Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-26 16:59:36.512 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:47548 10 6452 1 2025-11-26 17:00:36.922 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:49046 12 6556 1 2025-11-26 17:01:37.352 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:57346 10 6452 1 2025-11-26 16:58:06.598 00:05:01.669 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 16:58:06.602 00:05:01.663 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 17:02:37.716 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:33434 10 6452 1 2025-11-26 17:03:17.978 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 17:03:17.939 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 17:03:17.970 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 17:03:17.814 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 17:03:18.053 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 17:03:38.129 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38824 10 6452 1 2025-11-26 17:04:38.539 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:36572 10 6452 1 2025-11-26 17:05:38.958 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:34358 10 6452 1 2025-11-26 17:06:39.318 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:42294 10 6452 1 2025-11-26 17:07:39.723 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:53014 10 6452 1 2025-11-26 17:04:06.600 00:05:01.667 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 17:04:06.604 00:05:01.662 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 17:08:17.564 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 17:08:17.224 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 17:08:17.716 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 17:08:17.500 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 17:08:17.797 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 17:08:40.105 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:58858 10 6452 1 2025-11-26 17:09:40.469 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49978 10 6452 1 2025-11-26 17:10:40.870 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:40760 10 6452 1 2025-11-26 17:11:41.234 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:60746 10 6452 1 2025-11-26 17:12:41.658 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40752 10 6452 1 2025-11-26 17:13:17.547 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 17:13:17.460 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 17:13:17.416 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 17:13:17.465 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 17:13:17.358 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 17:13:42.085 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33066 10 6452 1 2025-11-26 17:10:06.607 00:05:01.662 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 17:10:06.605 00:05:01.667 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 17:14:42.496 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:45906 10 6452 1 2025-11-26 17:15:42.861 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:34016 10 6452 1 2025-11-26 17:16:43.274 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:60236 10 6452 1 2025-11-26 17:17:43.688 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:50634 10 6452 1 2025-11-26 17:18:17.760 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 17:18:17.488 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 17:18:17.714 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 17:18:17.655 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 17:18:17.797 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 17:18:44.118 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:37186 10 6452 1 2025-11-26 17:19:44.482 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:38692 10 6452 1 2025-11-26 17:16:06.610 00:05:01.660 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 17:16:06.607 00:05:01.665 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 17:20:44.893 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:39090 10 6452 1 2025-11-26 17:21:45.304 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:38302 10 6452 1 2025-11-26 17:22:45.705 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:37668 10 6452 1 2025-11-26 17:23:17.864 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 17:23:17.604 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 17:23:17.725 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 17:23:17.782 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 17:23:17.495 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 17:23:46.099 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57230 10 6452 1 2025-11-26 17:24:46.500 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35524 10 6452 1 2025-11-26 17:25:46.907 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40442 10 6452 1 2025-11-26 17:22:06.609 00:05:01.665 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 17:22:06.612 00:05:01.660 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 17:26:47.327 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:40110 10 6452 1 2025-11-26 17:27:47.684 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:43146 10 6452 1 2025-11-26 17:28:17.883 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 17:28:17.863 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 17:28:17.889 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 17:28:17.885 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 17:28:17.972 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 17:28:48.114 00:00:10.418 TCP 1.101.0.1:3000 -> 23.104.0.1:56892 11 6504 1 2025-11-26 17:29:48.572 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36410 10 6452 1 2025-11-26 17:30:48.976 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:55550 10 6452 1 2025-11-26 17:31:49.399 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:59016 10 6452 1 2025-11-26 17:28:06.613 00:05:01.662 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 17:28:06.611 00:05:01.668 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 17:32:49.810 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45414 10 6452 1 2025-11-26 17:33:18.101 00:00:00.027 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 17:33:17.780 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 17:33:17.907 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 17:33:17.850 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 17:33:17.990 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 17:33:50.213 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:40502 10 6452 1 2025-11-26 17:34:50.612 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41248 10 6452 1 2025-11-26 17:35:51.018 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47332 10 6452 1 2025-11-26 17:36:51.421 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:37250 10 6452 1 2025-11-26 17:37:51.830 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:36384 10 6452 1 2025-11-26 17:34:06.614 00:05:01.664 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 17:34:06.612 00:05:01.669 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 17:38:18.288 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 17:38:18.163 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 17:38:18.225 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 17:38:18.205 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 17:38:18.212 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 17:38:52.230 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:59444 10 6452 1 2025-11-26 17:39:52.645 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:58192 10 6452 1 2025-11-26 17:40:53.060 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:45376 10 6452 1 2025-11-26 17:41:53.422 00:00:10.814 TCP 1.101.0.1:3000 -> 23.104.0.1:40962 10 6452 1 2025-11-26 17:42:54.273 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:48228 10 6452 1 2025-11-26 17:43:18.320 00:00:00.026 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 17:43:18.268 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 17:43:18.471 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 17:43:18.302 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 17:43:18.554 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 17:43:54.681 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:50090 10 6452 1 2025-11-26 17:40:06.615 00:05:01.663 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 17:40:06.612 00:05:01.669 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 17:44:55.109 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:35012 10 6452 1 2025-11-26 17:45:55.525 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50436 10 6452 1 2025-11-26 17:46:55.930 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:57432 10 6452 1 2025-11-26 17:47:56.353 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:44150 10 6452 1 2025-11-26 17:48:18.173 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 17:48:18.169 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 17:48:18.171 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 17:48:18.177 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 17:48:18.253 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 17:48:56.756 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:56500 10 6452 1 2025-11-26 17:46:06.612 00:05:01.695 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 17:49:57.133 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:59082 10 6452 1 2025-11-26 17:46:06.616 00:05:01.689 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 17:50:57.548 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:52598 10 6452 1 2025-11-26 17:51:57.914 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:51520 10 6452 1 2025-11-26 17:52:58.326 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:57552 10 6452 1 2025-11-26 17:53:18.266 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 17:53:18.415 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 17:53:18.272 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 17:53:18.189 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 17:53:18.356 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 17:53:58.688 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:42978 10 6452 1 2025-11-26 17:54:59.063 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:52242 10 6452 1 2025-11-26 17:55:59.467 00:00:10.898 TCP 1.101.0.1:3000 -> 23.104.0.1:54756 10 6452 1 2025-11-26 17:52:06.618 00:05:01.689 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 17:52:06.615 00:05:01.694 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 17:57:00.404 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33638 10 6452 1 2025-11-26 17:58:00.805 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47562 10 6452 1 2025-11-26 17:58:18.470 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 17:58:18.321 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 17:58:18.537 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 17:58:18.276 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 17:58:18.621 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 Summary: total flows: 139, total bytes: 410704, total packets: 1013, avg bps: 909, avg pps: 0, avg bpp: 405 Time window: 2025-11-26 16:58:06 - 2025-11-26 17:58:18 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0028s User: 0.0019s Wall: 0.0023s flows/second: 60856.8 Runtime: 0.0023s