Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-27 07:59:04.486 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:58990 10 6452 1 2025-11-27 08:00:04.888 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:47824 10 6452 1 2025-11-27 08:01:05.263 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:32800 10 6452 1 2025-11-27 07:58:06.902 00:05:01.808 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-27 08:02:05.630 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50468 10 6452 1 2025-11-27 07:59:06.904 00:05:01.804 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-27 08:03:06.037 00:00:10.514 TCP 1.101.0.1:3000 -> 23.104.0.1:57096 10 6452 1 2025-11-27 08:03:35.594 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-27 08:03:35.514 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 08:03:35.468 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 08:03:35.198 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 08:03:35.513 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 08:04:06.588 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43618 10 6452 1 2025-11-27 08:05:06.996 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56924 10 6452 1 2025-11-27 08:06:07.396 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:56090 10 6452 1 2025-11-27 08:07:07.805 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:32946 10 6452 1 2025-11-27 08:04:06.904 00:05:01.808 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-27 08:08:08.173 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37880 10 6452 1 2025-11-27 08:08:35.663 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-27 08:08:35.541 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 08:08:35.526 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 08:08:35.375 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 08:08:35.580 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 08:05:06.906 00:05:01.802 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-27 08:09:08.579 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38712 10 6452 1 2025-11-27 08:10:08.983 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51918 10 6452 1 2025-11-27 08:11:09.390 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:33298 10 6452 1 2025-11-27 08:12:09.797 00:00:10.451 TCP 1.101.0.1:3000 -> 23.104.0.1:46844 12 10375 1 2025-11-27 08:13:10.286 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:32824 10 6452 1 2025-11-27 08:13:35.556 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-27 08:13:35.464 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 08:13:35.583 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 08:13:35.596 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 08:13:35.473 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 08:10:06.905 00:05:01.807 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-27 08:14:10.682 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:53502 10 6452 1 2025-11-27 08:11:06.908 00:05:01.802 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-27 08:15:11.113 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:42108 10 6452 1 2025-11-27 08:16:11.473 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:41120 10 6452 1 2025-11-27 08:17:11.895 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:56576 12 6556 1 2025-11-27 08:18:12.307 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56160 10 6452 1 2025-11-27 08:18:35.819 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 08:18:35.972 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 08:18:35.758 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 08:18:35.832 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 08:18:35.914 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-27 08:19:12.712 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:56540 10 6452 1 2025-11-27 08:16:06.906 00:05:01.809 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-27 08:20:13.112 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:42738 10 6452 1 2025-11-27 08:17:06.911 00:05:01.800 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-27 08:21:13.531 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:53904 10 6452 1 2025-11-27 08:22:13.952 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:34274 10 6452 1 2025-11-27 08:23:14.329 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:47650 10 6452 1 2025-11-27 08:23:35.838 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 08:23:35.939 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 08:23:35.583 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 08:23:35.901 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 08:23:35.983 00:00:00.031 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-27 08:24:14.696 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44600 10 6452 1 2025-11-27 08:25:15.113 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56580 10 6452 1 2025-11-27 08:22:06.909 00:05:01.807 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-27 08:26:15.519 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42426 10 6452 1 2025-11-27 08:23:06.912 00:05:01.802 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-27 08:27:15.920 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:58470 10 6452 1 2025-11-27 08:28:16.343 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41562 10 6452 1 2025-11-27 08:28:35.992 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-27 08:28:35.822 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 08:28:35.725 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 08:28:35.772 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 08:28:35.910 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 08:29:16.754 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:44444 10 6452 1 2025-11-27 08:30:17.176 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:38436 10 6452 1 2025-11-27 08:31:17.537 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47578 10 6452 1 2025-11-27 08:28:06.913 00:05:01.804 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-27 08:32:17.939 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:56850 10 6452 1 2025-11-27 08:29:06.915 00:05:01.800 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-27 08:33:18.356 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:54332 10 6452 1 2025-11-27 08:33:36.246 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-27 08:33:35.960 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 08:33:35.858 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 08:33:35.913 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 08:33:36.162 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 08:34:18.762 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:56960 10 6452 1 2025-11-27 08:35:19.173 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:42668 10 6452 1 2025-11-27 08:36:19.580 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:48046 10 6452 1 2025-11-27 08:37:19.983 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:58272 10 6452 1 2025-11-27 08:34:06.913 00:05:01.805 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-27 08:38:36.210 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-27 08:38:20.391 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50262 10 6452 1 2025-11-27 08:38:36.215 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 08:38:36.120 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 08:38:36.258 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 08:38:36.126 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 08:35:06.917 00:05:01.799 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-27 08:39:20.794 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57904 10 6452 1 2025-11-27 08:40:21.201 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:39486 10 6452 1 2025-11-27 08:41:21.596 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55910 10 6452 1 2025-11-27 08:42:22.001 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:34498 10 6452 1 2025-11-27 08:43:22.401 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38478 10 6452 1 2025-11-27 08:43:36.558 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-27 08:43:36.413 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 08:43:36.416 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 08:43:36.495 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 08:43:36.476 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 08:40:06.915 00:05:01.808 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-27 08:44:22.807 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36692 10 6452 1 2025-11-27 08:41:06.918 00:05:01.803 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-27 08:45:23.211 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:37692 10 6452 1 2025-11-27 08:46:23.617 00:00:10.439 TCP 1.101.0.1:3000 -> 23.104.0.1:54476 12 10375 1 2025-11-27 08:47:24.116 00:00:10.717 TCP 1.101.0.1:3000 -> 23.104.0.1:43674 10 6452 1 2025-11-27 08:48:36.371 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-27 08:48:36.278 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 08:48:36.407 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 08:48:36.378 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 08:48:24.869 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:37146 10 6452 1 2025-11-27 08:48:36.289 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 08:49:25.280 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35422 10 6452 1 2025-11-27 08:46:06.919 00:05:01.806 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-27 08:50:25.680 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44344 10 6452 1 2025-11-27 08:47:06.922 00:05:01.801 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-27 08:51:26.108 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:33532 10 6452 1 2025-11-27 08:52:26.479 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36148 10 6452 1 2025-11-27 08:53:36.479 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 08:53:36.523 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 08:53:26.883 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:41764 10 6452 1 2025-11-27 08:53:36.479 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 08:53:36.528 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 08:53:36.610 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-27 08:54:27.241 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:33416 10 6452 1 2025-11-27 08:55:27.639 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:44752 10 6452 1 2025-11-27 08:52:06.919 00:05:01.807 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-27 08:56:28.066 00:00:10.417 TCP 1.101.0.1:3000 -> 23.104.0.1:57846 11 6504 1 2025-11-27 08:53:06.922 00:05:01.802 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-27 08:57:28.526 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44524 10 6452 1 2025-11-27 08:58:36.528 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 08:58:36.452 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 08:58:36.609 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 08:58:36.527 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 08:58:28.930 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:56424 10 6452 1 2025-11-27 08:58:36.608 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 Summary: total flows: 140, total bytes: 425002, total packets: 1027, avg bps: 936, avg pps: 0, avg bpp: 413 Time window: 2025-11-27 07:58:06 - 2025-11-27 08:58:39 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0030s User: 0.0020s Wall: 0.0014s flows/second: 98260.1 Runtime: 0.0014s