Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-25 02:59:21.027 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:46172 10 6452 1 2025-11-25 03:00:21.388 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:58856 10 6452 1 2025-11-25 03:01:21.747 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53088 10 6452 1 2025-11-25 02:58:05.868 00:05:01.084 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 02:58:05.866 00:05:01.089 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 03:02:31.631 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 03:02:31.833 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 03:02:31.634 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 03:02:31.648 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 03:02:22.149 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51366 10 6452 1 2025-11-25 03:02:31.716 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 03:03:22.555 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49458 10 6452 1 2025-11-25 03:04:22.954 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:46030 10 6452 1 2025-11-25 03:05:23.368 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:55408 10 6452 1 2025-11-25 03:06:23.772 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:50042 10 6452 1 2025-11-25 03:07:31.722 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 03:07:31.517 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 03:07:24.202 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50204 10 6452 1 2025-11-25 03:07:31.389 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 03:07:31.587 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 03:07:31.471 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 03:04:05.869 00:05:01.093 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 03:04:05.871 00:05:01.087 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 03:08:24.609 00:00:10.595 TCP 1.101.0.1:3000 -> 23.104.0.1:43780 10 6452 1 2025-11-25 03:09:25.245 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35044 10 6452 1 2025-11-25 03:10:25.648 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:46376 10 6452 1 2025-11-25 03:11:26.060 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:48868 10 6452 1 2025-11-25 03:12:31.754 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 03:12:31.776 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 03:12:31.618 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 03:12:31.669 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 03:12:31.680 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 03:12:26.470 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:46748 10 6452 1 2025-11-25 03:13:26.877 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:44872 10 6452 1 2025-11-25 03:10:05.872 00:05:01.089 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 03:10:05.869 00:05:01.094 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 03:14:27.236 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:38278 10 6452 1 2025-11-25 03:15:27.705 00:00:10.343 TCP 1.101.0.1:3000 -> 23.104.0.1:34904 10 6452 1 2025-11-25 03:16:28.127 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:56336 10 6452 1 2025-11-25 03:17:32.199 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 03:17:32.239 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 03:17:32.289 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 03:17:32.285 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 03:17:32.374 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 03:17:28.533 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:39318 10 6452 1 2025-11-25 03:18:28.944 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:41714 12 6556 1 2025-11-25 03:19:29.354 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:60460 10 6452 1 2025-11-25 03:16:05.873 00:05:01.090 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 03:16:05.872 00:05:01.095 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 03:20:29.713 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:38502 10 6452 1 2025-11-25 03:21:30.132 00:00:10.456 TCP 1.101.0.1:3000 -> 23.104.0.1:35210 12 10369 1 2025-11-25 03:22:32.069 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 03:22:32.111 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 03:22:31.815 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 03:22:31.986 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 03:22:31.697 00:00:00.026 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 03:22:30.627 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44986 10 6452 1 2025-11-25 03:23:31.032 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56348 10 6452 1 2025-11-25 03:24:31.432 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:46458 10 6452 1 2025-11-25 03:25:31.837 00:00:10.395 TCP 1.101.0.1:3000 -> 23.104.0.1:35644 10 6452 1 2025-11-25 03:22:05.876 00:05:01.088 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 03:22:05.874 00:05:01.093 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 03:26:32.267 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:42284 10 6452 1 2025-11-25 03:27:32.263 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 03:27:32.181 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 03:27:31.734 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 03:27:32.181 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 03:27:31.975 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 03:27:32.627 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:37522 10 6452 1 2025-11-25 03:28:32.994 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52980 10 6452 1 2025-11-25 03:29:33.393 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:34636 10 6452 1 2025-11-25 03:30:33.791 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:54198 10 6452 1 2025-11-25 03:31:34.153 00:00:10.438 TCP 1.101.0.1:3000 -> 23.104.0.1:43654 12 10375 1 2025-11-25 03:28:05.878 00:05:01.089 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 03:28:05.876 00:05:01.093 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 03:32:33.141 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 03:32:33.064 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 03:32:32.877 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 03:32:33.058 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 03:32:33.108 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 03:32:34.627 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:38094 10 6452 1 2025-11-25 03:33:35.034 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60332 10 6452 1 2025-11-25 03:34:35.437 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:50146 10 6452 1 2025-11-25 03:35:35.795 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:47434 10 6452 1 2025-11-25 03:36:36.212 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:47428 10 6452 1 2025-11-25 03:37:32.196 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 03:37:32.210 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 03:37:32.162 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 03:37:32.113 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 03:37:32.110 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 03:37:36.609 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:36442 10 6452 1 2025-11-25 03:34:05.879 00:05:01.088 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 03:34:05.876 00:05:01.093 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 03:38:37.016 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:44514 10 6452 1 2025-11-25 03:39:37.379 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:51336 10 6452 1 2025-11-25 03:40:37.749 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41638 10 6452 1 2025-11-25 03:41:38.152 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:45410 10 6452 1 2025-11-25 03:42:32.456 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 03:42:32.006 00:00:00.031 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 03:42:32.461 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 03:42:32.459 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 03:42:32.543 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 03:42:38.558 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:56052 10 6452 1 2025-11-25 03:43:38.969 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:45030 10 6452 1 2025-11-25 03:40:05.883 00:05:01.110 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 03:40:05.879 00:05:01.115 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 03:44:39.382 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59186 10 6452 1 2025-11-25 03:45:39.786 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:45262 10 6452 1 2025-11-25 03:46:40.147 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:44944 10 6452 1 2025-11-25 03:47:32.470 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 03:47:32.520 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 03:47:32.476 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 03:47:32.380 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 03:47:32.558 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 03:47:40.555 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:38970 10 6452 1 2025-11-25 03:48:40.961 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60696 10 6452 1 2025-11-25 03:49:41.365 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:46618 10 6452 1 2025-11-25 03:46:05.882 00:05:01.112 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 03:46:05.880 00:05:01.117 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 03:50:41.726 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35462 10 6452 1 2025-11-25 03:51:42.131 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43754 10 6452 1 2025-11-25 03:52:32.812 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 03:52:32.495 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 03:52:32.627 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 03:52:32.728 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 03:52:32.683 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 03:52:42.530 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:41450 10 6452 1 2025-11-25 03:53:42.931 00:00:10.401 TCP 1.101.0.1:3000 -> 23.104.0.1:33572 10 6452 1 2025-11-25 03:54:43.363 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:58220 10 6452 1 2025-11-25 03:55:43.731 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:44596 10 6452 1 2025-11-25 03:52:05.885 00:05:01.110 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 03:52:05.882 00:05:01.115 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 03:56:44.140 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41970 10 6452 1 2025-11-25 03:57:32.671 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 03:57:32.617 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 03:57:32.728 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 03:57:32.472 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 03:57:32.811 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 03:57:44.545 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45324 10 6452 1 Summary: total flows: 139, total bytes: 418492, total packets: 1016, avg bps: 932, avg pps: 0, avg bpp: 411 Time window: 2025-11-25 02:58:05 - 2025-11-25 03:57:54 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0019s User: 0.0029s Wall: 0.0023s flows/second: 59758.9 Runtime: 0.0023s