Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-27 15:59:29.350 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50774 10 6452 1 2025-11-27 16:00:29.757 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:58274 10 6452 1 2025-11-27 16:01:30.183 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46466 10 6452 1 2025-11-27 15:58:07.103 00:05:01.879 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-27 16:02:30.578 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:59366 10 6452 1 2025-11-27 15:59:07.107 00:05:01.873 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-27 16:03:30.982 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:46248 10 6452 1 2025-11-27 16:03:45.038 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 16:03:45.132 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 16:03:44.982 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 16:03:45.044 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 16:03:45.128 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-27 16:04:31.393 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57194 10 6452 1 2025-11-27 16:05:31.798 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49992 10 6452 1 2025-11-27 16:06:32.201 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:48420 12 6556 1 2025-11-27 16:07:32.603 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54332 10 6452 1 2025-11-27 16:04:07.105 00:05:01.878 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-27 16:08:45.346 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-27 16:08:45.127 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 16:08:33.009 00:00:12.403 TCP 1.101.0.1:3000 -> 23.104.0.1:45552 10 6452 1 2025-11-27 16:08:45.258 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 16:08:45.110 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 16:08:45.264 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 16:05:07.108 00:05:01.873 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-27 16:09:35.450 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45496 10 6452 1 2025-11-27 16:10:35.856 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:45592 10 6452 1 2025-11-27 16:11:36.276 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:52752 10 6452 1 2025-11-27 16:12:36.647 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:53538 10 6452 1 2025-11-27 16:13:45.675 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-27 16:13:45.403 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 16:13:45.554 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 16:13:45.406 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 16:13:37.057 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:55146 10 6452 1 2025-11-27 16:13:45.592 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 16:10:07.107 00:05:01.879 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-27 16:14:37.465 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36722 10 6452 1 2025-11-27 16:11:07.110 00:05:01.874 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-27 16:15:37.865 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:44644 10 6452 1 2025-11-27 16:16:38.281 00:00:10.400 TCP 1.101.0.1:3000 -> 23.104.0.1:54568 12 10369 1 2025-11-27 16:17:38.722 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:37676 10 6452 1 2025-11-27 16:18:45.299 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 16:18:45.211 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 16:18:45.010 00:00:00.043 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 16:18:39.158 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41840 10 6452 1 2025-11-27 16:18:45.384 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 16:18:45.466 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-27 16:19:39.566 00:00:10.582 TCP 1.101.0.1:3000 -> 23.104.0.1:35168 10 6452 1 2025-11-27 16:16:07.110 00:05:01.878 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-27 16:20:40.190 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55848 10 6452 1 2025-11-27 16:17:07.113 00:05:01.872 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-27 16:21:40.591 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:40990 10 6452 1 2025-11-27 16:22:40.991 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:43106 10 6452 1 2025-11-27 16:23:45.746 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-27 16:23:45.642 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 16:23:45.598 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 16:23:45.242 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 16:23:45.662 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 16:23:41.395 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54584 10 6452 1 2025-11-27 16:24:41.798 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34836 10 6452 1 2025-11-27 16:25:42.200 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:57120 10 6452 1 2025-11-27 16:22:07.111 00:05:01.879 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-27 16:26:42.602 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:36570 10 6452 1 2025-11-27 16:23:07.113 00:05:01.874 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-27 16:27:43.011 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60992 10 6452 1 2025-11-27 16:28:45.557 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 16:28:45.570 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 16:28:45.518 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 16:28:45.567 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 16:28:45.650 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-27 16:28:43.415 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41518 10 6452 1 2025-11-27 16:29:43.820 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:50268 10 6452 1 2025-11-27 16:30:44.218 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60538 10 6452 1 2025-11-27 16:31:44.632 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51248 10 6452 1 2025-11-27 16:28:07.111 00:05:01.881 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-27 16:32:45.034 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:36732 10 6452 1 2025-11-27 16:29:07.113 00:05:01.875 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-27 16:33:45.681 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-27 16:33:45.779 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 16:33:45.598 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 16:33:45.454 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 16:33:45.598 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 16:33:45.436 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36988 10 6452 1 2025-11-27 16:34:45.842 00:00:10.350 TCP 1.101.0.1:3000 -> 23.104.0.1:57894 10 6452 1 2025-11-27 16:35:46.230 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:48846 10 6452 1 2025-11-27 16:36:46.670 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:47434 10 6452 1 2025-11-27 16:37:47.094 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:39684 10 6452 1 2025-11-27 16:34:07.112 00:05:01.883 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-27 16:38:45.871 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-27 16:38:45.785 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 16:38:45.719 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 16:38:45.776 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 16:38:45.788 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 16:38:47.491 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48080 10 6452 1 2025-11-27 16:35:07.115 00:05:01.877 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-27 16:39:47.898 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:40116 12 6556 1 2025-11-27 16:40:48.338 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:47372 10 6452 1 2025-11-27 16:41:48.704 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42064 10 6452 1 2025-11-27 16:42:49.118 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53756 10 6452 1 2025-11-27 16:43:46.050 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-27 16:43:46.181 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 16:43:46.103 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 16:43:46.129 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 16:43:45.969 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 16:43:49.536 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:48964 10 6452 1 2025-11-27 16:40:07.113 00:05:01.885 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-27 16:44:49.906 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:57004 10 6452 1 2025-11-27 16:41:07.114 00:05:01.880 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-27 16:45:50.275 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35586 10 6452 1 2025-11-27 16:46:50.678 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:57960 10 6452 1 2025-11-27 16:47:51.112 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:47446 10 6452 1 2025-11-27 16:48:46.060 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 16:48:45.820 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 16:48:45.812 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 16:48:45.973 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 16:48:46.055 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-27 16:48:51.469 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:43724 10 6452 1 2025-11-27 16:49:51.882 00:00:10.417 TCP 1.101.0.1:3000 -> 23.104.0.1:45246 11 6504 1 2025-11-27 16:46:07.113 00:05:01.885 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-27 16:50:52.334 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:45676 10 6452 1 2025-11-27 16:47:07.115 00:05:01.881 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-27 16:51:52.742 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:34116 10 6452 1 2025-11-27 16:52:53.150 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:52508 10 6452 1 2025-11-27 16:53:46.105 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 16:53:46.167 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 16:53:45.927 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 16:53:45.993 00:00:00.031 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 16:53:46.076 00:00:00.031 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-27 16:53:53.555 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:54064 10 6452 1 2025-11-27 16:54:53.954 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:49504 10 6452 1 2025-11-27 16:55:54.361 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:48922 10 6452 1 2025-11-27 16:52:07.115 00:05:01.889 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-27 16:53:07.118 00:05:01.882 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-27 16:56:54.774 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:52764 10 6452 1 2025-11-27 16:57:55.143 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:51776 10 6452 1 2025-11-27 16:58:46.275 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-27 16:58:46.186 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 16:58:46.121 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 16:58:45.911 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 16:58:46.193 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 Summary: total flows: 139, total bytes: 414725, total packets: 1017, avg bps: 911, avg pps: 0, avg bpp: 407 Time window: 2025-11-27 15:58:07 - 2025-11-27 16:58:46 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0044s User: 0.0018s Wall: 0.0028s flows/second: 50324.4 Runtime: 0.0028s