Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-25 22:59:00.507 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:59706 10 6452 1 2025-11-25 23:00:00.864 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:35536 10 6452 1 2025-11-25 23:01:01.281 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:56630 10 6452 1 2025-11-25 22:58:06.293 00:05:01.429 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 23:02:01.682 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57374 10 6452 1 2025-11-25 23:02:55.498 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 23:02:55.723 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 23:02:55.563 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 23:02:55.758 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 23:02:55.418 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 22:59:06.296 00:05:01.425 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 23:03:02.111 00:00:10.966 TCP 1.101.0.1:3000 -> 23.104.0.1:54308 10 6452 1 2025-11-25 23:04:03.116 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35262 10 6452 1 2025-11-25 23:05:03.523 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41920 10 6452 1 2025-11-25 23:06:03.928 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:60460 10 6452 1 2025-11-25 23:07:04.356 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:56464 10 6452 1 2025-11-25 23:07:55.805 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 23:07:55.723 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 23:07:55.764 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 23:07:55.812 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 23:07:55.895 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 23:04:06.297 00:05:01.429 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 23:08:04.730 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:42920 10 6452 1 2025-11-25 23:05:06.297 00:05:01.426 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 23:09:05.142 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:38506 10 6452 1 2025-11-25 23:10:05.508 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49744 10 6452 1 2025-11-25 23:11:05.912 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33310 10 6452 1 2025-11-25 23:12:06.317 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:34988 10 6452 1 2025-11-25 23:12:55.930 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 23:12:55.780 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 23:12:55.847 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 23:12:55.737 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 23:12:55.989 00:00:00.032 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 23:13:06.723 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:48570 10 6452 1 2025-11-25 23:10:06.296 00:05:01.432 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 23:14:07.108 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:43134 10 6452 1 2025-11-25 23:11:06.298 00:05:01.428 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 23:15:07.526 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53262 10 6452 1 2025-11-25 23:16:07.929 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:34998 10 6452 1 2025-11-25 23:17:08.354 00:00:10.623 TCP 1.101.0.1:3000 -> 23.104.0.1:38050 10 6452 1 2025-11-25 23:17:56.077 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 23:17:55.897 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 23:17:55.981 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 23:17:55.976 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 23:17:56.062 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 23:18:09.025 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33194 10 6452 1 2025-11-25 23:19:09.430 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:50266 10 6452 1 2025-11-25 23:16:06.297 00:05:01.448 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 23:20:09.853 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:40146 10 6452 1 2025-11-25 23:17:06.300 00:05:01.443 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 23:21:10.274 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:50686 10 6452 1 2025-11-25 23:22:10.677 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:58046 10 6452 1 2025-11-25 23:22:56.146 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 23:22:56.134 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 23:22:56.060 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 23:22:56.193 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 23:22:56.216 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 23:23:11.106 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:40736 10 6452 1 2025-11-25 23:24:11.466 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:33942 10 6452 1 2025-11-25 23:25:11.877 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47322 10 6452 1 2025-11-25 23:22:06.298 00:05:01.448 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 23:26:12.275 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57934 10 6452 1 2025-11-25 23:23:06.301 00:05:01.443 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 23:27:12.679 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:41996 10 6452 1 2025-11-25 23:27:56.065 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 23:27:56.105 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 23:27:56.193 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 23:27:55.930 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 23:27:55.982 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 23:28:13.068 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59258 10 6452 1 2025-11-25 23:29:13.468 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:47464 10 6452 1 2025-11-25 23:30:13.834 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:38192 10 6452 1 2025-11-25 23:31:14.252 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52878 10 6452 1 2025-11-25 23:28:06.299 00:05:01.451 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 23:32:14.664 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:40250 10 6452 1 2025-11-25 23:32:56.426 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 23:32:56.070 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 23:32:56.162 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 23:32:56.251 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 23:32:56.246 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 23:29:06.301 00:05:01.449 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 23:33:15.090 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53484 10 6452 1 2025-11-25 23:34:15.491 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48730 10 6452 1 2025-11-25 23:35:15.891 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46080 10 6452 1 2025-11-25 23:36:16.305 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:39432 10 6452 1 2025-11-25 23:37:16.701 00:00:10.628 TCP 1.101.0.1:3000 -> 23.104.0.1:46092 10 6452 1 2025-11-25 23:37:56.441 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 23:37:56.225 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 23:37:56.454 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 23:37:56.417 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 23:37:56.523 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 23:34:06.300 00:05:01.462 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 23:38:17.379 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59274 10 6452 1 2025-11-25 23:35:06.302 00:05:01.457 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 23:39:17.808 00:00:10.344 TCP 1.101.0.1:3000 -> 23.104.0.1:42442 10 6452 1 2025-11-25 23:40:18.192 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:41046 10 6452 1 2025-11-25 23:41:18.589 00:00:13.408 TCP 1.101.0.1:3000 -> 23.104.0.1:54810 12 6556 1 2025-11-25 23:42:22.109 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:57288 10 6452 1 2025-11-25 23:42:57.126 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 23:42:57.215 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 23:42:56.986 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 23:42:57.232 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 23:42:57.316 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 23:43:22.471 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:34106 10 6452 1 2025-11-25 23:40:06.302 00:05:01.474 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 23:44:22.871 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:37952 10 6452 1 2025-11-25 23:41:06.304 00:05:01.470 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 23:45:23.277 00:00:14.141 TCP 1.101.0.1:3000 -> 23.104.0.1:45348 10 6452 1 2025-11-25 23:46:27.454 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34984 10 6452 1 2025-11-25 23:47:27.854 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:36444 10 6452 1 2025-11-25 23:47:56.637 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 23:47:56.575 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 23:47:56.434 00:00:00.016 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 23:47:56.720 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 23:47:56.802 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 23:48:28.234 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38268 10 6452 1 2025-11-25 23:49:28.641 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:51046 10 6452 1 2025-11-25 23:46:06.303 00:05:01.476 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 23:50:29.065 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48318 10 6452 1 2025-11-25 23:47:06.305 00:05:01.472 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 23:51:29.467 00:00:10.437 TCP 1.101.0.1:3000 -> 23.104.0.1:33360 12 10375 1 2025-11-25 23:52:29.940 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:37328 10 6452 1 2025-11-25 23:52:56.575 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 23:52:56.584 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 23:52:56.625 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 23:52:56.710 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 23:52:56.793 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 23:53:30.360 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:39838 10 6452 1 2025-11-25 23:54:30.755 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:40814 10 6452 1 2025-11-25 23:55:31.189 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54212 10 6452 1 2025-11-25 23:52:06.304 00:05:01.479 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 23:56:31.599 00:00:10.451 TCP 1.101.0.1:3000 -> 23.104.0.1:51344 12 10369 1 2025-11-25 23:53:06.307 00:05:01.487 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 23:57:32.115 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:34100 10 6452 1 2025-11-25 23:57:57.043 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 23:57:57.064 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 23:57:56.966 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 23:57:56.510 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 23:57:56.960 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 23:58:32.480 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53214 10 6452 1 Summary: total flows: 140, total bytes: 424944, total packets: 1026, avg bps: 934, avg pps: 0, avg bpp: 414 Time window: 2025-11-25 22:58:06 - 2025-11-25 23:58:42 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0039s User: 0.0019s Wall: 0.0021s flows/second: 65918.6 Runtime: 0.0021s