Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-26 13:59:22.114 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37212 10 6452 1 2025-11-26 14:00:22.521 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56332 10 6452 1 2025-11-26 14:01:22.948 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:36558 10 6452 1 2025-11-26 13:58:06.550 00:05:01.623 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 13:58:06.553 00:05:01.617 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 14:02:23.353 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:38726 10 6452 1 2025-11-26 14:03:13.847 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 14:03:13.766 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 14:03:13.725 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 14:03:13.764 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 14:03:13.692 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 14:03:23.767 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55836 10 6452 1 2025-11-26 14:04:24.173 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49490 10 6452 1 2025-11-26 14:05:24.580 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:52742 10 6452 1 2025-11-26 14:06:24.979 00:00:10.452 TCP 1.101.0.1:3000 -> 23.104.0.1:46860 12 10375 1 2025-11-26 14:07:25.468 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35338 10 6452 1 2025-11-26 14:04:06.552 00:05:01.619 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 14:04:06.549 00:05:01.624 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 14:08:13.861 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 14:08:14.040 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 14:08:13.764 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 14:08:13.778 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 14:08:13.870 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 14:08:25.877 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:42202 10 6452 1 2025-11-26 14:09:26.293 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41866 10 6452 1 2025-11-26 14:10:26.695 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:39976 10 6452 1 2025-11-26 14:11:27.061 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:47816 10 6452 1 2025-11-26 14:12:27.469 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42330 10 6452 1 2025-11-26 14:13:14.109 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 14:13:13.636 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 14:13:13.938 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 14:13:13.941 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 14:13:14.020 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 14:13:27.871 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:40106 10 6452 1 2025-11-26 14:10:06.554 00:05:01.619 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 14:10:06.552 00:05:01.624 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 14:14:28.280 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:52638 10 6452 1 2025-11-26 14:15:28.640 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:53602 10 6452 1 2025-11-26 14:16:29.002 00:00:10.356 TCP 1.101.0.1:3000 -> 23.104.0.1:40564 10 6452 1 2025-11-26 14:17:29.409 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:36404 10 6452 1 2025-11-26 14:18:13.874 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 14:18:13.877 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 14:18:14.101 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 14:18:14.218 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 14:18:14.184 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 14:18:29.775 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:33684 10 6452 1 2025-11-26 14:19:30.183 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:51184 10 6452 1 2025-11-26 14:16:06.558 00:05:01.616 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 14:16:06.556 00:05:01.621 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 14:20:30.589 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:52266 10 6452 1 2025-11-26 14:21:30.992 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:58484 10 6452 1 2025-11-26 14:22:31.400 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39488 10 6452 1 2025-11-26 14:23:14.186 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 14:23:14.183 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 14:23:14.116 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 14:23:14.128 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 14:23:14.199 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 14:23:31.805 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51356 10 6452 1 2025-11-26 14:24:32.215 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:58224 10 6452 1 2025-11-26 14:25:32.649 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:50992 10 6452 1 2025-11-26 14:22:06.557 00:05:01.629 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 14:22:06.560 00:05:01.624 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 14:26:33.067 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37676 10 6452 1 2025-11-26 14:27:33.468 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:60998 10 6452 1 2025-11-26 14:28:14.197 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 14:28:14.210 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 14:28:14.168 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 14:28:14.325 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 14:28:14.251 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 14:28:33.882 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54886 10 6452 1 2025-11-26 14:29:34.287 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58736 10 6452 1 2025-11-26 14:30:34.693 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:54968 10 6452 1 2025-11-26 14:31:35.126 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:60100 12 10369 1 2025-11-26 14:28:06.560 00:05:01.628 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 14:28:06.564 00:05:01.623 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 14:32:35.557 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:41710 10 6452 1 2025-11-26 14:33:14.572 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 14:33:14.435 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 14:33:14.570 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 14:33:14.512 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 14:33:14.654 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 14:33:35.965 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50820 10 6452 1 2025-11-26 14:34:36.371 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46226 10 6452 1 2025-11-26 14:35:36.773 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:40370 10 6452 1 2025-11-26 14:36:37.185 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39918 10 6452 1 2025-11-26 14:37:37.588 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53986 10 6452 1 2025-11-26 14:34:06.561 00:05:01.649 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 14:34:06.562 00:05:01.645 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 14:38:14.658 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 14:38:14.614 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 14:38:14.725 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 14:38:14.766 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 14:38:14.809 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 14:38:37.993 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:57824 10 6452 1 2025-11-26 14:39:38.411 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:45982 10 6452 1 2025-11-26 14:40:38.810 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44286 10 6452 1 2025-11-26 14:41:39.214 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52912 10 6452 1 2025-11-26 14:42:39.616 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53436 10 6452 1 2025-11-26 14:43:14.601 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 14:43:14.487 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 14:43:14.454 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 14:43:14.369 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 14:43:14.538 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 14:43:40.024 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42566 10 6452 1 2025-11-26 14:40:06.563 00:05:01.635 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 14:40:06.562 00:05:01.639 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 14:44:40.425 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43586 10 6452 1 2025-11-26 14:45:40.830 00:00:10.394 TCP 1.101.0.1:3000 -> 23.104.0.1:40796 10 6452 1 2025-11-26 14:46:41.265 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38214 10 6452 1 2025-11-26 14:47:41.673 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37648 10 6452 1 2025-11-26 14:48:14.757 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 14:48:14.522 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 14:48:14.575 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 14:48:14.661 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 14:48:14.658 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 14:48:42.104 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:33580 10 6452 1 2025-11-26 14:49:42.512 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:42942 10 6452 1 2025-11-26 14:46:06.563 00:05:01.640 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 14:46:06.566 00:05:01.635 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 14:50:42.920 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:50314 10 6452 1 2025-11-26 14:51:43.323 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:57454 10 6452 1 2025-11-26 14:52:43.761 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:50816 10 6452 1 2025-11-26 14:53:14.782 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 14:53:14.702 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 14:53:14.721 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 14:53:14.700 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 14:53:14.779 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 14:53:44.190 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60900 10 6452 1 2025-11-26 14:54:44.593 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:44432 10 6452 1 2025-11-26 14:55:44.959 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:44884 10 6452 1 2025-11-26 14:52:06.569 00:05:01.634 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 14:52:06.566 00:05:01.639 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 14:56:45.370 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60174 10 6452 1 2025-11-26 14:57:45.776 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:40126 10 6452 1 2025-11-26 14:58:14.890 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 14:58:14.695 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 14:58:14.882 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 14:58:14.746 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 14:58:14.965 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 Summary: total flows: 139, total bytes: 418388, total packets: 1014, avg bps: 927, avg pps: 0, avg bpp: 412 Time window: 2025-11-26 13:58:06 - 2025-11-26 14:58:14 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0040s User: 0.0008s Wall: 0.0017s flows/second: 79842.3 Runtime: 0.0018s