Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-25 15:58:45.307 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:35136 10 6452 1 2025-11-25 15:59:45.716 00:00:10.539 TCP 1.101.0.1:3000 -> 23.104.0.1:33766 10 6452 1 2025-11-25 16:00:46.293 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:40230 10 6452 1 2025-11-25 16:01:46.701 00:00:10.448 TCP 1.101.0.1:3000 -> 23.104.0.1:55460 12 10369 1 2025-11-25 15:58:06.160 00:05:01.272 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 15:58:06.165 00:05:01.266 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 16:02:47.157 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 16:02:47.118 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 16:02:47.288 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 16:02:47.228 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 16:02:47.371 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 16:02:47.183 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37852 10 6452 1 2025-11-25 16:03:47.586 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:46848 10 6452 1 2025-11-25 16:04:47.952 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:44870 10 6452 1 2025-11-25 16:05:48.377 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44820 10 6452 1 2025-11-25 16:06:48.777 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36890 10 6452 1 2025-11-25 16:07:48.069 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 16:07:47.941 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 16:07:48.115 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 16:07:47.980 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 16:07:48.197 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 16:07:49.185 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:35456 10 6452 1 2025-11-25 16:04:06.175 00:05:01.266 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 16:04:06.173 00:05:01.271 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 16:08:49.590 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49050 10 6452 1 2025-11-25 16:09:49.994 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:38944 10 6452 1 2025-11-25 16:10:50.357 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41298 10 6452 1 2025-11-25 16:11:50.766 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53906 10 6452 1 2025-11-25 16:12:47.503 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 16:12:47.466 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 16:12:47.502 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 16:12:47.292 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 16:12:47.584 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 16:12:51.170 00:00:10.494 TCP 1.101.0.1:3000 -> 23.104.0.1:60758 10 6452 1 2025-11-25 16:13:51.703 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56504 10 6452 1 2025-11-25 16:10:06.178 00:05:01.276 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 16:10:06.174 00:05:01.281 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 16:14:52.115 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57166 10 6452 1 2025-11-25 16:15:52.520 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:44006 10 6452 1 2025-11-25 16:16:52.925 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:34004 10 6452 1 2025-11-25 16:17:47.420 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 16:17:47.450 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 16:17:47.530 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 16:17:47.624 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 16:17:47.614 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 16:17:53.344 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60858 10 6452 1 2025-11-25 16:18:53.753 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:54686 10 6452 1 2025-11-25 16:19:54.172 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:48194 10 6452 1 2025-11-25 16:16:06.174 00:05:01.282 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 16:16:06.177 00:05:01.276 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 16:20:54.541 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:38202 10 6452 1 2025-11-25 16:21:54.960 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:41962 10 6452 1 2025-11-25 16:22:47.715 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 16:22:47.633 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 16:22:47.752 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 16:22:47.633 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 16:22:47.452 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 16:22:55.367 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:58900 10 6452 1 2025-11-25 16:23:55.774 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:39912 10 6452 1 2025-11-25 16:24:56.178 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60220 10 6452 1 2025-11-25 16:25:56.582 00:00:10.568 TCP 1.101.0.1:3000 -> 23.104.0.1:53078 10 6452 1 2025-11-25 16:22:06.178 00:05:01.276 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 16:22:06.176 00:05:01.281 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 16:26:57.184 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54156 10 6452 1 2025-11-25 16:27:48.077 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 16:27:47.908 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 16:27:48.085 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 16:27:47.958 00:00:00.048 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 16:27:48.167 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 16:27:57.589 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:34482 10 6452 1 2025-11-25 16:28:57.953 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:35830 10 6452 1 2025-11-25 16:29:58.322 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41434 10 6452 1 2025-11-25 16:30:58.720 00:00:10.509 TCP 1.101.0.1:3000 -> 23.104.0.1:56390 14 10473 1 2025-11-25 16:28:06.177 00:05:01.288 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 16:31:59.267 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:35888 10 6452 1 2025-11-25 16:28:06.180 00:05:01.282 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 16:32:47.825 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 16:32:47.530 00:00:00.033 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 16:32:47.922 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 16:32:48.086 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 16:32:48.005 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 16:32:59.634 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56946 10 6452 1 2025-11-25 16:34:00.035 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:56416 10 6452 1 2025-11-25 16:35:00.395 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43950 10 6452 1 2025-11-25 16:36:00.805 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:35168 10 6452 1 2025-11-25 16:37:01.211 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37238 10 6452 1 2025-11-25 16:37:48.058 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 16:37:47.977 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 16:37:47.761 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 16:37:47.975 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 16:37:47.978 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 16:34:06.179 00:05:01.288 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 16:34:06.181 00:05:01.283 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 16:38:01.619 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50614 10 6452 1 2025-11-25 16:39:02.024 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:44688 10 6452 1 2025-11-25 16:40:02.422 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44208 10 6452 1 2025-11-25 16:41:02.827 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41156 10 6452 1 2025-11-25 16:42:03.229 00:00:10.968 TCP 1.101.0.1:3000 -> 23.104.0.1:56224 10 6452 1 2025-11-25 16:42:48.189 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 16:42:48.131 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 16:42:48.127 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 16:42:47.935 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 16:42:48.271 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 16:43:04.235 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58882 10 6452 1 2025-11-25 16:40:06.184 00:05:01.283 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 16:40:06.181 00:05:01.288 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 16:44:04.637 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:32946 10 6452 1 2025-11-25 16:45:05.031 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:52008 10 6452 1 2025-11-25 16:46:05.440 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:35236 10 6452 1 2025-11-25 16:47:05.844 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:55652 10 6452 1 2025-11-25 16:47:48.411 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 16:47:48.462 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 16:47:48.419 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 16:47:48.542 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 16:47:48.503 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 16:48:06.251 00:00:10.720 TCP 1.101.0.1:3000 -> 23.104.0.1:58530 10 6452 1 2025-11-25 16:49:07.020 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39428 10 6452 1 2025-11-25 16:46:06.184 00:05:01.283 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 16:46:06.182 00:05:01.288 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 16:50:07.425 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:54798 10 6452 1 2025-11-25 16:51:07.845 00:00:10.345 TCP 1.101.0.1:3000 -> 23.104.0.1:51750 10 6452 1 2025-11-25 16:52:08.238 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:35534 10 6452 1 2025-11-25 16:52:48.364 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 16:52:48.289 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 16:52:48.038 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 16:52:48.282 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 16:52:48.286 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 16:53:08.603 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47552 10 6452 1 2025-11-25 16:54:09.006 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:43912 10 6452 1 2025-11-25 16:55:09.365 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60830 10 6452 1 2025-11-25 16:52:06.187 00:05:01.281 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 16:52:06.185 00:05:01.286 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 16:56:09.770 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:48542 10 6452 1 2025-11-25 16:57:10.182 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:59910 10 6452 1 2025-11-25 16:57:48.214 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 16:57:48.273 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 16:57:48.321 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 16:57:48.596 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 16:57:48.404 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 16:58:10.602 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56504 10 6452 1 Summary: total flows: 140, total bytes: 424938, total packets: 1026, avg bps: 940, avg pps: 0, avg bpp: 414 Time window: 2025-11-25 15:58:06 - 2025-11-25 16:58:20 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0038s User: 0.0009s Wall: 0.0013s flows/second: 106396.6 Runtime: 0.0013s