Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-26 18:59:26.990 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:42006 10 6452 1 2025-11-26 19:00:27.394 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:57190 10 6452 1 2025-11-26 19:01:27.795 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46422 10 6452 1 2025-11-26 18:58:06.636 00:05:01.706 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 18:58:06.638 00:05:01.701 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 19:02:28.198 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49614 10 6452 1 2025-11-26 19:03:19.778 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 19:03:19.695 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 19:03:19.601 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 19:03:19.695 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 19:03:19.695 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 19:03:28.605 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:60442 10 6452 1 2025-11-26 19:04:29.023 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57500 10 6452 1 2025-11-26 19:05:29.421 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54310 10 6452 1 2025-11-26 19:06:29.829 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:56030 10 6452 1 2025-11-26 19:07:30.239 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:46272 10 6452 1 2025-11-26 19:04:06.639 00:05:01.713 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 19:04:06.639 00:05:01.717 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 19:08:19.751 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 19:08:19.770 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 19:08:19.798 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 19:08:19.665 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 19:08:19.882 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 19:08:30.634 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:37224 10 6452 1 2025-11-26 19:09:31.003 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:43852 10 6452 1 2025-11-26 19:10:31.406 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:34002 10 6452 1 2025-11-26 19:11:31.812 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35662 10 6452 1 2025-11-26 19:12:32.215 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43100 10 6452 1 2025-11-26 19:13:20.023 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 19:13:19.892 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 19:13:19.940 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 19:13:19.703 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 19:13:19.702 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 19:13:32.620 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38208 10 6452 1 2025-11-26 19:10:06.638 00:05:01.718 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 19:10:06.640 00:05:01.713 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 19:14:33.026 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:40686 10 6452 1 2025-11-26 19:15:33.437 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47636 10 6452 1 2025-11-26 19:16:33.853 00:00:10.449 TCP 1.101.0.1:3000 -> 23.104.0.1:53990 12 10375 1 2025-11-26 19:17:34.344 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56810 10 6452 1 2025-11-26 19:18:20.358 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 19:18:20.197 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 19:18:20.199 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 19:18:20.267 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 19:18:20.283 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 19:18:34.744 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40938 10 6452 1 2025-11-26 19:19:35.148 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:38774 10 6452 1 2025-11-26 19:16:06.642 00:05:01.717 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 19:16:06.639 00:05:01.723 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 19:20:35.559 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:51516 10 6452 1 2025-11-26 19:21:35.914 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:36062 10 6452 1 2025-11-26 19:22:36.316 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47432 10 6452 1 2025-11-26 19:23:20.079 00:00:00.043 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 19:23:20.008 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 19:23:20.083 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 19:23:19.996 00:00:00.043 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 19:23:20.242 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 19:23:36.730 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:52094 10 6452 1 2025-11-26 19:24:37.140 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52206 10 6452 1 2025-11-26 19:25:37.546 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43434 10 6452 1 2025-11-26 19:22:06.643 00:05:01.717 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 19:22:06.641 00:05:01.723 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 19:26:37.952 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:39634 10 6452 1 2025-11-26 19:27:38.324 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:59130 10 6452 1 2025-11-26 19:28:20.078 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 19:28:20.196 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 19:28:20.080 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 19:28:20.407 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 19:28:20.163 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 19:28:38.741 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:45172 10 6452 1 2025-11-26 19:29:39.109 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:33520 10 6452 1 2025-11-26 19:30:39.469 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60720 10 6452 1 2025-11-26 19:31:39.867 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:41990 10 6452 1 2025-11-26 19:28:06.643 00:05:01.722 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 19:28:06.646 00:05:01.717 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 19:32:40.278 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37746 10 6452 1 2025-11-26 19:33:20.451 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 19:33:20.293 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 19:33:20.438 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 19:33:20.431 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 19:33:20.521 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 19:33:40.680 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:44944 10 6452 1 2025-11-26 19:34:41.105 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38828 10 6452 1 2025-11-26 19:35:41.519 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:45962 10 6452 1 2025-11-26 19:36:41.929 00:00:10.398 TCP 1.101.0.1:3000 -> 23.104.0.1:38944 10 6452 1 2025-11-26 19:37:42.367 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:50378 10 6452 1 2025-11-26 19:34:06.648 00:05:01.716 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 19:34:06.645 00:05:01.722 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 19:38:20.625 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 19:38:20.245 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 19:38:20.656 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 19:38:20.573 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 19:38:20.737 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 19:38:42.732 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51518 10 6452 1 2025-11-26 19:39:43.138 00:00:10.440 TCP 1.101.0.1:3000 -> 23.104.0.1:54904 10 6452 1 2025-11-26 19:40:43.621 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40710 10 6452 1 2025-11-26 19:41:44.021 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:41936 10 6452 1 2025-11-26 19:42:44.392 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46524 10 6452 1 2025-11-26 19:43:20.863 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 19:43:20.437 00:00:00.032 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 19:43:20.600 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 19:43:20.781 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 19:43:20.552 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 19:43:44.799 00:00:10.714 TCP 1.101.0.1:3000 -> 23.104.0.1:44910 10 6452 1 2025-11-26 19:40:06.649 00:05:01.716 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 19:40:06.646 00:05:01.721 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 19:44:45.566 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:48400 10 6452 1 2025-11-26 19:45:45.932 00:00:10.343 TCP 1.101.0.1:3000 -> 23.104.0.1:57186 10 6452 1 2025-11-26 19:46:46.332 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44738 10 6452 1 2025-11-26 19:47:46.736 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37610 10 6452 1 2025-11-26 19:48:20.642 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 19:48:20.580 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 19:48:20.725 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 19:48:20.817 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 19:48:20.809 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 19:48:47.140 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46722 10 6452 1 2025-11-26 19:49:47.546 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36668 10 6452 1 2025-11-26 19:46:06.650 00:05:01.717 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 19:46:06.647 00:05:01.722 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 19:50:47.948 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55412 10 6452 1 2025-11-26 19:51:48.356 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:56424 10 6452 1 2025-11-26 19:52:48.757 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:44462 10 6452 1 2025-11-26 19:53:20.879 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 19:53:20.665 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 19:53:20.880 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 19:53:20.745 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 19:53:20.963 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 19:53:49.169 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48182 10 6452 1 2025-11-26 19:54:49.569 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44154 10 6452 1 2025-11-26 19:55:49.973 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:48998 10 6452 1 2025-11-26 19:52:06.648 00:05:01.724 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 19:52:06.651 00:05:01.718 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 19:56:50.379 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:41864 10 6452 1 2025-11-26 19:57:50.775 00:00:10.638 TCP 1.101.0.1:3000 -> 23.104.0.1:36694 10 6452 1 2025-11-26 19:58:20.765 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 19:58:21.107 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 19:58:21.051 00:00:00.027 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 19:58:21.052 00:00:00.026 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 19:58:21.139 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 Summary: total flows: 139, total bytes: 414471, total packets: 1012, avg bps: 917, avg pps: 0, avg bpp: 409 Time window: 2025-11-26 18:58:06 - 2025-11-26 19:58:21 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0049s User: 0.0010s Wall: 0.0032s flows/second: 43586.1 Runtime: 0.0032s