Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-27 15:59:29.350 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50774 10 6452 1 2025-11-27 16:00:29.756 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:58274 10 6452 1 2025-11-27 16:01:30.184 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46466 10 6452 1 2025-11-27 15:58:07.107 00:05:01.873 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-27 15:58:07.104 00:05:01.878 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-27 16:02:30.578 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:59366 10 6452 1 2025-11-27 16:03:45.127 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-27 16:03:45.039 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 16:03:44.983 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 16:03:30.983 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:46248 10 6452 1 2025-11-27 16:03:45.045 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 16:03:45.133 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 16:04:31.394 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57194 10 6452 1 2025-11-27 16:05:31.797 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:49992 10 6452 1 2025-11-27 16:06:32.200 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:48420 12 6556 1 2025-11-27 16:07:32.603 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54332 10 6452 1 2025-11-27 16:04:07.106 00:05:01.878 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-27 16:04:07.108 00:05:01.873 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-27 16:08:45.346 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-27 16:08:45.125 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 16:08:45.108 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 16:08:45.263 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 16:08:45.257 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 16:08:33.007 00:00:12.403 TCP 1.101.0.1:3000 -> 23.104.0.1:45552 10 6452 1 2025-11-27 16:09:35.449 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45496 10 6452 1 2025-11-27 16:10:35.854 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:45592 10 6452 1 2025-11-27 16:11:36.276 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:52752 10 6452 1 2025-11-27 16:12:36.647 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:53538 10 6452 1 2025-11-27 16:13:45.404 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 16:13:45.408 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 16:13:45.594 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 16:13:45.555 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 16:13:45.675 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-27 16:13:37.059 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:55146 10 6452 1 2025-11-27 16:10:07.107 00:05:01.879 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-27 16:10:07.109 00:05:01.874 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-27 16:14:37.465 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36722 10 6452 1 2025-11-27 16:15:37.866 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:44644 10 6452 1 2025-11-27 16:16:38.280 00:00:10.401 TCP 1.101.0.1:3000 -> 23.104.0.1:54568 12 10369 1 2025-11-27 16:17:38.723 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:37676 10 6452 1 2025-11-27 16:18:45.299 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 16:18:45.012 00:00:00.042 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 16:18:45.384 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 16:18:45.211 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 16:18:45.466 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-27 16:18:39.157 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41840 10 6452 1 2025-11-27 16:19:39.566 00:00:10.582 TCP 1.101.0.1:3000 -> 23.104.0.1:35168 10 6452 1 2025-11-27 16:16:07.113 00:05:01.872 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-27 16:16:07.111 00:05:01.878 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-27 16:20:40.189 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55848 10 6452 1 2025-11-27 16:21:40.590 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:40990 10 6452 1 2025-11-27 16:22:40.991 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:43106 10 6452 1 2025-11-27 16:23:45.643 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 16:23:45.244 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 16:23:45.664 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 16:23:45.600 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 16:23:45.746 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-27 16:23:41.395 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54584 10 6452 1 2025-11-27 16:24:41.798 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34836 10 6452 1 2025-11-27 16:25:42.201 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:57120 10 6452 1 2025-11-27 16:22:07.114 00:05:01.874 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-27 16:22:07.111 00:05:01.880 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-27 16:26:42.602 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:36570 10 6452 1 2025-11-27 16:27:43.011 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60992 10 6452 1 2025-11-27 16:28:45.650 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-27 16:28:45.558 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 16:28:45.519 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 16:28:45.568 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 16:28:45.570 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 16:28:43.415 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41518 10 6452 1 2025-11-27 16:29:43.819 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:50268 10 6452 1 2025-11-27 16:30:44.217 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60538 10 6452 1 2025-11-27 16:31:44.632 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51248 10 6452 1 2025-11-27 16:28:07.110 00:05:01.881 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-27 16:28:07.115 00:05:01.875 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-27 16:32:45.035 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:36732 10 6452 1 2025-11-27 16:33:45.681 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-27 16:33:45.778 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 16:33:45.453 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 16:33:45.597 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 16:33:45.598 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 16:33:45.436 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:36988 10 6452 1 2025-11-27 16:34:45.842 00:00:10.350 TCP 1.101.0.1:3000 -> 23.104.0.1:57894 10 6452 1 2025-11-27 16:35:46.230 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:48846 10 6452 1 2025-11-27 16:36:46.670 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47434 10 6452 1 2025-11-27 16:37:47.094 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:39684 10 6452 1 2025-11-27 16:34:07.111 00:05:01.884 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-27 16:34:07.115 00:05:01.878 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-27 16:38:45.870 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-27 16:38:45.785 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 16:38:45.776 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 16:38:45.788 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 16:38:45.719 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 16:38:47.491 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48080 10 6452 1 2025-11-27 16:39:47.898 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:40116 12 6556 1 2025-11-27 16:40:48.338 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:47372 10 6452 1 2025-11-27 16:41:48.705 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42064 10 6452 1 2025-11-27 16:42:49.117 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:53756 10 6452 1 2025-11-27 16:43:45.967 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 16:43:46.179 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 16:43:46.127 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 16:43:46.102 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 16:43:46.050 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-27 16:43:49.536 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:48964 10 6452 1 2025-11-27 16:40:07.115 00:05:01.879 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-27 16:40:07.112 00:05:01.885 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-27 16:44:49.907 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:57004 10 6452 1 2025-11-27 16:45:50.275 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35586 10 6452 1 2025-11-27 16:46:50.678 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:57960 10 6452 1 2025-11-27 16:47:51.112 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:47446 10 6452 1 2025-11-27 16:48:45.811 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 16:48:45.972 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 16:48:45.819 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 16:48:46.056 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-27 16:48:46.059 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 16:48:51.469 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:43724 10 6452 1 2025-11-27 16:49:51.881 00:00:10.417 TCP 1.101.0.1:3000 -> 23.104.0.1:45246 11 6504 1 2025-11-27 16:46:07.114 00:05:01.884 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-27 16:46:07.117 00:05:01.879 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-27 16:50:52.335 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:45676 10 6452 1 2025-11-27 16:51:52.743 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:34116 10 6452 1 2025-11-27 16:52:53.150 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52508 10 6452 1 2025-11-27 16:53:46.077 00:00:00.031 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-27 16:53:45.929 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 16:53:46.107 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 16:53:45.995 00:00:00.031 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 16:53:46.169 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 16:53:53.556 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:54064 10 6452 1 2025-11-27 16:54:53.953 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:49504 10 6452 1 2025-11-27 16:52:07.114 00:05:01.888 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-27 16:55:54.362 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:48922 10 6452 1 2025-11-27 16:52:07.118 00:05:01.883 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-27 16:56:54.775 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:52764 10 6452 1 2025-11-27 16:57:55.144 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:51776 10 6452 1 2025-11-27 16:58:45.911 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 16:58:46.276 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-27 16:58:46.186 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 16:58:46.193 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 16:58:46.121 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 Summary: total flows: 139, total bytes: 414725, total packets: 1017, avg bps: 911, avg pps: 0, avg bpp: 407 Time window: 2025-11-27 15:58:07 - 2025-11-27 16:58:46 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0037s User: 0.0009s Wall: 0.0021s flows/second: 66100.7 Runtime: 0.0021s