Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-25 04:59:10.453 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:59188 10 6452 1 2025-11-25 05:00:10.814 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:34640 10 6452 1 2025-11-25 05:01:11.220 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50080 10 6452 1 2025-11-25 04:58:05.922 00:05:01.130 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 04:58:05.919 00:05:01.135 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 05:02:11.625 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58954 10 6452 1 2025-11-25 05:02:34.199 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 05:02:33.979 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 05:02:34.053 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 05:02:34.117 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 05:02:33.973 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 05:03:12.026 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41498 10 6452 1 2025-11-25 05:04:12.431 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:38520 10 6452 1 2025-11-25 05:05:12.831 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:47714 10 6452 1 2025-11-25 05:06:13.250 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:60462 10 6452 1 2025-11-25 05:07:13.668 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33862 10 6452 1 2025-11-25 05:07:34.254 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 05:07:34.231 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 05:07:33.976 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 05:07:34.171 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 05:07:34.126 00:00:00.026 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 05:04:05.923 00:05:01.134 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 05:04:05.925 00:05:01.129 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 05:08:14.095 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:48878 10 6452 1 2025-11-25 05:09:14.498 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:49078 10 6452 1 2025-11-25 05:10:14.902 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:48538 10 6452 1 2025-11-25 05:11:15.312 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:35642 10 6452 1 2025-11-25 05:12:15.717 00:00:10.681 TCP 1.101.0.1:3000 -> 23.104.0.1:51794 10 6452 1 2025-11-25 05:12:34.338 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 05:12:34.305 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 05:12:34.080 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 05:12:34.255 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 05:12:34.259 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 05:13:16.435 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:40756 10 6452 1 2025-11-25 05:10:05.927 00:05:01.138 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 05:10:05.924 00:05:01.143 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 05:14:16.801 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34250 10 6452 1 2025-11-25 05:15:17.204 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:39882 10 6452 1 2025-11-25 05:16:17.579 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46558 10 6452 1 2025-11-25 05:17:17.981 00:00:10.342 TCP 1.101.0.1:3000 -> 23.104.0.1:35614 10 6452 1 2025-11-25 05:17:34.210 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 05:17:34.351 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 05:17:34.321 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 05:17:34.128 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 05:17:34.300 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 05:18:18.365 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56852 10 6452 1 2025-11-25 05:19:18.767 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:48196 10 6452 1 2025-11-25 05:16:05.932 00:05:01.126 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 05:16:05.930 00:05:01.131 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 05:20:19.180 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:35868 10 6452 1 2025-11-25 05:21:19.598 00:00:10.971 TCP 1.101.0.1:3000 -> 23.104.0.1:49084 10 6452 1 2025-11-25 05:22:20.602 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:41408 10 6452 1 2025-11-25 05:22:34.153 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 05:22:34.421 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 05:22:34.452 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 05:22:34.572 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 05:22:34.535 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 05:23:21.006 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:37278 10 6452 1 2025-11-25 05:24:21.408 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46876 10 6452 1 2025-11-25 05:25:21.807 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:49428 10 6452 1 2025-11-25 05:22:05.934 00:05:01.126 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 05:22:05.932 00:05:01.130 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 05:26:22.183 00:00:10.438 TCP 1.101.0.1:3000 -> 23.104.0.1:56052 12 10369 1 2025-11-25 05:27:34.863 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 05:27:34.532 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 05:27:34.842 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 05:27:34.781 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 05:27:34.722 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 05:27:22.661 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55022 10 6452 1 2025-11-25 05:28:23.094 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:48706 10 6452 1 2025-11-25 05:29:23.503 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:57294 10 6452 1 2025-11-25 05:30:23.868 00:00:11.034 TCP 1.101.0.1:3000 -> 23.104.0.1:47880 10 6452 1 2025-11-25 05:31:24.939 00:00:10.455 TCP 1.101.0.1:3000 -> 23.104.0.1:37176 12 10369 1 2025-11-25 05:28:05.934 00:05:01.129 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 05:28:05.932 00:05:01.134 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 05:32:34.702 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 05:32:34.571 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 05:32:34.704 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 05:32:34.753 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 05:32:25.431 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45772 10 6452 1 2025-11-25 05:32:34.785 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 05:33:25.836 00:00:10.395 TCP 1.101.0.1:3000 -> 23.104.0.1:42286 10 6452 1 2025-11-25 05:34:26.271 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:46372 10 6452 1 2025-11-25 05:35:26.640 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:60044 10 6452 1 2025-11-25 05:36:27.071 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54458 10 6452 1 2025-11-25 05:37:34.823 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 05:37:34.642 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 05:37:34.789 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 05:37:34.751 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 05:37:34.871 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 05:37:27.488 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:46170 10 6452 1 2025-11-25 05:34:05.933 00:05:01.135 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 05:34:05.936 00:05:01.130 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 05:38:27.897 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:38974 10 6452 1 2025-11-25 05:39:28.305 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:32886 10 6452 1 2025-11-25 05:40:28.705 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:56842 10 6452 1 2025-11-25 05:41:29.123 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:38760 10 6452 1 2025-11-25 05:42:34.852 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 05:42:34.640 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 05:42:34.853 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 05:42:34.626 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 05:42:34.935 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 05:42:29.524 00:00:10.415 TCP 1.101.0.1:3000 -> 23.104.0.1:37896 11 6504 1 2025-11-25 05:43:29.983 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:51756 10 6452 1 2025-11-25 05:40:05.933 00:05:01.137 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 05:40:05.937 00:05:01.132 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 05:44:30.401 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36460 10 6452 1 2025-11-25 05:45:30.806 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43434 10 6452 1 2025-11-25 05:46:31.215 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:60576 10 6452 1 2025-11-25 05:47:34.807 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 05:47:34.850 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 05:47:34.724 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 05:47:34.847 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 05:47:34.599 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 05:47:31.641 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:33524 10 6452 1 2025-11-25 05:48:32.010 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:58516 10 6452 1 2025-11-25 05:49:32.371 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:32866 10 6452 1 2025-11-25 05:46:05.937 00:05:01.132 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 05:46:05.934 00:05:01.138 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 05:50:32.784 00:00:10.346 TCP 1.101.0.1:3000 -> 23.104.0.1:44746 10 6452 1 2025-11-25 05:51:33.170 00:00:10.436 TCP 1.101.0.1:3000 -> 23.104.0.1:37304 12 10375 1 2025-11-25 05:52:34.904 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 05:52:34.550 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 05:52:35.096 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 05:52:34.900 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 05:52:35.179 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 05:52:33.646 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:50954 10 6452 1 2025-11-25 05:53:34.092 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45498 12 6556 1 2025-11-25 05:54:34.491 00:00:10.709 TCP 1.101.0.1:3000 -> 23.104.0.1:48486 10 6452 1 2025-11-25 05:55:35.239 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:41004 10 6452 1 2025-11-25 05:52:05.938 00:05:01.139 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 05:52:05.935 00:05:01.144 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 05:56:35.640 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:56440 10 6452 1 2025-11-25 05:57:35.132 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 05:57:35.147 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 05:57:34.787 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 05:57:35.049 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 05:57:35.195 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 05:57:36.067 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:36978 10 6452 1 2025-11-25 05:58:36.425 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:60746 10 6452 1 Summary: total flows: 140, total bytes: 428913, total packets: 1029, avg bps: 942, avg pps: 0, avg bpp: 416 Time window: 2025-11-25 04:58:05 - 2025-11-25 05:58:46 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0033s User: 0.0022s Wall: 0.0025s flows/second: 56004.1 Runtime: 0.0025s