Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-25 03:58:44.949 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:47106 10 6452 1 2025-11-25 03:59:45.354 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:34304 10 6452 1 2025-11-25 04:00:45.718 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:53582 10 6452 1 2025-11-25 04:01:46.137 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:56326 10 6452 1 2025-11-25 03:58:05.892 00:05:01.108 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 03:58:05.895 00:05:01.102 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 04:02:32.979 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 04:02:32.929 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 04:02:32.715 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 04:02:32.894 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 04:02:32.850 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 04:02:46.498 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:51704 10 6452 1 2025-11-25 04:03:46.866 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39542 10 6452 1 2025-11-25 04:04:47.270 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:55196 10 6452 1 2025-11-25 04:05:47.675 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57706 10 6452 1 2025-11-25 04:06:48.107 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42030 10 6452 1 2025-11-25 04:07:32.756 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 04:07:32.602 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 04:07:32.842 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 04:07:32.830 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 04:07:32.926 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 04:07:48.515 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49560 10 6452 1 2025-11-25 04:04:05.896 00:05:01.101 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 04:04:05.895 00:05:01.107 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 04:08:48.916 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:51260 10 6452 1 2025-11-25 04:09:49.278 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39198 10 6452 1 2025-11-25 04:10:49.685 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47766 10 6452 1 2025-11-25 04:11:50.115 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39760 10 6452 1 2025-11-25 04:12:33.226 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 04:12:33.341 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 04:12:33.241 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 04:12:33.359 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 04:12:33.325 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 04:12:50.517 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:45280 10 6452 1 2025-11-25 04:13:50.920 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57320 10 6452 1 2025-11-25 04:10:05.895 00:05:01.109 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 04:10:05.898 00:05:01.104 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 04:14:51.320 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:37618 10 6452 1 2025-11-25 04:15:51.724 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:58266 10 6452 1 2025-11-25 04:16:52.132 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:42388 10 6452 1 2025-11-25 04:17:32.989 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 04:17:32.838 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 04:17:32.979 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 04:17:32.975 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 04:17:33.062 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 04:17:52.494 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:44808 10 6452 1 2025-11-25 04:18:52.850 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:52598 10 6452 1 2025-11-25 04:19:53.281 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:53168 10 6452 1 2025-11-25 04:16:05.902 00:05:01.118 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 04:16:05.900 00:05:01.123 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 04:20:53.678 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:34432 10 6452 1 2025-11-25 04:21:54.124 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:55786 10 6452 1 2025-11-25 04:22:33.263 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 04:22:33.180 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 04:22:33.073 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 04:22:33.180 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 04:22:33.238 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 04:22:54.482 00:00:11.308 TCP 1.101.0.1:3000 -> 23.104.0.1:54964 10 6452 1 2025-11-25 04:23:55.835 00:00:10.394 TCP 1.101.0.1:3000 -> 23.104.0.1:53280 10 6452 1 2025-11-25 04:24:56.262 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36582 10 6452 1 2025-11-25 04:22:05.900 00:05:01.134 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 04:25:56.667 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56132 10 6452 1 2025-11-25 04:22:05.903 00:05:01.130 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 04:26:57.084 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:59576 10 6452 1 2025-11-25 04:27:33.468 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 04:27:33.474 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 04:27:33.356 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 04:27:33.386 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 04:27:33.191 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 04:27:57.513 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:45312 10 6452 1 2025-11-25 04:28:57.914 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58094 10 6452 1 2025-11-25 04:29:58.319 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57172 10 6452 1 2025-11-25 04:30:58.724 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:50468 10 6452 1 2025-11-25 04:31:59.144 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:58380 10 6452 1 2025-11-25 04:28:05.906 00:05:01.127 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 04:28:05.904 00:05:01.132 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 04:32:33.459 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 04:32:33.294 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 04:32:33.380 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 04:32:33.377 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 04:32:33.230 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 04:32:59.526 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57614 10 6452 1 2025-11-25 04:33:59.936 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:49508 10 6452 1 2025-11-25 04:35:00.361 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:43460 10 6452 1 2025-11-25 04:36:00.725 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:41984 10 6452 1 2025-11-25 04:37:01.142 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40052 10 6452 1 2025-11-25 04:37:33.517 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 04:37:33.497 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 04:37:33.310 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 04:37:33.434 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 04:37:33.426 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 04:34:05.909 00:05:01.126 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 04:34:05.907 00:05:01.131 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 04:38:01.546 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:51906 10 6452 1 2025-11-25 04:39:01.908 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:37528 12 6556 1 2025-11-25 04:40:02.318 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56300 10 6452 1 2025-11-25 04:41:02.725 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:40506 10 6452 1 2025-11-25 04:42:03.133 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34950 10 6452 1 2025-11-25 04:42:33.526 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 04:42:33.530 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 04:42:33.686 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 04:42:33.372 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 04:42:33.608 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 04:43:03.534 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42636 10 6452 1 2025-11-25 04:40:05.914 00:05:01.129 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 04:40:05.913 00:05:01.134 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 04:44:03.936 00:00:10.436 TCP 1.101.0.1:3000 -> 23.104.0.1:46320 10 6452 1 2025-11-25 04:45:04.415 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60812 10 6452 1 2025-11-25 04:46:04.819 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:51954 10 6452 1 2025-11-25 04:47:05.188 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:53492 10 6452 1 2025-11-25 04:47:33.886 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 04:47:33.729 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 04:47:33.698 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 04:47:33.802 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 04:47:33.565 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 04:48:05.604 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37718 10 6452 1 2025-11-25 04:49:06.009 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:34852 10 6452 1 2025-11-25 04:46:05.913 00:05:01.138 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 04:46:05.916 00:05:01.133 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 04:50:06.430 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:41216 10 6452 1 2025-11-25 04:51:06.794 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:48374 10 6452 1 2025-11-25 04:52:07.239 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51202 10 6452 1 2025-11-25 04:52:33.720 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 04:52:33.543 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 04:52:33.947 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 04:52:33.886 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 04:52:34.032 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 04:53:07.648 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:53774 10 6452 1 2025-11-25 04:54:08.022 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57632 10 6452 1 2025-11-25 04:55:08.425 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:55140 10 6452 1 2025-11-25 04:52:05.917 00:05:01.133 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 04:52:05.914 00:05:01.137 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 04:56:08.830 00:00:10.728 TCP 1.101.0.1:3000 -> 23.104.0.1:37152 10 6452 1 2025-11-25 04:57:09.596 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38138 10 6452 1 2025-11-25 04:57:34.012 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 04:57:33.987 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 04:57:33.685 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 04:57:33.928 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 04:57:33.922 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 04:58:09.997 00:00:10.414 TCP 1.101.0.1:3000 -> 23.104.0.1:34006 11 6504 1 Summary: total flows: 140, total bytes: 417156, total packets: 1023, avg bps: 923, avg pps: 0, avg bpp: 407 Time window: 2025-11-25 03:58:05 - 2025-11-25 04:58:20 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0054s User: 0.0000s Wall: 0.0019s flows/second: 75147.5 Runtime: 0.0019s