Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-26 08:59:17.358 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:54752 10 6870 1 2025-11-26 09:00:17.756 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:46498 10 6870 1 2025-11-26 09:01:18.186 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60696 10 6870 1 2025-11-26 08:58:06.468 00:05:01.533 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 09:02:18.587 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55278 10 6870 1 2025-11-26 09:03:08.191 00:00:00.031 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 08:59:06.471 00:05:01.530 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 09:03:07.994 00:00:00.045 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 09:03:07.969 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 09:03:08.001 00:00:00.036 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 09:03:08.083 00:00:00.037 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 09:03:18.994 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:33438 10 6870 1 2025-11-26 09:04:19.358 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37886 10 6870 1 2025-11-26 09:05:19.768 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:51946 10 6870 1 2025-11-26 09:06:20.192 00:00:10.766 TCP 1.101.0.1:3000 -> 23.104.0.1:37954 10 6870 1 2025-11-26 09:07:20.999 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57178 10 6870 1 2025-11-26 09:08:08.014 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 09:04:06.469 00:05:01.569 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 09:08:07.794 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 09:08:07.811 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 09:08:07.675 00:00:00.026 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 09:08:07.933 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 09:08:21.401 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55386 10 6870 1 2025-11-26 09:05:06.472 00:05:01.563 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 09:09:21.802 00:00:10.763 TCP 1.101.0.1:3000 -> 23.104.0.1:43446 10 6870 1 2025-11-26 09:10:22.606 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40882 10 6870 1 2025-11-26 09:11:23.005 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:47812 10 6870 1 2025-11-26 09:12:23.412 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:44712 10 6870 1 2025-11-26 09:13:07.857 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 09:13:07.856 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 09:13:07.881 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 09:13:07.855 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 09:13:07.938 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 09:13:23.819 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:35934 10 6870 1 2025-11-26 09:10:06.471 00:05:01.569 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 09:14:24.234 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60400 10 6870 1 2025-11-26 09:11:06.474 00:05:01.563 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 09:15:24.644 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42912 10 6870 1 2025-11-26 09:16:25.061 00:00:10.444 TCP 1.101.0.1:3000 -> 23.104.0.1:35078 12 10375 1 2025-11-26 09:17:25.547 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57938 10 6452 1 2025-11-26 09:18:07.809 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 09:18:07.811 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 09:18:07.887 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 09:18:08.006 00:00:00.045 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 09:18:08.088 00:00:00.046 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 09:18:25.952 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:46132 10 6452 1 2025-11-26 09:19:26.369 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:36528 10 6452 1 2025-11-26 09:16:06.471 00:05:01.568 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 09:20:26.734 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39028 10 6452 1 2025-11-26 09:17:06.475 00:05:01.562 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 09:21:27.138 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:32810 10 6452 1 2025-11-26 09:22:27.548 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48520 10 6452 1 2025-11-26 09:23:08.406 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 09:23:08.433 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 09:23:08.351 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 09:23:08.321 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 09:23:08.404 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 09:23:27.946 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:34948 10 6452 1 2025-11-26 09:24:28.361 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:47394 10 6452 1 2025-11-26 09:25:28.766 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:48046 10 6452 1 2025-11-26 09:22:06.472 00:05:01.571 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 09:26:29.133 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:42448 10 6452 1 2025-11-26 09:23:06.476 00:05:01.565 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 09:27:29.537 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:50370 10 6452 1 2025-11-26 09:28:08.375 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 09:28:08.587 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 09:28:08.642 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 09:28:08.684 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 09:28:08.670 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 09:28:29.906 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:42474 10 6452 1 2025-11-26 09:29:30.275 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51590 10 6452 1 2025-11-26 09:30:30.685 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:50352 10 6452 1 2025-11-26 09:31:31.109 00:00:10.398 TCP 1.101.0.1:3000 -> 23.104.0.1:41618 13 13949 1 2025-11-26 09:28:06.474 00:05:01.570 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 09:32:31.547 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:40018 10 6452 1 2025-11-26 09:33:08.261 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 09:29:06.478 00:05:01.564 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 09:33:08.499 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 09:33:08.435 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 09:33:08.463 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 09:33:08.545 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 09:33:31.949 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:57126 10 6452 1 2025-11-26 09:34:32.318 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47538 10 6452 1 2025-11-26 09:35:32.719 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:57906 10 6452 1 2025-11-26 09:36:33.132 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:36354 10 6452 1 2025-11-26 09:37:33.497 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50164 10 6452 1 2025-11-26 09:38:08.503 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 09:38:08.376 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 09:38:08.525 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 09:38:08.568 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 09:34:06.476 00:05:01.575 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 09:38:08.458 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 09:38:33.902 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:49296 12 6556 1 2025-11-26 09:35:06.479 00:05:01.570 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 09:39:34.314 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:36236 10 6452 1 2025-11-26 09:40:34.723 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:35664 10 6452 1 2025-11-26 09:41:35.133 00:00:10.435 TCP 1.101.0.1:3000 -> 23.104.0.1:53912 12 10584 1 2025-11-26 09:42:35.611 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:60716 10 6661 1 2025-11-26 09:43:08.702 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 09:43:08.532 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 09:43:08.581 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 09:43:08.461 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 09:43:08.618 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 09:43:36.021 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:40554 10 6661 1 2025-11-26 09:40:06.480 00:05:01.572 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 09:44:36.426 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:59516 10 6661 1 2025-11-26 09:41:06.482 00:05:01.568 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 09:45:36.788 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:34246 10 6661 1 2025-11-26 09:46:37.157 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55632 10 6661 1 2025-11-26 09:47:37.560 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:40494 10 6661 1 2025-11-26 09:48:08.668 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 09:48:08.548 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 09:48:08.611 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 09:48:08.388 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 09:48:08.693 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 09:48:37.922 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:33006 10 6661 1 2025-11-26 09:49:38.338 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43004 10 6661 1 2025-11-26 09:46:06.481 00:05:01.576 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 09:50:38.741 00:00:10.795 TCP 1.101.0.1:3000 -> 23.104.0.1:36670 10 6661 1 2025-11-26 09:47:06.483 00:05:01.570 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 09:51:39.582 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:52082 10 6661 1 2025-11-26 09:52:39.988 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:53002 10 6661 1 2025-11-26 09:53:08.856 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 09:53:08.783 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 09:53:08.503 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 09:53:08.992 00:00:00.038 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 09:53:09.079 00:00:00.034 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 09:53:40.396 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53408 10 6661 1 2025-11-26 09:54:40.799 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43628 10 6661 1 2025-11-26 09:55:41.201 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52566 10 6661 1 2025-11-26 09:52:06.485 00:05:01.573 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 09:56:41.599 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:46738 10 6661 1 2025-11-26 09:53:06.486 00:05:01.572 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 09:57:42.006 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45430 10 6661 1 2025-11-26 09:58:08.585 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 09:58:08.647 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 09:58:08.854 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 09:58:08.809 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 09:58:08.730 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 Summary: total flows: 139, total bytes: 436654, total packets: 1019, avg bps: 969, avg pps: 0, avg bpp: 428 Time window: 2025-11-26 08:58:06 - 2025-11-26 09:58:08 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0047s User: 0.0000s Wall: 0.0021s flows/second: 66033.3 Runtime: 0.0021s