Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-25 16:59:11.002 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:58986 10 6452 1 2025-11-25 17:00:11.407 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:46786 10 6452 1 2025-11-25 17:01:11.810 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:49162 10 6452 1 2025-11-25 16:58:06.187 00:05:01.286 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 16:58:06.190 00:05:01.280 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 17:02:12.221 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:46264 10 6452 1 2025-11-25 17:02:48.819 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 17:02:48.739 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 17:02:48.697 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 17:02:48.737 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 17:02:48.739 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 17:03:12.591 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38986 10 6452 1 2025-11-25 17:04:12.997 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59618 10 6452 1 2025-11-25 17:05:13.402 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36460 10 6452 1 2025-11-25 17:06:13.806 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59634 10 6452 1 2025-11-25 17:07:14.216 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:39100 10 6452 1 2025-11-25 17:07:48.511 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 17:07:48.507 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 17:07:48.562 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 17:07:48.400 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 17:07:48.645 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 17:04:06.190 00:05:01.284 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 17:04:06.188 00:05:01.290 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 17:08:14.628 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54946 10 6452 1 2025-11-25 17:09:15.051 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48618 10 6452 1 2025-11-25 17:10:15.456 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47402 10 6452 1 2025-11-25 17:11:15.862 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:39318 10 6452 1 2025-11-25 17:12:16.272 00:00:20.337 TCP 1.101.0.1:3000 -> 23.104.0.1:34122 10 6452 1 2025-11-25 17:12:48.710 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 17:12:48.330 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 17:12:48.548 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 17:12:48.649 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 17:12:48.630 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 17:13:26.667 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49538 10 6452 1 2025-11-25 17:10:06.192 00:05:01.284 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 17:10:06.189 00:05:01.289 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 17:14:27.098 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:38890 10 6452 1 2025-11-25 17:15:27.461 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:46684 10 6452 1 2025-11-25 17:16:27.856 00:00:10.347 TCP 1.101.0.1:3000 -> 23.104.0.1:51544 10 6452 1 2025-11-25 17:17:28.238 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:57070 10 6452 1 2025-11-25 17:17:48.739 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 17:17:48.543 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 17:17:48.874 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 17:17:48.738 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 17:17:48.956 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 17:18:28.637 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:58316 10 6452 1 2025-11-25 17:19:28.998 00:00:10.640 TCP 1.101.0.1:3000 -> 23.104.0.1:54184 10 6452 1 2025-11-25 17:16:06.194 00:05:01.283 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 17:16:06.191 00:05:01.289 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 17:20:29.673 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:40284 10 6452 1 2025-11-25 17:21:30.108 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:49440 10 6452 1 2025-11-25 17:22:30.509 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:43536 10 6452 1 2025-11-25 17:22:48.917 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 17:22:48.983 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 17:22:49.004 00:00:00.029 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 17:22:48.835 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 17:22:48.839 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 17:23:30.885 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:41958 12 6556 1 2025-11-25 17:24:31.305 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41646 10 6452 1 2025-11-25 17:25:31.702 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46672 10 6452 1 2025-11-25 17:22:06.192 00:05:01.289 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 17:22:06.196 00:05:01.283 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 17:26:32.108 00:00:10.440 TCP 1.101.0.1:3000 -> 23.104.0.1:44416 12 10375 1 2025-11-25 17:27:32.586 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:60632 10 6452 1 2025-11-25 17:27:49.237 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 17:27:49.218 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 17:27:49.241 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 17:27:49.424 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 17:27:49.323 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 17:28:32.997 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48144 10 6452 1 2025-11-25 17:29:33.402 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58318 10 6452 1 2025-11-25 17:30:33.808 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:34956 10 6452 1 2025-11-25 17:31:34.228 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:59184 10 6452 1 2025-11-25 17:28:06.194 00:05:01.288 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 17:28:06.196 00:05:01.283 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 17:32:34.642 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:43114 10 6452 1 2025-11-25 17:32:49.083 00:00:00.031 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 17:32:49.109 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 17:32:48.842 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 17:32:49.001 00:00:00.030 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 17:32:49.201 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 17:33:35.056 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36416 10 6452 1 2025-11-25 17:34:35.465 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:41960 10 6452 1 2025-11-25 17:35:35.878 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:54742 10 6452 1 2025-11-25 17:36:36.242 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38190 10 6452 1 2025-11-25 17:37:49.307 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 17:37:49.127 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 17:37:48.944 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 17:37:49.224 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 17:37:49.052 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 17:37:36.646 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52438 10 6452 1 2025-11-25 17:34:06.195 00:05:01.300 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 17:34:06.197 00:05:01.296 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 17:38:37.053 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:34194 10 6452 1 2025-11-25 17:39:37.467 00:00:10.393 TCP 1.101.0.1:3000 -> 23.104.0.1:37056 10 6452 1 2025-11-25 17:40:37.898 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:35360 12 6556 1 2025-11-25 17:41:38.308 00:00:10.439 TCP 1.101.0.1:3000 -> 23.104.0.1:43060 11 6504 1 2025-11-25 17:42:38.805 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48466 10 6452 1 2025-11-25 17:42:49.317 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 17:42:49.183 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 17:42:49.319 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 17:42:49.425 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 17:42:49.403 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 17:43:39.213 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39084 10 6452 1 2025-11-25 17:40:06.199 00:05:01.298 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 17:40:06.197 00:05:01.303 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 17:44:39.628 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53124 10 6452 1 2025-11-25 17:45:40.039 00:00:10.631 TCP 1.101.0.1:3000 -> 23.104.0.1:51556 10 6452 1 2025-11-25 17:46:40.704 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:40636 10 6452 1 2025-11-25 17:47:49.488 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 17:47:49.526 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 17:47:49.694 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 17:47:49.406 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 17:47:49.638 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 17:47:41.116 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36344 10 6452 1 2025-11-25 17:48:41.522 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42968 10 6452 1 2025-11-25 17:49:41.929 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:33084 10 6452 1 2025-11-25 17:46:06.203 00:05:01.294 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 17:46:06.200 00:05:01.299 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 17:50:42.357 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48950 10 6452 1 2025-11-25 17:51:42.761 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:37622 10 6452 1 2025-11-25 17:52:49.536 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 17:52:49.622 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 17:52:49.415 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 17:52:49.572 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 17:52:49.705 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 17:52:43.180 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:32948 10 6452 1 2025-11-25 17:53:43.584 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:58984 10 6452 1 2025-11-25 17:54:43.989 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:55168 10 6452 1 2025-11-25 17:55:44.395 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:40386 10 6452 1 2025-11-25 17:52:06.203 00:05:01.311 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 17:52:06.204 00:05:01.306 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 17:56:44.759 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:58806 10 6452 1 2025-11-25 17:57:49.502 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 17:57:49.425 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 17:57:49.311 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 17:57:49.500 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 17:57:49.394 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 17:57:45.181 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:43988 10 6452 1 Summary: total flows: 139, total bytes: 414731, total packets: 1017, avg bps: 924, avg pps: 0, avg bpp: 407 Time window: 2025-11-25 16:58:06 - 2025-11-25 17:57:55 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0029s User: 0.0020s Wall: 0.0020s flows/second: 70411.6 Runtime: 0.0020s