Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-27 03:59:18.531 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:60206 10 6661 1 2025-11-27 04:00:18.931 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:49216 10 6661 1 2025-11-27 04:01:19.360 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:41840 10 6661 1 2025-11-27 03:58:06.822 00:05:01.781 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-27 04:02:19.726 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:39406 10 6661 1 2025-11-27 03:59:06.824 00:05:01.776 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-27 04:03:30.650 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 04:03:30.543 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 04:03:30.623 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 04:03:20.109 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:33504 10 6661 1 2025-11-27 04:03:30.462 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 04:03:30.545 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-27 04:04:20.508 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50758 10 6661 1 2025-11-27 04:05:20.920 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49034 10 6661 1 2025-11-27 04:06:21.319 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:60378 10 6661 1 2025-11-27 04:07:21.689 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59528 10 6661 1 2025-11-27 04:04:06.823 00:05:01.782 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-27 04:08:30.867 00:00:00.014 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-27 04:08:30.725 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 04:08:30.772 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 04:08:30.690 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 04:08:22.104 00:00:10.654 TCP 1.101.0.1:3000 -> 23.104.0.1:44572 10 6661 1 2025-11-27 04:08:30.776 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 04:05:06.826 00:05:01.777 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-27 04:09:22.793 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53808 10 6661 1 2025-11-27 04:10:23.200 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59826 10 6661 1 2025-11-27 04:11:23.601 00:00:10.454 TCP 1.101.0.1:3000 -> 23.104.0.1:35194 13 10427 1 2025-11-27 04:12:24.112 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:46744 10 6452 1 2025-11-27 04:13:31.317 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-27 04:13:31.580 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 04:13:31.246 00:00:00.029 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 04:13:31.142 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 04:13:24.480 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:60992 10 6452 1 2025-11-27 04:13:31.236 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 04:10:06.823 00:05:01.784 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-27 04:14:24.836 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:36258 10 6452 1 2025-11-27 04:11:06.828 00:05:01.781 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-27 04:15:25.264 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:34044 10 6452 1 2025-11-27 04:16:25.666 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57576 10 6452 1 2025-11-27 04:17:26.099 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60556 10 6452 1 2025-11-27 04:18:30.962 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-27 04:18:30.920 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 04:18:30.839 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 04:18:30.794 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 04:18:30.880 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 04:18:26.499 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49546 10 6452 1 2025-11-27 04:19:26.907 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:57142 10 6452 1 2025-11-27 04:16:06.825 00:05:01.791 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-27 04:20:27.282 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:34464 10 6452 1 2025-11-27 04:17:06.827 00:05:01.785 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-27 04:21:27.699 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:42172 10 6452 1 2025-11-27 04:22:28.097 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60522 10 6452 1 2025-11-27 04:23:31.600 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 04:23:31.599 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 04:23:31.184 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 04:23:31.437 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 04:23:31.519 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-27 04:23:28.502 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:57160 10 6452 1 2025-11-27 04:24:28.916 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:57344 10 6452 1 2025-11-27 04:25:29.324 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:46346 10 6452 1 2025-11-27 04:22:06.825 00:05:01.790 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-27 04:26:29.739 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:58812 10 6452 1 2025-11-27 04:23:06.829 00:05:01.784 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-27 04:27:30.147 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:59050 10 6452 1 2025-11-27 04:28:31.084 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 04:28:30.987 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 04:28:31.056 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 04:28:30.985 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 04:28:31.067 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-27 04:28:30.509 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:35332 10 6452 1 2025-11-27 04:29:30.908 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53612 12 6556 1 2025-11-27 04:30:31.311 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54620 10 6452 1 2025-11-27 04:31:31.717 00:00:10.506 TCP 1.101.0.1:3000 -> 23.104.0.1:60026 14 10479 1 2025-11-27 04:28:06.834 00:05:01.783 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-27 04:32:32.260 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59708 10 6452 1 2025-11-27 04:29:06.836 00:05:01.778 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-27 04:33:31.211 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-27 04:33:31.120 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 04:33:31.120 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 04:33:31.155 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 04:33:31.129 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 04:33:32.663 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39416 10 6452 1 2025-11-27 04:34:33.097 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47600 10 6452 1 2025-11-27 04:35:33.500 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60930 10 6452 1 2025-11-27 04:36:33.904 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:51456 10 6452 1 2025-11-27 04:37:34.313 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36108 10 6452 1 2025-11-27 04:34:06.838 00:05:01.780 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-27 04:38:31.269 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 04:38:31.376 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 04:38:31.107 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 04:38:31.335 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 04:38:31.418 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-27 04:38:34.714 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:43636 10 6452 1 2025-11-27 04:35:06.840 00:05:01.775 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-27 04:39:35.104 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36432 10 6452 1 2025-11-27 04:40:35.510 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:54360 10 6452 1 2025-11-27 04:41:35.905 00:00:10.447 TCP 1.101.0.1:3000 -> 23.104.0.1:40120 12 10369 1 2025-11-27 04:42:36.388 00:00:10.962 TCP 1.101.0.1:3000 -> 23.104.0.1:51472 10 6452 1 2025-11-27 04:43:31.623 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 04:43:31.509 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 04:43:31.558 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 04:43:31.511 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 04:43:31.594 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-27 04:43:37.389 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:50636 10 6452 1 2025-11-27 04:40:06.839 00:05:01.781 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-27 04:44:37.785 00:00:11.708 TCP 1.101.0.1:3000 -> 23.104.0.1:48286 10 6452 1 2025-11-27 04:41:06.840 00:05:01.777 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-27 04:45:39.536 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:52154 10 6452 1 2025-11-27 04:46:39.935 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:52406 10 6452 1 2025-11-27 04:47:40.361 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:38456 10 6452 1 2025-11-27 04:48:31.668 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 04:48:31.666 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 04:48:31.320 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 04:48:31.386 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 04:48:31.469 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-27 04:48:40.767 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:39506 10 6452 1 2025-11-27 04:49:41.139 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41224 10 6452 1 2025-11-27 04:46:06.839 00:05:01.784 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-27 04:50:41.543 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33034 10 6452 1 2025-11-27 04:47:06.843 00:05:01.780 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-27 04:51:41.945 00:00:10.402 TCP 1.101.0.1:3000 -> 23.104.0.1:43600 12 10369 1 2025-11-27 04:52:42.384 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:52800 10 6452 1 2025-11-27 04:53:31.591 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 04:53:31.431 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 04:53:31.457 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 04:53:31.592 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 04:53:31.675 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-27 04:53:42.775 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:55534 10 6452 1 2025-11-27 04:54:43.189 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:40374 10 6452 1 2025-11-27 04:55:43.556 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:46642 10 6452 1 2025-11-27 04:52:06.841 00:05:01.784 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-27 04:56:43.955 00:00:10.446 TCP 1.101.0.1:3000 -> 23.104.0.1:54894 12 10369 1 2025-11-27 04:53:06.843 00:05:01.779 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-27 04:57:44.448 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:52498 10 6452 1 2025-11-27 04:58:31.987 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-27 04:58:31.819 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 04:58:31.813 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 04:58:31.534 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 04:58:31.905 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 Summary: total flows: 139, total bytes: 432913, total packets: 1025, avg bps: 955, avg pps: 0, avg bpp: 422 Time window: 2025-11-27 03:58:06 - 2025-11-27 04:58:32 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0042s User: 0.0011s Wall: 0.0021s flows/second: 65595.0 Runtime: 0.0021s