Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-26 17:59:01.209 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37430 10 6452 1 2025-11-26 18:00:01.610 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:45510 10 6452 1 2025-11-26 18:01:02.008 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:50660 10 6452 1 2025-11-26 17:58:06.618 00:05:01.694 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 18:02:02.411 00:00:10.401 TCP 1.101.0.1:3000 -> 23.104.0.1:41642 10 6452 1 2025-11-26 17:59:06.621 00:05:01.687 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 18:03:02.823 00:00:10.973 TCP 1.101.0.1:3000 -> 23.104.0.1:55886 10 6452 1 2025-11-26 18:03:18.491 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 18:03:18.405 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 18:03:18.398 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 18:03:18.634 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 18:03:18.716 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 18:04:03.857 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:35498 10 6452 1 2025-11-26 18:05:04.282 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:48156 10 6452 1 2025-11-26 18:06:04.686 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:37264 10 6452 1 2025-11-26 18:07:05.110 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38296 10 6452 1 2025-11-26 18:04:06.619 00:05:01.692 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 18:08:18.575 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 18:08:18.509 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 18:08:18.423 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 18:08:18.652 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 18:08:05.511 00:00:10.520 TCP 1.101.0.1:3000 -> 23.104.0.1:47394 10 6452 1 2025-11-26 18:08:18.735 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 18:05:06.623 00:05:01.686 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 18:09:06.100 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41858 10 6452 1 2025-11-26 18:10:06.505 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:48014 10 6452 1 2025-11-26 18:11:06.925 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:54134 10 6452 1 2025-11-26 18:12:07.343 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:60894 10 6452 1 2025-11-26 18:13:19.118 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 18:13:07.710 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47208 10 6452 1 2025-11-26 18:13:19.075 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 18:13:18.483 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 18:13:18.934 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 18:13:19.017 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 18:10:06.621 00:05:01.703 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 18:14:08.113 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:51638 10 6452 1 2025-11-26 18:11:06.624 00:05:01.698 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 18:15:08.516 00:00:10.447 TCP 1.101.0.1:3000 -> 23.104.0.1:59302 10 6452 1 2025-11-26 18:16:09.003 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:34806 10 6452 1 2025-11-26 18:17:09.401 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:57766 10 6452 1 2025-11-26 18:18:18.681 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 18:18:18.982 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 18:18:18.507 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 18:18:18.842 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 18:18:18.925 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 18:18:09.804 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45204 10 6452 1 2025-11-26 18:19:10.209 00:00:10.559 TCP 1.101.0.1:3000 -> 23.104.0.1:60638 10 6452 1 2025-11-26 18:16:06.622 00:05:01.708 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 18:20:10.809 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:57860 10 6452 1 2025-11-26 18:17:06.624 00:05:01.702 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 18:21:11.183 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:40510 10 6452 1 2025-11-26 18:22:11.550 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:45318 10 6452 1 2025-11-26 18:23:18.882 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 18:23:18.972 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 18:23:18.796 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 18:23:18.978 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 18:23:19.061 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 18:23:11.919 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:55604 10 6452 1 2025-11-26 18:24:12.313 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:55520 10 6452 1 2025-11-26 18:25:12.745 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50716 10 6452 1 2025-11-26 18:22:06.623 00:05:01.710 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 18:26:13.150 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52384 10 6452 1 2025-11-26 18:23:06.627 00:05:01.704 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 18:27:13.556 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:32914 10 6452 1 2025-11-26 18:28:19.056 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 18:28:19.066 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 18:28:19.199 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 18:28:18.872 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 18:28:18.974 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 18:28:13.960 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:35244 10 6452 1 2025-11-26 18:29:14.369 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:35476 10 6452 1 2025-11-26 18:30:14.769 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:46562 10 6452 1 2025-11-26 18:31:15.187 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:42288 10 6452 1 2025-11-26 18:28:06.625 00:05:01.709 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 18:32:15.590 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:42786 10 6452 1 2025-11-26 18:29:06.627 00:05:01.704 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 18:33:18.965 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 18:33:19.133 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 18:33:18.879 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 18:33:18.746 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 18:33:18.881 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 18:33:15.994 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47600 10 6452 1 2025-11-26 18:34:16.398 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:57272 10 6452 1 2025-11-26 18:35:16.797 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48012 10 6452 1 2025-11-26 18:36:17.203 00:00:10.441 TCP 1.101.0.1:3000 -> 23.104.0.1:39428 12 10369 1 2025-11-26 18:37:17.683 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:38740 10 6452 1 2025-11-26 18:34:06.626 00:05:01.709 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 18:38:19.257 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 18:38:19.325 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 18:38:19.516 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 18:38:19.072 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 18:38:19.174 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 18:38:18.118 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:36582 12 6556 1 2025-11-26 18:35:06.629 00:05:01.703 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 18:39:18.530 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:48756 10 6452 1 2025-11-26 18:40:18.885 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:43302 10 6452 1 2025-11-26 18:41:19.315 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:37960 10 6452 1 2025-11-26 18:42:19.681 00:00:10.811 TCP 1.101.0.1:3000 -> 23.104.0.1:45022 10 6452 1 2025-11-26 18:43:19.375 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 18:43:19.195 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 18:43:19.290 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 18:43:19.201 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 18:43:19.293 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 18:43:20.521 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:40824 10 6452 1 2025-11-26 18:40:06.628 00:05:01.707 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 18:44:20.932 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:42890 10 6452 1 2025-11-26 18:41:06.631 00:05:01.703 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 18:45:21.357 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55360 10 6452 1 2025-11-26 18:46:21.769 00:00:10.399 TCP 1.101.0.1:3000 -> 23.104.0.1:55938 12 10375 1 2025-11-26 18:47:22.205 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36210 10 6452 1 2025-11-26 18:48:19.556 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 18:48:19.624 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 18:48:19.310 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 18:48:19.523 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 18:48:19.605 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 18:48:22.608 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:37438 10 6452 1 2025-11-26 18:49:22.971 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:48984 10 6452 1 2025-11-26 18:46:06.630 00:05:01.708 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 18:50:23.398 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:45420 10 6452 1 2025-11-26 18:47:06.634 00:05:01.703 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 18:51:23.797 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:56296 10 6452 1 2025-11-26 18:52:24.201 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:41176 10 6452 1 2025-11-26 18:53:19.687 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 18:53:19.611 00:00:00.027 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 18:53:19.635 00:00:00.027 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 18:53:19.603 00:00:00.030 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 18:53:19.686 00:00:00.029 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 18:53:24.573 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:36658 10 6452 1 2025-11-26 18:54:24.938 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:59758 10 6452 1 2025-11-26 18:55:25.364 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:45242 10 6452 1 2025-11-26 18:52:06.633 00:05:01.707 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 18:56:25.764 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:43026 10 6452 1 2025-11-26 18:53:06.636 00:05:01.702 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 18:57:26.176 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:43746 10 6452 1 2025-11-26 18:58:20.004 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 18:58:19.728 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 18:58:19.542 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 18:58:19.920 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 18:58:20.080 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 18:58:26.584 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48926 10 6452 1 Summary: total flows: 140, total bytes: 424944, total packets: 1026, avg bps: 936, avg pps: 0, avg bpp: 414 Time window: 2025-11-26 17:58:06 - 2025-11-26 18:58:36 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0052s User: 0.0010s Wall: 0.0018s flows/second: 78734.6 Runtime: 0.0018s