Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-27 01:59:27.057 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:57840 10 6452 1 2025-11-27 02:00:27.421 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59240 10 6452 1 2025-11-27 02:01:27.828 00:00:10.434 TCP 1.101.0.1:3000 -> 23.104.0.1:41064 12 10584 1 2025-11-27 01:58:06.757 00:05:01.789 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-27 01:58:06.760 00:05:01.784 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-27 02:02:28.302 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46200 10 6661 1 2025-11-27 02:03:28.208 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 02:03:28.229 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 02:03:28.204 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 02:03:28.206 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 02:03:28.286 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-27 02:03:28.705 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:46904 10 6661 1 2025-11-27 02:04:29.118 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46478 10 6661 1 2025-11-27 02:05:29.519 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46292 10 6661 1 2025-11-27 02:06:29.922 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:60378 10 6661 1 2025-11-27 02:07:30.344 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41898 10 6661 1 2025-11-27 02:04:06.761 00:05:01.784 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-27 02:04:06.758 00:05:01.789 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-27 02:08:28.314 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-27 02:08:28.318 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 02:08:28.431 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 02:08:28.232 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 02:08:28.237 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 02:08:30.746 00:00:10.346 TCP 1.101.0.1:3000 -> 23.104.0.1:39518 10 6661 1 2025-11-27 02:09:31.138 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:47712 10 6661 1 2025-11-27 02:10:31.506 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33924 10 6661 1 2025-11-27 02:11:31.912 00:00:10.398 TCP 1.101.0.1:3000 -> 23.104.0.1:46674 12 10578 1 2025-11-27 02:12:32.351 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:35602 10 6661 1 2025-11-27 02:13:28.532 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-27 02:13:28.509 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 02:13:28.326 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 02:13:28.449 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 02:13:28.292 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 02:13:32.754 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:52078 10 6661 1 2025-11-27 02:10:06.760 00:05:01.788 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-27 02:10:06.764 00:05:01.782 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-27 02:14:33.191 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44766 10 6661 1 2025-11-27 02:15:33.596 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:36342 10 6661 1 2025-11-27 02:16:34.005 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59682 10 6661 1 2025-11-27 02:17:34.408 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33882 10 6661 1 2025-11-27 02:18:28.421 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-27 02:18:28.499 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 02:18:28.261 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 02:18:28.338 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 02:18:28.582 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 02:18:34.808 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:41314 10 6661 1 2025-11-27 02:19:35.172 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:46256 10 6661 1 2025-11-27 02:16:06.761 00:05:01.791 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-27 02:16:06.764 00:05:01.786 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-27 02:20:35.541 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49180 10 6661 1 2025-11-27 02:21:35.949 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:35288 10 6661 1 2025-11-27 02:22:36.364 00:00:10.606 TCP 1.101.0.1:3000 -> 23.104.0.1:48182 10 6661 1 2025-11-27 02:23:28.917 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 02:23:29.240 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 02:23:29.290 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 02:23:29.161 00:00:00.030 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 02:23:29.373 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-27 02:23:37.013 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50252 10 6661 1 2025-11-27 02:24:37.422 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:44672 10 6661 1 2025-11-27 02:25:37.840 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:44914 10 6661 1 2025-11-27 02:22:06.760 00:05:01.792 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-27 02:22:06.765 00:05:01.786 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-27 02:26:38.210 00:00:10.488 TCP 1.101.0.1:3000 -> 23.104.0.1:59052 10 6661 1 2025-11-27 02:27:38.735 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:43668 10 6661 1 2025-11-27 02:28:28.783 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-27 02:28:28.695 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 02:28:28.454 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 02:28:28.700 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 02:28:28.743 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 02:28:39.151 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36464 10 6661 1 2025-11-27 02:29:39.554 00:00:10.592 TCP 1.101.0.1:3000 -> 23.104.0.1:35900 10 6661 