Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-25 20:59:09.153 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47574 10 6452 1 2025-11-25 21:00:09.561 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46262 10 6452 1 2025-11-25 21:01:09.963 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55158 10 6452 1 2025-11-25 20:58:06.258 00:05:01.371 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 20:58:06.261 00:05:01.365 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 21:02:10.372 00:00:11.206 TCP 1.101.0.1:3000 -> 23.104.0.1:44992 10 6452 1 2025-11-25 21:02:53.201 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 21:02:53.157 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 21:02:53.336 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 21:02:53.270 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 21:02:53.418 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 21:03:11.628 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58266 10 6452 1 2025-11-25 21:04:12.030 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:60688 10 6452 1 2025-11-25 21:05:12.440 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:56084 10 6452 1 2025-11-25 21:06:12.857 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:36714 10 6452 1 2025-11-25 21:07:13.268 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49914 10 6452 1 2025-11-25 21:07:53.445 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 21:07:53.456 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 21:07:53.373 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 21:07:53.361 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 21:07:53.575 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 21:04:06.262 00:05:01.373 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 21:04:06.260 00:05:01.377 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 21:08:13.676 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:43146 10 6452 1 2025-11-25 21:09:14.110 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:50898 10 6452 1 2025-11-25 21:10:14.511 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39964 10 6452 1 2025-11-25 21:11:14.911 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:46322 10 6452 1 2025-11-25 21:12:15.324 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:60950 10 6452 1 2025-11-25 21:12:53.439 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 21:12:53.547 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 21:12:53.443 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 21:12:53.356 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 21:12:53.471 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 21:13:15.746 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:40252 10 6452 1 2025-11-25 21:10:06.263 00:05:01.376 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 21:10:06.260 00:05:01.381 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 21:14:16.120 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:45652 10 6452 1 2025-11-25 21:15:16.531 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:41442 10 6452 1 2025-11-25 21:16:16.933 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:42016 10 6452 1 2025-11-25 21:17:17.362 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:43634 10 6452 1 2025-11-25 21:17:54.182 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 21:17:54.099 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 21:17:53.646 00:00:00.027 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 21:17:53.820 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 21:17:53.908 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 21:18:17.760 00:00:10.397 TCP 1.101.0.1:3000 -> 23.104.0.1:40904 10 6452 1 2025-11-25 21:19:18.197 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:42686 10 6452 1 2025-11-25 21:16:06.265 00:05:01.377 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 21:16:06.262 00:05:01.383 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 21:20:18.601 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:59018 10 6452 1 2025-11-25 21:21:19.005 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:39648 10 6452 1 2025-11-25 21:22:19.405 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50584 10 6452 1 2025-11-25 21:22:53.498 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 21:22:53.613 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 21:22:53.520 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 21:22:53.759 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 21:22:53.604 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 21:23:19.808 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59922 10 6452 1 2025-11-25 21:24:20.214 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:51132 10 6452 1 2025-11-25 21:25:20.573 00:00:10.316 TCP 1.101.0.1:3000 -> 23.104.0.1:37474 10 6452 1 2025-11-25 21:22:06.265 00:05:01.377 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 21:22:06.265 00:05:01.382 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 21:26:20.924 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:34180 10 6452 1 2025-11-25 21:27:21.357 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40720 10 6452 1 2025-11-25 21:27:53.857 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 21:27:53.774 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 21:27:53.692 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 21:27:53.497 00:00:00.031 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 21:27:53.729 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 21:28:21.769 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:42146 10 6452 1 2025-11-25 21:29:22.191 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52608 10 6452 1 2025-11-25 21:30:22.592 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50198 10 6452 1 2025-11-25 21:31:22.999 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:52396 10 6452 1 2025-11-25 21:28:06.268 00:05:01.396 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 21:28:06.265 00:05:01.401 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 21:32:23.359 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47968 10 6452 1 2025-11-25 21:32:53.833 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 21:32:53.558 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 21:32:53.739 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 21:32:54.006 00:00:00.036 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 21:32:53.822 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 21:33:23.771 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:48862 10 6452 1 2025-11-25 21:34:24.180 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:38416 10 6452 1 2025-11-25 21:35:24.582 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:59998 10 6452 1 2025-11-25 21:36:24.988 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43444 10 6452 1 2025-11-25 21:37:25.394 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:43998 10 6452 1 2025-11-25 21:37:54.074 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 21:37:54.187 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 21:37:54.134 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 21:37:54.251 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 21:37:54.156 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 21:34:06.269 00:05:01.398 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 21:34:06.268 00:05:01.403 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 21:38:25.757 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:49024 10 6452 1 2025-11-25 21:39:26.183 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44120 10 6452 1 2025-11-25 21:40:26.588 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:47008 10 6452 1 2025-11-25 21:41:27.013 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:58122 10 6452 1 2025-11-25 21:42:27.411 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:48426 10 6452 1 2025-11-25 21:42:53.899 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 21:42:53.846 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 21:42:53.911 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 21:42:54.120 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 21:42:53.993 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 21:43:27.819 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53212 10 6452 1 2025-11-25 21:40:06.270 00:05:01.401 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 21:40:06.272 00:05:01.396 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 21:44:28.222 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:53686 10 6452 1 2025-11-25 21:45:28.635 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:49474 10 6452 1 2025-11-25 21:46:29.001 00:00:10.397 TCP 1.101.0.1:3000 -> 23.104.0.1:45552 12 10369 1 2025-11-25 21:47:29.438 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:37812 10 6452 1 2025-11-25 21:47:54.127 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 21:47:54.170 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 21:47:53.963 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 21:47:54.043 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 21:47:54.112 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 21:48:29.796 00:00:10.463 TCP 1.101.0.1:3000 -> 23.104.0.1:47590 10 6452 1 2025-11-25 21:49:30.303 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38414 10 6452 1 2025-11-25 21:46:06.274 00:05:01.413 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 21:46:06.277 00:05:01.408 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 21:50:30.713 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56722 10 6452 1 2025-11-25 21:51:31.114 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:50222 10 6452 1 2025-11-25 21:52:31.471 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:48702 10 6452 1 2025-11-25 21:52:54.237 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 21:52:54.272 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 21:52:54.328 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 21:52:54.236 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 21:52:54.413 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 21:53:31.874 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:42084 10 6452 1 2025-11-25 21:54:32.282 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41956 10 6452 1 2025-11-25 21:55:32.681 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:44844 10 6452 1 2025-11-25 21:52:06.279 00:05:01.403 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 21:52:06.276 00:05:01.408 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 21:56:33.108 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:36608 10 6452 1 2025-11-25 21:57:33.467 00:00:11.387 TCP 1.101.0.1:3000 -> 23.104.0.1:53338 10 6452 1 2025-11-25 21:57:54.388 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 21:57:54.419 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 21:57:54.574 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 21:57:54.292 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 21:57:54.657 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 21:58:34.891 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:55578 10 6452 1 Summary: total flows: 140, total bytes: 420917, total packets: 1022, avg bps: 925, avg pps: 0, avg bpp: 411 Time window: 2025-11-25 20:58:06 - 2025-11-25 21:58:45 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0044s User: 0.0018s Wall: 0.0019s flows/second: 73382.0 Runtime: 0.0019s