Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-26 11:59:32.598 00:00:11.604 TCP 1.101.0.1:3000 -> 23.104.0.1:49306 10 6452 1 2025-11-26 12:00:34.252 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:58656 10 6452 1 2025-11-26 12:01:34.621 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:57854 10 6452 1 2025-11-26 11:58:06.521 00:05:01.604 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 12:02:35.022 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:51080 10 6452 1 2025-11-26 11:59:06.524 00:05:01.597 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 12:03:11.673 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 12:03:11.605 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 12:03:11.808 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 12:03:11.534 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 12:03:11.591 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 12:03:35.413 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46302 10 6452 1 2025-11-26 12:04:35.818 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49280 10 6452 1 2025-11-26 12:05:36.220 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35880 10 6452 1 2025-11-26 12:06:36.624 00:00:10.399 TCP 1.101.0.1:3000 -> 23.104.0.1:42318 12 10369 1 2025-11-26 12:07:37.068 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:55054 10 6452 1 2025-11-26 12:04:06.522 00:05:01.604 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 12:08:11.407 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 12:08:11.493 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 12:08:11.499 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 12:08:11.490 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 12:08:11.573 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 12:08:37.438 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:34854 10 6452 1 2025-11-26 12:05:06.525 00:05:01.600 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 12:09:37.844 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:34866 10 6452 1 2025-11-26 12:10:38.270 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38956 10 6452 1 2025-11-26 12:11:38.682 00:00:10.448 TCP 1.101.0.1:3000 -> 23.104.0.1:39948 12 10375 1 2025-11-26 12:12:39.165 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:38676 10 6452 1 2025-11-26 12:13:11.563 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 12:13:11.637 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 12:13:11.642 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 12:13:11.578 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 12:13:11.482 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 12:13:39.569 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40210 10 6452 1 2025-11-26 12:10:06.522 00:05:01.606 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 12:14:39.969 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:58152 10 6452 1 2025-11-26 12:11:06.525 00:05:01.600 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 12:15:40.380 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:36646 10 6452 1 2025-11-26 12:16:40.746 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:58104 10 6452 1 2025-11-26 12:17:41.145 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:47908 10 6452 1 2025-11-26 12:18:12.033 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 12:18:11.837 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 12:18:11.834 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 12:18:11.795 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 12:18:11.951 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 12:18:41.537 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:42512 10 6452 1 2025-11-26 12:19:41.913 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35344 10 6452 1 2025-11-26 12:16:06.524 00:05:01.615 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 12:20:42.316 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:37794 10 6452 1 2025-11-26 12:17:06.526 00:05:01.611 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 12:21:42.717 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:45470 10 6452 1 2025-11-26 12:22:43.103 00:00:10.344 TCP 1.101.0.1:3000 -> 23.104.0.1:60378 10 6452 1 2025-11-26 12:23:12.272 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 12:23:12.172 00:00:00.028 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 12:23:12.184 00:00:00.027 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 12:23:12.071 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 12:23:12.191 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 12:23:43.483 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:60600 10 6452 1 2025-11-26 12:24:43.887 00:00:10.350 TCP 1.101.0.1:3000 -> 23.104.0.1:58306 10 6452 1 2025-11-26 12:25:44.281 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:59728 10 6452 1 2025-11-26 12:22:06.525 00:05:01.617 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 12:26:44.650 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:40706 10 6452 1 2025-11-26 12:23:06.527 00:05:01.612 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 12:27:45.109 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55528 10 6452 1 2025-11-26 12:28:12.047 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 12:28:11.744 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 12:28:11.921 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 12:28:11.773 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 12:28:11.965 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 12:28:45.510 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43700 10 6452 1 2025-11-26 12:29:45.911 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:39852 10 6452 1 2025-11-26 12:30:46.269 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56378 10 6452 1 2025-11-26 12:31:46.678 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56520 10 6452 1 2025-11-26 12:28:06.524 00:05:01.621 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 12:32:47.108 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59654 10 6452 1 2025-11-26 12:33:11.989 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 12:29:06.527 00:05:01.616 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 12:33:11.904 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 12:33:12.108 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 12:33:11.726 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 12:33:11.906 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 12:33:47.514 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:38108 10 6452 1 2025-11-26 12:34:47.920 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:39726 10 6452 1 2025-11-26 12:35:48.338 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:60720 10 6452 1 2025-11-26 12:36:48.744 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:39122 10 6452 1 2025-11-26 12:37:49.119 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:60714 10 6452 1 2025-11-26 12:34:06.526 00:05:01.622 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 12:38:11.934 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 12:38:12.114 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 12:38:11.617 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 12:38:12.106 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 12:38:12.189 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 12:38:49.525 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51884 10 6452 1 2025-11-26 12:35:06.529 00:05:01.616 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 12:39:49.932 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:42886 10 6452 1 2025-11-26 12:40:50.346 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:34138 10 6452 1 2025-11-26 12:41:50.747 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:50280 10 6452 1 2025-11-26 12:42:51.147 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:37728 10 6452 1 2025-11-26 12:43:12.514 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 12:43:12.293 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 12:43:12.578 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 12:43:12.510 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 12:43:12.662 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 12:43:51.549 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49864 10 6452 1 2025-11-26 12:40:06.527 00:05:01.623 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 12:44:51.954 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35242 10 6452 1 2025-11-26 12:41:06.530 00:05:01.618 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 12:45:52.361 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43688 10 6452 1 2025-11-26 12:46:52.767 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:57660 10 6452 1 2025-11-26 12:47:53.179 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39422 10 6452 1 2025-11-26 12:48:12.187 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 12:48:12.194 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 12:48:12.325 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 12:48:12.253 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 12:48:12.103 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 12:48:53.583 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:41012 10 6452 1 2025-11-26 12:49:53.947 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:60814 10 6452 1 2025-11-26 12:46:06.529 00:05:01.623 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 12:50:54.357 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:57202 10 6452 1 2025-11-26 12:47:06.532 00:05:01.617 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 12:51:54.773 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:44464 10 6452 1 2025-11-26 12:52:55.194 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:38672 10 6452 1 2025-11-26 12:53:12.435 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 12:53:12.324 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 12:53:12.326 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 12:53:12.486 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 12:53:12.517 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 12:53:55.631 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:43450 10 6452 1 2025-11-26 12:54:55.999 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:60106 10 6452 1 2025-11-26 12:52:06.532 00:05:01.622 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 12:55:56.361 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:60300 10 6452 1 2025-11-26 12:53:06.535 00:05:01.618 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 12:56:56.767 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:54464 10 6452 1 2025-11-26 12:57:57.173 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:54804 10 6452 1 2025-11-26 12:58:12.663 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 12:58:12.432 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 12:58:12.342 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 12:58:12.563 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 12:58:12.580 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 Summary: total flows: 139, total bytes: 418388, total packets: 1014, avg bps: 928, avg pps: 0, avg bpp: 412 Time window: 2025-11-26 11:58:06 - 2025-11-26 12:58:12 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0020s User: 0.0020s Wall: 0.0020s flows/second: 67807.4 Runtime: 0.0021s