Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-25 21:59:35.315 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33542 10 6452 1 2025-11-25 22:00:35.719 00:00:10.396 TCP 1.101.0.1:3000 -> 23.104.0.1:52918 10 6452 1 2025-11-25 22:01:36.149 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41494 10 6452 1 2025-11-25 21:58:06.276 00:05:01.412 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 21:58:06.280 00:05:01.407 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 22:02:36.559 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:50694 10 6452 1 2025-11-25 22:02:54.548 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 22:02:54.365 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 22:02:54.492 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 22:02:54.622 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 22:02:54.574 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 22:03:36.968 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42190 10 6452 1 2025-11-25 22:04:37.372 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53232 10 6452 1 2025-11-25 22:05:37.776 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:52252 10 6452 1 2025-11-25 22:06:38.156 00:00:10.778 TCP 1.101.0.1:3000 -> 23.104.0.1:45468 10 6452 1 2025-11-25 22:07:38.978 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33314 10 6452 1 2025-11-25 22:07:54.561 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 22:07:54.578 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 22:07:54.295 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 22:07:54.640 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 22:07:54.378 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 22:04:06.281 00:05:01.408 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 22:04:06.279 00:05:01.413 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 22:08:39.380 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:53242 10 6452 1 2025-11-25 22:09:39.745 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:53642 10 6452 1 2025-11-25 22:10:40.114 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:33116 10 6452 1 2025-11-25 22:11:40.517 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59070 10 6452 1 2025-11-25 22:12:54.720 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 22:12:54.544 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 22:12:54.508 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 22:12:54.395 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 22:12:40.921 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:56038 10 6452 1 2025-11-25 22:12:54.590 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 22:13:41.350 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:60408 10 6452 1 2025-11-25 22:10:06.281 00:05:01.413 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 22:10:06.285 00:05:01.408 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 22:14:41.748 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:48440 10 6452 1 2025-11-25 22:15:42.138 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51632 10 6452 1 2025-11-25 22:16:42.543 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:43744 10 6452 1 2025-11-25 22:17:55.172 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 22:17:42.976 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:40424 10 6452 1 2025-11-25 22:17:55.083 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 22:17:54.572 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 22:17:55.090 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 22:17:55.120 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 22:18:43.342 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47218 10 6452 1 2025-11-25 22:19:43.746 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:42260 10 6452 1 2025-11-25 22:16:06.283 00:05:01.413 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 22:16:06.287 00:05:01.408 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 22:20:44.157 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37440 10 6452 1 2025-11-25 22:21:44.561 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:55238 10 6452 1 2025-11-25 22:22:55.002 00:00:00.028 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 22:22:54.906 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 22:22:44.975 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:34974 10 6452 1 2025-11-25 22:22:54.776 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 22:22:55.045 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 22:22:54.860 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 22:23:45.392 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:54906 10 6452 1 2025-11-25 22:24:45.794 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:47290 10 6452 1 2025-11-25 22:25:46.198 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:60412 10 6452 1 2025-11-25 22:22:06.284 00:05:01.417 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 22:22:06.287 00:05:01.413 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 22:26:46.560 00:00:10.356 TCP 1.101.0.1:3000 -> 23.104.0.1:38612 10 6452 1 2025-11-25 22:27:54.966 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 22:27:54.723 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 22:27:54.902 00:00:00.032 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 22:27:55.059 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 22:27:54.986 00:00:00.032 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 22:27:46.953 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:41950 10 6452 1 2025-11-25 22:28:47.363 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:47736 10 6452 1 2025-11-25 22:29:47.729 00:00:10.425 TCP 1.101.0.1:3000 -> 23.104.0.1:42378 10 6452 1 2025-11-25 22:30:48.190 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40580 10 6452 1 2025-11-25 22:31:48.589 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54918 10 6452 1 2025-11-25 22:28:06.284 00:05:01.425 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 22:28:06.286 00:05:01.421 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 22:32:55.175 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 22:32:55.103 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 22:32:54.838 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 22:32:55.093 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 22:32:55.215 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 22:32:48.995 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:55278 10 6452 1 2025-11-25 22:33:49.404 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:41620 10 6452 1 2025-11-25 22:34:49.805 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49304 10 6452 1 2025-11-25 22:35:50.212 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:53930 10 6452 1 2025-11-25 22:36:50.575 00:00:10.502 TCP 1.101.0.1:3000 -> 23.104.0.1:57538 10 6452 1 2025-11-25 22:37:55.157 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 22:37:55.256 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 22:37:55.121 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 22:37:55.075 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 22:37:55.200 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 22:37:51.139 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41916 10 6452 1 2025-11-25 22:34:06.284 00:05:01.431 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 22:34:06.287 00:05:01.426 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 22:38:51.543 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52678 10 6452 1 2025-11-25 22:39:51.950 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57316 10 6452 1 2025-11-25 22:40:52.357 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43906 10 6452 1 2025-11-25 22:41:52.755 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:50660 10 6452 1 2025-11-25 22:42:55.456 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 22:42:55.279 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 22:42:55.222 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 22:42:55.373 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 22:42:55.334 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 22:42:53.174 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52854 10 6452 1 2025-11-25 22:43:53.574 00:00:10.578 TCP 1.101.0.1:3000 -> 23.104.0.1:59128 10 6452 1 2025-11-25 22:40:06.291 00:05:01.424 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 22:40:06.290 00:05:01.429 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 22:44:54.201 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:60354 10 6452 1 2025-11-25 22:45:54.610 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:36400 10 6452 1 2025-11-25 22:46:55.015 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:47514 10 6452 1 2025-11-25 22:47:55.486 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 22:47:55.189 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 22:47:55.447 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 22:47:55.404 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 22:47:55.383 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 22:47:55.375 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:41150 10 6452 1 2025-11-25 22:48:55.791 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:38404 10 6452 1 2025-11-25 22:49:56.187 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53112 10 6452 1 2025-11-25 22:46:06.291 00:05:01.427 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 22:46:06.289 00:05:01.432 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 22:50:56.588 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:49072 10 6452 1 2025-11-25 22:51:56.945 00:00:10.473 TCP 1.101.0.1:3000 -> 23.104.0.1:40494 10 6452 1 2025-11-25 22:52:55.634 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 22:52:55.611 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 22:52:55.203 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 22:52:55.548 00:00:00.026 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 22:52:55.604 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 22:52:57.460 00:00:11.030 TCP 1.101.0.1:3000 -> 23.104.0.1:45216 10 6452 1 2025-11-25 22:53:58.533 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:56618 10 6452 1 2025-11-25 22:54:58.898 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:59986 10 6452 1 2025-11-25 22:52:06.292 00:05:01.430 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 22:55:59.274 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40520 10 6452 1 2025-11-25 22:52:06.294 00:05:01.425 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 22:56:59.683 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51278 10 6452 1 2025-11-25 22:57:55.767 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 22:57:55.525 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 22:57:55.662 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 22:57:55.684 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 22:57:55.516 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 22:58:00.105 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:56362 10 6452 1 Summary: total flows: 139, total bytes: 410548, total packets: 1010, avg bps: 911, avg pps: 0, avg bpp: 406 Time window: 2025-11-25 21:58:06 - 2025-11-25 22:58:10 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0033s User: 0.0022s Wall: 0.0036s flows/second: 38250.1 Runtime: 0.0037s