Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-26 20:59:15.812 00:00:10.752 TCP 1.101.0.1:3000 -> 23.104.0.1:52762 10 6452 1 2025-11-26 21:00:16.606 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:60886 10 6452 1 2025-11-26 21:01:17.008 00:00:10.466 TCP 1.101.0.1:3000 -> 23.104.0.1:57624 10 6452 1 2025-11-26 20:58:06.666 00:05:01.740 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 21:02:17.517 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:47832 10 6452 1 2025-11-26 20:59:06.670 00:05:01.735 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 21:03:22.545 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 21:03:22.561 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 21:03:22.283 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 21:03:22.180 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 21:03:22.463 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 21:03:17.879 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:44658 10 6452 1 2025-11-26 21:04:18.238 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:52354 10 6452 1 2025-11-26 21:05:18.602 00:00:10.739 TCP 1.101.0.1:3000 -> 23.104.0.1:53024 11 6504 1 2025-11-26 21:06:19.384 00:00:10.439 TCP 1.101.0.1:3000 -> 23.104.0.1:54030 12 10375 1 2025-11-26 21:07:19.863 00:00:10.472 TCP 1.101.0.1:3000 -> 23.104.0.1:46816 10 6452 1 2025-11-26 21:04:06.668 00:05:01.740 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 21:08:22.255 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 21:08:22.174 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 21:08:22.266 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 21:08:22.172 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 21:08:22.109 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 21:08:20.378 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55548 10 6452 1 2025-11-26 21:05:06.670 00:05:01.735 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 21:09:20.779 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:46136 10 6452 1 2025-11-26 21:10:21.191 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:58326 10 6452 1 2025-11-26 21:11:21.595 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:44364 10 6452 1 2025-11-26 21:12:22.001 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:50320 10 6452 1 2025-11-26 21:13:22.270 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 21:13:22.403 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 21:13:22.114 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 21:13:22.344 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 21:13:22.427 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 21:13:22.364 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:48700 10 6452 1 2025-11-26 21:10:06.670 00:05:01.739 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 21:14:22.774 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:35702 10 6452 1 2025-11-26 21:11:06.674 00:05:01.734 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 21:15:23.183 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56664 10 6452 1 2025-11-26 21:16:23.588 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:50066 10 6452 1 2025-11-26 21:17:23.999 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:55034 10 6452 1 2025-11-26 21:18:22.301 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 21:18:22.540 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 21:18:22.181 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 21:18:22.538 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 21:18:22.624 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 21:18:24.409 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53678 10 6452 1 2025-11-26 21:19:24.811 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:54548 10 6452 1 2025-11-26 21:16:06.671 00:05:01.740 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 21:20:25.190 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:55894 10 6452 1 2025-11-26 21:17:06.673 00:05:01.746 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 21:21:25.589 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:41364 10 6452 1 2025-11-26 21:22:25.992 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:60188 10 6452 1 2025-11-26 21:23:22.499 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 21:23:22.526 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 21:23:22.525 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 21:23:22.523 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 21:23:22.416 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 21:23:26.398 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33944 10 6452 1 2025-11-26 21:24:26.803 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:40756 10 6452 1 2025-11-26 21:25:27.215 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:39054 10 6452 1 2025-11-26 21:22:06.672 00:05:01.740 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 21:26:27.576 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:57974 10 6452 1 2025-11-26 21:23:06.677 00:05:01.732 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 21:27:27.978 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54122 10 6452 1 2025-11-26 21:28:22.851 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 21:28:22.644 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 21:28:22.434 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 21:28:22.478 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 21:28:22.770 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 21:28:28.383 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:33476 10 6452 1 2025-11-26 21:29:28.780 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:55880 10 6452 1 2025-11-26 21:30:29.189 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:60866 10 6452 1 2025-11-26 21:31:29.555 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54742 10 6452 1 2025-11-26 21:28:06.676 00:05:01.738 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 21:32:29.962 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:38184 10 6452 1 2025-11-26 21:29:06.679 00:05:01.733 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 21:33:22.841 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 21:33:22.798 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 21:33:22.686 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 21:33:22.795 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 21:33:22.878 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 21:33:30.327 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60428 10 6452 1 2025-11-26 21:34:30.727 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:45178 10 6452 1 2025-11-26 21:35:31.141 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47316 10 6452 1 2025-11-26 21:36:31.546 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:50234 10 6452 1 2025-11-26 21:37:31.907 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:37432 10 6452 1 2025-11-26 21:34:06.678 00:05:01.745 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 21:38:23.041 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 21:38:22.888 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 21:38:22.673 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 21:38:22.989 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 21:38:22.957 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 21:38:32.274 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:44246 10 6452 1 2025-11-26 21:35:06.680 00:05:01.740 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 21:39:32.685 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49164 10 6452 1 2025-11-26 21:40:33.109 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:56276 10 6452 1 2025-11-26 21:41:33.473 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:50290 10 6452 1 2025-11-26 21:42:33.874 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:41290 10 6452 1 2025-11-26 21:43:22.967 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 21:43:22.885 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 21:43:22.887 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 21:43:22.923 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 21:43:22.885 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 21:43:34.276 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:37178 10 6452 1 2025-11-26 21:40:06.679 00:05:01.746 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 21:44:34.634 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:34566 10 6452 1 2025-11-26 21:41:06.683 00:05:01.741 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 21:45:34.995 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:42386 10 6452 1 2025-11-26 21:46:35.406 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36008 10 6452 1 2025-11-26 21:47:35.811 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34788 10 6452 1 2025-11-26 21:48:23.075 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 21:48:23.217 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 21:48:23.143 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 21:48:22.941 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 21:48:23.024 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 21:48:36.225 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:41424 10 6452 1 2025-11-26 21:49:36.648 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50936 10 6452 1 2025-11-26 21:46:06.680 00:05:01.748 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 21:50:37.052 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39116 10 6452 1 2025-11-26 21:47:06.683 00:05:01.742 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 21:51:37.469 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:34756 10 6452 1 2025-11-26 21:52:37.865 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:59702 10 6452 1 2025-11-26 21:53:23.047 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 21:53:23.198 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 21:53:23.190 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 21:53:23.043 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 21:53:22.963 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 21:53:38.279 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59640 10 6452 1 2025-11-26 21:54:38.683 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:37042 10 6452 1 2025-11-26 21:55:39.106 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38916 10 6452 1 2025-11-26 21:52:06.683 00:05:01.748 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 21:56:39.509 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39712 10 6452 1 2025-11-26 21:53:06.686 00:05:01.743 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 21:57:39.912 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35946 10 6452 1 2025-11-26 21:58:23.454 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 21:58:23.415 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 21:58:23.369 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 21:58:23.327 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 21:58:23.371 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 Summary: total flows: 139, total bytes: 414523, total packets: 1013, avg bps: 916, avg pps: 0, avg bpp: 409 Time window: 2025-11-26 20:58:06 - 2025-11-26 21:58:23 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0031s User: 0.0031s Wall: 0.0018s flows/second: 76250.1 Runtime: 0.0018s