Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-25 08:58:50.571 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:42062 10 6452 1 2025-11-25 08:59:50.982 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:58324 10 6452 1 2025-11-25 09:00:51.403 00:00:10.443 TCP 1.101.0.1:3000 -> 23.104.0.1:39858 12 10375 1 2025-11-25 09:01:51.877 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:40456 10 6452 1 2025-11-25 08:58:06.000 00:05:01.183 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 09:02:38.801 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 09:02:38.923 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 09:02:38.580 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 09:02:38.791 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 09:02:38.874 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 09:02:52.277 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:49232 10 6452 1 2025-11-25 08:59:06.005 00:05:01.176 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 09:03:52.680 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53516 10 6452 1 2025-11-25 09:04:53.111 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53884 10 6452 1 2025-11-25 09:05:53.517 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:35458 10 6452 1 2025-11-25 09:06:53.929 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:60690 10 6452 1 2025-11-25 09:07:38.895 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 09:07:38.853 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 09:07:38.900 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 09:07:38.895 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 09:07:38.982 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 09:07:54.346 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46322 10 6452 1 2025-11-25 09:04:06.030 00:05:01.172 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 09:05:06.038 00:05:01.161 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 09:08:54.749 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:45036 12 6556 1 2025-11-25 09:09:55.154 00:00:10.923 TCP 1.101.0.1:3000 -> 23.104.0.1:58804 10 6452 1 2025-11-25 09:10:56.112 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:60982 10 6452 1 2025-11-25 09:11:56.518 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:39376 10 6452 1 2025-11-25 09:12:39.116 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 09:12:39.117 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 09:12:38.987 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 09:12:38.903 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 09:12:38.987 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 09:12:56.926 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:42372 10 6452 1 2025-11-25 09:13:57.290 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:45298 10 6452 1 2025-11-25 09:10:06.038 00:05:01.166 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 09:14:57.693 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:47482 10 6452 1 2025-11-25 09:11:06.042 00:05:01.160 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 09:15:58.067 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39832 10 6452 1 2025-11-25 09:16:58.470 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:58158 10 6452 1 2025-11-25 09:17:39.113 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 09:17:39.109 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 09:17:39.009 00:00:00.041 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 09:17:38.803 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 09:17:38.884 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 09:17:58.869 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:48300 10 6452 1 2025-11-25 09:18:59.277 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50064 10 6452 1 2025-11-25 09:16:06.039 00:05:01.166 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 09:19:59.678 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:55624 10 6452 1 2025-11-25 09:17:06.042 00:05:01.161 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 09:21:00.105 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:44608 10 6452 1 2025-11-25 09:22:00.513 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:45708 10 6452 1 2025-11-25 09:22:39.365 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 09:22:39.150 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 09:22:39.273 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 09:22:39.058 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 09:22:39.282 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 09:23:00.885 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:57448 12 6556 1 2025-11-25 09:24:01.306 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:56440 10 6452 1 2025-11-25 09:25:01.714 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:49166 10 6452 1 2025-11-25 09:22:06.041 00:05:01.169 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 09:26:02.149 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43240 10 6452 1 2025-11-25 09:23:06.043 00:05:01.164 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 09:27:02.555 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:57546 10 6452 1 2025-11-25 09:27:39.604 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 09:27:39.547 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 09:27:39.421 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 09:27:39.550 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 09:27:39.633 00:00:00.026 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 09:28:02.965 00:00:10.416 TCP 1.101.0.1:3000 -> 23.104.0.1:34724 11 6504 1 2025-11-25 09:29:03.421 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:49872 10 6452 1 2025-11-25 09:30:03.795 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:37374 10 6452 1 2025-11-25 09:31:04.204 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:34856 10 6452 1 2025-11-25 09:28:06.042 00:05:01.168 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 09:32:04.608 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:44626 10 6452 1 2025-11-25 09:32:39.458 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 09:32:39.332 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 09:32:39.392 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 09:32:39.456 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 09:32:39.475 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 09:29:06.048 00:05:01.160 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 09:33:05.011 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38318 10 6452 1 2025-11-25 09:34:05.417 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42360 10 6452 1 2025-11-25 09:35:05.819 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:33750 10 6452 1 2025-11-25 09:36:06.225 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:55148 10 6452 1 2025-11-25 09:37:06.630 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58446 10 6452 1 2025-11-25 09:37:39.534 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 09:37:39.532 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 09:37:39.354 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 09:37:39.677 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 09:37:39.451 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 09:34:06.046 00:05:01.164 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 09:38:07.029 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33982 10 6452 1 2025-11-25 09:35:06.048 00:05:01.159 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 09:39:07.432 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:39380 10 6452 1 2025-11-25 09:40:07.805 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:49500 10 6452 1 2025-11-25 09:41:08.208 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:33320 10 6452 1 2025-11-25 09:42:08.606 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33074 10 6452 1 2025-11-25 09:42:39.595 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 09:42:39.668 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 09:42:39.451 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 09:42:39.672 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 09:42:39.754 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 09:43:09.017 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:53858 10 6452 1 2025-11-25 09:40:06.047 00:05:01.178 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 09:44:09.422 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43172 10 6452 1 2025-11-25 09:41:06.050 00:05:01.159 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 09:45:09.827 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41998 10 6452 1 2025-11-25 09:46:10.229 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:40346 10 6452 1 2025-11-25 09:47:10.627 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36436 10 6452 1 2025-11-25 09:47:39.539 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 09:47:39.723 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 09:47:39.658 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 09:47:39.510 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 09:47:39.457 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 09:48:11.036 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46768 10 6452 1 2025-11-25 09:49:11.443 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:60372 10 6452 1 2025-11-25 09:46:06.048 00:05:01.165 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 09:50:11.803 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37852 10 6452 1 2025-11-25 09:47:06.051 00:05:01.159 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 09:51:12.205 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46960 10 6452 1 2025-11-25 09:52:12.605 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:56086 10 6452 1 2025-11-25 09:52:39.934 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 09:52:39.883 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 09:52:39.779 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 09:52:39.780 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 09:52:39.863 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 09:53:12.973 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50200 10 6452 1 2025-11-25 09:54:13.379 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52380 10 6452 1 2025-11-25 09:55:13.783 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54658 10 6452 1 2025-11-25 09:52:06.050 00:05:01.167 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 09:56:14.190 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:47522 10 6452 1 2025-11-25 09:53:06.053 00:05:01.163 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 09:57:14.555 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:54440 10 6452 1 2025-11-25 09:57:39.901 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 09:57:39.903 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 09:57:39.986 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 09:57:40.103 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 09:57:40.010 00:00:00.042 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 09:58:14.960 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:49196 10 6452 1 Summary: total flows: 140, total bytes: 421183, total packets: 1027, avg bps: 930, avg pps: 0, avg bpp: 410 Time window: 2025-11-25 08:58:06 - 2025-11-25 09:58:25 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0045s User: 0.0008s Wall: 0.0039s flows/second: 36307.6 Runtime: 0.0039s