Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-25 14:59:20.470 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:38986 10 6452 1 2025-11-25 15:00:20.831 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57726 10 6452 1 2025-11-25 15:01:21.227 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:41172 10 6452 1 2025-11-25 14:58:06.142 00:05:01.256 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 14:58:06.140 00:05:01.261 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 15:02:21.643 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44332 10 6452 1 2025-11-25 15:02:45.814 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 15:02:46.243 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 15:02:46.241 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 15:02:46.238 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 15:02:46.325 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 15:03:22.065 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60188 10 6452 1 2025-11-25 15:04:22.473 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:50860 10 6452 1 2025-11-25 15:05:22.890 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:48980 12 6556 1 2025-11-25 15:06:23.313 00:00:10.414 TCP 1.101.0.1:3000 -> 23.104.0.1:38580 11 6504 1 2025-11-25 15:07:23.765 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:55036 10 6452 1 2025-11-25 15:07:46.373 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 15:07:46.232 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 15:07:46.094 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 15:07:46.289 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 15:07:46.004 00:00:00.047 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 15:04:06.144 00:05:01.258 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 15:04:06.141 00:05:01.263 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 15:08:24.186 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:57930 10 6452 1 2025-11-25 15:09:24.597 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:41232 10 6452 1 2025-11-25 15:10:25.015 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60824 10 6452 1 2025-11-25 15:11:25.418 00:00:10.445 TCP 1.101.0.1:3000 -> 23.104.0.1:56066 12 10375 1 2025-11-25 15:12:25.905 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41156 10 6452 1 2025-11-25 15:12:46.238 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 15:12:46.244 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 15:12:46.423 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 15:12:46.394 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 15:12:46.506 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 15:13:26.306 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:42726 10 6452 1 2025-11-25 15:10:06.145 00:05:01.262 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 15:10:06.143 00:05:01.267 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 15:14:26.711 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:54962 10 6452 1 2025-11-25 15:15:27.123 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:51004 10 6452 1 2025-11-25 15:16:27.531 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:40674 10 6452 1 2025-11-25 15:17:27.900 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:48010 10 6452 1 2025-11-25 15:17:46.363 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 15:17:46.146 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 15:17:46.432 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 15:17:46.436 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 15:17:46.516 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 15:18:28.309 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:53310 10 6452 1 2025-11-25 15:19:28.675 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:34930 10 6452 1 2025-11-25 15:16:06.145 00:05:01.265 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 15:16:06.149 00:05:01.260 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 15:20:29.112 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:36718 10 6452 1 2025-11-25 15:21:29.520 00:00:10.436 TCP 1.101.0.1:3000 -> 23.104.0.1:39306 12 10369 1 2025-11-25 15:22:29.999 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:36080 10 6452 1 2025-11-25 15:22:46.446 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 15:22:46.466 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 15:22:46.254 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 15:22:46.453 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 15:22:46.336 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 15:23:30.361 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:45958 10 6452 1 2025-11-25 15:24:30.723 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:37950 10 6452 1 2025-11-25 15:25:31.135 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:45338 10 6452 1 2025-11-25 15:22:06.152 00:05:01.259 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 15:22:06.150 00:05:01.264 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 15:26:31.499 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:60356 10 6452 1 2025-11-25 15:27:31.907 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:35124 10 6452 1 2025-11-25 15:27:46.659 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 15:27:46.383 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 15:27:46.741 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 15:27:46.701 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 15:27:46.822 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 15:28:32.321 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:36796 10 6452 1 2025-11-25 15:29:32.722 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:39916 10 6452 1 2025-11-25 15:30:33.138 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49368 10 6452 1 2025-11-25 15:31:33.539 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:48890 10 6452 1 2025-11-25 15:28:06.150 00:05:01.270 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 15:28:06.153 00:05:01.265 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 15:32:33.907 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:49942 10 6452 1 2025-11-25 15:32:46.747 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 15:32:46.761 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 15:32:46.602 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 15:32:46.664 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 15:32:46.777 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 15:33:34.281 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:56592 10 6452 1 2025-11-25 15:34:34.690 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59016 10 6452 1 2025-11-25 15:35:35.109 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34176 10 6452 1 2025-11-25 15:36:35.514 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43834 10 6452 1 2025-11-25 15:37:35.921 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37630 10 6452 1 2025-11-25 15:37:46.952 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 15:37:46.886 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 15:37:46.840 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 15:37:46.772 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 15:37:46.923 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 15:34:06.156 00:05:01.265 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 15:34:06.152 00:05:01.270 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 15:38:36.328 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47038 10 6452 1 2025-11-25 15:39:36.731 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:48968 10 6452 1 2025-11-25 15:40:37.105 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60178 10 6452 1 2025-11-25 15:41:37.506 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50540 10 6452 1 2025-11-25 15:42:46.844 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 15:42:46.878 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 15:42:37.911 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:43506 10 6452 1 2025-11-25 15:42:46.852 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 15:42:46.761 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 15:42:46.759 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 15:43:38.292 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:35486 10 6452 1 2025-11-25 15:40:06.155 00:05:01.270 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 15:40:06.158 00:05:01.265 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 15:44:38.656 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:48778 10 6452 1 2025-11-25 15:45:39.091 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:40636 10 6452 1 2025-11-25 15:46:39.493 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:40764 10 6452 1 2025-11-25 15:47:46.960 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 15:47:46.960 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 15:47:46.607 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 15:47:46.878 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 15:47:47.058 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 15:47:39.915 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:54590 10 6452 1 2025-11-25 15:48:40.326 00:00:10.690 TCP 1.101.0.1:3000 -> 23.104.0.1:59514 10 6452 1 2025-11-25 15:49:41.067 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50034 10 6452 1 2025-11-25 15:46:06.163 00:05:01.266 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 15:46:06.160 00:05:01.272 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 15:50:41.476 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50734 10 6452 1 2025-11-25 15:51:41.884 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:46232 10 6452 1 2025-11-25 15:52:47.130 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 15:52:47.101 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 15:52:46.991 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 15:52:47.048 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 15:52:47.101 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 15:52:42.335 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:44408 10 6452 1 2025-11-25 15:53:42.697 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36856 10 6452 1 2025-11-25 15:54:43.108 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50484 10 6452 1 2025-11-25 15:55:43.509 00:00:10.804 TCP 1.101.0.1:3000 -> 23.104.0.1:40476 10 6452 1 2025-11-25 15:52:06.163 00:05:01.266 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 15:52:06.159 00:05:01.272 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 15:56:44.357 00:00:10.494 TCP 1.101.0.1:3000 -> 23.104.0.1:36094 10 6452 1 2025-11-25 15:57:46.838 00:00:00.027 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 15:57:47.221 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 15:57:47.095 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 15:57:47.155 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 15:57:47.302 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 15:57:44.891 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:34380 10 6452 1 Summary: total flows: 139, total bytes: 418544, total packets: 1017, avg bps: 932, avg pps: 0, avg bpp: 411 Time window: 2025-11-25 14:58:06 - 2025-11-25 15:57:55 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0054s User: 0.0009s Wall: 0.0019s flows/second: 73159.5 Runtime: 0.0019s