Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-26 08:59:17.358 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:54752 10 6870 1 2025-11-26 09:00:17.757 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:46498 10 6870 1 2025-11-26 09:01:18.186 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60696 10 6870 1 2025-11-26 08:58:06.470 00:05:01.527 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 08:58:06.468 00:05:01.533 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 09:02:18.587 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55278 10 6870 1 2025-11-26 09:03:08.190 00:00:00.031 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 09:03:07.968 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 09:03:08.001 00:00:00.036 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 09:03:07.993 00:00:00.045 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 09:03:08.083 00:00:00.037 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 09:03:18.994 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:33438 10 6870 1 2025-11-26 09:04:19.359 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37886 10 6870 1 2025-11-26 09:05:19.767 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:51946 10 6870 1 2025-11-26 09:06:20.193 00:00:10.765 TCP 1.101.0.1:3000 -> 23.104.0.1:37954 10 6870 1 2025-11-26 09:07:21.000 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57178 10 6870 1 2025-11-26 09:08:07.792 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 09:08:07.674 00:00:00.026 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 09:08:07.932 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 09:08:07.809 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 09:04:06.472 00:05:01.564 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 09:04:06.470 00:05:01.569 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 09:08:08.017 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 09:08:21.401 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55386 10 6870 1 2025-11-26 09:09:21.802 00:00:10.764 TCP 1.101.0.1:3000 -> 23.104.0.1:43446 10 6870 1 2025-11-26 09:10:22.606 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40882 10 6870 1 2025-11-26 09:11:23.006 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:47812 10 6870 1 2025-11-26 09:12:23.413 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:44712 10 6870 1 2025-11-26 09:13:07.938 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 09:13:07.857 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 09:13:07.882 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 09:13:07.856 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 09:13:07.857 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 09:13:23.820 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:35934 10 6870 1 2025-11-26 09:10:06.471 00:05:01.568 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 09:10:06.473 00:05:01.563 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 09:14:24.233 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60400 10 6870 1 2025-11-26 09:15:24.643 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42912 10 6870 1 2025-11-26 09:16:25.061 00:00:10.444 TCP 1.101.0.1:3000 -> 23.104.0.1:35078 12 10375 1 2025-11-26 09:17:25.548 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57938 10 6452 1 2025-11-26 09:18:07.809 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 09:18:07.886 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 09:18:08.006 00:00:00.044 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 09:18:07.810 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 09:18:08.089 00:00:00.045 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 09:18:25.951 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:46132 10 6452 1 2025-11-26 09:19:26.370 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:36528 10 6452 1 2025-11-26 09:16:06.471 00:05:01.568 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 09:16:06.475 00:05:01.563 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 09:20:26.733 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39028 10 6452 1 2025-11-26 09:21:27.138 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:32810 10 6452 1 2025-11-26 09:22:27.548 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48520 10 6452 1 2025-11-26 09:23:08.405 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 09:23:08.350 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 09:23:08.319 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 09:23:08.432 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 09:23:08.403 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 09:23:27.947 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:34948 10 6452 1 2025-11-26 09:24:28.361 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:47394 10 6452 1 2025-11-26 09:25:28.767 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:48046 10 6452 1 2025-11-26 09:22:06.476 00:05:01.565 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 09:22:06.473 00:05:01.570 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 09:26:29.133 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:42448 10 6452 1 2025-11-26 09:27:29.537 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:50370 10 6452 1 2025-11-26 09:28:08.642 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 09:28:08.375 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 09:28:08.586 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 09:28:08.684 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 09:28:08.669 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 09:28:29.905 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:42474 10 6452 1 2025-11-26 09:29:30.274 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51590 10 6452 1 2025-11-26 09:30:30.685 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:50352 10 6452 1 2025-11-26 09:31:31.110 00:00:10.397 TCP 1.101.0.1:3000 -> 23.104.0.1:41618 13 13949 1 2025-11-26 09:28:06.477 00:05:01.565 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 09:28:06.474 00:05:01.571 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 09:32:31.546 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:40018 10 6452 1 2025-11-26 09:33:08.261 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 09:33:08.434 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 09:33:08.462 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 09:33:08.499 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 09:33:08.546 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 09:33:31.950 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:57126 10 6452 1 2025-11-26 09:34:32.317 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47538 10 6452 1 2025-11-26 09:35:32.719 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:57906 10 6452 1 2025-11-26 09:36:33.132 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:36354 10 6452 1 2025-11-26 09:37:33.497 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50164 10 6452 1 2025-11-26 09:38:08.376 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 09:38:08.568 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 09:34:06.479 00:05:01.570 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 09:38:08.525 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 09:38:08.503 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 09:34:06.476 00:05:01.575 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 09:38:08.458 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 09:38:33.901 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:49296 12 6556 1 2025-11-26 09:39:34.315 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:36236 10 6452 1 2025-11-26 09:40:34.722 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:35664 10 6452 1 2025-11-26 09:41:35.134 00:00:10.435 TCP 1.101.0.1:3000 -> 23.104.0.1:53912 12 10584 1 2025-11-26 09:42:35.610 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:60716 10 6661 1 2025-11-26 09:43:08.532 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 09:43:08.461 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 09:43:08.618 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 09:43:08.581 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 09:43:08.702 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 09:43:36.019 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:40554 10 6661 1 2025-11-26 09:40:06.482 00:05:01.568 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 09:40:06.480 00:05:01.572 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 09:44:36.426 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:59516 10 6661 1 2025-11-26 09:45:36.788 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:34246 10 6661 1 2025-11-26 09:46:37.157 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:55632 10 6661 1 2025-11-26 09:47:37.559 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:40494 10 6661 1 2025-11-26 09:48:08.389 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 09:48:08.548 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 09:48:08.611 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 09:48:08.668 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 09:48:08.694 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 09:48:37.921 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:33006 10 6661 1 2025-11-26 09:49:38.338 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43004 10 6661 1 2025-11-26 09:46:06.480 00:05:01.576 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 09:46:06.482 00:05:01.571 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 09:50:38.741 00:00:10.795 TCP 1.101.0.1:3000 -> 23.104.0.1:36670 10 6661 1 2025-11-26 09:51:39.582 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:52082 10 6661 1 2025-11-26 09:52:39.989 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:53002 10 6661 1 2025-11-26 09:53:09.078 00:00:00.034 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 09:53:08.993 00:00:00.038 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 09:53:08.784 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 09:53:08.857 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 09:53:08.504 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 09:53:40.396 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53408 10 6661 1 2025-11-26 09:54:40.800 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43628 10 6661 1 2025-11-26 09:55:41.203 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52566 10 6661 1 2025-11-26 09:52:06.486 00:05:01.568 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 09:52:06.485 00:05:01.573 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 09:56:41.601 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46738 10 6661 1 2025-11-26 09:57:42.007 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45430 10 6661 1 2025-11-26 09:58:08.732 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 09:58:08.854 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 09:58:08.585 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 09:58:08.648 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 09:58:08.810 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 Summary: total flows: 139, total bytes: 436654, total packets: 1019, avg bps: 969, avg pps: 0, avg bpp: 428 Time window: 2025-11-26 08:58:06 - 2025-11-26 09:58:08 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0026s User: 0.0026s Wall: 0.0022s flows/second: 62668.8 Runtime: 0.0022s