Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-25 15:58:45.306 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:35136 10 6452 1 2025-11-25 15:59:45.716 00:00:10.539 TCP 1.101.0.1:3000 -> 23.104.0.1:33766 10 6452 1 2025-11-25 16:00:46.293 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:40230 10 6452 1 2025-11-25 16:01:46.701 00:00:10.449 TCP 1.101.0.1:3000 -> 23.104.0.1:55460 12 10369 1 2025-11-25 15:58:06.160 00:05:01.272 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 16:02:47.371 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 16:02:47.229 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 16:02:47.119 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 16:02:47.289 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 16:02:47.158 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 16:02:47.183 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37852 10 6452 1 2025-11-25 15:59:06.164 00:05:01.267 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 16:03:47.586 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:46848 10 6452 1 2025-11-25 16:04:47.953 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:44870 10 6452 1 2025-11-25 16:05:48.378 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44820 10 6452 1 2025-11-25 16:06:48.777 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36890 10 6452 1 2025-11-25 16:07:48.197 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 16:07:48.068 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 16:07:47.980 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 16:07:47.940 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 16:07:48.115 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 16:07:49.185 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:35456 10 6452 1 2025-11-25 16:04:06.173 00:05:01.271 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 16:08:49.591 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49050 10 6452 1 2025-11-25 16:05:06.175 00:05:01.265 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 16:09:49.994 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:38944 10 6452 1 2025-11-25 16:10:50.356 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:41298 10 6452 1 2025-11-25 16:11:50.766 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53906 10 6452 1 2025-11-25 16:12:47.504 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 16:12:47.293 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 16:12:47.467 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 16:12:47.503 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 16:12:47.585 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 16:12:51.171 00:00:10.494 TCP 1.101.0.1:3000 -> 23.104.0.1:60758 10 6452 1 2025-11-25 16:13:51.704 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56504 10 6452 1 2025-11-25 16:10:06.174 00:05:01.281 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 16:14:52.113 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57166 10 6452 1 2025-11-25 16:11:06.177 00:05:01.276 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 16:15:52.518 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:44006 10 6452 1 2025-11-25 16:16:52.926 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:34004 10 6452 1 2025-11-25 16:17:47.421 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 16:17:47.625 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 16:17:47.452 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 16:17:47.531 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 16:17:47.614 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 16:17:53.345 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60858 10 6452 1 2025-11-25 16:18:53.753 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:54686 10 6452 1 2025-11-25 16:19:54.172 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:48194 10 6452 1 2025-11-25 16:16:06.175 00:05:01.281 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 16:20:54.541 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:38202 10 6452 1 2025-11-25 16:17:06.177 00:05:01.277 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 16:21:54.960 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:41962 10 6452 1 2025-11-25 16:22:47.750 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 16:22:47.451 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 16:22:47.632 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 16:22:47.632 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 16:22:47.715 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 16:22:55.367 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:58900 10 6452 1 2025-11-25 16:23:55.775 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:39912 10 6452 1 2025-11-25 16:24:56.178 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60220 10 6452 1 2025-11-25 16:22:06.176 00:05:01.281 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 16:25:56.581 00:00:10.569 TCP 1.101.0.1:3000 -> 23.104.0.1:53078 10 6452 1 2025-11-25 16:26:57.184 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54156 10 6452 1 2025-11-25 16:23:06.179 00:05:01.283 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 16:27:48.077 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 16:27:47.958 00:00:00.048 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 16:27:47.908 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 16:27:48.085 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 16:27:48.168 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 16:27:57.589 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:34482 10 6452 1 2025-11-25 16:28:57.952 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:35830 10 6452 1 2025-11-25 16:29:58.321 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41434 10 6452 1 2025-11-25 16:30:58.720 00:00:10.509 TCP 1.101.0.1:3000 -> 23.104.0.1:56390 14 10473 1 2025-11-25 16:28:06.178 00:05:01.287 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 16:31:59.267 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:35888 10 6452 1 2025-11-25 16:32:47.825 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 16:32:48.086 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 16:32:47.530 00:00:00.032 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 16:32:47.921 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 16:32:48.005 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 16:29:06.180 00:05:01.282 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 16:32:59.633 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56946 10 6452 1 2025-11-25 16:34:00.036 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:56416 10 6452 1 2025-11-25 16:35:00.395 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43950 10 6452 1 2025-11-25 16:36:00.804 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:35168 10 6452 1 2025-11-25 16:37:01.212 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37238 10 6452 1 2025-11-25 16:37:48.058 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 16:37:47.977 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 16:37:47.977 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 16:37:47.760 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 16:37:47.974 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 16:34:06.180 00:05:01.288 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 16:38:01.619 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50614 10 6452 1 2025-11-25 16:35:06.182 00:05:01.283 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 16:39:02.022 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:44688 10 6452 1 2025-11-25 16:40:02.420 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44208 10 6452 1 2025-11-25 16:41:02.828 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41156 10 6452 1 2025-11-25 16:42:03.227 00:00:10.968 TCP 1.101.0.1:3000 -> 23.104.0.1:56224 10 6452 1 2025-11-25 16:42:48.127 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 16:42:48.131 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 16:42:47.935 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 16:42:48.189 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 16:42:48.273 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 16:43:04.234 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58882 10 6452 1 2025-11-25 16:40:06.182 00:05:01.287 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 16:44:04.635 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:32946 10 6452 1 2025-11-25 16:41:06.183 00:05:01.282 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 16:45:05.033 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:52008 10 6452 1 2025-11-25 16:46:05.441 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:35236 10 6452 1 2025-11-25 16:47:05.843 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:55652 10 6452 1 2025-11-25 16:47:48.411 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 16:47:48.543 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 16:47:48.463 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 16:47:48.420 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 16:47:48.501 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 16:48:06.251 00:00:10.720 TCP 1.101.0.1:3000 -> 23.104.0.1:58530 10 6452 1 2025-11-25 16:49:07.020 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39428 10 6452 1 2025-11-25 16:46:06.183 00:05:01.288 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 16:50:07.424 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:54798 10 6452 1 2025-11-25 16:47:06.186 00:05:01.282 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 16:51:07.844 00:00:10.346 TCP 1.101.0.1:3000 -> 23.104.0.1:51750 10 6452 1 2025-11-25 16:52:08.238 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:35534 10 6452 1 2025-11-25 16:52:48.364 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 16:52:48.290 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 16:52:48.287 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 16:52:48.039 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 16:52:48.283 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 16:53:08.602 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47552 10 6452 1 2025-11-25 16:54:09.006 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:43912 10 6452 1 2025-11-25 16:55:09.365 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60830 10 6452 1 2025-11-25 16:52:06.185 00:05:01.286 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 16:56:09.770 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:48542 10 6452 1 2025-11-25 16:53:06.187 00:05:01.281 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 16:57:10.183 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:59910 10 6452 1 2025-11-25 16:57:48.403 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 16:57:48.596 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 16:57:48.274 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 16:57:48.321 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 16:57:48.215 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 16:58:10.602 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56504 10 6452 1 Summary: total flows: 140, total bytes: 424938, total packets: 1026, avg bps: 940, avg pps: 0, avg bpp: 414 Time window: 2025-11-25 15:58:06 - 2025-11-25 16:58:20 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0033s User: 0.0022s Wall: 0.0020s flows/second: 71176.1 Runtime: 0.0020s