Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-25 19:58:43.799 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:34544 10 6452 1 2025-11-25 19:59:44.200 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:56208 10 6452 1 2025-11-25 20:00:44.600 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:48644 10 6452 1 2025-11-25 20:01:44.963 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46750 10 6452 1 2025-11-25 19:58:06.241 00:05:01.363 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 19:58:06.240 00:05:01.368 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 20:02:52.256 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 20:02:52.256 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 20:02:52.102 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 20:02:52.172 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 20:02:52.253 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 20:02:45.369 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:40072 10 6452 1 2025-11-25 20:03:45.772 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53204 10 6452 1 2025-11-25 20:04:46.174 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:58746 10 6452 1 2025-11-25 20:05:46.537 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57878 10 6452 1 2025-11-25 20:06:46.940 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:40594 10 6452 1 2025-11-25 20:07:52.341 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 20:07:52.251 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 20:07:51.886 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 20:07:52.259 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 20:07:52.290 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 20:07:47.362 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:55772 10 6452 1 2025-11-25 20:04:06.241 00:05:01.370 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 20:04:06.243 00:05:01.365 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 20:08:47.727 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:38574 10 6452 1 2025-11-25 20:09:48.152 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:48136 10 6452 1 2025-11-25 20:10:48.557 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:44070 10 6452 1 2025-11-25 20:11:48.917 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:50426 10 6452 1 2025-11-25 20:12:52.452 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 20:12:52.368 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 20:12:52.366 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 20:12:52.199 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 20:12:52.411 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 20:12:49.327 00:00:11.047 TCP 1.101.0.1:3000 -> 23.104.0.1:40188 10 6452 1 2025-11-25 20:13:50.424 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:46930 10 6452 1 2025-11-25 20:10:06.245 00:05:01.365 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 20:10:06.242 00:05:01.370 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 20:14:50.783 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54458 10 6452 1 2025-11-25 20:15:51.197 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39374 10 6452 1 2025-11-25 20:16:51.601 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:39060 10 6452 1 2025-11-25 20:17:52.293 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 20:17:52.329 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 20:17:52.066 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 20:17:52.286 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 20:17:52.148 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 20:17:51.972 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:34774 10 6452 1 2025-11-25 20:18:52.344 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:49596 10 6452 1 2025-11-25 20:19:52.701 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:36356 10 6452 1 2025-11-25 20:16:06.246 00:05:01.371 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 20:16:06.250 00:05:01.366 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 20:20:53.111 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:55438 10 6452 1 2025-11-25 20:21:53.524 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:52096 10 6452 1 2025-11-25 20:22:52.482 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 20:22:52.473 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 20:22:52.500 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 20:22:52.399 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 20:22:52.607 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 20:22:53.935 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:34148 10 6452 1 2025-11-25 20:23:54.302 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:50074 10 6452 1 2025-11-25 20:24:54.711 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53000 10 6452 1 2025-11-25 20:25:55.113 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50324 10 6452 1 2025-11-25 20:22:06.252 00:05:01.365 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 20:22:06.249 00:05:01.370 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 20:26:55.516 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49156 10 6452 1 2025-11-25 20:27:52.815 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 20:27:52.646 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 20:27:52.767 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 20:27:52.606 00:00:00.013 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 20:27:52.852 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 20:27:55.919 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:46802 10 6452 1 2025-11-25 20:28:56.278 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47444 10 6452 1 2025-11-25 20:29:56.679 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41612 10 6452 1 2025-11-25 20:30:57.108 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53024 12 6556 1 2025-11-25 20:28:06.251 00:05:01.369 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 20:31:57.513 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:46040 10 6452 1 2025-11-25 20:28:06.255 00:05:01.364 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 20:32:52.774 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 20:32:52.784 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 20:32:52.489 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 20:32:52.692 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 20:32:52.789 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 20:32:57.922 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:45094 10 6452 1 2025-11-25 20:33:58.351 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:60456 10 6452 1 2025-11-25 20:34:58.759 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:43774 10 6452 1 2025-11-25 20:35:59.171 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:44202 10 6452 1 2025-11-25 20:36:59.530 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52572 10 6452 1 2025-11-25 20:37:53.028 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 20:37:52.844 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 20:37:52.826 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 20:37:52.945 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 20:37:52.943 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 20:34:06.254 00:05:01.367 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 20:37:59.936 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:54922 10 6452 1 2025-11-25 20:34:06.258 00:05:01.362 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 20:39:00.353 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:49248 10 6452 1 2025-11-25 20:40:00.723 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:47050 10 6452 1 2025-11-25 20:41:01.146 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:39258 10 6452 1 2025-11-25 20:42:01.535 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56872 10 6452 1 2025-11-25 20:42:52.794 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 20:42:52.685 00:00:00.027 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 20:42:52.858 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 20:42:52.745 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 20:42:52.876 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 20:43:01.936 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:51434 10 6452 1 2025-11-25 20:40:06.254 00:05:01.371 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 20:40:06.256 00:05:01.366 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 20:44:02.317 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:37792 10 6452 1 2025-11-25 20:45:02.725 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:56992 10 6452 1 2025-11-25 20:46:03.131 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34168 10 6452 1 2025-11-25 20:47:03.536 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:47496 10 6452 1 2025-11-25 20:47:53.009 00:00:00.041 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 20:47:52.657 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 20:47:53.006 00:00:00.036 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 20:47:53.010 00:00:00.039 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 20:47:53.089 00:00:00.037 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 20:48:03.912 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:44220 10 6452 1 2025-11-25 20:49:04.271 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56004 10 6452 1 2025-11-25 20:46:06.257 00:05:01.365 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 20:46:06.255 00:05:01.370 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 20:50:04.677 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:42876 10 6452 1 2025-11-25 20:51:05.105 00:00:10.633 TCP 1.101.0.1:3000 -> 23.104.0.1:38240 10 6452 1 2025-11-25 20:52:05.777 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:41564 10 6452 1 2025-11-25 20:52:53.315 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 20:52:52.804 00:00:00.029 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 20:52:53.057 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 20:52:53.233 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 20:52:53.188 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 20:53:06.189 00:00:10.829 TCP 1.101.0.1:3000 -> 23.104.0.1:48952 10 6452 1 2025-11-25 20:54:07.063 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:54600 10 6452 1 2025-11-25 20:55:07.464 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60048 10 6452 1 2025-11-25 20:52:06.256 00:05:01.371 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 20:52:06.260 00:05:01.366 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 20:56:07.864 00:00:10.449 TCP 1.101.0.1:3000 -> 23.104.0.1:58764 12 10375 1 2025-11-25 20:57:08.353 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:33646 10 6452 1 2025-11-25 20:57:53.225 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 20:57:52.991 00:00:00.047 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 20:57:53.071 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 20:57:53.323 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 20:57:53.153 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 20:58:08.750 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59888 10 6452 1 Summary: total flows: 140, total bytes: 421027, total packets: 1024, avg bps: 932, avg pps: 0, avg bpp: 411 Time window: 2025-11-25 19:58:06 - 2025-11-25 20:58:19 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0039s User: 0.0010s Wall: 0.0025s flows/second: 56089.7 Runtime: 0.0025s