Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-25 17:58:45.591 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:35716 10 6452 1 2025-11-25 17:59:45.986 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:54144 10 6452 1 2025-11-25 18:00:46.349 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44816 10 6452 1 2025-11-25 18:01:46.753 00:00:10.316 TCP 1.101.0.1:3000 -> 23.104.0.1:54204 10 6452 1 2025-11-25 17:58:06.206 00:05:01.307 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 17:58:06.204 00:05:01.312 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 18:02:49.623 00:00:00.031 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 18:02:49.671 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 18:02:49.828 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 18:02:49.422 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 18:02:49.912 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 18:02:47.115 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:39266 10 6452 1 2025-11-25 18:03:47.517 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48060 10 6452 1 2025-11-25 18:04:47.918 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51730 10 6452 1 2025-11-25 18:05:48.324 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33274 10 6452 1 2025-11-25 18:06:48.727 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:52136 10 6452 1 2025-11-25 18:07:49.719 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 18:07:49.593 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 18:07:49.652 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 18:07:49.562 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 18:07:49.735 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 18:07:49.113 00:00:10.314 TCP 1.101.0.1:3000 -> 23.104.0.1:42388 10 6452 1 2025-11-25 18:04:06.207 00:05:01.307 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 18:04:06.205 00:05:01.312 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 18:08:49.472 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:37450 10 6452 1 2025-11-25 18:09:49.876 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35592 10 6452 1 2025-11-25 18:10:50.286 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:48628 10 6452 1 2025-11-25 18:11:50.703 00:00:10.439 TCP 1.101.0.1:3000 -> 23.104.0.1:36714 12 10375 1 2025-11-25 18:12:50.187 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 18:12:50.071 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 18:12:50.123 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 18:12:50.174 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 18:12:50.206 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 18:12:51.182 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34508 10 6452 1 2025-11-25 18:13:51.584 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:51974 10 6452 1 2025-11-25 18:10:06.207 00:05:01.313 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 18:10:06.205 00:05:01.318 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 18:14:51.988 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:60138 10 6452 1 2025-11-25 18:15:52.419 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:34938 10 6452 1 2025-11-25 18:16:52.826 00:00:10.356 TCP 1.101.0.1:3000 -> 23.104.0.1:33380 10 6452 1 2025-11-25 18:17:50.140 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 18:17:50.103 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 18:17:49.885 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 18:17:50.057 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 18:17:49.962 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 18:17:53.220 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:50806 10 6452 1 2025-11-25 18:18:53.626 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:55446 10 6452 1 2025-11-25 18:19:53.990 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45760 10 6452 1 2025-11-25 18:16:06.210 00:05:01.313 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 18:16:06.207 00:05:01.318 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 18:20:54.398 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:38566 10 6452 1 2025-11-25 18:21:54.800 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53798 10 6452 1 2025-11-25 18:22:50.240 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 18:22:50.185 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 18:22:49.992 00:00:00.044 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 18:22:50.157 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 18:22:49.980 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 18:22:55.205 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33696 10 6452 1 2025-11-25 18:23:55.607 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:50972 10 6452 1 2025-11-25 18:24:56.008 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:36148 10 6452 1 2025-11-25 18:25:56.361 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40218 10 6452 1 2025-11-25 18:22:06.211 00:05:01.316 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 18:22:06.210 00:05:01.320 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 18:26:56.766 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:44226 10 6452 1 2025-11-25 18:27:50.201 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 18:27:50.243 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 18:27:50.141 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 18:27:50.119 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 18:27:49.986 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 18:27:57.185 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37018 10 6452 1 2025-11-25 18:28:57.591 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52736 10 6452 1 2025-11-25 18:29:57.997 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49972 10 6452 1 2025-11-25 18:30:58.428 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56210 10 6452 1 2025-11-25 18:28:06.213 00:05:01.331 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 18:31:58.834 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:49492 10 6452 1 2025-11-25 18:28:06.215 00:05:01.326 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 18:32:50.661 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 18:32:50.660 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 18:32:50.559 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 18:32:50.792 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 18:32:50.643 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 18:32:59.258 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35892 10 6452 1 2025-11-25 18:33:59.662 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:40360 10 6452 1 2025-11-25 18:35:00.091 00:00:20.073 TCP 1.101.0.1:3000 -> 23.104.0.1:52386 10 6452 1 2025-11-25 18:36:10.207 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:55636 10 6452 1 2025-11-25 18:37:10.617 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:45036 10 6452 1 2025-11-25 18:37:50.455 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 18:37:50.476 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 18:37:50.254 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 18:37:50.373 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 18:37:50.375 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 18:34:06.214 00:05:01.331 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 18:34:06.217 00:05:01.327 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 18:38:11.028 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:54954 10 6452 1 2025-11-25 18:39:11.430 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37700 10 6452 1 2025-11-25 18:40:11.841 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:37640 10 6452 1 2025-11-25 18:41:12.272 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:52482 10 6452 1 2025-11-25 18:42:12.675 00:00:10.483 TCP 1.101.0.1:3000 -> 23.104.0.1:57754 10 6452 1 2025-11-25 18:42:50.507 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 18:42:50.254 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 18:42:50.439 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 18:42:50.585 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 18:42:50.522 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 18:43:13.194 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:41928 10 6452 1 2025-11-25 18:40:06.216 00:05:01.328 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 18:40:06.215 00:05:01.333 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 18:44:13.595 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:49254 10 6452 1 2025-11-25 18:45:13.999 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54986 10 6452 1 2025-11-25 18:46:14.403 00:00:10.422 TCP 1.101.0.1:3000 -> 23.104.0.1:37882 10 6452 1 2025-11-25 18:47:14.864 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:35452 10 6452 1 2025-11-25 18:47:50.655 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 18:47:50.762 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 18:47:50.573 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 18:47:50.782 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 18:47:50.572 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 18:48:15.278 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:53570 10 6452 1 2025-11-25 18:49:15.678 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:50290 10 6452 1 2025-11-25 18:46:06.217 00:05:01.336 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 18:46:06.219 00:05:01.331 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 18:50:16.113 00:00:10.733 TCP 1.101.0.1:3000 -> 23.104.0.1:40464 10 6452 1 2025-11-25 18:51:16.886 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50828 10 6452 1 2025-11-25 18:52:17.293 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40442 10 6452 1 2025-11-25 18:52:50.861 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 18:52:50.812 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 18:52:50.779 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 18:52:50.863 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 18:52:50.982 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 18:53:17.698 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:49360 10 6452 1 2025-11-25 18:54:18.062 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37862 10 6452 1 2025-11-25 18:55:18.466 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60522 10 6452 1 2025-11-25 18:52:06.219 00:05:01.339 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 18:52:06.220 00:05:01.335 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 18:56:18.871 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:58544 10 6452 1 2025-11-25 18:57:19.275 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:39208 10 6452 1 2025-11-25 18:57:50.861 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 18:57:50.777 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 18:57:50.894 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 18:57:50.830 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 18:57:50.760 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 18:58:19.631 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:58642 10 6452 1 Summary: total flows: 140, total bytes: 420923, total packets: 1022, avg bps: 929, avg pps: 0, avg bpp: 411 Time window: 2025-11-25 17:58:06 - 2025-11-25 18:58:30 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0046s User: 0.0019s Wall: 0.0027s flows/second: 52673.4 Runtime: 0.0027s