Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-26 15:59:11.498 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59646 10 6452 1 2025-11-26 16:00:11.902 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:34220 10 6452 1 2025-11-26 16:01:12.312 00:00:11.259 TCP 1.101.0.1:3000 -> 23.104.0.1:36966 10 6452 1 2025-11-26 15:58:06.582 00:05:01.653 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 16:02:13.606 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:39602 10 6452 1 2025-11-26 15:59:06.585 00:05:01.649 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 16:03:15.965 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 16:03:16.272 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 16:03:16.181 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 16:03:16.285 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 16:03:15.882 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 16:03:13.962 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39418 10 6452 1 2025-11-26 16:04:14.368 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:39556 10 6452 1 2025-11-26 16:05:14.760 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:45248 10 6452 1 2025-11-26 16:06:15.138 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50582 10 6452 1 2025-11-26 16:07:15.542 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33250 10 6452 1 2025-11-26 16:04:06.585 00:05:01.663 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 16:08:16.397 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 16:08:16.317 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 16:08:16.251 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 16:08:16.008 00:00:00.034 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 16:08:16.315 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 16:08:15.946 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:36938 10 6452 1 2025-11-26 16:05:06.587 00:05:01.657 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 16:09:16.344 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:46940 10 6452 1 2025-11-26 16:10:16.759 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:56736 10 6452 1 2025-11-26 16:11:17.181 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47348 10 6452 1 2025-11-26 16:12:17.589 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:50564 10 6452 1 2025-11-26 16:13:16.573 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 16:13:16.444 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 16:13:16.335 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 16:13:16.443 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 16:13:16.525 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 16:13:17.950 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35110 10 6452 1 2025-11-26 16:10:06.587 00:05:01.662 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 16:14:18.354 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:50142 10 6452 1 2025-11-26 16:11:06.589 00:05:01.658 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 16:15:18.715 00:00:10.316 TCP 1.101.0.1:3000 -> 23.104.0.1:34568 10 6452 1 2025-11-26 16:16:19.102 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:52900 10 6452 1 2025-11-26 16:17:19.503 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:52236 10 6452 1 2025-11-26 16:18:16.679 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 16:18:16.593 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 16:18:16.465 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 16:18:16.289 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 16:18:16.595 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 16:18:19.869 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53746 10 6452 1 2025-11-26 16:19:20.283 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:50702 10 6452 1 2025-11-26 16:16:06.588 00:05:01.666 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 16:20:20.691 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45094 10 6452 1 2025-11-26 16:17:06.591 00:05:01.660 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 16:21:21.104 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:46388 10 6452 1 2025-11-26 16:22:21.524 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57110 10 6452 1 2025-11-26 16:23:16.641 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 16:23:16.618 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 16:23:16.501 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 16:23:16.590 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 16:23:16.559 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 16:23:21.928 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:52606 10 6452 1 2025-11-26 16:24:22.352 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:53050 10 6452 1 2025-11-26 16:25:22.755 00:00:10.396 TCP 1.101.0.1:3000 -> 23.104.0.1:53730 10 6452 1 2025-11-26 16:22:06.589 00:05:01.667 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 16:26:23.193 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:39342 10 6452 1 2025-11-26 16:23:06.591 00:05:01.663 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 16:27:23.597 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43520 10 6452 1 2025-11-26 16:28:16.830 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 16:28:16.678 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 16:28:16.361 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 16:28:16.638 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 16:28:16.748 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 16:28:23.995 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:53712 10 6452 1 2025-11-26 16:29:24.362 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:34488 10 6452 1 2025-11-26 16:30:24.770 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:58116 10 6452 1 2025-11-26 16:31:25.185 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38848 10 6452 1 2025-11-26 16:28:06.590 00:05:01.669 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 16:32:25.586 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59266 10 6452 1 2025-11-26 16:29:06.593 00:05:01.663 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 16:33:17.474 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 16:33:17.479 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 16:33:17.354 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 16:33:17.406 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 16:33:17.490 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 16:33:25.991 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56996 10 6452 1 2025-11-26 16:34:26.397 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:55062 10 6452 1 2025-11-26 16:35:26.807 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:34354 10 6452 1 2025-11-26 16:36:27.223 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:59700 10 6452 1 2025-11-26 16:37:27.620 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:50090 10 6452 1 2025-11-26 16:34:06.594 00:05:01.666 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 16:38:16.779 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 16:38:16.768 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 16:38:16.916 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 16:38:16.773 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 16:38:16.858 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 16:38:27.983 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:51284 10 6452 1 2025-11-26 16:35:06.597 00:05:01.662 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 16:39:28.353 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54392 10 6452 1 2025-11-26 16:40:28.757 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:59356 10 6452 1 2025-11-26 16:41:29.193 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:36820 10 6452 1 2025-11-26 16:42:29.597 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49256 10 6452 1 2025-11-26 16:43:16.882 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 16:43:16.803 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 16:43:16.660 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 16:43:16.902 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 16:43:16.985 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 16:43:30.006 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:40682 10 6452 1 2025-11-26 16:40:06.595 00:05:01.666 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 16:44:30.377 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:44596 10 6452 1 2025-11-26 16:41:06.598 00:05:01.661 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 16:45:30.790 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:34052 10 6452 1 2025-11-26 16:46:31.200 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47328 10 6452 1 2025-11-26 16:47:31.600 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:33838 10 6452 1 2025-11-26 16:48:17.406 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 16:48:17.245 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 16:48:17.262 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 16:48:17.289 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 16:48:17.326 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 16:48:32.000 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:37604 10 6452 1 2025-11-26 16:49:32.405 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54708 10 6452 1 2025-11-26 16:46:06.596 00:05:01.666 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 16:50:32.812 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:44816 10 6452 1 2025-11-26 16:47:06.600 00:05:01.661 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 16:51:33.210 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53672 10 6452 1 2025-11-26 16:52:33.614 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:37852 10 6452 1 2025-11-26 16:53:17.182 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 16:53:17.094 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 16:53:16.942 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 16:53:17.209 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 16:53:17.100 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 16:53:34.024 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:38576 10 6452 1 2025-11-26 16:54:34.423 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:57264 10 6452 1 2025-11-26 16:55:34.838 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:38602 10 6452 1 2025-11-26 16:52:06.596 00:05:01.667 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 16:56:35.263 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:43640 10 6452 1 2025-11-26 16:53:06.599 00:05:01.661 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 16:57:35.667 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:43552 10 6452 1 2025-11-26 16:58:17.437 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 16:58:17.355 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 16:58:17.249 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 16:58:17.184 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 16:58:17.107 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 16:58:36.105 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:35394 10 6452 1 Summary: total flows: 140, total bytes: 417000, total packets: 1020, avg bps: 916, avg pps: 0, avg bpp: 408 Time window: 2025-11-26 15:58:06 - 2025-11-26 16:58:46 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0044s User: 0.0009s Wall: 0.0021s flows/second: 67502.3 Runtime: 0.0021s