Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-25 12:59:31.672 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52192 10 6452 1 2025-11-25 13:00:32.108 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41698 10 6452 1 2025-11-25 13:01:32.515 00:00:10.438 TCP 1.101.0.1:3000 -> 23.104.0.1:43750 12 10375 1 2025-11-25 12:58:06.111 00:05:01.195 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 12:58:06.113 00:05:01.190 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 13:02:43.859 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 13:02:32.992 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:51588 10 6452 1 2025-11-25 13:02:43.729 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 13:02:43.710 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 13:02:43.777 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 13:02:43.774 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 13:03:33.378 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:59134 10 6452 1 2025-11-25 13:04:33.776 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:42942 10 6452 1 2025-11-25 13:05:34.188 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40070 10 6452 1 2025-11-25 13:06:34.593 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58972 10 6452 1 2025-11-25 13:07:43.814 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 13:07:43.803 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 13:07:43.878 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 13:07:43.882 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 13:07:34.996 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37190 10 6452 1 2025-11-25 13:07:43.962 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 13:04:06.112 00:05:01.204 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 13:04:06.110 00:05:01.209 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 13:08:35.400 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:56364 10 6452 1 2025-11-25 13:09:35.765 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:34586 10 6452 1 2025-11-25 13:10:36.186 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:51962 10 6452 1 2025-11-25 13:11:36.547 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:49678 10 6452 1 2025-11-25 13:12:43.913 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 13:12:43.832 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 13:12:43.797 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 13:12:43.830 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 13:12:43.773 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 13:12:36.949 00:00:10.345 TCP 1.101.0.1:3000 -> 23.104.0.1:49298 10 6452 1 2025-11-25 13:13:37.329 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:45920 10 6452 1 2025-11-25 13:10:06.111 00:05:01.231 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 13:10:06.113 00:05:01.226 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 13:14:37.741 00:00:10.404 TCP 1.101.0.1:3000 -> 23.104.0.1:40802 10 6452 1 2025-11-25 13:15:38.187 00:00:10.395 TCP 1.101.0.1:3000 -> 23.104.0.1:35898 10 6452 1 2025-11-25 13:16:38.621 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34126 10 6452 1 2025-11-25 13:17:43.885 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 13:17:43.717 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 13:17:43.881 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 13:17:43.900 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 13:17:43.965 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 13:17:39.024 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41512 10 6452 1 2025-11-25 13:18:39.425 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:42972 10 6452 1 2025-11-25 13:19:39.825 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:44990 10 6452 1 2025-11-25 13:16:06.115 00:05:01.226 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 13:16:06.112 00:05:01.231 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 13:20:40.231 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:57840 10 6452 1 2025-11-25 13:21:40.592 00:00:10.437 TCP 1.101.0.1:3000 -> 23.104.0.1:46494 12 10369 1 2025-11-25 13:22:44.088 00:00:00.034 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 13:22:43.959 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 13:22:44.006 00:00:00.033 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 13:22:44.084 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 13:22:44.128 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 13:22:41.102 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56662 10 6452 1 2025-11-25 13:23:41.509 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:47480 10 6452 1 2025-11-25 13:24:41.913 00:00:10.506 TCP 1.101.0.1:3000 -> 23.104.0.1:43878 10 6452 1 2025-11-25 13:25:42.467 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33736 10 6452 1 2025-11-25 13:22:06.116 00:05:01.228 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 13:22:06.113 00:05:01.234 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 13:26:42.874 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41800 10 6452 1 2025-11-25 13:27:44.217 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 13:27:44.164 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 13:27:44.355 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 13:27:44.408 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 13:27:44.437 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 13:27:43.279 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:48188 10 6452 1 2025-11-25 13:28:43.647 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45142 10 6452 1 2025-11-25 13:29:44.063 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48744 10 6452 1 2025-11-25 13:30:44.465 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:58860 10 6452 1 2025-11-25 13:31:44.829 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:49328 10 6452 1 2025-11-25 13:28:06.115 00:05:01.241 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 13:28:06.119 00:05:01.235 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 13:32:44.319 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 13:32:44.145 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 13:32:44.195 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 13:32:44.237 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 13:32:44.369 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 13:32:45.236 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46326 10 6452 1 2025-11-25 13:33:45.634 00:00:10.610 TCP 1.101.0.1:3000 -> 23.104.0.1:33446 10 6452 1 2025-11-25 13:34:46.280 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:51520 10 6452 1 2025-11-25 13:35:46.645 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:46206 10 6452 1 2025-11-25 13:36:47.059 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57600 10 6452 1 2025-11-25 13:37:44.367 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 13:37:44.112 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 13:37:44.181 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 13:37:44.185 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 13:37:44.263 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 13:37:47.460 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:33052 10 6452 1 2025-11-25 13:34:06.117 00:05:01.239 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 13:34:06.121 00:05:01.233 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 13:38:47.863 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:35302 10 6452 1 2025-11-25 13:39:48.281 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:51482 10 6452 1 2025-11-25 13:40:48.689 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38644 10 6452 1 2025-11-25 13:41:49.107 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:39798 10 6452 1 2025-11-25 13:42:44.589 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 13:42:44.216 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 13:42:44.393 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 13:42:44.376 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 13:42:44.478 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 13:42:49.509 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:60858 10 6452 1 2025-11-25 13:43:49.926 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:41780 10 6452 1 2025-11-25 13:40:06.120 00:05:01.237 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 13:40:06.123 00:05:01.232 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 13:44:50.343 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39442 10 6452 1 2025-11-25 13:45:50.750 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40600 10 6452 1 2025-11-25 13:46:51.153 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44792 10 6452 1 2025-11-25 13:47:44.489 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 13:47:44.422 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 13:47:44.649 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 13:47:44.649 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 13:47:44.733 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 13:47:51.559 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:59748 10 6452 1 2025-11-25 13:48:51.920 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:37184 10 6452 1 2025-11-25 13:49:52.342 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:40102 10 6452 1 2025-11-25 13:46:06.122 00:05:01.245 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 13:46:06.124 00:05:01.239 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 13:50:52.704 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:59860 10 6452 1 2025-11-25 13:51:53.120 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:34414 10 6452 1 2025-11-25 13:52:44.852 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 13:52:44.530 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 13:52:44.897 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 13:52:44.799 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 13:52:44.979 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 13:52:53.479 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:56412 10 6452 1 2025-11-25 13:53:53.845 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:49446 10 6452 1 2025-11-25 13:54:54.266 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:36528 10 6452 1 2025-11-25 13:55:54.628 00:00:10.436 TCP 1.101.0.1:3000 -> 23.104.0.1:60970 13 13955 1 2025-11-25 13:52:06.124 00:05:01.244 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 13:52:06.128 00:05:01.239 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 13:56:55.111 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:39284 10 6452 1 2025-11-25 13:57:44.917 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 13:57:44.815 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 13:57:44.706 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 13:57:44.621 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 13:57:45.000 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 13:57:55.472 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:42860 10 6452 1 Summary: total flows: 139, total bytes: 425891, total packets: 1017, avg bps: 946, avg pps: 0, avg bpp: 418 Time window: 2025-11-25 12:58:06 - 2025-11-25 13:58:05 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0033s User: 0.0017s Wall: 0.0020s flows/second: 69125.9 Runtime: 0.0020s