Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-27 08:59:29.343 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36856 10 6452 1 2025-11-27 09:00:29.748 00:00:10.400 TCP 1.101.0.1:3000 -> 23.104.0.1:41868 10 6452 1 2025-11-27 09:01:30.183 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41718 10 6452 1 2025-11-27 08:58:06.921 00:05:01.807 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-27 09:02:30.583 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:52248 10 6452 1 2025-11-27 08:59:06.924 00:05:01.801 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-27 09:03:37.195 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-27 09:03:36.748 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 09:03:37.248 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 09:03:36.548 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 09:03:37.113 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 09:03:30.950 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:59656 10 6452 1 2025-11-27 09:04:31.361 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:35078 10 6452 1 2025-11-27 09:05:31.765 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:42464 10 6452 1 2025-11-27 09:06:32.140 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:53336 10 6452 1 2025-11-27 09:07:32.541 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:42294 10 6452 1 2025-11-27 09:04:06.923 00:05:01.806 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-27 09:08:36.505 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 09:08:36.897 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 09:08:36.859 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 09:08:36.848 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 09:08:36.930 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-27 09:08:32.957 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:41802 10 6452 1 2025-11-27 09:05:06.925 00:05:01.802 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-27 09:09:33.361 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51602 10 6452 1 2025-11-27 09:10:33.764 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:60398 10 6452 1 2025-11-27 09:11:34.180 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41888 10 6452 1 2025-11-27 09:12:34.586 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:57300 10 6452 1 2025-11-27 09:13:36.707 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 09:13:36.866 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 09:13:36.677 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 09:13:36.711 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 09:13:36.795 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-27 09:13:34.989 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53110 10 6452 1 2025-11-27 09:10:06.923 00:05:01.806 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-27 09:14:35.391 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40304 10 6452 1 2025-11-27 09:11:06.925 00:05:01.802 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-27 09:15:35.792 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:53852 10 6452 1 2025-11-27 09:16:36.151 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40210 10 6452 1 2025-11-27 09:17:36.567 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55110 10 6452 1 2025-11-27 09:18:36.882 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-27 09:18:37.079 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 09:18:36.892 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 09:18:36.881 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 09:18:36.800 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 09:18:36.972 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:33764 10 6452 1 2025-11-27 09:19:37.381 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37026 10 6452 1 2025-11-27 09:16:06.924 00:05:01.807 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-27 09:20:37.785 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:46516 10 6452 1 2025-11-27 09:17:06.927 00:05:01.801 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-27 09:21:38.202 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:52592 10 6452 1 2025-11-27 09:22:38.568 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:51398 10 6452 1 2025-11-27 09:23:37.437 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-27 09:23:37.354 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 09:23:36.931 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 09:23:37.342 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 09:23:37.170 00:00:00.031 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 09:23:38.975 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57610 10 6452 1 2025-11-27 09:24:39.374 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35298 10 6452 1 2025-11-27 09:25:39.779 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:33364 10 6452 1 2025-11-27 09:22:06.926 00:05:01.808 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-27 09:26:40.153 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41028 10 6452 1 2025-11-27 09:23:06.928 00:05:01.804 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-27 09:27:40.557 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33888 10 6452 1 2025-11-27 09:28:37.185 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 09:28:37.295 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 09:28:36.971 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 09:28:37.177 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 09:28:37.261 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-27 09:28:40.966 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59140 10 6452 1 2025-11-27 09:29:41.373 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:36972 10 6452 1 2025-11-27 09:30:41.781 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:38728 10 6452 1 2025-11-27 09:31:42.192 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:58716 10 6452 1 2025-11-27 09:28:06.926 00:05:01.810 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-27 09:32:42.600 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50860 10 6452 1 2025-11-27 09:29:06.928 00:05:01.804 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-27 09:33:37.286 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-27 09:33:37.141 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 09:33:37.207 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 09:33:36.913 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 09:33:37.203 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 09:33:43.004 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:60756 10 6452 1 2025-11-27 09:34:43.363 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55490 10 6452 1 2025-11-27 09:35:43.764 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:45968 10 6452 1 2025-11-27 09:36:44.194 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:47730 10 6452 1 2025-11-27 09:37:44.590 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:44162 10 6452 1 2025-11-27 09:34:06.937 00:05:01.804 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-27 09:38:37.407 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 09:38:37.077 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 09:38:37.120 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 09:38:37.355 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 09:38:37.438 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-27 09:38:44.996 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41944 10 6452 1 2025-11-27 09:35:06.937 00:05:01.805 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-27 09:39:45.396 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:37764 10 6452 1 2025-11-27 09:40:45.796 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:41470 10 6452 1 2025-11-27 09:41:46.163 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51012 10 6452 1 2025-11-27 09:42:46.569 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:33826 10 6452 1 2025-11-27 09:43:37.606 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-27 09:43:37.364 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 09:43:37.434 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 09:43:37.402 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 09:43:37.524 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 09:43:46.930 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:38562 10 6452 1 2025-11-27 09:40:06.937 00:05:01.812 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-27 09:44:47.353 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44250 10 6452 1 2025-11-27 09:41:06.939 00:05:01.806 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-27 09:45:47.759 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:34648 10 6452 1 2025-11-27 09:46:48.170 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:54204 10 6452 1 2025-11-27 09:47:48.587 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:33528 10 6452 1 2025-11-27 09:48:37.430 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-27 09:48:37.254 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 09:48:37.347 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 09:48:37.455 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 09:48:37.622 00:00:00.052 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 09:48:48.986 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:33452 10 6452 1 2025-11-27 09:49:49.365 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:59590 10 6452 1 2025-11-27 09:46:06.939 00:05:01.814 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-27 09:50:49.725 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:45600 10 6452 1 2025-11-27 09:47:06.941 00:05:01.809 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-27 09:51:50.143 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:52722 10 6452 1 2025-11-27 09:52:50.546 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:60620 10 6452 1 2025-11-27 09:53:37.548 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 09:53:37.442 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 09:53:37.399 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 09:53:37.546 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 09:53:37.630 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-27 09:53:50.948 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:34106 10 6452 1 2025-11-27 09:54:51.321 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:44230 10 6452 1 2025-11-27 09:55:51.693 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:55706 10 6452 1 2025-11-27 09:52:06.939 00:05:01.815 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-27 09:56:52.112 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:46968 10 6452 1 2025-11-27 09:53:06.941 00:05:01.811 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-27 09:57:52.516 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:35162 10 6452 1 2025-11-27 09:58:37.558 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 09:58:37.560 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 09:58:37.416 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 09:58:37.559 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 09:58:37.641 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 Summary: total flows: 139, total bytes: 410548, total packets: 1010, avg bps: 904, avg pps: 0, avg bpp: 406 Time window: 2025-11-27 08:58:06 - 2025-11-27 09:58:37 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0052s User: 0.0009s Wall: 0.0021s flows/second: 67673.6 Runtime: 0.0021s