1 2025-11-27 02:30:40.186 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:40308 10 6661 1 2025-11-27 02:31:40.545 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55042 10 6661 1 2025-11-27 02:28:06.765 00:05:01.788 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-27 02:28:06.767 00:05:01.784 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-27 02:32:40.954 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:41868 10 6661 1 2025-11-27 02:33:28.943 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 02:33:28.680 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 02:33:29.051 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 02:33:28.761 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 02:33:29.135 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-27 02:33:41.365 00:00:10.427 TCP 1.101.0.1:3000 -> 23.104.0.1:35846 11 6713 1 2025-11-27 02:34:41.838 00:00:10.393 TCP 1.101.0.1:3000 -> 23.104.0.1:40812 10 6661 1 2025-11-27 02:35:42.270 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:55452 10 6661 1 2025-11-27 02:36:42.680 00:00:10.439 TCP 1.101.0.1:3000 -> 23.104.0.1:40102 12 10584 1 2025-11-27 02:37:43.151 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:45352 10 6661 1 2025-11-27 02:34:06.766 00:05:01.792 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-27 02:34:06.769 00:05:01.786 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-27 02:38:28.767 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 02:38:28.960 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 02:38:28.998 00:00:00.038 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 02:38:28.869 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 02:38:29.081 00:00:00.037 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-27 02:38:43.549 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:58324 10 6661 1 2025-11-27 02:39:43.959 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:51472 10 6661 1 2025-11-27 02:40:44.372 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:37608 10 6661 1 2025-11-27 02:41:44.735 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:33910 10 6661 1 2025-11-27 02:42:45.154 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51014 10 6661 1 2025-11-27 02:43:29.034 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-27 02:43:29.115 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 02:43:28.775 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 02:43:28.951 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 02:43:28.965 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 02:43:45.563 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:51886 10 6661 1 2025-11-27 02:40:06.768 00:05:01.791 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-27 02:40:06.771 00:05:01.786 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-27 02:44:45.981 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:37722 10 6661 1 2025-11-27 02:45:46.381 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38246 10 6661 1 2025-11-27 02:46:46.784 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34374 10 6661 1 2025-11-27 02:47:47.190 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49392 10 6661 1 2025-11-27 02:48:28.987 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-27 02:48:29.092 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 02:48:28.940 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 02:48:28.903 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 02:48:28.900 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 02:48:47.597 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38972 10 6661 1 2025-11-27 02:49:47.995 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:57194 10 6661 1 2025-11-27 02:46:06.769 00:05:01.800 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-27 02:46:06.772 00:05:01.795 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-27 02:50:48.398 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49960 10 6661 1 2025-11-27 02:51:48.795 00:00:10.413 TCP 1.101.0.1:3000 -> 23.104.0.1:41406 12 10578 1 2025-11-27 02:52:49.244 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35726 10 6661 1 2025-11-27 02:53:29.125 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 02:53:29.192 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 02:53:29.255 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 02:53:29.410 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 02:53:29.339 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-27 02:53:49.648 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:50944 10 6661 1 2025-11-27 02:54:50.058 00:00:10.892 TCP 1.101.0.1:3000 -> 23.104.0.1:43118 10 6661 1 2025-11-27 02:55:50.986 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:49972 10 6661 1 2025-11-27 02:52:06.774 00:05:01.786 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-27 02:52:06.771 00:05:01.792 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-27 02:56:51.355 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34340 10 6661 1 2025-11-27 02:57:51.765 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:56840 10 6661 1 2025-11-27 02:58:29.710 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 02:58:29.722 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 02:58:29.876 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 02:58:29.698 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 02:58:29.960 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 Summary: total flows: 139, total bytes: 438193, total packets: 1019, avg bps: 967, avg pps: 0, avg bpp: 430 Time window: 2025-11-27 01:58:06 - 2025-11-27 02:58:29 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0033s User: 0.0016s Wall: 0.0022s flows/second: 62247.3 Runtime: 0.0023s