Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-25 19:58:43.799 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:34544 10 6452 1 2025-11-25 19:59:44.201 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56208 10 6452 1 2025-11-25 20:00:44.600 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:48644 10 6452 1 2025-11-25 20:01:44.963 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46750 10 6452 1 2025-11-25 19:58:06.240 00:05:01.368 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 20:02:52.255 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 20:02:52.257 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 20:02:52.254 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 20:02:52.103 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 20:02:52.173 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 20:02:45.370 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:40072 10 6452 1 2025-11-25 19:59:06.242 00:05:01.363 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 20:03:45.772 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53204 10 6452 1 2025-11-25 20:04:46.174 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:58746 10 6452 1 2025-11-25 20:05:46.537 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57878 10 6452 1 2025-11-25 20:06:46.942 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:40594 10 6452 1 2025-11-25 20:07:52.342 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 20:07:52.251 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 20:07:52.290 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 20:07:51.886 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 20:07:52.259 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 20:07:47.361 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:55772 10 6452 1 2025-11-25 20:04:06.241 00:05:01.369 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 20:08:47.728 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:38574 10 6452 1 2025-11-25 20:05:06.243 00:05:01.365 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 20:09:48.153 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:48136 10 6452 1 2025-11-25 20:10:48.558 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:44070 10 6452 1 2025-11-25 20:11:48.917 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:50426 10 6452 1 2025-11-25 20:12:52.411 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 20:12:52.366 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 20:12:52.199 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 20:12:52.369 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 20:12:52.451 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 20:12:49.327 00:00:11.047 TCP 1.101.0.1:3000 -> 23.104.0.1:40188 10 6452 1 2025-11-25 20:13:50.422 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:46930 10 6452 1 2025-11-25 20:10:06.242 00:05:01.370 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 20:14:50.783 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54458 10 6452 1 2025-11-25 20:11:06.244 00:05:01.364 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 20:15:51.196 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39374 10 6452 1 2025-11-25 20:16:51.601 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:39060 10 6452 1 2025-11-25 20:17:52.286 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 20:17:52.329 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 20:17:52.066 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 20:17:52.293 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 20:17:52.150 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 20:17:51.971 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:34774 10 6452 1 2025-11-25 20:18:52.343 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:49596 10 6452 1 2025-11-25 20:19:52.701 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:36356 10 6452 1 2025-11-25 20:16:06.246 00:05:01.370 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 20:20:53.112 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:55438 10 6452 1 2025-11-25 20:17:06.251 00:05:01.365 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 20:21:53.524 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:52096 10 6452 1 2025-11-25 20:22:52.607 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 20:22:52.500 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 20:22:52.399 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 20:22:52.473 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 20:22:52.482 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 20:22:53.935 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:34148 10 6452 1 2025-11-25 20:23:54.301 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:50074 10 6452 1 2025-11-25 20:24:54.711 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53000 10 6452 1 2025-11-25 20:22:06.249 00:05:01.370 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 20:25:55.113 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50324 10 6452 1 2025-11-25 20:23:06.254 00:05:01.363 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 20:26:55.516 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:49156 10 6452 1 2025-11-25 20:27:52.850 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 20:27:52.816 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 20:27:52.607 00:00:00.013 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 20:27:52.647 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 20:27:52.768 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 20:27:55.919 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:46802 10 6452 1 2025-11-25 20:28:56.278 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47444 10 6452 1 2025-11-25 20:29:56.679 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:41612 10 6452 1 2025-11-25 20:30:57.109 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53024 12 6556 1 2025-11-25 20:31:57.512 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:46040 10 6452 1 2025-11-25 20:28:06.251 00:05:01.369 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 20:32:52.784 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 20:32:52.788 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 20:32:52.489 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 20:32:52.691 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 20:32:52.775 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 20:29:06.253 00:05:01.364 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 20:32:57.921 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:45094 10 6452 1 2025-11-25 20:33:58.351 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60456 10 6452 1 2025-11-25 20:34:58.758 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:43774 10 6452 1 2025-11-25 20:35:59.171 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:44202 10 6452 1 2025-11-25 20:36:59.530 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52572 10 6452 1 2025-11-25 20:37:52.844 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 20:37:52.943 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 20:37:52.826 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 20:37:52.945 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 20:37:53.029 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 20:34:06.254 00:05:01.367 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 20:37:59.934 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:54922 10 6452 1 2025-11-25 20:35:06.257 00:05:01.362 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 20:39:00.352 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:49248 10 6452 1 2025-11-25 20:40:00.724 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:47050 10 6452 1 2025-11-25 20:41:01.146 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:39258 10 6452 1 2025-11-25 20:42:01.536 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56872 10 6452 1 2025-11-25 20:42:52.859 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 20:42:52.685 00:00:00.028 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 20:42:52.746 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 20:42:52.794 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 20:42:52.877 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 20:43:01.936 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:51434 10 6452 1 2025-11-25 20:40:06.254 00:05:01.370 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 20:44:02.318 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:37792 10 6452 1 2025-11-25 20:41:06.258 00:05:01.365 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 20:45:02.725 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:56992 10 6452 1 2025-11-25 20:46:03.130 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34168 10 6452 1 2025-11-25 20:47:03.536 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:47496 10 6452 1 2025-11-25 20:47:53.010 00:00:00.041 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 20:47:53.010 00:00:00.040 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 20:47:52.658 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 20:47:53.007 00:00:00.036 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 20:47:53.089 00:00:00.037 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 20:48:03.911 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:44220 10 6452 1 2025-11-25 20:49:04.271 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56004 10 6452 1 2025-11-25 20:46:06.255 00:05:01.370 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 20:50:04.676 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:42876 10 6452 1 2025-11-25 20:47:06.258 00:05:01.365 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 20:51:05.106 00:00:10.633 TCP 1.101.0.1:3000 -> 23.104.0.1:38240 10 6452 1 2025-11-25 20:52:05.777 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:41564 10 6452 1 2025-11-25 20:52:53.315 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 20:52:52.804 00:00:00.030 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 20:52:53.188 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 20:52:53.057 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 20:52:53.233 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 20:53:06.190 00:00:10.829 TCP 1.101.0.1:3000 -> 23.104.0.1:48952 10 6452 1 2025-11-25 20:54:07.063 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:54600 10 6452 1 2025-11-25 20:55:07.464 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60048 10 6452 1 2025-11-25 20:52:06.256 00:05:01.371 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 20:56:07.865 00:00:10.449 TCP 1.101.0.1:3000 -> 23.104.0.1:58764 12 10375 1 2025-11-25 20:53:06.259 00:05:01.366 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 20:57:08.354 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:33646 10 6452 1 2025-11-25 20:57:53.154 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 20:57:53.224 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 20:57:53.323 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 20:57:52.991 00:00:00.047 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 20:57:53.071 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 20:58:08.750 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59888 10 6452 1 Summary: total flows: 140, total bytes: 421027, total packets: 1024, avg bps: 932, avg pps: 0, avg bpp: 411 Time window: 2025-11-25 19:58:06 - 2025-11-25 20:58:19 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0046s User: 0.0018s Wall: 0.0024s flows/second: 58433.9 Runtime: 0.0024s