Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-26 15:59:11.498 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59646 10 6452 1 2025-11-26 16:00:11.904 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:34220 10 6452 1 2025-11-26 16:01:12.312 00:00:11.260 TCP 1.101.0.1:3000 -> 23.104.0.1:36966 10 6452 1 2025-11-26 15:58:06.585 00:05:01.648 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 15:58:06.583 00:05:01.653 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 16:02:13.606 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:39602 10 6452 1 2025-11-26 16:03:15.965 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 16:03:15.884 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 16:03:16.274 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 16:03:16.287 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 16:03:16.183 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 16:03:13.964 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39418 10 6452 1 2025-11-26 16:04:14.366 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:39556 10 6452 1 2025-11-26 16:05:14.761 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:45248 10 6452 1 2025-11-26 16:06:15.137 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50582 10 6452 1 2025-11-26 16:07:15.540 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33250 10 6452 1 2025-11-26 16:04:06.587 00:05:01.658 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 16:04:06.585 00:05:01.663 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 16:08:16.398 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 16:08:16.317 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 16:08:16.007 00:00:00.034 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 16:08:16.314 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 16:08:16.250 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 16:08:15.946 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:36938 10 6452 1 2025-11-26 16:09:16.344 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:46940 10 6452 1 2025-11-26 16:10:16.760 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:56736 10 6452 1 2025-11-26 16:11:17.182 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47348 10 6452 1 2025-11-26 16:12:17.590 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:50564 10 6452 1 2025-11-26 16:13:16.574 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 16:13:16.336 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 16:13:16.443 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 16:13:16.445 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 16:13:16.527 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 16:13:17.949 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35110 10 6452 1 2025-11-26 16:10:06.590 00:05:01.658 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 16:10:06.587 00:05:01.663 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 16:14:18.353 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:50142 10 6452 1 2025-11-26 16:15:18.715 00:00:10.315 TCP 1.101.0.1:3000 -> 23.104.0.1:34568 10 6452 1 2025-11-26 16:16:19.103 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:52900 10 6452 1 2025-11-26 16:17:19.503 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:52236 10 6452 1 2025-11-26 16:18:16.592 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 16:18:16.289 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 16:18:16.595 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 16:18:16.464 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 16:18:16.678 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 16:18:19.868 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53746 10 6452 1 2025-11-26 16:19:20.282 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:50702 10 6452 1 2025-11-26 16:16:06.588 00:05:01.666 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 16:16:06.590 00:05:01.661 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 16:20:20.692 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45094 10 6452 1 2025-11-26 16:21:21.104 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:46388 10 6452 1 2025-11-26 16:22:21.524 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57110 10 6452 1 2025-11-26 16:23:16.641 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 16:23:16.617 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 16:23:16.589 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 16:23:16.558 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 16:23:16.500 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 16:23:21.928 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:52606 10 6452 1 2025-11-26 16:24:22.353 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:53050 10 6452 1 2025-11-26 16:25:22.754 00:00:10.396 TCP 1.101.0.1:3000 -> 23.104.0.1:53730 10 6452 1 2025-11-26 16:22:06.592 00:05:01.661 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 16:22:06.589 00:05:01.666 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 16:26:23.193 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:39342 10 6452 1 2025-11-26 16:27:23.596 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43520 10 6452 1 2025-11-26 16:28:16.829 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 16:28:16.677 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 16:28:16.637 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 16:28:16.747 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 16:28:16.361 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 16:28:23.995 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:53712 10 6452 1 2025-11-26 16:29:24.361 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:34488 10 6452 1 2025-11-26 16:30:24.769 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:58116 10 6452 1 2025-11-26 16:31:25.186 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38848 10 6452 1 2025-11-26 16:28:06.592 00:05:01.664 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 16:28:06.590 00:05:01.669 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 16:32:25.585 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59266 10 6452 1 2025-11-26 16:33:17.474 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 16:33:17.355 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 16:33:17.407 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 16:33:17.479 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 16:33:17.491 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 16:33:25.990 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56996 10 6452 1 2025-11-26 16:34:26.395 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:55062 10 6452 1 2025-11-26 16:35:26.806 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:34354 10 6452 1 2025-11-26 16:36:27.223 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:59700 10 6452 1 2025-11-26 16:37:27.620 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:50090 10 6452 1 2025-11-26 16:34:06.597 00:05:01.661 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 16:34:06.595 00:05:01.667 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 16:38:16.780 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 16:38:16.916 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 16:38:16.774 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 16:38:16.769 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 16:38:16.857 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 16:38:27.983 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:51284 10 6452 1 2025-11-26 16:39:28.351 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54392 10 6452 1 2025-11-26 16:40:28.758 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:59356 10 6452 1 2025-11-26 16:41:29.193 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:36820 10 6452 1 2025-11-26 16:42:29.598 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49256 10 6452 1 2025-11-26 16:43:16.883 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 16:43:16.660 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 16:43:16.902 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 16:43:16.803 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 16:43:16.984 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 16:43:30.006 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:40682 10 6452 1 2025-11-26 16:40:06.598 00:05:01.662 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 16:40:06.595 00:05:01.667 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 16:44:30.377 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:44596 10 6452 1 2025-11-26 16:45:30.789 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:34052 10 6452 1 2025-11-26 16:46:31.200 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47328 10 6452 1 2025-11-26 16:47:31.599 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:33838 10 6452 1 2025-11-26 16:48:17.408 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 16:48:17.325 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 16:48:17.262 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 16:48:17.244 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 16:48:17.289 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 16:48:32.000 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:37604 10 6452 1 2025-11-26 16:49:32.406 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54708 10 6452 1 2025-11-26 16:46:06.596 00:05:01.666 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 16:46:06.598 00:05:01.661 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 16:50:32.810 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:44816 10 6452 1 2025-11-26 16:51:33.210 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:53672 10 6452 1 2025-11-26 16:52:33.615 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37852 10 6452 1 2025-11-26 16:53:17.093 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 16:53:17.209 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 16:53:17.100 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 16:53:16.941 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 16:53:17.183 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 16:53:34.023 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:38576 10 6452 1 2025-11-26 16:54:34.421 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:57264 10 6452 1 2025-11-26 16:55:34.838 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:38602 10 6452 1 2025-11-26 16:52:06.601 00:05:01.661 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 16:52:06.598 00:05:01.667 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 16:56:35.264 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:43640 10 6452 1 2025-11-26 16:57:35.667 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:43552 10 6452 1 2025-11-26 16:58:17.354 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 16:58:17.183 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 16:58:17.248 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 16:58:17.106 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 16:58:17.438 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 16:58:36.105 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:35394 10 6452 1 Summary: total flows: 140, total bytes: 417000, total packets: 1020, avg bps: 916, avg pps: 0, avg bpp: 408 Time window: 2025-11-26 15:58:06 - 2025-11-26 16:58:46 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0042s User: 0.0007s Wall: 0.0025s flows/second: 56025.4 Runtime: 0.0025s