Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-24 23:58:55.005 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:34522 10 6870 1 2025-11-24 23:59:55.367 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43626 10 6870 1 2025-11-25 00:00:55.774 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:48820 10 6870 1 2025-11-24 23:58:05.816 00:05:01.063 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 00:01:56.156 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45000 10 6870 1 2025-11-24 23:58:05.817 00:05:01.059 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 00:02:28.306 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 00:02:28.259 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 00:02:28.062 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 00:02:28.223 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 00:02:28.172 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 00:02:56.569 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:56462 10 6870 1 2025-11-25 00:03:56.990 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:56410 10 6870 1 2025-11-25 00:04:57.365 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43494 10 6870 1 2025-11-25 00:05:57.768 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:39478 10 6870 1 2025-11-25 00:06:58.190 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:46550 10 6870 1 2025-11-25 00:07:28.218 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 00:07:28.131 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 00:07:27.972 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 00:07:28.135 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 00:07:27.989 00:00:00.051 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 00:04:05.817 00:05:01.069 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 00:07:58.598 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41990 10 6870 1 2025-11-25 00:04:05.821 00:05:01.063 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 00:08:59.003 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55876 10 6870 1 2025-11-25 00:09:59.404 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58446 10 6870 1 2025-11-25 00:10:59.814 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:42328 10 6870 1 2025-11-25 00:12:00.225 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:47910 10 6870 1 2025-11-25 00:12:28.271 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 00:12:28.270 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 00:12:28.260 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 00:12:27.937 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 00:12:28.190 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 00:13:00.625 00:00:11.840 TCP 1.101.0.1:3000 -> 23.104.0.1:39076 10 6870 1 2025-11-25 00:10:05.825 00:05:01.060 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 00:10:05.822 00:05:01.065 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 00:14:02.502 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:37130 10 6870 1 2025-11-25 00:15:02.868 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:35280 10 6870 1 2025-11-25 00:16:03.281 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:55190 10 6870 1 2025-11-25 00:17:03.648 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45192 10 6870 1 2025-11-25 00:17:28.304 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 00:17:28.339 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 00:17:28.475 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 00:17:28.393 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 00:17:28.558 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 00:18:04.065 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53358 10 6870 1 2025-11-25 00:19:04.470 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36508 10 6870 1 2025-11-25 00:16:05.824 00:05:01.064 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 00:16:05.827 00:05:01.059 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 00:20:04.876 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:58716 10 6870 1 2025-11-25 00:21:05.290 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:39632 10 6870 1 2025-11-25 00:22:05.698 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:60854 10 6870 1 2025-11-25 00:22:28.289 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 00:22:28.128 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 00:22:28.299 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 00:22:28.344 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 00:22:28.381 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 00:23:06.071 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:47684 10 6870 1 2025-11-25 00:24:06.440 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51420 10 6870 1 2025-11-25 00:25:06.850 00:00:10.394 TCP 1.101.0.1:3000 -> 23.104.0.1:35510 10 6870 1 2025-11-25 00:22:05.830 00:05:01.060 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 00:22:05.826 00:05:01.065 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 00:26:07.285 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:42774 10 6870 1 2025-11-25 00:27:07.687 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:50170 10 6870 1 2025-11-25 00:27:28.421 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 00:27:28.355 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 00:27:28.332 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 00:27:28.313 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 00:27:28.416 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 00:28:08.110 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34132 10 6870 1 2025-11-25 00:29:08.514 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:51092 10 6870 1 2025-11-25 00:30:08.885 00:00:10.347 TCP 1.101.0.1:3000 -> 23.104.0.1:55032 10 6870 1 2025-11-25 00:31:09.272 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:46108 10 6870 1 2025-11-25 00:28:05.827 00:05:01.066 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 00:28:05.830 00:05:01.061 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 00:32:09.636 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:57582 10 6870 1 2025-11-25 00:32:28.573 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 00:32:28.603 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 00:32:28.580 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 00:32:28.503 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 00:32:28.664 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 00:33:10.043 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:44232 10 6870 1 2025-11-25 00:34:10.447 00:00:11.884 TCP 1.101.0.1:3000 -> 23.104.0.1:54976 10 6870 1 2025-11-25 00:35:12.370 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:60004 10 6870 1 2025-11-25 00:36:12.726 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:34364 10 6870 1 2025-11-25 00:37:13.115 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41910 10 6870 1 2025-11-25 00:37:28.690 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 00:37:28.644 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 00:37:28.777 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 00:37:28.498 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 00:37:28.860 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 00:34:05.827 00:05:01.076 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 00:34:05.830 00:05:01.064 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 00:38:13.521 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:54984 10 6870 1 2025-11-25 00:39:13.923 00:00:10.761 TCP 1.101.0.1:3000 -> 23.104.0.1:53104 10 6870 1 2025-11-25 00:40:14.723 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:36612 10 6870 1 2025-11-25 00:41:15.140 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60800 10 6870 1 2025-11-25 00:42:15.540 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52228 10 6870 1 2025-11-25 00:42:28.721 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 00:42:28.801 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 00:42:28.742 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 00:42:28.639 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 00:42:28.736 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 00:43:15.946 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:49330 10 6870 1 2025-11-25 00:40:05.828 00:05:01.068 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 00:40:05.833 00:05:01.063 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 00:44:16.350 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47640 10 6870 1 2025-11-25 00:45:16.757 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:42872 10 6870 1 2025-11-25 00:46:17.140 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:54572 10 6870 1 2025-11-25 00:47:28.815 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 00:47:28.831 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 00:47:28.815 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 00:47:28.741 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 00:47:17.546 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57350 10 6870 1 2025-11-25 00:47:28.899 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 00:48:17.948 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:34454 10 6870 1 2025-11-25 00:49:18.360 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:36178 10 6870 1 2025-11-25 00:46:05.832 00:05:01.067 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 00:46:05.829 00:05:01.073 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 00:50:18.719 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:60454 10 6870 1 2025-11-25 00:51:19.116 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58668 10 6870 1 2025-11-25 00:52:29.008 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 00:52:28.961 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 00:52:28.812 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 00:52:19.524 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46552 10 6870 1 2025-11-25 00:52:28.925 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 00:52:28.921 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 00:53:19.926 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:35674 10 6870 1 2025-11-25 00:54:20.348 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54950 10 6870 1 2025-11-25 00:55:20.752 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:45234 10 6870 1 2025-11-25 00:52:05.833 00:05:01.067 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 00:52:05.831 00:05:01.073 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 00:56:21.117 00:00:10.456 TCP 1.101.0.1:3000 -> 23.104.0.1:35592 14 10479 1 2025-11-25 00:57:29.155 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 00:57:29.122 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 00:57:28.935 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 00:57:29.073 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 00:57:29.120 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 00:57:21.613 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:59754 10 6452 1 2025-11-25 00:58:22.015 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:35820 10 6452 1 Summary: total flows: 140, total bytes: 444853, total packets: 1024, avg bps: 981, avg pps: 0, avg bpp: 434 Time window: 2025-11-24 23:58:05 - 2025-11-25 00:58:32 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0080s User: 0.0010s Wall: 0.0017s flows/second: 81920.0 Runtime: 0.0017s