Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-27 12:59:14.939 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:35146 10 6452 1 2025-11-27 13:00:15.356 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50908 10 6452 1 2025-11-27 13:01:15.761 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:59616 10 6452 1 2025-11-27 12:58:07.037 00:05:01.869 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-27 12:58:07.040 00:05:01.863 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-27 13:02:16.171 00:00:10.592 TCP 1.101.0.1:3000 -> 23.104.0.1:43864 10 6452 1 2025-11-27 13:03:16.804 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51308 10 6452 1 2025-11-27 13:03:41.575 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 13:03:41.468 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 13:03:41.577 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 13:03:41.665 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 13:03:41.660 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-27 13:04:17.214 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:59878 10 6452 1 2025-11-27 13:05:17.578 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:60306 10 6452 1 2025-11-27 13:06:17.983 00:00:10.408 TCP 1.101.0.1:3000 -> 23.104.0.1:35134 12 10375 1 2025-11-27 13:07:18.430 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:40126 10 6452 1 2025-11-27 13:04:07.043 00:05:01.861 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-27 13:04:07.041 00:05:01.865 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-27 13:08:18.787 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:44772 10 6452 1 2025-11-27 13:08:41.353 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 13:08:41.663 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 13:08:41.763 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 13:08:41.629 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 13:08:41.845 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-27 13:09:19.200 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:41784 10 6452 1 2025-11-27 13:10:19.611 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37444 10 6452 1 2025-11-27 13:11:20.018 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:47566 10 6452 1 2025-11-27 13:12:20.455 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:38494 10 6452 1 2025-11-27 13:13:20.820 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:50796 10 6452 1 2025-11-27 13:13:41.757 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 13:13:41.574 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 13:13:41.881 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 13:13:41.529 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 13:13:41.963 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-27 13:10:07.047 00:05:01.861 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-27 13:10:07.049 00:05:01.857 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-27 13:14:21.190 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60966 10 6452 1 2025-11-27 13:15:21.591 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:43904 10 6452 1 2025-11-27 13:16:22.010 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:58854 10 6452 1 2025-11-27 13:17:22.371 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:54868 10 6452 1 2025-11-27 13:18:22.777 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:53976 10 6452 1 2025-11-27 13:18:42.011 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-27 13:18:41.756 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 13:18:41.745 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 13:18:41.929 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 13:18:41.832 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 13:19:23.185 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54110 10 6452 1 2025-11-27 13:16:07.050 00:05:01.866 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-27 13:16:07.048 00:05:01.870 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-27 13:20:23.587 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48742 10 6452 1 2025-11-27 13:21:23.993 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40936 10 6452 1 2025-11-27 13:22:24.400 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:60318 11 6504 1 2025-11-27 13:23:24.821 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53728 10 6452 1 2025-11-27 13:23:41.925 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-27 13:23:41.896 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 13:23:41.798 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 13:23:41.844 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 13:23:41.900 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 13:24:25.227 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:42000 10 6452 1 2025-11-27 13:25:25.627 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:50138 10 6452 1 2025-11-27 13:22:07.054 00:05:01.864 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-27 13:22:07.051 00:05:01.869 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-27 13:26:26.023 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46664 10 6452 1 2025-11-27 13:27:26.427 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:44954 10 6452 1 2025-11-27 13:28:26.855 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:58770 10 6452 1 2025-11-27 13:28:42.285 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 13:28:42.269 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 13:28:42.508 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 13:28:42.030 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 13:28:42.589 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-27 13:29:27.269 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:46556 10 6452 1 2025-11-27 13:30:27.668 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:57832 10 6452 1 2025-11-27 13:31:28.029 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:47018 10 6452 1 2025-11-27 13:28:07.058 00:05:01.862 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-27 13:28:07.061 00:05:01.857 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-27 13:32:28.430 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:36172 10 6452 1 2025-11-27 13:33:28.837 00:00:10.356 TCP 1.101.0.1:3000 -> 23.104.0.1:46616 10 6452 1 2025-11-27 13:33:42.062 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-27 13:33:41.979 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 13:33:42.001 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 13:33:41.978 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 13:33:42.128 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 13:34:29.223 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:47168 10 6452 1 2025-11-27 13:35:29.620 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56064 10 6452 1 2025-11-27 13:36:30.020 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:48430 10 6452 1 2025-11-27 13:37:30.418 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51046 10 6452 1 2025-11-27 13:34:07.062 00:05:01.858 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-27 13:34:07.060 00:05:01.863 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-27 13:38:42.221 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-27 13:38:42.339 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 13:38:42.245 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 13:38:30.825 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:36134 10 6452 1 2025-11-27 13:38:42.140 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 13:38:42.332 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 13:39:31.225 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:49498 10 6452 1 2025-11-27 13:40:31.590 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:33228 10 6452 1 2025-11-27 13:41:32.007 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:60332 10 6452 1 2025-11-27 13:42:32.435 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:50680 10 6452 1 2025-11-27 13:43:42.225 00:00:00.017 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 13:43:42.156 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 13:43:42.225 00:00:00.016 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 13:43:42.323 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 13:43:32.852 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:51432 10 6452 1 2025-11-27 13:43:42.307 00:00:00.016 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-27 13:40:07.068 00:05:01.855 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-27 13:40:07.065 00:05:01.860 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-27 13:44:33.271 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42388 10 6452 1 2025-11-27 13:45:33.684 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:54624 10 6452 1 2025-11-27 13:46:34.111 00:00:11.437 TCP 1.101.0.1:3000 -> 23.104.0.1:49688 12 10375 1 2025-11-27 13:47:35.599 00:00:10.444 TCP 1.101.0.1:3000 -> 23.104.0.1:56492 10 6452 1 2025-11-27 13:48:42.560 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-27 13:48:42.530 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 13:48:42.400 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 13:48:42.477 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 13:48:42.618 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 13:48:36.114 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:56798 10 6452 1 2025-11-27 13:49:36.522 00:00:10.573 TCP 1.101.0.1:3000 -> 23.104.0.1:46984 10 6452 1 2025-11-27 13:46:07.065 00:05:01.861 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-27 13:46:07.067 00:05:01.855 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-27 13:50:37.131 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:42232 10 6452 1 2025-11-27 13:51:37.540 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47346 10 6452 1 2025-11-27 13:52:37.942 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:52646 10 6452 1 2025-11-27 13:53:42.638 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-27 13:53:42.406 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 13:53:42.475 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 13:53:42.555 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 13:53:42.512 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 13:53:38.366 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:57724 10 6452 1 2025-11-27 13:54:38.730 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39268 10 6452 1 2025-11-27 13:55:39.136 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:40584 10 6452 1 2025-11-27 13:52:07.068 00:05:01.862 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-27 13:52:07.066 00:05:01.867 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-27 13:56:39.534 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:43980 10 6452 1 2025-11-27 13:57:39.934 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:52456 10 6452 1 2025-11-27 13:58:42.572 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-27 13:58:42.406 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 13:58:42.301 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 13:58:42.490 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 13:58:42.550 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 13:58:40.350 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50898 10 6452 1 Summary: total flows: 140, total bytes: 424898, total packets: 1025, avg bps: 932, avg pps: 0, avg bpp: 414 Time window: 2025-11-27 12:58:07 - 2025-11-27 13:58:50 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0040s User: 0.0016s Wall: 0.0017s flows/second: 82206.7 Runtime: 0.0017s