Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-26 22:59:05.243 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33544 10 6452 1 2025-11-26 23:00:05.650 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:49692 10 6452 1 2025-11-26 23:01:06.065 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:56822 10 6452 1 2025-11-26 22:58:06.699 00:05:01.760 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 23:02:06.430 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35896 10 6452 1 2025-11-26 22:59:06.702 00:05:01.754 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 23:03:06.829 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48652 10 6452 1 2025-11-26 23:03:24.626 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 23:03:24.605 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 23:03:24.604 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 23:03:24.304 00:00:00.020 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 23:03:24.544 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 23:04:07.229 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:39040 12 6556 1 2025-11-26 23:05:07.630 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55648 10 6452 1 2025-11-26 23:06:08.037 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:60764 10 6452 1 2025-11-26 23:07:08.446 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36196 10 6452 1 2025-11-26 23:04:06.703 00:05:01.757 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 23:08:08.845 00:00:10.406 TCP 1.101.0.1:3000 -> 23.104.0.1:43368 10 6452 1 2025-11-26 23:08:24.871 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 23:08:24.826 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 23:08:24.778 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 23:08:24.660 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 23:08:24.791 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 23:05:06.706 00:05:01.752 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 23:09:09.286 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34876 10 6452 1 2025-11-26 23:10:09.689 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38610 10 6452 1 2025-11-26 23:11:10.103 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:34950 10 6452 1 2025-11-26 23:12:10.506 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41332 10 6452 1 2025-11-26 23:13:24.949 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 23:13:10.910 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:50048 10 6452 1 2025-11-26 23:13:24.956 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 23:13:24.867 00:00:00.027 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 23:13:24.892 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 23:13:24.867 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 23:10:06.703 00:05:01.758 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 23:14:11.319 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55732 10 6452 1 2025-11-26 23:11:06.705 00:05:01.753 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 23:15:11.726 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:33704 10 6452 1 2025-11-26 23:16:12.137 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:47576 10 6452 1 2025-11-26 23:17:12.531 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36634 10 6452 1 2025-11-26 23:18:24.682 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 23:18:12.933 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:40220 10 6452 1 2025-11-26 23:18:24.953 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 23:18:24.737 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 23:18:24.689 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 23:18:24.774 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 23:19:13.350 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:47952 10 6452 1 2025-11-26 23:16:06.705 00:05:01.757 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 23:20:13.707 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:51310 10 6452 1 2025-11-26 23:17:06.708 00:05:01.752 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 23:21:14.119 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53686 10 6452 1 2025-11-26 23:22:14.520 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33048 10 6452 1 2025-11-26 23:23:24.722 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 23:23:24.967 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 23:23:25.087 00:00:00.031 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 23:23:25.083 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 23:23:25.006 00:00:00.029 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 23:23:14.923 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:40816 10 6452 1 2025-11-26 23:24:15.350 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:54482 10 6452 1 2025-11-26 23:25:15.757 00:00:10.395 TCP 1.101.0.1:3000 -> 23.104.0.1:36626 10 6452 1 2025-11-26 23:22:06.706 00:05:01.757 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 23:26:16.192 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39524 10 6452 1 2025-11-26 23:23:06.709 00:05:01.752 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 23:27:16.597 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:35550 10 6452 1 2025-11-26 23:28:25.267 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 23:28:25.184 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 23:28:25.184 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 23:28:24.979 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 23:28:25.184 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 23:28:17.000 00:00:10.407 TCP 1.101.0.1:3000 -> 23.104.0.1:38082 10 6452 1 2025-11-26 23:29:17.451 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:39396 10 6452 1 2025-11-26 23:30:17.818 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:34834 10 6452 1 2025-11-26 23:31:18.232 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:45136 10 6452 1 2025-11-26 23:28:06.707 00:05:01.760 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 23:32:18.588 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34470 10 6452 1 2025-11-26 23:29:06.709 00:05:01.756 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 23:33:25.281 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 23:33:24.986 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 23:33:25.049 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 23:33:18.999 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39334 10 6452 1 2025-11-26 23:33:25.199 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 23:33:25.263 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 23:34:19.402 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42818 10 6452 1 2025-11-26 23:35:19.806 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:43380 10 6452 1 2025-11-26 23:36:20.218 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52808 10 6452 1 2025-11-26 23:37:20.626 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:41040 10 6452 1 2025-11-26 23:34:06.709 00:05:01.762 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 23:38:24.867 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 23:38:25.277 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 23:38:25.264 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 23:38:25.196 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 23:38:25.188 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 23:38:20.989 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:52664 10 6452 1 2025-11-26 23:35:06.711 00:05:01.757 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 23:39:21.413 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56992 10 6452 1 2025-11-26 23:40:21.818 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38484 10 6452 1 2025-11-26 23:41:22.226 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37026 10 6452 1 2025-11-26 23:42:22.634 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:43446 10 6452 1 2025-11-26 23:43:25.352 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 23:43:25.605 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 23:43:25.669 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 23:43:25.378 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 23:43:25.270 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 23:43:23.060 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50832 10 6452 1 2025-11-26 23:40:06.709 00:05:01.763 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 23:44:23.464 00:00:10.537 TCP 1.101.0.1:3000 -> 23.104.0.1:49886 10 6452 1 2025-11-26 23:41:06.712 00:05:01.757 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 23:45:24.062 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:51070 10 6452 1 2025-11-26 23:46:24.464 00:00:10.639 TCP 1.101.0.1:3000 -> 23.104.0.1:55330 12 10369 1 2025-11-26 23:47:25.141 00:00:10.960 TCP 1.101.0.1:3000 -> 23.104.0.1:44218 10 6452 1 2025-11-26 23:48:25.636 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 23:48:25.555 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 23:48:25.394 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 23:48:25.512 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 23:48:25.554 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 23:48:26.138 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42202 10 6452 1 2025-11-26 23:49:26.544 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:36806 10 6452 1 2025-11-26 23:46:06.712 00:05:01.761 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 23:50:26.912 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:33738 10 6452 1 2025-11-26 23:47:06.714 00:05:01.758 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 23:51:27.320 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:59148 10 6452 1 2025-11-26 23:52:27.679 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:38494 10 6452 1 2025-11-26 23:53:25.643 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 23:53:25.558 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 23:53:25.475 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 23:53:25.450 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 23:53:25.560 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 23:53:28.060 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:48906 10 6452 1 2025-11-26 23:54:28.429 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:52040 10 6452 1 2025-11-26 23:55:28.833 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:59198 10 6452 1 2025-11-26 23:52:06.715 00:05:01.762 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 23:56:29.252 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43498 10 6452 1 2025-11-26 23:53:06.716 00:05:01.757 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 23:57:29.660 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46326 10 6452 1 2025-11-26 23:58:25.838 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 23:58:25.629 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 23:58:25.706 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 23:58:25.556 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 23:58:25.755 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 23:58:30.083 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:50182 10 6452 1 Summary: total flows: 140, total bytes: 421021, total packets: 1024, avg bps: 926, avg pps: 0, avg bpp: 411 Time window: 2025-11-26 22:58:06 - 2025-11-26 23:58:40 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0035s User: 0.0012s Wall: 0.0018s flows/second: 76003.4 Runtime: 0.0019s