Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-25 07:59:26.767 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:56296 10 6452 1 2025-11-25 08:00:27.175 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:54320 10 6452 1 2025-11-25 08:01:27.546 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46172 10 6452 1 2025-11-25 07:58:05.977 00:05:01.163 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 08:02:37.584 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 08:02:37.669 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 08:02:37.617 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 08:02:37.666 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 08:02:27.950 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:56588 10 6452 1 2025-11-25 08:02:37.748 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 07:59:05.980 00:05:01.158 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 08:03:28.361 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49144 10 6452 1 2025-11-25 08:04:28.762 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:41344 10 6452 1 2025-11-25 08:05:29.174 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:36020 10 6452 1 2025-11-25 08:06:29.538 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:39768 10 6452 1 2025-11-25 08:07:37.760 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 08:07:37.966 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 08:07:37.973 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 08:07:37.969 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 08:07:38.048 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 08:07:29.902 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:40770 10 6452 1 2025-11-25 08:04:05.979 00:05:01.162 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 08:08:30.313 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:36976 10 6452 1 2025-11-25 08:05:05.983 00:05:01.169 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 08:09:30.675 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58934 10 6452 1 2025-11-25 08:10:31.107 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:57130 10 6452 1 2025-11-25 08:11:31.509 00:00:10.399 TCP 1.101.0.1:3000 -> 23.104.0.1:43490 12 10375 1 2025-11-25 08:12:37.967 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 08:12:37.886 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 08:12:37.792 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 08:12:37.848 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 08:12:37.885 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 08:12:31.948 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:52048 10 6452 1 2025-11-25 08:13:32.365 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:32912 12 6556 1 2025-11-25 08:10:05.982 00:05:01.173 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 08:14:32.776 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:57492 10 6452 1 2025-11-25 08:11:05.984 00:05:01.167 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 08:15:33.186 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54334 10 6452 1 2025-11-25 08:16:33.580 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:42504 10 6452 1 2025-11-25 08:17:37.992 00:00:00.033 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 08:17:37.950 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 08:17:37.796 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 08:17:37.990 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 08:17:38.073 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 08:17:33.938 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:44838 10 6452 1 2025-11-25 08:18:34.317 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58282 10 6452 1 2025-11-25 08:19:34.714 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54712 10 6452 1 2025-11-25 08:16:05.986 00:05:01.168 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 08:20:35.117 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43904 10 6452 1 2025-11-25 08:17:05.988 00:05:01.164 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 08:21:35.515 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59048 10 6452 1 2025-11-25 08:22:38.192 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 08:22:38.104 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 08:22:38.043 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 08:22:37.992 00:00:00.043 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 08:22:38.275 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 08:22:35.918 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:54178 10 6452 1 2025-11-25 08:23:36.333 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43970 10 6452 1 2025-11-25 08:24:36.734 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:55686 10 6452 1 2025-11-25 08:25:37.178 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58328 10 6452 1 2025-11-25 08:22:05.987 00:05:01.177 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 08:26:37.583 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:42926 10 6452 1 2025-11-25 08:23:05.990 00:05:01.172 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 08:27:38.735 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 08:27:38.717 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 08:27:38.393 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 08:27:38.141 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 08:27:38.653 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 08:27:37.985 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:59434 10 6452 1 2025-11-25 08:28:38.404 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57880 10 6452 1 2025-11-25 08:29:38.819 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:40418 10 6452 1 2025-11-25 08:30:39.224 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:41014 10 6452 1 2025-11-25 08:31:39.635 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58452 10 6452 1 2025-11-25 08:28:05.990 00:05:01.184 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 08:32:38.500 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 08:32:38.224 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 08:32:38.297 00:00:00.027 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 08:32:38.003 00:00:00.041 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 08:32:38.418 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 08:32:40.049 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:44350 10 6452 1 2025-11-25 08:29:05.993 00:05:01.179 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 08:33:40.452 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43092 10 6452 1 2025-11-25 08:34:40.856 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:40472 10 6452 1 2025-11-25 08:35:41.278 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56218 10 6452 1 2025-11-25 08:36:41.684 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41470 10 6452 1 2025-11-25 08:37:38.235 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 08:37:38.303 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 08:37:38.285 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 08:37:38.306 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 08:37:38.388 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 08:37:42.106 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52996 10 6452 1 2025-11-25 08:34:05.990 00:05:01.184 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 08:38:42.523 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54602 10 6452 1 2025-11-25 08:35:05.993 00:05:01.178 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 08:39:42.929 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:36696 10 6452 1 2025-11-25 08:40:43.349 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49684 10 6452 1 2025-11-25 08:41:43.751 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52704 10 6452 1 2025-11-25 08:42:38.451 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 08:42:38.453 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 08:42:38.221 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 08:42:38.596 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 08:42:38.680 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 08:42:44.153 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:47716 10 6452 1 2025-11-25 08:43:44.514 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:45194 10 6452 1 2025-11-25 08:40:05.992 00:05:01.183 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 08:44:44.916 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:42684 10 6452 1 2025-11-25 08:41:05.995 00:05:01.179 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 08:45:45.279 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47024 10 6452 1 2025-11-25 08:46:45.691 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:37590 10 6452 1 2025-11-25 08:47:38.814 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 08:47:38.398 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 08:47:38.512 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 08:47:38.733 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 08:47:38.513 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 08:47:46.109 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55500 10 6452 1 2025-11-25 08:48:46.512 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52510 10 6452 1 2025-11-25 08:49:46.914 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:58420 10 6452 1 2025-11-25 08:46:05.994 00:05:01.186 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 08:50:47.281 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:45076 10 6452 1 2025-11-25 08:47:05.998 00:05:01.183 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 08:51:47.685 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:38526 10 6452 1 2025-11-25 08:52:38.554 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 08:52:38.358 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 08:52:38.491 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 08:52:38.772 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 08:52:38.855 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 08:52:48.112 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:57682 10 6452 1 2025-11-25 08:53:48.520 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46326 12 6556 1 2025-11-25 08:54:48.924 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:38268 10 6452 1 2025-11-25 08:55:49.339 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:41402 10 6452 1 2025-11-25 08:52:05.998 00:05:01.183 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 08:56:49.752 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:51650 10 6452 1 2025-11-25 08:53:06.003 00:05:01.176 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 08:57:38.824 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 08:57:38.772 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 08:57:38.676 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 08:57:38.760 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 08:57:38.843 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 08:57:50.164 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59932 10 6452 1 Summary: total flows: 139, total bytes: 414679, total packets: 1016, avg bps: 921, avg pps: 0, avg bpp: 408 Time window: 2025-11-25 07:58:05 - 2025-11-25 08:58:07 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0042s User: 0.0021s Wall: 0.0020s flows/second: 70031.0 Runtime: 0.0020s