Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-26 11:59:32.599 00:00:11.603 TCP 1.101.0.1:3000 -> 23.104.0.1:49306 10 6452 1 2025-11-26 12:00:34.252 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:58656 10 6452 1 2025-11-26 12:01:34.619 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:57854 10 6452 1 2025-11-26 11:58:06.523 00:05:01.599 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 11:58:06.521 00:05:01.603 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 12:02:35.022 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:51080 10 6452 1 2025-11-26 12:03:11.606 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 12:03:11.535 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 12:03:11.592 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 12:03:11.809 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 12:03:11.673 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 12:03:35.412 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46302 10 6452 1 2025-11-26 12:04:35.818 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49280 10 6452 1 2025-11-26 12:05:36.221 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35880 10 6452 1 2025-11-26 12:06:36.626 00:00:10.398 TCP 1.101.0.1:3000 -> 23.104.0.1:42318 12 10369 1 2025-11-26 12:07:37.069 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:55054 10 6452 1 2025-11-26 12:04:06.522 00:05:01.603 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 12:04:06.525 00:05:01.598 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 12:08:11.573 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 12:08:11.498 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 12:08:11.489 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 12:08:11.492 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 12:08:11.406 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 12:08:37.438 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:34854 10 6452 1 2025-11-26 12:09:37.844 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:34866 10 6452 1 2025-11-26 12:10:38.271 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38956 10 6452 1 2025-11-26 12:11:38.682 00:00:10.448 TCP 1.101.0.1:3000 -> 23.104.0.1:39948 12 10375 1 2025-11-26 12:12:39.165 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:38676 10 6452 1 2025-11-26 12:13:11.636 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 12:13:11.577 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 12:13:11.481 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 12:13:11.641 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 12:13:11.564 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 12:13:39.569 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40210 10 6452 1 2025-11-26 12:10:06.526 00:05:01.600 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 12:10:06.523 00:05:01.605 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 12:14:39.969 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:58152 10 6452 1 2025-11-26 12:15:40.381 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:36646 10 6452 1 2025-11-26 12:16:40.745 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:58104 10 6452 1 2025-11-26 12:17:41.146 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:47908 10 6452 1 2025-11-26 12:18:11.838 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 12:18:11.796 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 12:18:11.951 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 12:18:11.835 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 12:18:12.034 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 12:18:41.537 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:42512 10 6452 1 2025-11-26 12:19:41.914 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35344 10 6452 1 2025-11-26 12:16:06.526 00:05:01.610 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 12:16:06.524 00:05:01.615 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 12:20:42.316 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:37794 10 6452 1 2025-11-26 12:21:42.718 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:45470 10 6452 1 2025-11-26 12:22:43.103 00:00:10.344 TCP 1.101.0.1:3000 -> 23.104.0.1:60378 10 6452 1 2025-11-26 12:23:12.273 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 12:23:12.172 00:00:00.027 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 12:23:12.070 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 12:23:12.191 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 12:23:12.184 00:00:00.026 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 12:23:43.484 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60600 10 6452 1 2025-11-26 12:24:43.886 00:00:10.350 TCP 1.101.0.1:3000 -> 23.104.0.1:58306 10 6452 1 2025-11-26 12:25:44.281 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:59728 10 6452 1 2025-11-26 12:22:06.524 00:05:01.617 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 12:22:06.527 00:05:01.612 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 12:26:44.649 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:40706 10 6452 1 2025-11-26 12:27:45.110 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55528 10 6452 1 2025-11-26 12:28:11.963 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 12:28:11.919 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 12:28:11.742 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 12:28:11.771 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 12:28:12.046 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 12:28:45.510 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43700 10 6452 1 2025-11-26 12:29:45.912 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:39852 10 6452 1 2025-11-26 12:30:46.268 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56378 10 6452 1 2025-11-26 12:31:46.678 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56520 10 6452 1 2025-11-26 12:28:06.526 00:05:01.621 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 12:28:06.528 00:05:01.616 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 12:32:47.108 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59654 10 6452 1 2025-11-26 12:33:11.725 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 12:33:11.906 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 12:33:12.108 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 12:33:11.903 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 12:33:11.988 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 12:33:47.515 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:38108 10 6452 1 2025-11-26 12:34:47.920 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:39726 10 6452 1 2025-11-26 12:35:48.339 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60720 10 6452 1 2025-11-26 12:36:48.745 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:39122 10 6452 1 2025-11-26 12:37:49.119 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:60714 10 6452 1 2025-11-26 12:34:06.528 00:05:01.618 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 12:34:06.525 00:05:01.622 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 12:38:11.934 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 12:38:11.617 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 12:38:12.106 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 12:38:12.114 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 12:38:12.188 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 12:38:49.525 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51884 10 6452 1 2025-11-26 12:39:49.932 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:42886 10 6452 1 2025-11-26 12:40:50.344 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34138 10 6452 1 2025-11-26 12:41:50.746 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:50280 10 6452 1 2025-11-26 12:42:51.146 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:37728 10 6452 1 2025-11-26 12:43:12.511 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 12:43:12.294 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 12:43:12.579 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 12:43:12.515 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 12:43:12.663 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 12:43:51.550 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49864 10 6452 1 2025-11-26 12:40:06.530 00:05:01.618 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 12:40:06.527 00:05:01.623 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 12:44:51.954 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35242 10 6452 1 2025-11-26 12:45:52.361 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43688 10 6452 1 2025-11-26 12:46:52.766 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:57660 10 6452 1 2025-11-26 12:47:53.179 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39422 10 6452 1 2025-11-26 12:48:12.194 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 12:48:12.254 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 12:48:12.103 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 12:48:12.325 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 12:48:12.186 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 12:48:53.583 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:41012 10 6452 1 2025-11-26 12:49:53.948 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60814 10 6452 1 2025-11-26 12:46:06.530 00:05:01.619 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 12:46:06.528 00:05:01.624 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 12:50:54.356 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:57202 10 6452 1 2025-11-26 12:51:54.772 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:44464 10 6452 1 2025-11-26 12:52:55.194 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:38672 10 6452 1 2025-11-26 12:53:12.515 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 12:53:12.323 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 12:53:12.485 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 12:53:12.434 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 12:53:12.324 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 12:53:55.631 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:43450 10 6452 1 2025-11-26 12:54:56.000 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:60106 10 6452 1 2025-11-26 12:52:06.532 00:05:01.622 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 12:55:56.362 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:60300 10 6452 1 2025-11-26 12:52:06.534 00:05:01.618 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 12:56:56.767 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:54464 10 6452 1 2025-11-26 12:57:57.173 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:54804 10 6452 1 2025-11-26 12:58:12.431 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 12:58:12.562 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 12:58:12.579 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 12:58:12.341 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 12:58:12.664 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 Summary: total flows: 139, total bytes: 418388, total packets: 1014, avg bps: 928, avg pps: 0, avg bpp: 412 Time window: 2025-11-26 11:58:06 - 2025-11-26 12:58:12 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0051s User: 0.0000s Wall: 0.0012s flows/second: 113558.3 Runtime: 0.0012s