Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-27 17:59:21.759 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:53906 10 6452 1 2025-11-27 18:00:22.129 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52080 10 6452 1 2025-11-27 18:01:22.535 00:00:10.487 TCP 1.101.0.1:3000 -> 23.104.0.1:36478 12 10375 1 2025-11-27 17:58:07.144 00:05:01.920 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-27 18:02:23.065 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54660 10 6452 1 2025-11-27 17:59:07.145 00:05:01.916 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-27 18:03:23.469 00:00:10.316 TCP 1.101.0.1:3000 -> 23.104.0.1:53266 10 6452 1 2025-11-27 18:03:47.641 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-27 18:03:47.400 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 18:03:47.552 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 18:03:47.488 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 18:03:47.557 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 18:04:23.828 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:55574 10 6452 1 2025-11-27 18:05:24.229 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52666 10 6452 1 2025-11-27 18:06:24.631 00:00:10.394 TCP 1.101.0.1:3000 -> 23.104.0.1:41684 11 6504 1 2025-11-27 18:07:25.085 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:34680 10 6452 1 2025-11-27 18:04:07.144 00:05:01.922 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-27 18:08:25.496 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:49252 10 6452 1 2025-11-27 18:08:47.517 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 18:08:47.689 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 18:08:47.594 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 18:08:47.668 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 18:08:47.750 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-27 18:05:07.146 00:05:01.917 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-27 18:09:25.864 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:53378 10 6452 1 2025-11-27 18:10:26.279 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:37934 10 6452 1 2025-11-27 18:11:26.639 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:59748 10 6452 1 2025-11-27 18:12:26.994 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:38040 10 6452 1 2025-11-27 18:13:27.391 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:44676 10 6452 1 2025-11-27 18:13:48.329 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-27 18:13:48.007 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 18:13:48.157 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 18:13:47.856 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 18:13:48.247 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 18:10:07.145 00:05:01.923 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-27 18:14:27.793 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:44004 10 6452 1 2025-11-27 18:11:07.149 00:05:01.918 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-27 18:15:28.200 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43486 10 6452 1 2025-11-27 18:16:28.610 00:00:10.442 TCP 1.101.0.1:3000 -> 23.104.0.1:56376 12 10375 1 2025-11-27 18:17:29.110 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:59824 10 6452 1 2025-11-27 18:18:29.476 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56280 10 6452 1 2025-11-27 18:18:47.838 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 18:18:47.834 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 18:18:47.716 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 18:18:47.845 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 18:18:47.928 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-27 18:19:29.879 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40526 10 6452 1 2025-11-27 18:16:07.146 00:05:01.924 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-27 18:20:30.282 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40296 10 6452 1 2025-11-27 18:17:07.148 00:05:01.919 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-27 18:21:30.686 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:47010 10 6452 1 2025-11-27 18:22:31.104 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:55308 10 6452 1 2025-11-27 18:23:31.471 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:56248 10 6452 1 2025-11-27 18:23:47.901 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-27 18:23:47.961 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 18:23:48.237 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 18:23:47.844 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 18:23:47.818 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 18:24:31.840 00:00:10.353 TCP 1.101.0.1:3000 -> 23.104.0.1:47182 10 6452 1 2025-11-27 18:25:32.238 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:50636 10 6452 1 2025-11-27 18:22:07.150 00:05:01.930 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-27 18:26:32.637 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:56896 10 6452 1 2025-11-27 18:23:07.154 00:05:01.922 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-27 18:27:33.059 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:36354 10 6452 1 2025-11-27 18:28:33.460 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50070 10 6452 1 2025-11-27 18:28:48.094 00:00:00.042 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-27 18:28:48.010 00:00:00.044 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 18:28:48.114 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 18:28:47.871 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 18:28:48.013 00:00:00.041 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 18:29:33.862 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:52896 10 6452 1 2025-11-27 18:30:34.278 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:50030 10 6452 1 2025-11-27 18:31:34.691 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:44362 10 6452 1 2025-11-27 18:28:07.154 00:05:01.927 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-27 18:32:35.114 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34256 10 6452 1 2025-11-27 18:29:07.156 00:05:01.923 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-27 18:33:48.172 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-27 18:33:48.092 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 18:33:48.082 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 18:33:48.190 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 18:33:35.517 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:48406 10 6452 1 2025-11-27 18:33:48.090 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 18:34:35.876 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:45356 10 6452 1 2025-11-27 18:35:36.279 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44810 10 6452 1 2025-11-27 18:36:36.682 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:35204 10 6452 1 2025-11-27 18:37:37.119 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39696 10 6452 1 2025-11-27 18:34:07.156 00:05:01.935 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-27 18:38:48.411 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-27 18:38:48.253 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 18:38:48.254 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 18:38:48.199 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 18:38:48.328 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 18:38:37.522 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:43570 10 6452 1 2025-11-27 18:35:07.158 00:05:01.930 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-27 18:39:37.947 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:54204 10 6452 1 2025-11-27 18:40:38.325 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36188 10 6452 1 2025-11-27 18:41:38.726 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36378 10 6452 1 2025-11-27 18:42:39.133 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:50736 10 6452 1 2025-11-27 18:43:48.118 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 18:43:48.447 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 18:43:48.250 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 18:43:39.543 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:57078 10 6452 1 2025-11-27 18:43:48.395 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 18:43:48.478 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-27 18:40:07.157 00:05:01.934 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-27 18:44:39.964 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:41770 10 6452 1 2025-11-27 18:41:07.160 00:05:01.929 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-27 18:45:40.325 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44918 10 6452 1 2025-11-27 18:46:40.729 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56234 10 6452 1 2025-11-27 18:47:41.135 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49380 10 6452 1 2025-11-27 18:48:48.786 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 18:48:48.705 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 18:48:48.713 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 18:48:48.476 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 18:48:48.559 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-27 18:48:41.538 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:50542 10 6452 1 2025-11-27 18:49:41.904 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:53708 12 6556 1 2025-11-27 18:46:07.159 00:05:01.938 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-27 18:50:42.313 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:53350 10 6452 1 2025-11-27 18:47:07.161 00:05:01.933 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-27 18:51:42.719 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:60884 10 6452 1 2025-11-27 18:52:43.111 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47842 10 6452 1 2025-11-27 18:53:48.595 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-27 18:53:48.308 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 18:53:48.521 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 18:53:48.520 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 18:53:48.512 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 18:53:43.513 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59604 10 6452 1 2025-11-27 18:54:43.917 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49190 10 6452 1 2025-11-27 18:55:44.322 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:49884 10 6452 1 2025-11-27 18:52:07.162 00:05:01.936 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-27 18:56:44.733 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:55190 10 6452 1 2025-11-27 18:53:07.163 00:05:01.931 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-27 18:57:45.158 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:55620 10 6452 1 2025-11-27 18:58:48.707 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-27 18:58:48.346 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 18:58:48.347 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 18:58:48.522 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 18:58:48.625 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 Summary: total flows: 139, total bytes: 418550, total packets: 1017, avg bps: 919, avg pps: 0, avg bpp: 411 Time window: 2025-11-27 17:58:07 - 2025-11-27 18:58:48 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0040s User: 0.0010s Wall: 0.0020s flows/second: 71063.9 Runtime: 0.0020s