Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-25 12:59:31.672 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52192 10 6452 1 2025-11-25 13:00:32.108 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41698 10 6452 1 2025-11-25 13:01:32.517 00:00:10.437 TCP 1.101.0.1:3000 -> 23.104.0.1:43750 12 10375 1 2025-11-25 12:58:06.109 00:05:01.195 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 13:02:43.859 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 13:02:43.729 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 13:02:43.774 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 13:02:43.709 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 13:02:32.992 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:51588 10 6452 1 2025-11-25 13:02:43.777 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 12:59:06.112 00:05:01.191 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 13:03:33.377 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:59134 10 6452 1 2025-11-25 13:04:33.776 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:42942 10 6452 1 2025-11-25 13:05:34.187 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40070 10 6452 1 2025-11-25 13:06:34.591 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58972 10 6452 1 2025-11-25 13:07:43.960 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 13:07:43.815 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 13:07:43.882 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 13:07:43.804 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 13:07:43.878 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 13:07:34.995 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37190 10 6452 1 2025-11-25 13:04:06.110 00:05:01.209 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 13:08:35.400 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:56364 10 6452 1 2025-11-25 13:05:06.114 00:05:01.203 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 13:09:35.764 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:34586 10 6452 1 2025-11-25 13:10:36.186 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:51962 10 6452 1 2025-11-25 13:11:36.548 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:49678 10 6452 1 2025-11-25 13:12:43.832 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 13:12:43.773 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 13:12:43.797 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 13:12:43.830 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 13:12:43.913 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 13:12:36.951 00:00:10.345 TCP 1.101.0.1:3000 -> 23.104.0.1:49298 10 6452 1 2025-11-25 13:13:37.328 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:45920 10 6452 1 2025-11-25 13:10:06.110 00:05:01.231 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 13:14:37.741 00:00:10.404 TCP 1.101.0.1:3000 -> 23.104.0.1:40802 10 6452 1 2025-11-25 13:11:06.114 00:05:01.226 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 13:15:38.188 00:00:10.395 TCP 1.101.0.1:3000 -> 23.104.0.1:35898 10 6452 1 2025-11-25 13:16:38.621 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34126 10 6452 1 2025-11-25 13:17:43.886 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 13:17:43.901 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 13:17:43.718 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 13:17:43.882 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 13:17:43.964 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 13:17:39.023 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41512 10 6452 1 2025-11-25 13:18:39.426 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:42972 10 6452 1 2025-11-25 13:19:39.824 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:44990 10 6452 1 2025-11-25 13:16:06.111 00:05:01.231 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 13:20:40.231 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:57840 10 6452 1 2025-11-25 13:17:06.114 00:05:01.226 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 13:21:40.592 00:00:10.437 TCP 1.101.0.1:3000 -> 23.104.0.1:46494 12 10369 1 2025-11-25 13:22:44.088 00:00:00.034 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 13:22:44.128 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 13:22:44.084 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 13:22:43.959 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 13:22:44.006 00:00:00.033 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 13:22:41.102 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56662 10 6452 1 2025-11-25 13:23:41.509 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:47480 10 6452 1 2025-11-25 13:24:41.914 00:00:10.506 TCP 1.101.0.1:3000 -> 23.104.0.1:43878 10 6452 1 2025-11-25 13:25:42.466 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33736 10 6452 1 2025-11-25 13:22:06.113 00:05:01.234 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 13:26:42.874 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41800 10 6452 1 2025-11-25 13:23:06.116 00:05:01.228 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 13:27:44.216 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 13:27:44.407 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 13:27:44.163 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 13:27:44.354 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 13:27:44.437 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 13:27:43.279 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:48188 10 6452 1 2025-11-25 13:28:43.647 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45142 10 6452 1 2025-11-25 13:29:44.062 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48744 10 6452 1 2025-11-25 13:30:44.466 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:58860 10 6452 1 2025-11-25 13:31:44.830 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:49328 10 6452 1 2025-11-25 13:28:06.116 00:05:01.240 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 13:32:44.145 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 13:32:44.370 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 13:32:44.195 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 13:32:44.237 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 13:32:44.320 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 13:32:45.236 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:46326 10 6452 1 2025-11-25 13:29:06.120 00:05:01.233 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 13:33:45.632 00:00:10.610 TCP 1.101.0.1:3000 -> 23.104.0.1:33446 10 6452 1 2025-11-25 13:34:46.280 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:51520 10 6452 1 2025-11-25 13:35:46.646 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:46206 10 6452 1 2025-11-25 13:36:47.059 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57600 10 6452 1 2025-11-25 13:37:44.368 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 13:37:44.185 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 13:37:44.112 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 13:37:44.181 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 13:37:44.263 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 13:37:47.460 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:33052 10 6452 1 2025-11-25 13:34:06.118 00:05:01.239 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 13:38:47.863 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:35302 10 6452 1 2025-11-25 13:35:06.122 00:05:01.231 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 13:39:48.282 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:51482 10 6452 1 2025-11-25 13:40:48.688 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:38644 10 6452 1 2025-11-25 13:41:49.108 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:39798 10 6452 1 2025-11-25 13:42:44.590 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 13:42:44.377 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 13:42:44.216 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 13:42:44.394 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 13:42:44.477 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 13:42:49.510 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:60858 10 6452 1 2025-11-25 13:43:49.926 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:41780 10 6452 1 2025-11-25 13:40:06.121 00:05:01.237 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 13:44:50.344 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:39442 10 6452 1 2025-11-25 13:41:06.125 00:05:01.232 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 13:45:50.749 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40600 10 6452 1 2025-11-25 13:46:51.153 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44792 10 6452 1 2025-11-25 13:47:44.733 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 13:47:44.651 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 13:47:44.491 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 13:47:44.652 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 13:47:44.424 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 13:47:51.559 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:59748 10 6452 1 2025-11-25 13:48:51.920 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:37184 10 6452 1 2025-11-25 13:49:52.342 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:40102 10 6452 1 2025-11-25 13:46:06.123 00:05:01.244 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 13:50:52.704 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:59860 10 6452 1 2025-11-25 13:47:06.125 00:05:01.239 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 13:51:53.118 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:34414 10 6452 1 2025-11-25 13:52:44.896 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 13:52:44.852 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 13:52:44.798 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 13:52:44.530 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 13:52:44.979 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 13:52:53.479 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:56412 10 6452 1 2025-11-25 13:53:53.845 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:49446 10 6452 1 2025-11-25 13:54:54.266 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:36528 10 6452 1 2025-11-25 13:52:06.124 00:05:01.244 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 13:55:54.628 00:00:10.437 TCP 1.101.0.1:3000 -> 23.104.0.1:60970 13 13955 1 2025-11-25 13:53:06.127 00:05:01.239 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 13:56:55.112 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:39284 10 6452 1 2025-11-25 13:57:44.815 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 13:57:44.621 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 13:57:44.917 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 13:57:44.706 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 13:57:45.000 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 13:57:55.471 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:42860 10 6452 1 Summary: total flows: 139, total bytes: 425891, total packets: 1017, avg bps: 946, avg pps: 0, avg bpp: 418 Time window: 2025-11-25 12:58:06 - 2025-11-25 13:58:07 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0035s User: 0.0014s Wall: 0.0023s flows/second: 60277.9 Runtime: 0.0023s