Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-26 21:59:40.680 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46318 10 6452 1 2025-11-26 22:00:41.111 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:34758 10 6452 1 2025-11-26 22:01:41.513 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:33606 10 6452 1 2025-11-26 21:58:06.686 00:05:01.743 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 21:58:06.684 00:05:01.748 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 22:02:41.908 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:34176 10 6452 1 2025-11-26 22:03:23.318 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 22:03:23.388 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 22:03:23.101 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 22:03:23.235 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 22:03:23.388 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 22:03:42.268 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57436 10 6452 1 2025-11-26 22:04:42.669 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:45948 10 6452 1 2025-11-26 22:05:43.101 00:00:10.316 TCP 1.101.0.1:3000 -> 23.104.0.1:59428 10 6452 1 2025-11-26 22:06:43.457 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:60240 10 6452 1 2025-11-26 22:07:43.833 00:00:10.346 TCP 1.101.0.1:3000 -> 23.104.0.1:51764 10 6452 1 2025-11-26 22:04:06.685 00:05:01.749 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 22:04:06.687 00:05:01.744 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 22:08:23.537 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 22:08:23.608 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 22:08:23.539 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 22:08:23.576 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 22:08:23.622 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 22:08:44.218 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:60832 10 6452 1 2025-11-26 22:09:44.578 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56738 10 6452 1 2025-11-26 22:10:44.983 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:32980 10 6452 1 2025-11-26 22:11:45.345 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:45662 10 6452 1 2025-11-26 22:12:45.747 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51474 10 6452 1 2025-11-26 22:13:23.776 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 22:13:23.636 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 22:13:23.484 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 22:13:23.692 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 22:13:23.347 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 22:13:46.152 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:49126 10 6452 1 2025-11-26 22:10:06.692 00:05:01.753 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 22:10:06.688 00:05:01.758 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 22:14:46.510 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52634 10 6452 1 2025-11-26 22:15:46.919 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:37688 10 6452 1 2025-11-26 22:16:47.280 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:60016 10 6452 1 2025-11-26 22:17:47.677 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49362 10 6452 1 2025-11-26 22:18:23.807 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 22:18:23.850 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 22:18:23.589 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 22:18:23.725 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 22:18:23.814 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 22:18:48.102 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:34784 10 6452 1 2025-11-26 22:19:48.527 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:51828 10 6452 1 2025-11-26 22:16:06.691 00:05:01.754 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 22:16:06.689 00:05:01.759 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 22:20:48.899 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:44298 10 6452 1 2025-11-26 22:21:49.277 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:42242 10 6452 1 2025-11-26 22:22:49.679 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:56788 10 6452 1 2025-11-26 22:23:23.633 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 22:23:23.860 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 22:23:23.769 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 22:23:23.551 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 22:23:23.861 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 22:23:50.117 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42440 10 6452 1 2025-11-26 22:24:50.518 00:00:10.808 TCP 1.101.0.1:3000 -> 23.104.0.1:58662 10 6452 1 2025-11-26 22:22:06.689 00:05:01.760 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 22:25:51.365 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:56974 10 6452 1 2025-11-26 22:22:06.692 00:05:01.755 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 22:26:51.764 00:00:10.342 TCP 1.101.0.1:3000 -> 23.104.0.1:56918 10 6452 1 2025-11-26 22:27:52.144 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38302 10 6452 1 2025-11-26 22:28:24.068 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 22:28:23.622 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 22:28:23.952 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 22:28:23.874 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 22:28:24.036 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 22:28:52.553 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:36192 10 6452 1 2025-11-26 22:29:52.951 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:56688 10 6452 1 2025-11-26 22:30:53.319 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:52870 10 6452 1 2025-11-26 22:31:53.720 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:58734 10 6452 1 2025-11-26 22:28:06.690 00:05:01.762 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 22:28:06.693 00:05:01.757 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 22:32:54.137 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48438 10 6452 1 2025-11-26 22:33:24.049 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 22:33:23.898 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 22:33:23.645 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 22:33:23.966 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 22:33:23.971 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 22:33:54.539 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59102 10 6452 1 2025-11-26 22:34:54.941 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:53196 10 6452 1 2025-11-26 22:35:55.360 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:46502 10 6452 1 2025-11-26 22:36:55.763 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:49796 10 6452 1 2025-11-26 22:34:06.693 00:05:01.759 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 22:37:56.175 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41628 10 6452 1 2025-11-26 22:34:06.695 00:05:01.754 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 22:38:24.036 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 22:38:24.087 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 22:38:24.022 00:00:00.031 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 22:38:24.177 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 22:38:24.105 00:00:00.038 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 22:38:56.576 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33008 10 6452 1 2025-11-26 22:39:56.982 00:00:10.643 TCP 1.101.0.1:3000 -> 23.104.0.1:51656 10 6452 1 2025-11-26 22:40:57.667 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58872 10 6452 1 2025-11-26 22:41:58.096 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:50290 10 6452 1 2025-11-26 22:42:58.499 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40448 10 6452 1 2025-11-26 22:43:24.528 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 22:43:24.112 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 22:43:24.445 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 22:43:24.594 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 22:43:24.528 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 22:40:06.694 00:05:01.761 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 22:43:58.907 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:42746 10 6452 1 2025-11-26 22:40:06.698 00:05:01.755 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 22:44:59.319 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:34546 10 6452 1 2025-11-26 22:45:59.727 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:48240 11 6492 1 2025-11-26 22:47:00.138 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:53184 10 6452 1 2025-11-26 22:48:00.507 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:52410 10 6452 1 2025-11-26 22:48:24.423 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 22:48:24.128 00:00:00.049 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 22:48:24.299 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 22:48:24.341 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 22:48:24.421 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 22:49:00.911 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:52720 10 6452 1 2025-11-26 22:46:06.695 00:05:01.761 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 22:46:06.698 00:05:01.756 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 22:50:01.325 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:52126 10 6452 1 2025-11-26 22:51:01.688 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33954 10 6452 1 2025-11-26 22:52:02.112 00:00:10.438 TCP 1.101.0.1:3000 -> 23.104.0.1:57110 12 10375 1 2025-11-26 22:53:02.593 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:39118 10 6452 1 2025-11-26 22:53:24.500 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 22:53:24.464 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 22:53:24.267 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 22:53:24.418 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 22:53:24.353 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-26 22:54:02.965 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34342 10 6452 1 2025-11-26 22:55:03.370 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45100 10 6452 1 2025-11-26 22:52:06.698 00:05:01.756 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-26 22:52:06.696 00:05:01.761 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-26 22:56:03.769 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:52808 10 6452 1 2025-11-26 22:57:04.188 00:00:10.402 TCP 1.101.0.1:3000 -> 23.104.0.1:38652 12 10375 1 2025-11-26 22:58:04.655 00:00:10.547 TCP 1.101.0.1:3000 -> 23.104.0.1:34736 10 6452 1 2025-11-26 22:58:24.621 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-26 22:58:24.537 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-26 22:58:24.269 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 22:58:24.538 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-26 22:58:24.460 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 Summary: total flows: 139, total bytes: 418434, total packets: 1015, avg bps: 925, avg pps: 0, avg bpp: 412 Time window: 2025-11-26 21:58:06 - 2025-11-26 22:58:24 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0041s User: 0.0010s Wall: 0.0014s flows/second: 101622.5 Runtime: 0.0014s