Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-25 01:58:54.921 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:55500 10 6452 1 2025-11-25 01:59:55.326 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:47476 10 6452 1 2025-11-25 02:00:55.688 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:53418 10 6452 1 2025-11-25 02:01:56.118 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:45308 10 6452 1 2025-11-25 01:58:05.851 00:05:01.083 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 01:58:05.848 00:05:01.087 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 02:02:30.346 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 02:02:30.081 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 02:02:30.352 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 02:02:30.402 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 02:02:30.434 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 02:02:56.521 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:56684 10 6452 1 2025-11-25 02:03:56.895 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:34200 12 6556 1 2025-11-25 02:04:57.307 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:49680 10 6452 1 2025-11-25 02:05:57.714 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:59198 12 6556 1 2025-11-25 02:06:58.117 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41712 10 6452 1 2025-11-25 02:07:30.325 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 02:07:30.507 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 02:07:30.475 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 02:07:30.482 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 02:07:30.557 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 02:04:05.848 00:05:01.088 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 02:07:58.521 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:53478 10 6452 1 2025-11-25 02:04:05.852 00:05:01.083 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 02:08:58.920 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51336 10 6452 1 2025-11-25 02:09:59.328 00:00:10.343 TCP 1.101.0.1:3000 -> 23.104.0.1:46366 10 6452 1 2025-11-25 02:10:59.712 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:40332 10 6452 1 2025-11-25 02:12:00.134 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37416 10 6452 1 2025-11-25 02:12:30.715 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 02:12:30.814 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 02:12:30.721 00:00:00.026 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 02:12:30.633 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 02:12:30.810 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 02:13:00.537 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:49092 10 6452 1 2025-11-25 02:10:05.855 00:05:01.082 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 02:10:05.854 00:05:01.087 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 02:14:00.922 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55992 10 6452 1 2025-11-25 02:15:01.324 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37960 10 6452 1 2025-11-25 02:16:01.725 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:52712 10 6452 1 2025-11-25 02:17:02.169 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43260 10 6452 1 2025-11-25 02:17:30.709 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 02:17:30.488 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 02:17:30.546 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 02:17:30.833 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 02:17:30.630 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 02:18:02.574 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48106 10 6452 1 2025-11-25 02:19:02.976 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34408 11 6492 1 2025-11-25 02:16:05.855 00:05:01.085 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 02:16:05.852 00:05:01.090 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 02:20:03.375 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:32976 10 6452 1 2025-11-25 02:21:03.775 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:35746 10 6452 1 2025-11-25 02:22:04.183 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39284 10 6452 1 2025-11-25 02:22:30.875 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 02:22:30.892 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 02:22:30.637 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 02:22:30.793 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 02:22:30.792 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 02:23:04.598 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:41422 10 6452 1 2025-11-25 02:24:04.958 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:37138 10 6452 1 2025-11-25 02:25:05.327 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:45824 10 6452 1 2025-11-25 02:22:05.854 00:05:01.089 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 02:22:05.857 00:05:01.084 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 02:26:05.727 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:40798 10 6452 1 2025-11-25 02:27:06.131 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:42180 10 6452 1 2025-11-25 02:27:30.792 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 02:27:30.870 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 02:27:30.818 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 02:27:30.708 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 02:27:30.877 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 02:28:06.514 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:60350 10 6452 1 2025-11-25 02:29:06.929 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:58118 10 6452 1 2025-11-25 02:30:07.352 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:40636 10 6452 1 2025-11-25 02:31:07.766 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:56104 10 6452 1 2025-11-25 02:28:05.859 00:05:01.083 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 02:28:05.856 00:05:01.089 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 02:32:08.190 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:35116 10 6452 1 2025-11-25 02:32:30.914 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 02:32:30.956 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 02:32:30.950 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 02:32:31.039 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 02:32:31.047 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 02:33:08.589 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:38350 10 6452 1 2025-11-25 02:34:08.953 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:37930 10 6452 1 2025-11-25 02:35:09.361 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:36734 10 6452 1 2025-11-25 02:36:09.767 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:58818 10 6452 1 2025-11-25 02:37:10.149 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38290 10 6452 1 2025-11-25 02:37:30.960 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 02:37:31.043 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 02:37:31.260 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 02:37:31.152 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 02:37:31.344 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 02:34:05.859 00:05:01.087 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 02:34:05.862 00:05:01.083 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 02:38:10.552 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:42948 10 6452 1 2025-11-25 02:39:10.959 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:35714 10 6452 1 2025-11-25 02:40:11.365 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:40876 10 6452 1 2025-11-25 02:41:11.738 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:33484 10 6452 1 2025-11-25 02:42:12.114 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:56232 10 6452 1 2025-11-25 02:42:31.312 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 02:42:31.067 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 02:42:31.158 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 02:42:31.100 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 02:42:31.240 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 02:43:12.477 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:34276 10 6452 1 2025-11-25 02:40:05.862 00:05:01.088 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 02:40:05.864 00:05:01.083 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 02:44:12.892 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:35856 10 6452 1 2025-11-25 02:45:13.300 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:44912 10 6452 1 2025-11-25 02:46:13.703 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:37270 10 6452 1 2025-11-25 02:47:14.117 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:39618 10 6452 1 2025-11-25 02:47:30.970 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 02:47:31.113 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 02:47:31.290 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 02:47:31.201 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 02:47:31.374 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 02:48:14.474 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:41182 10 6452 1 2025-11-25 02:49:14.846 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:36548 10 6452 1 2025-11-25 02:46:05.866 00:05:01.083 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 02:46:05.862 00:05:01.089 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 02:50:15.264 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:36734 10 6452 1 2025-11-25 02:51:15.662 00:00:11.096 TCP 1.101.0.1:3000 -> 23.104.0.1:38704 10 6452 1 2025-11-25 02:52:16.798 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49054 10 6452 1 2025-11-25 02:52:31.384 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 02:52:31.313 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 02:52:31.352 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 02:52:31.302 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 02:52:31.414 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 02:53:17.200 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34968 10 6452 1 2025-11-25 02:54:17.608 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:42466 10 6452 1 2025-11-25 02:55:17.972 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:39414 10 6452 1 2025-11-25 02:52:05.867 00:05:01.084 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 02:52:05.865 00:05:01.089 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 02:56:18.352 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57798 10 6452 1 2025-11-25 02:57:18.756 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:53260 10 6452 1 2025-11-25 02:57:31.633 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 02:57:31.710 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 02:57:31.695 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 02:57:31.696 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 02:57:31.794 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 02:58:19.180 00:00:11.800 TCP 1.101.0.1:3000 -> 23.104.0.1:34632 11 6504 1 Summary: total flows: 140, total bytes: 417300, total packets: 1026, avg bps: 920, avg pps: 0, avg bpp: 406 Time window: 2025-11-25 01:58:05 - 2025-11-25 02:58:30 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0020s User: 0.0029s Wall: 0.0020s flows/second: 68295.3 Runtime: 0.0021s