Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-26 05:59:01.850 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:50940 10 6452 1 2025-11-26 06:00:02.271 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36722 10 6452 1 2025-11-26 06:01:02.677 00:00:10.404 TCP 1.101.0.1:3000 -> 23.104.0.1:55670 12 10369 1 2025-11-26 05:58:06.412 00:05:01.513 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 05:58:06.409 00:05:01.518 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 06:02:03.119 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:39506 10 6452 1 2025-11-26 06:03:04.279 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 06:03:04.086 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 06:03:04.294 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 06:03:04.196 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 06:03:04.180 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 06:03:03.489 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42480 10 6452 1 2025-11-26 06:04:03.894 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:60414 10 6452 1 2025-11-26 06:05:04.320 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:44400 10 6452 1 2025-11-26 06:06:04.720 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:45704 10 6452 1 2025-11-26 06:07:05.137 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:33602 10 6452 1 2025-11-26 06:08:04.390 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 06:08:03.904 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 06:08:04.313 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 06:08:04.422 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 06:08:04.396 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 06:04:06.410 00:05:01.520 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 06:04:06.413 00:05:01.515 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 06:08:05.536 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:40558 10 6452 1 2025-11-26 06:09:05.937 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:44782 10 6452 1 2025-11-26 06:10:06.357 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:43616 10 6452 1 2025-11-26 06:11:06.755 00:00:10.448 TCP 1.101.0.1:3000 -> 23.104.0.1:59180 12 10375 1 2025-11-26 06:12:07.238 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52806 10 6452 1 2025-11-26 06:13:04.302 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 06:13:04.361 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 06:13:04.362 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 06:13:04.360 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 06:13:04.443 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 06:13:07.646 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:40260 10 6452 1 2025-11-26 06:10:06.412 00:05:01.522 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 06:10:06.416 00:05:01.516 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 06:14:08.058 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:59948 10 6452 1 2025-11-26 06:15:08.465 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:39456 10 6452 1 2025-11-26 06:16:08.829 00:00:10.855 TCP 1.101.0.1:3000 -> 23.104.0.1:33470 12 10375 1 2025-11-26 06:17:09.717 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:60398 10 6452 1 2025-11-26 06:18:04.537 00:00:00.026 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 06:18:04.449 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 06:18:04.516 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 06:18:04.454 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 06:18:04.650 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 06:18:10.127 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38732 10 6452 1 2025-11-26 06:19:10.533 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:51388 10 6452 1 2025-11-26 06:16:06.416 00:05:01.517 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 06:16:06.413 00:05:01.522 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 06:20:10.892 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:42664 10 6452 1 2025-11-26 06:21:11.314 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:60820 10 6452 1 2025-11-26 06:22:11.718 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:32852 10 6452 1 2025-11-26 06:23:04.506 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 06:23:04.238 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 06:23:04.641 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 06:23:04.500 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 06:23:04.724 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 06:23:12.121 00:00:10.411 TCP 1.101.0.1:3000 -> 23.104.0.1:38496 11 6504 1 2025-11-26 06:24:12.574 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:58328 10 6452 1 2025-11-26 06:25:12.989 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:58534 10 6452 1 2025-11-26 06:22:06.420 00:05:01.514 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 06:22:06.416 00:05:01.519 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 06:26:13.399 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:35554 10 6452 1 2025-11-26 06:27:13.807 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:44816 10 6452 1 2025-11-26 06:28:04.492 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 06:28:04.411 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 06:28:04.682 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 06:28:04.336 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 06:28:04.764 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 06:28:14.231 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38928 10 6452 1 2025-11-26 06:29:14.633 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:46304 10 6452 1 2025-11-26 06:30:15.037 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:52368 10 6452 1 2025-11-26 06:31:15.437 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:55236 10 6452 1 2025-11-26 06:28:06.417 00:05:01.522 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 06:28:06.422 00:05:01.517 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 06:32:15.842 00:00:10.403 TCP 1.101.0.1:3000 -> 23.104.0.1:51904 10 6452 1 2025-11-26 06:33:04.663 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 06:33:04.693 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 06:33:04.373 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 06:33:04.686 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 06:33:04.769 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 06:33:16.281 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49986 10 6452 1 2025-11-26 06:34:16.681 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:47062 10 6452 1 2025-11-26 06:35:17.108 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60498 10 6452 1 2025-11-26 06:36:17.508 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:51166 10 6452 1 2025-11-26 06:37:17.915 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43304 10 6452 1 2025-11-26 06:38:05.013 00:00:00.032 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 06:38:05.050 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 06:38:04.909 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 06:38:04.914 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 06:34:06.420 00:05:01.517 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 06:38:04.993 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 06:34:06.420 00:05:01.522 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 06:38:18.316 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53180 10 6452 1 2025-11-26 06:39:18.723 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:40716 10 6452 1 2025-11-26 06:40:19.138 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:55966 10 6452 1 2025-11-26 06:41:19.536 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:37760 10 6452 1 2025-11-26 06:42:19.898 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:49812 10 6452 1 2025-11-26 06:43:05.188 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 06:43:05.108 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 06:43:05.065 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 06:43:05.106 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 06:43:05.104 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 06:43:20.312 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:33212 10 6452 1 2025-11-26 06:40:06.422 00:05:01.518 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 06:40:06.418 00:05:01.523 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 06:44:20.684 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42238 10 6452 1 2025-11-26 06:45:21.107 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:52968 10 6452 1 2025-11-26 06:46:21.507 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35190 10 6452 1 2025-11-26 06:47:21.912 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55740 12 6556 1 2025-11-26 06:48:05.066 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 06:48:05.080 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 06:48:04.924 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 06:48:04.979 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 06:48:05.008 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 06:48:22.316 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34998 10 6452 1 2025-11-26 06:49:22.714 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44734 10 6452 1 2025-11-26 06:46:06.423 00:05:01.519 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 06:46:06.420 00:05:01.525 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 06:50:23.115 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:37474 10 6452 1 2025-11-26 06:51:23.487 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:34186 10 6452 1 2025-11-26 06:52:23.855 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:36504 10 6452 1 2025-11-26 06:53:05.328 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 06:53:05.292 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 06:53:05.321 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 06:53:05.377 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 06:53:05.404 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 06:53:24.231 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43356 10 6452 1 2025-11-26 06:54:24.631 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:52342 10 6452 1 2025-11-26 06:55:25.032 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41092 10 6452 1 2025-11-26 06:52:06.426 00:05:01.520 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 06:52:06.424 00:05:01.525 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 06:56:25.439 00:00:10.503 TCP 1.101.0.1:3000 -> 23.104.0.1:38552 10 6452 1 2025-11-26 06:57:25.988 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:44026 10 6452 1 2025-11-26 06:58:05.266 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 06:58:05.184 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 06:58:04.878 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 06:58:05.184 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 06:58:05.181 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 06:58:26.397 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41488 10 6452 1 Summary: total flows: 140, total bytes: 428919, total packets: 1029, avg bps: 945, avg pps: 0, avg bpp: 416 Time window: 2025-11-26 05:58:06 - 2025-11-26 06:58:36 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0031s User: 0.0021s Wall: 0.0020s flows/second: 69033.9 Runtime: 0.0020s