Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-25 06:59:01.422 00:00:11.093 TCP 1.101.0.1:3000 -> 23.104.0.1:38108 10 6452 1 2025-11-25 07:00:02.555 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42936 10 6452 1 2025-11-25 07:01:02.957 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:55198 10 6452 1 2025-11-25 06:58:05.960 00:05:01.152 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 06:58:05.963 00:05:01.147 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 07:02:03.371 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:34394 10 6452 1 2025-11-25 07:02:36.355 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 07:02:36.389 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 07:02:36.543 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 07:02:36.361 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 07:02:36.626 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 07:03:03.769 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:49556 10 6452 1 2025-11-25 07:04:04.179 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56098 10 6452 1 2025-11-25 07:05:04.582 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:33064 10 6452 1 2025-11-25 07:06:04.952 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:55422 10 6452 1 2025-11-25 07:07:05.323 00:00:10.417 TCP 1.101.0.1:3000 -> 23.104.0.1:42164 11 6504 1 2025-11-25 07:07:36.511 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 07:07:36.643 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 07:07:36.483 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 07:07:36.429 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 07:07:36.629 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 07:04:05.963 00:05:01.149 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 07:04:05.960 00:05:01.153 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 07:08:05.778 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:38072 10 6452 1 2025-11-25 07:09:06.186 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:46702 10 6452 1 2025-11-25 07:10:06.558 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:33338 10 6452 1 2025-11-25 07:11:06.916 00:00:10.355 TCP 1.101.0.1:3000 -> 23.104.0.1:49916 10 6452 1 2025-11-25 07:12:07.307 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40122 10 6452 1 2025-11-25 07:12:36.688 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 07:12:36.522 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 07:12:36.550 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 07:12:36.553 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 07:12:36.634 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 07:13:07.708 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:54888 10 6452 1 2025-11-25 07:10:05.964 00:05:01.150 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 07:10:05.967 00:05:01.145 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 07:14:08.114 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56104 10 6452 1 2025-11-25 07:15:08.515 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:42908 10 6452 1 2025-11-25 07:16:08.924 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52578 10 6452 1 2025-11-25 07:17:09.331 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:52766 10 6452 1 2025-11-25 07:17:37.055 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 07:17:37.090 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 07:17:36.944 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 07:17:37.066 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 07:17:37.026 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 07:18:09.694 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:43880 10 6452 1 2025-11-25 07:19:10.067 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47638 10 6452 1 2025-11-25 07:16:05.968 00:05:01.153 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 07:16:05.971 00:05:01.148 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 07:20:10.470 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:52130 10 6452 1 2025-11-25 07:21:10.872 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:50710 10 6452 1 2025-11-25 07:22:11.283 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:58458 10 6452 1 2025-11-25 07:22:37.144 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 07:22:36.880 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 07:22:36.799 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 07:22:37.062 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 07:22:37.102 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 07:23:11.686 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:59582 10 6452 1 2025-11-25 07:24:12.135 00:00:10.670 TCP 1.101.0.1:3000 -> 23.104.0.1:49162 10 6452 1 2025-11-25 07:25:12.852 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:50154 10 6452 1 2025-11-25 07:22:05.968 00:05:01.154 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 07:22:05.971 00:05:01.149 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 07:26:13.274 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39910 10 6452 1 2025-11-25 07:27:13.683 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:58616 10 6452 1 2025-11-25 07:27:36.751 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 07:27:36.933 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 07:27:36.821 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 07:27:36.814 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 07:27:37.017 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 07:28:14.047 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:36392 10 6452 1 2025-11-25 07:29:14.449 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:41220 10 6452 1 2025-11-25 07:30:14.834 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:54406 10 6452 1 2025-11-25 07:31:15.260 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:43480 10 6452 1 2025-11-25 07:28:05.973 00:05:01.148 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 07:28:05.971 00:05:01.153 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 07:32:15.667 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54700 10 6452 1 2025-11-25 07:32:36.863 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 07:32:37.008 00:00:00.042 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 07:32:36.990 00:00:00.049 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 07:32:36.989 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 07:32:37.073 00:00:00.048 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 07:33:16.089 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33164 10 6452 1 2025-11-25 07:34:16.493 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:42132 10 6452 1 2025-11-25 07:35:16.890 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:49120 12 6556 1 2025-11-25 07:36:17.318 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49926 10 6452 1 2025-11-25 07:37:17.724 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:43964 10 6452 1 2025-11-25 07:37:36.940 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 07:37:36.823 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 07:37:37.260 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 07:37:37.088 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 07:37:37.344 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 07:34:05.972 00:05:01.154 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 07:34:05.974 00:05:01.150 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 07:38:18.139 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33286 10 6452 1 2025-11-25 07:39:18.545 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43846 10 6452 1 2025-11-25 07:40:18.951 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45726 10 6452 1 2025-11-25 07:41:19.356 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:50322 10 6452 1 2025-11-25 07:42:19.760 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:57146 10 6452 1 2025-11-25 07:42:37.241 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 07:42:37.305 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 07:42:37.261 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 07:42:37.409 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 07:42:37.500 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 07:43:20.177 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:52798 10 6452 1 2025-11-25 07:40:05.975 00:05:01.150 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 07:40:05.972 00:05:01.155 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 07:44:20.542 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49858 10 6452 1 2025-11-25 07:45:20.951 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36998 10 6452 1 2025-11-25 07:46:21.360 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49054 10 6452 1 2025-11-25 07:47:21.760 00:00:10.529 TCP 1.101.0.1:3000 -> 23.104.0.1:54110 10 6452 1 2025-11-25 07:47:37.204 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 07:47:37.310 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 07:47:37.331 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 07:47:37.275 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 07:47:37.414 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 07:48:22.324 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:53798 10 6452 1 2025-11-25 07:49:22.728 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:39730 10 6452 1 2025-11-25 07:46:05.975 00:05:01.152 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 07:46:05.972 00:05:01.157 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 07:50:23.132 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60340 10 6452 1 2025-11-25 07:51:23.535 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57004 10 6452 1 2025-11-25 07:52:23.938 00:00:10.401 TCP 1.101.0.1:3000 -> 23.104.0.1:50978 10 6452 1 2025-11-25 07:52:37.263 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 07:52:37.041 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 07:52:37.167 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 07:52:37.470 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 07:52:37.251 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 07:53:24.375 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39918 10 6452 1 2025-11-25 07:54:24.778 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:34336 10 6452 1 2025-11-25 07:55:25.180 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:41792 10 6452 1 2025-11-25 07:52:05.977 00:05:01.157 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 07:52:05.976 00:05:01.162 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 07:56:25.589 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:55892 10 6452 1 2025-11-25 07:57:37.383 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 07:57:37.416 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 07:57:37.382 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 07:57:37.612 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 07:57:26.001 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:46482 10 6452 1 2025-11-25 07:57:37.465 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 07:58:26.408 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:54238 10 6452 1 Summary: total flows: 140, total bytes: 417156, total packets: 1023, avg bps: 919, avg pps: 0, avg bpp: 407 Time window: 2025-11-25 06:58:05 - 2025-11-25 07:58:36 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0031s User: 0.0020s Wall: 0.0020s flows/second: 70458.7 Runtime: 0.0020s