Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-25 17:58:45.590 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:35716 10 6452 1 2025-11-25 17:59:45.987 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:54144 10 6452 1 2025-11-25 18:00:46.349 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44816 10 6452 1 2025-11-25 18:01:46.753 00:00:10.317 TCP 1.101.0.1:3000 -> 23.104.0.1:54204 10 6452 1 2025-11-25 17:58:06.204 00:05:01.312 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 18:02:49.912 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 18:02:49.623 00:00:00.031 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 18:02:49.422 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 18:02:49.672 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 18:02:49.829 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 18:02:47.116 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:39266 10 6452 1 2025-11-25 17:59:06.207 00:05:01.306 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 18:03:47.516 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48060 10 6452 1 2025-11-25 18:04:47.918 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51730 10 6452 1 2025-11-25 18:05:48.325 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33274 10 6452 1 2025-11-25 18:06:48.728 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:52136 10 6452 1 2025-11-25 18:07:49.719 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 18:07:49.562 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 18:07:49.592 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 18:07:49.652 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 18:07:49.734 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 18:07:49.112 00:00:10.315 TCP 1.101.0.1:3000 -> 23.104.0.1:42388 10 6452 1 2025-11-25 18:04:06.204 00:05:01.312 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 18:08:49.472 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:37450 10 6452 1 2025-11-25 18:05:06.207 00:05:01.308 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 18:09:49.877 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35592 10 6452 1 2025-11-25 18:10:50.286 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:48628 10 6452 1 2025-11-25 18:11:50.702 00:00:10.439 TCP 1.101.0.1:3000 -> 23.104.0.1:36714 12 10375 1 2025-11-25 18:12:50.174 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 18:12:50.071 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 18:12:50.123 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 18:12:50.187 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 18:12:50.207 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 18:12:51.183 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34508 10 6452 1 2025-11-25 18:13:51.584 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:51974 10 6452 1 2025-11-25 18:10:06.207 00:05:01.317 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 18:14:51.987 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:60138 10 6452 1 2025-11-25 18:11:06.208 00:05:01.312 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 18:15:52.420 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:34938 10 6452 1 2025-11-25 18:16:52.825 00:00:10.356 TCP 1.101.0.1:3000 -> 23.104.0.1:33380 10 6452 1 2025-11-25 18:17:49.963 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 18:17:49.887 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 18:17:50.140 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 18:17:50.058 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 18:17:50.104 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 18:17:53.221 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:50806 10 6452 1 2025-11-25 18:18:53.625 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:55446 10 6452 1 2025-11-25 18:19:53.989 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45760 10 6452 1 2025-11-25 18:16:06.206 00:05:01.318 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 18:20:54.398 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:38566 10 6452 1 2025-11-25 18:17:06.209 00:05:01.313 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 18:21:54.799 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53798 10 6452 1 2025-11-25 18:22:50.184 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 18:22:49.980 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 18:22:49.992 00:00:00.044 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 18:22:50.157 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 18:22:50.241 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 18:22:55.204 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33696 10 6452 1 2025-11-25 18:23:55.608 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:50972 10 6452 1 2025-11-25 18:24:56.008 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:36148 10 6452 1 2025-11-25 18:22:06.209 00:05:01.321 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 18:25:56.362 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40218 10 6452 1 2025-11-25 18:26:56.766 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:44226 10 6452 1 2025-11-25 18:23:06.209 00:05:01.318 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 18:27:50.120 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 18:27:50.244 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 18:27:49.986 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 18:27:50.142 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 18:27:50.203 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 18:27:57.186 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37018 10 6452 1 2025-11-25 18:28:57.590 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52736 10 6452 1 2025-11-25 18:29:57.997 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49972 10 6452 1 2025-11-25 18:30:58.427 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56210 10 6452 1 2025-11-25 18:28:06.213 00:05:01.330 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 18:31:58.834 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:49492 10 6452 1 2025-11-25 18:32:50.641 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 18:32:50.662 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 18:32:50.792 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 18:32:50.660 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 18:32:50.560 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 18:29:06.216 00:05:01.325 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 18:32:59.258 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35892 10 6452 1 2025-11-25 18:33:59.661 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:40360 10 6452 1 2025-11-25 18:35:00.092 00:00:20.073 TCP 1.101.0.1:3000 -> 23.104.0.1:52386 10 6452 1 2025-11-25 18:36:10.206 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:55636 10 6452 1 2025-11-25 18:37:10.617 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:45036 10 6452 1 2025-11-25 18:37:50.476 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 18:37:50.375 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 18:37:50.254 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 18:37:50.372 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 18:37:50.456 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 18:34:06.215 00:05:01.331 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 18:38:11.027 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:54954 10 6452 1 2025-11-25 18:35:06.217 00:05:01.327 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 18:39:11.431 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37700 10 6452 1 2025-11-25 18:40:11.839 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:37640 10 6452 1 2025-11-25 18:41:12.271 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:52482 10 6452 1 2025-11-25 18:42:12.674 00:00:10.484 TCP 1.101.0.1:3000 -> 23.104.0.1:57754 10 6452 1 2025-11-25 18:42:50.523 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 18:42:50.507 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 18:42:50.585 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 18:42:50.254 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 18:42:50.439 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 18:43:13.195 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:41928 10 6452 1 2025-11-25 18:40:06.214 00:05:01.333 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 18:44:13.594 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:49254 10 6452 1 2025-11-25 18:41:06.217 00:05:01.328 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 18:45:14.001 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54986 10 6452 1 2025-11-25 18:46:14.403 00:00:10.422 TCP 1.101.0.1:3000 -> 23.104.0.1:37882 10 6452 1 2025-11-25 18:47:14.862 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:35452 10 6452 1 2025-11-25 18:47:50.654 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 18:47:50.573 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 18:47:50.762 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 18:47:50.782 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 18:47:50.572 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 18:48:15.280 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:53570 10 6452 1 2025-11-25 18:49:15.679 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:50290 10 6452 1 2025-11-25 18:46:06.216 00:05:01.337 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 18:50:16.114 00:00:10.733 TCP 1.101.0.1:3000 -> 23.104.0.1:40464 10 6452 1 2025-11-25 18:47:06.219 00:05:01.331 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 18:51:16.887 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50828 10 6452 1 2025-11-25 18:52:17.293 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40442 10 6452 1 2025-11-25 18:52:50.862 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 18:52:50.982 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 18:52:50.862 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 18:52:50.812 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 18:52:50.778 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 18:53:17.698 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:49360 10 6452 1 2025-11-25 18:54:18.063 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37862 10 6452 1 2025-11-25 18:55:18.466 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60522 10 6452 1 2025-11-25 18:52:06.218 00:05:01.339 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 18:56:18.872 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58544 10 6452 1 2025-11-25 18:53:06.220 00:05:01.334 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 18:57:19.276 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:39208 10 6452 1 2025-11-25 18:57:50.778 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 18:57:50.831 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 18:57:50.895 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 18:57:50.760 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 18:57:50.861 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 18:58:19.631 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:58642 10 6452 1 Summary: total flows: 140, total bytes: 420923, total packets: 1022, avg bps: 929, avg pps: 0, avg bpp: 411 Time window: 2025-11-25 17:58:06 - 2025-11-25 18:58:30 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0038s User: 0.0015s Wall: 0.0016s flows/second: 86201.2 Runtime: 0.0016s