.681 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:58616 10 6452 1 2025-11-25 07:27:36.814 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 07:27:36.822 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 07:27:36.751 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 07:27:36.934 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 07:27:37.018 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 07:28:14.048 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:36392 10 6452 1 2025-11-25 07:29:14.448 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:41220 10 6452 1 2025-11-25 07:30:14.833 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:54406 10 6452 1 2025-11-25 07:31:15.261 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:43480 10 6452 1 2025-11-25 07:28:05.970 00:05:01.154 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 07:32:15.666 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54700 10 6452 1 2025-11-25 07:32:36.990 00:00:00.048 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 07:32:36.863 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 07:32:36.988 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 07:32:37.007 00:00:00.043 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 07:32:37.073 00:00:00.048 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 07:29:05.974 00:05:01.149 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 07:33:16.089 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33164 10 6452 1 2025-11-25 07:34:16.493 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:42132 10 6452 1 2025-11-25 07:35:16.890 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:49120 12 6556 1 2025-11-25 07:36:17.318 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49926 10 6452 1 2025-11-25 07:37:17.724 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:43964 10 6452 1 2025-11-25 07:37:37.343 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 07:37:36.941 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 07:37:37.088 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 07:37:36.824 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 07:37:37.260 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 07:34:05.972 00:05:01.155 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 07:38:18.139 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33286 10 6452 1 2025-11-25 07:35:05.974 00:05:01.150 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 07:39:18.544 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43846 10 6452 1 2025-11-25 07:40:18.951 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45726 10 6452 1 2025-11-25 07:41:19.356 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:50322 10 6452 1 2025-11-25 07:42:37.498 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 07:42:19.760 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:57146 10 6452 1 2025-11-25 07:42:37.306 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 07:42:37.242 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 07:42:37.262 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 07:42:37.410 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 07:43:20.176 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:52798 10 6452 1 2025-11-25 07:40:05.973 00:05:01.155 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 07:44:20.542 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49858 10 6452 1 2025-11-25 07:41:05.976 00:05:01.149 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 07:45:20.950 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:36998 10 6452 1 2025-11-25 07:46:21.359 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49054 10 6452 1 2025-11-25 07:47:21.760 00:00:10.529 TCP 1.101.0.1:3000 -> 23.104.0.1:54110 10 6452 1 2025-11-25 07:47:37.310 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 07:47:37.331 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 07:47:37.204 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 07:47:37.275 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 07:47:37.413 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 07:48:22.324 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:53798 10 6452 1 2025-11-25 07:49:22.727 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:39730 10 6452 1 2025-11-25 07:46:05.973 00:05:01.157 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 07:50:23.132 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60340 10 6452 1 2025-11-25 07:47:05.975 00:05:01.153 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 07:51:23.534 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57004 10 6452 1 2025-11-25 07:52:23.938 00:00:10.401 TCP 1.101.0.1:3000 -> 23.104.0.1:50978 10 6452 1 2025-11-25 07:52:37.263 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 07:52:37.470 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 07:52:37.041 00:00:00.026 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 07:52:37.168 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 07:52:37.250 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 07:53:24.374 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39918 10 6452 1 2025-11-25 07:54:24.779 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:34336 10 6452 1 2025-11-25 07:55:25.180 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:41792 10 6452 1 2025-11-25 07:52:05.976 00:05:01.162 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 07:56:25.588 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:55892 10 6452 1 2025-11-25 07:53:05.979 00:05:01.157 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 07:57:37.382 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 07:57:26.000 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:46482 10 6452 1 2025-11-25 07:57:37.382 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 07:57:37.611 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 07:57:37.415 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 07:57:37.465 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 07:58:26.406 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:54238 10 6452 1 Summary: total flows: 140, total bytes: 417156, total packets: 1023, avg bps: 919, avg pps: 0, avg bpp: 407 Time window: 2025-11-25 06:58:05 - 2025-11-25 07:58:36 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0042s User: 0.0021s Wall: 0.0020s flows/second: 71064.1 Runtime: 0.0020s