Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-26 17:59:01.210 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37430 10 6452 1 2025-11-26 18:00:01.612 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:45510 10 6452 1 2025-11-26 18:01:02.008 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:50660 10 6452 1 2025-11-26 17:58:06.620 00:05:01.688 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 17:58:06.617 00:05:01.694 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 18:02:02.412 00:00:10.401 TCP 1.101.0.1:3000 -> 23.104.0.1:41642 10 6452 1 2025-11-26 18:03:02.824 00:00:10.972 TCP 1.101.0.1:3000 -> 23.104.0.1:55886 10 6452 1 2025-11-26 18:03:18.492 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 18:03:18.399 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 18:03:18.634 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 18:03:18.406 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 18:03:18.716 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 18:04:03.857 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:35498 10 6452 1 2025-11-26 18:05:04.283 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:48156 10 6452 1 2025-11-26 18:06:04.686 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:37264 10 6452 1 2025-11-26 18:07:05.111 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38296 10 6452 1 2025-11-26 18:04:06.620 00:05:01.691 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 18:04:06.622 00:05:01.686 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 18:08:05.510 00:00:10.519 TCP 1.101.0.1:3000 -> 23.104.0.1:47394 10 6452 1 2025-11-26 18:08:18.573 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 18:08:18.421 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 18:08:18.651 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 18:08:18.507 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 18:08:18.734 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 18:09:06.099 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41858 10 6452 1 2025-11-26 18:10:06.505 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:48014 10 6452 1 2025-11-26 18:11:06.924 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:54134 10 6452 1 2025-11-26 18:12:07.341 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:60894 10 6452 1 2025-11-26 18:13:18.935 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 18:13:19.076 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 18:13:07.711 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47208 10 6452 1 2025-11-26 18:13:19.119 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 18:13:18.484 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 18:13:19.017 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 18:10:06.623 00:05:01.698 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 18:10:06.621 00:05:01.703 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 18:14:08.113 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:51638 10 6452 1 2025-11-26 18:15:08.516 00:00:10.447 TCP 1.101.0.1:3000 -> 23.104.0.1:59302 10 6452 1 2025-11-26 18:16:09.003 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:34806 10 6452 1 2025-11-26 18:17:09.401 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:57766 10 6452 1 2025-11-26 18:18:18.681 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 18:18:18.507 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 18:18:18.843 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 18:18:18.982 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 18:18:09.804 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45204 10 6452 1 2025-11-26 18:18:18.926 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 18:19:10.209 00:00:10.558 TCP 1.101.0.1:3000 -> 23.104.0.1:60638 10 6452 1 2025-11-26 18:16:06.622 00:05:01.707 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 18:16:06.624 00:05:01.702 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 18:20:10.810 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:57860 10 6452 1 2025-11-26 18:21:11.184 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:40510 10 6452 1 2025-11-26 18:22:11.551 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:45318 10 6452 1 2025-11-26 18:23:19.062 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 18:23:18.884 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 18:23:18.798 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 18:23:18.980 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 18:23:18.974 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 18:23:11.918 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:55604 10 6452 1 2025-11-26 18:24:12.313 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:55520 10 6452 1 2025-11-26 18:25:12.745 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50716 10 6452 1 2025-11-26 18:22:06.625 00:05:01.705 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 18:22:06.623 00:05:01.709 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 18:26:13.150 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52384 10 6452 1 2025-11-26 18:27:13.554 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:32914 10 6452 1 2025-11-26 18:28:19.055 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 18:28:19.065 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 18:28:18.871 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 18:28:18.973 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 18:28:19.198 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 18:28:13.959 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:35244 10 6452 1 2025-11-26 18:29:14.369 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35476 10 6452 1 2025-11-26 18:30:14.770 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:46562 10 6452 1 2025-11-26 18:31:15.186 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:42288 10 6452 1 2025-11-26 18:28:06.626 00:05:01.704 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 18:28:06.625 00:05:01.709 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 18:32:15.591 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:42786 10 6452 1 2025-11-26 18:33:19.133 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 18:33:18.745 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 18:33:18.881 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 18:33:18.879 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 18:33:18.964 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 18:33:15.992 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:47600 10 6452 1 2025-11-26 18:34:16.398 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:57272 10 6452 1 2025-11-26 18:35:16.797 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48012 10 6452 1 2025-11-26 18:36:17.201 00:00:10.442 TCP 1.101.0.1:3000 -> 23.104.0.1:39428 12 10369 1 2025-11-26 18:37:17.684 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:38740 10 6452 1 2025-11-26 18:34:06.629 00:05:01.704 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 18:34:06.628 00:05:01.708 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 18:38:19.176 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 18:38:19.518 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 18:38:19.327 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 18:38:19.073 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 18:38:19.257 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 18:38:18.117 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:36582 12 6556 1 2025-11-26 18:39:18.529 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:48756 10 6452 1 2025-11-26 18:40:18.885 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:43302 10 6452 1 2025-11-26 18:41:19.315 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:37960 10 6452 1 2025-11-26 18:42:19.682 00:00:10.811 TCP 1.101.0.1:3000 -> 23.104.0.1:45022 10 6452 1 2025-11-26 18:43:19.375 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 18:43:19.195 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 18:43:19.201 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 18:43:19.293 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 18:43:19.290 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 18:43:20.520 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:40824 10 6452 1 2025-11-26 18:40:06.630 00:05:01.703 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 18:40:06.628 00:05:01.707 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 18:44:20.931 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:42890 10 6452 1 2025-11-26 18:45:21.355 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55360 10 6452 1 2025-11-26 18:46:21.768 00:00:10.399 TCP 1.101.0.1:3000 -> 23.104.0.1:55938 12 10375 1 2025-11-26 18:47:22.204 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36210 10 6452 1 2025-11-26 18:48:19.523 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 18:48:19.624 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 18:48:19.556 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 18:48:19.309 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 18:48:19.605 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 18:48:22.607 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:37438 10 6452 1 2025-11-26 18:49:22.972 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:48984 10 6452 1 2025-11-26 18:46:06.630 00:05:01.708 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 18:46:06.632 00:05:01.703 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 18:50:23.398 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:45420 10 6452 1 2025-11-26 18:51:23.798 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:56296 10 6452 1 2025-11-26 18:52:24.200 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:41176 10 6452 1 2025-11-26 18:53:19.687 00:00:00.029 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 18:53:19.688 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 18:53:19.636 00:00:00.026 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 18:53:19.604 00:00:00.030 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 18:53:19.612 00:00:00.026 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 18:53:24.573 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:36658 10 6452 1 2025-11-26 18:54:24.939 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:59758 10 6452 1 2025-11-26 18:55:25.363 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:45242 10 6452 1 2025-11-26 18:52:06.635 00:05:01.703 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 18:52:06.632 00:05:01.707 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 18:56:25.764 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:43026 10 6452 1 2025-11-26 18:57:26.175 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:43746 10 6452 1 2025-11-26 18:58:20.081 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 18:58:19.543 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 18:58:19.920 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 18:58:19.728 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 18:58:20.005 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 18:58:26.585 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48926 10 6452 1 Summary: total flows: 140, total bytes: 424944, total packets: 1026, avg bps: 936, avg pps: 0, avg bpp: 414 Time window: 2025-11-26 17:58:06 - 2025-11-26 18:58:36 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0043s User: 0.0007s Wall: 0.0023s flows/second: 61377.9 Runtime: 0.0023s