Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-25 08:58:50.571 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:42062 10 6452 1 2025-11-25 08:59:50.983 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:58324 10 6452 1 2025-11-25 09:00:51.403 00:00:10.443 TCP 1.101.0.1:3000 -> 23.104.0.1:39858 12 10375 1 2025-11-25 09:01:51.878 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:40456 10 6452 1 2025-11-25 08:58:06.003 00:05:01.177 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 08:58:06.001 00:05:01.182 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 09:02:38.801 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 09:02:38.580 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 09:02:38.792 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 09:02:38.923 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 09:02:38.874 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 09:02:52.277 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:49232 10 6452 1 2025-11-25 09:03:52.680 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53516 10 6452 1 2025-11-25 09:04:53.112 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53884 10 6452 1 2025-11-25 09:05:53.517 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:35458 10 6452 1 2025-11-25 09:06:53.931 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:60690 10 6452 1 2025-11-25 09:07:38.981 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 09:07:38.895 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 09:07:38.853 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 09:07:38.900 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 09:07:38.894 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 09:04:06.029 00:05:01.173 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 09:07:54.345 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46322 10 6452 1 2025-11-25 09:04:06.030 00:05:01.168 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 09:08:54.748 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:45036 12 6556 1 2025-11-25 09:09:55.154 00:00:10.922 TCP 1.101.0.1:3000 -> 23.104.0.1:58804 10 6452 1 2025-11-25 09:10:56.112 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:60982 10 6452 1 2025-11-25 09:11:56.518 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:39376 10 6452 1 2025-11-25 09:12:38.986 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 09:12:39.116 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 09:12:38.987 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 09:12:38.903 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 09:12:39.117 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 09:12:56.925 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:42372 10 6452 1 2025-11-25 09:10:06.039 00:05:01.166 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 09:13:57.290 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:45298 10 6452 1 2025-11-25 09:10:06.040 00:05:01.161 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 09:14:57.693 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:47482 10 6452 1 2025-11-25 09:15:58.067 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39832 10 6452 1 2025-11-25 09:16:58.471 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:58158 10 6452 1 2025-11-25 09:17:38.886 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 09:17:39.113 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 09:17:39.009 00:00:00.041 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 09:17:38.803 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 09:17:39.109 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 09:17:58.867 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:48300 10 6452 1 2025-11-25 09:18:59.278 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50064 10 6452 1 2025-11-25 09:16:06.039 00:05:01.166 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 09:19:59.679 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:55624 10 6452 1 2025-11-25 09:16:06.042 00:05:01.161 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 09:21:00.105 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:44608 10 6452 1 2025-11-25 09:22:00.513 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:45708 10 6452 1 2025-11-25 09:22:39.148 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 09:22:39.056 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 09:22:39.280 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 09:22:39.271 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 09:22:39.364 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 09:23:00.886 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:57448 12 6556 1 2025-11-25 09:24:01.306 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:56440 10 6452 1 2025-11-25 09:25:01.713 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:49166 10 6452 1 2025-11-25 09:22:06.040 00:05:01.170 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 09:22:06.043 00:05:01.164 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 09:26:02.150 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43240 10 6452 1 2025-11-25 09:27:02.555 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:57546 10 6452 1 2025-11-25 09:27:39.633 00:00:00.026 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 09:27:39.604 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 09:27:39.422 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 09:27:39.550 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 09:27:39.547 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 09:28:02.964 00:00:10.416 TCP 1.101.0.1:3000 -> 23.104.0.1:34724 11 6504 1 2025-11-25 09:29:03.421 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:49872 10 6452 1 2025-11-25 09:30:03.796 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:37374 10 6452 1 2025-11-25 09:31:04.204 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:34856 10 6452 1 2025-11-25 09:28:06.045 00:05:01.163 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 09:28:06.043 00:05:01.167 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 09:32:04.607 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:44626 10 6452 1 2025-11-25 09:32:39.457 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 09:32:39.333 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 09:32:39.393 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 09:32:39.459 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 09:32:39.476 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 09:33:05.012 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38318 10 6452 1 2025-11-25 09:34:05.416 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:42360 10 6452 1 2025-11-25 09:35:05.819 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:33750 10 6452 1 2025-11-25 09:36:06.226 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:55148 10 6452 1 2025-11-25 09:37:06.629 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58446 10 6452 1 2025-11-25 09:37:39.534 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 09:37:39.451 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 09:37:39.355 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 09:37:39.532 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 09:37:39.677 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 09:34:06.046 00:05:01.164 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 09:34:06.049 00:05:01.158 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 09:38:07.031 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33982 10 6452 1 2025-11-25 09:39:07.433 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:39380 10 6452 1 2025-11-25 09:40:07.805 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:49500 10 6452 1 2025-11-25 09:41:08.208 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:33320 10 6452 1 2025-11-25 09:42:08.605 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:33074 10 6452 1 2025-11-25 09:42:39.753 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 09:42:39.594 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 09:42:39.451 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 09:42:39.671 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 09:42:39.667 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 09:43:09.016 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:53858 10 6452 1 2025-11-25 09:40:06.050 00:05:01.165 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 09:40:06.047 00:05:01.178 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 09:44:09.421 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43172 10 6452 1 2025-11-25 09:45:09.827 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41998 10 6452 1 2025-11-25 09:46:10.229 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:40346 10 6452 1 2025-11-25 09:47:10.627 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36436 10 6452 1 2025-11-25 09:47:39.724 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 09:47:39.510 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 09:47:39.457 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 09:47:39.658 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 09:47:39.540 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 09:48:11.035 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46768 10 6452 1 2025-11-25 09:49:11.442 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:60372 10 6452 1 2025-11-25 09:46:06.048 00:05:01.164 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 09:46:06.052 00:05:01.159 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 09:50:11.803 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37852 10 6452 1 2025-11-25 09:51:12.205 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46960 10 6452 1 2025-11-25 09:52:12.605 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:56086 10 6452 1 2025-11-25 09:52:39.863 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 09:52:39.934 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 09:52:39.780 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 09:52:39.781 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 09:52:39.883 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 09:53:12.971 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:50200 10 6452 1 2025-11-25 09:54:13.380 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:52380 10 6452 1 2025-11-25 09:55:13.782 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54658 10 6452 1 2025-11-25 09:52:06.050 00:05:01.167 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 09:52:06.053 00:05:01.162 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 09:56:14.190 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:47522 10 6452 1 2025-11-25 09:57:14.554 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:54440 10 6452 1 2025-11-25 09:57:39.900 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 09:57:40.009 00:00:00.042 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 09:57:39.903 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 09:57:40.102 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 09:57:39.985 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 09:58:14.959 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:49196 10 6452 1 Summary: total flows: 140, total bytes: 421183, total packets: 1027, avg bps: 930, avg pps: 0, avg bpp: 410 Time window: 2025-11-25 08:58:06 - 2025-11-25 09:58:25 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0036s User: 0.0027s Wall: 0.0020s flows/second: 68928.6 Runtime: 0.0020s