Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-25 23:59:32.881 00:00:10.533 TCP 1.101.0.1:3000 -> 23.104.0.1:36886 10 6452 1 2025-11-26 00:00:33.455 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48260 10 6452 1 2025-11-26 00:01:33.859 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:33142 10 6452 1 2025-11-25 23:58:06.305 00:05:01.494 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 23:58:06.308 00:05:01.489 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 00:02:34.236 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55000 10 6452 1 2025-11-26 00:02:56.976 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 00:02:56.832 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 00:02:56.876 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 00:02:56.893 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 00:02:56.986 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 00:03:34.642 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59786 10 6452 1 2025-11-26 00:04:35.048 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:41144 10 6452 1 2025-11-26 00:05:35.431 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:51142 10 6452 1 2025-11-26 00:06:35.794 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:41782 10 6452 1 2025-11-26 00:07:36.202 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:37700 10 6452 1 2025-11-26 00:07:56.969 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 00:07:56.737 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 00:07:56.884 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 00:07:56.909 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 00:07:56.967 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 00:04:06.308 00:05:01.487 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 00:04:06.307 00:05:01.492 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 00:08:36.617 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:39198 10 6452 1 2025-11-26 00:09:37.036 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49364 10 6452 1 2025-11-26 00:10:37.439 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55574 10 6452 1 2025-11-26 00:11:37.848 00:00:10.556 TCP 1.101.0.1:3000 -> 23.104.0.1:46260 10 6452 1 2025-11-26 00:12:38.443 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58852 10 6452 1 2025-11-26 00:12:57.186 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 00:12:56.826 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 00:12:57.133 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 00:12:57.226 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 00:12:57.216 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 00:13:38.843 00:00:10.399 TCP 1.101.0.1:3000 -> 23.104.0.1:59216 10 6452 1 2025-11-26 00:10:06.310 00:05:01.488 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 00:10:06.307 00:05:01.492 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 00:14:39.281 00:00:10.632 TCP 1.101.0.1:3000 -> 23.104.0.1:43232 10 6452 1 2025-11-26 00:15:39.968 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:56926 10 6452 1 2025-11-26 00:16:40.397 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:37946 10 6452 1 2025-11-26 00:17:40.794 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:45206 10 6452 1 2025-11-26 00:17:57.355 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 00:17:57.332 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 00:17:57.404 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 00:17:57.443 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 00:17:57.487 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 00:18:41.209 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38788 10 6452 1 2025-11-26 00:19:41.607 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45428 10 6452 1 2025-11-26 00:16:06.309 00:05:01.492 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 00:16:06.312 00:05:01.487 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 00:20:42.012 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:42808 10 6452 1 2025-11-26 00:21:42.412 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45652 10 6452 1 2025-11-26 00:22:42.819 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:45654 10 6452 1 2025-11-26 00:22:57.429 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 00:22:57.350 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 00:22:57.349 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 00:22:57.346 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 00:22:57.452 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 00:23:43.223 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:52974 10 6452 1 2025-11-26 00:24:43.625 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55456 10 6452 1 2025-11-26 00:25:44.027 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:58956 10 6452 1 2025-11-26 00:22:06.310 00:05:01.494 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 00:22:06.312 00:05:01.490 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 00:26:44.393 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49780 10 6452 1 2025-11-26 00:27:44.795 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:38010 10 6452 1 2025-11-26 00:27:57.564 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 00:27:57.480 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 00:27:57.480 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 00:27:57.481 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 00:27:57.579 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 00:28:45.202 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40814 10 6452 1 2025-11-26 00:29:45.617 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:36372 10 6452 1 2025-11-26 00:30:45.975 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:44838 10 6452 1 2025-11-26 00:31:46.386 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:36094 10 6452 1 2025-11-26 00:28:06.312 00:05:01.491 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 00:28:06.310 00:05:01.496 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 00:32:57.398 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 00:32:57.419 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 00:32:57.403 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 00:32:57.467 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 00:32:46.751 00:00:10.419 TCP 1.101.0.1:3000 -> 23.104.0.1:40768 11 6504 1 2025-11-26 00:32:57.484 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 00:33:47.211 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:39128 10 6452 1 2025-11-26 00:34:47.573 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:35084 10 6452 1 2025-11-26 00:35:47.981 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:40784 10 6452 1 2025-11-26 00:36:48.407 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:58272 10 6452 1 2025-11-26 00:37:57.729 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 00:37:57.701 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 00:37:48.810 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:41678 10 6452 1 2025-11-26 00:37:57.767 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 00:37:57.408 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 00:37:57.811 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 00:34:06.313 00:05:01.495 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 00:34:06.311 00:05:01.500 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 00:38:49.218 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:37938 10 6452 1 2025-11-26 00:39:49.573 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39874 10 6452 1 2025-11-26 00:40:49.973 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:36872 10 6452 1 2025-11-26 00:41:50.390 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:37186 10 6452 1 2025-11-26 00:42:57.640 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 00:42:57.815 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 00:42:57.839 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 00:42:57.746 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 00:42:57.921 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 00:42:50.796 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:46948 10 6452 1 2025-11-26 00:43:51.153 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:34746 10 6452 1 2025-11-26 00:40:06.312 00:05:01.501 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 00:40:06.314 00:05:01.497 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 00:44:51.552 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:50046 10 6452 1 2025-11-26 00:45:51.957 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:37186 10 6452 1 2025-11-26 00:46:52.325 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:42990 10 6452 1 2025-11-26 00:47:57.960 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 00:47:57.747 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 00:47:57.566 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 00:47:57.876 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 00:47:57.741 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 00:47:52.694 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:35998 10 6452 1 2025-11-26 00:48:53.112 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:59512 10 6452 1 2025-11-26 00:49:53.524 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43164 10 6452 1 2025-11-26 00:46:06.313 00:05:01.503 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 00:46:06.315 00:05:01.498 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 00:50:53.927 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:55420 10 6452 1 2025-11-26 00:51:54.357 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:46702 10 6452 1 2025-11-26 00:52:57.959 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 00:52:57.684 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 00:52:57.730 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 00:52:57.877 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 00:52:57.790 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 00:52:54.767 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:33122 10 6452 1 2025-11-26 00:53:55.178 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36852 10 6452 1 2025-11-26 00:54:55.580 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:55206 10 6452 1 2025-11-26 00:52:06.316 00:05:01.503 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 00:55:55.943 00:00:10.434 TCP 1.101.0.1:3000 -> 23.104.0.1:37954 10 6452 1 2025-11-26 00:52:06.317 00:05:01.498 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 00:56:56.417 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:52060 10 6452 1 2025-11-26 00:57:57.825 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 00:57:57.904 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 00:57:57.789 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 00:57:57.981 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 00:57:57.985 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 00:57:56.819 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:44746 10 6452 1 Summary: total flows: 139, total bytes: 410600, total packets: 1011, avg bps: 912, avg pps: 0, avg bpp: 406 Time window: 2025-11-25 23:58:06 - 2025-11-26 00:58:07 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0017s User: 0.0034s Wall: 0.0019s flows/second: 73269.9 Runtime: 0.0019s