Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-27 17:59:21.758 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:53906 10 6452 1 2025-11-27 18:00:22.129 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52080 10 6452 1 2025-11-27 18:01:22.534 00:00:10.487 TCP 1.101.0.1:3000 -> 23.104.0.1:36478 12 10375 1 2025-11-27 17:58:07.143 00:05:01.921 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-27 17:58:07.147 00:05:01.915 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-27 18:02:23.066 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54660 10 6452 1 2025-11-27 18:03:23.469 00:00:10.316 TCP 1.101.0.1:3000 -> 23.104.0.1:53266 10 6452 1 2025-11-27 18:03:47.402 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 18:03:47.490 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 18:03:47.559 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 18:03:47.554 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 18:03:47.642 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-27 18:04:23.827 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:55574 10 6452 1 2025-11-27 18:05:24.228 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:52666 10 6452 1 2025-11-27 18:06:24.630 00:00:10.394 TCP 1.101.0.1:3000 -> 23.104.0.1:41684 11 6504 1 2025-11-27 18:07:25.086 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:34680 10 6452 1 2025-11-27 18:04:07.144 00:05:01.922 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-27 18:04:07.146 00:05:01.917 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-27 18:08:25.497 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:49252 10 6452 1 2025-11-27 18:08:47.750 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-27 18:08:47.516 00:00:00.026 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 18:08:47.593 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 18:08:47.668 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 18:08:47.689 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 18:09:25.863 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:53378 10 6452 1 2025-11-27 18:10:26.281 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:37934 10 6452 1 2025-11-27 18:11:26.638 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:59748 10 6452 1 2025-11-27 18:12:26.993 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:38040 10 6452 1 2025-11-27 18:13:27.390 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:44676 10 6452 1 2025-11-27 18:13:48.006 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 18:13:47.855 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 18:13:48.246 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 18:13:48.156 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 18:13:48.330 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-27 18:10:07.145 00:05:01.924 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-27 18:10:07.147 00:05:01.918 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-27 18:14:27.793 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:44004 10 6452 1 2025-11-27 18:15:28.200 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43486 10 6452 1 2025-11-27 18:16:28.610 00:00:10.442 TCP 1.101.0.1:3000 -> 23.104.0.1:56376 12 10375 1 2025-11-27 18:17:29.110 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:59824 10 6452 1 2025-11-27 18:18:29.476 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56280 10 6452 1 2025-11-27 18:18:47.927 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-27 18:18:47.839 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 18:18:47.716 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 18:18:47.845 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 18:18:47.835 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 18:19:29.878 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40526 10 6452 1 2025-11-27 18:16:07.149 00:05:01.919 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-27 18:16:07.146 00:05:01.924 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-27 18:20:30.281 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40296 10 6452 1 2025-11-27 18:21:30.686 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:47010 10 6452 1 2025-11-27 18:22:31.103 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:55308 10 6452 1 2025-11-27 18:23:31.471 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:56248 10 6452 1 2025-11-27 18:23:47.961 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 18:23:47.844 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 18:23:47.818 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 18:23:48.237 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 18:23:47.901 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-27 18:24:31.839 00:00:10.354 TCP 1.101.0.1:3000 -> 23.104.0.1:47182 10 6452 1 2025-11-27 18:25:32.238 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:50636 10 6452 1 2025-11-27 18:22:07.149 00:05:01.930 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-27 18:22:07.152 00:05:01.925 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-27 18:26:32.637 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:56896 10 6452 1 2025-11-27 18:27:33.060 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:36354 10 6452 1 2025-11-27 18:28:33.459 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50070 10 6452 1 2025-11-27 18:28:48.093 00:00:00.042 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-27 18:28:48.010 00:00:00.044 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 18:28:47.871 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 18:28:48.013 00:00:00.041 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 18:28:48.114 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 18:29:33.861 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:52896 10 6452 1 2025-11-27 18:30:34.279 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:50030 10 6452 1 2025-11-27 18:31:34.692 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:44362 10 6452 1 2025-11-27 18:28:07.154 00:05:01.927 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-27 18:28:07.158 00:05:01.922 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-27 18:32:35.114 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:34256 10 6452 1 2025-11-27 18:33:35.517 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:48406 10 6452 1 2025-11-27 18:33:48.172 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-27 18:33:48.094 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 18:33:48.192 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 18:33:48.091 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 18:33:48.083 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 18:34:35.876 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45356 10 6452 1 2025-11-27 18:35:36.280 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44810 10 6452 1 2025-11-27 18:36:36.681 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:35204 10 6452 1 2025-11-27 18:37:37.120 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39696 10 6452 1 2025-11-27 18:34:07.155 00:05:01.935 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-27 18:34:07.158 00:05:01.930 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-27 18:38:48.412 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-27 18:38:48.253 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 18:38:48.200 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 18:38:48.329 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 18:38:48.255 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 18:38:37.523 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:43570 10 6452 1 2025-11-27 18:39:37.947 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:54204 10 6452 1 2025-11-27 18:40:38.325 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36188 10 6452 1 2025-11-27 18:41:38.727 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36378 10 6452 1 2025-11-27 18:42:39.134 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:50736 10 6452 1 2025-11-27 18:43:48.477 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-27 18:43:48.395 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 18:43:48.447 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 18:43:48.118 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 18:43:39.543 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:57078 10 6452 1 2025-11-27 18:43:48.249 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 18:40:07.157 00:05:01.934 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-27 18:40:07.160 00:05:01.929 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-27 18:44:39.964 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:41770 10 6452 1 2025-11-27 18:45:40.326 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44918 10 6452 1 2025-11-27 18:46:40.731 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56234 10 6452 1 2025-11-27 18:47:41.135 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49380 10 6452 1 2025-11-27 18:48:48.559 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-27 18:48:48.786 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 18:48:48.713 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 18:48:48.476 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 18:48:48.705 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 18:48:41.537 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:50542 10 6452 1 2025-11-27 18:49:41.904 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:53708 12 6556 1 2025-11-27 18:46:07.158 00:05:01.938 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-27 18:46:07.162 00:05:01.933 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-27 18:50:42.313 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:53350 10 6452 1 2025-11-27 18:51:42.719 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:60884 10 6452 1 2025-11-27 18:52:43.109 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:47842 10 6452 1 2025-11-27 18:53:48.596 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-27 18:53:48.308 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 18:53:48.520 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 18:53:48.512 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 18:53:48.521 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 18:53:43.513 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59604 10 6452 1 2025-11-27 18:54:43.915 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49190 10 6452 1 2025-11-27 18:55:44.322 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:49884 10 6452 1 2025-11-27 18:52:07.162 00:05:01.936 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-27 18:52:07.164 00:05:01.931 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-27 18:56:44.733 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:55190 10 6452 1 2025-11-27 18:57:45.158 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:55620 10 6452 1 2025-11-27 18:58:48.707 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-27 18:58:48.348 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 18:58:48.523 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 18:58:48.626 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-27 18:58:48.349 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 Summary: total flows: 139, total bytes: 418550, total packets: 1017, avg bps: 919, avg pps: 0, avg bpp: 411 Time window: 2025-11-27 17:58:07 - 2025-11-27 18:58:48 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0035s User: 0.0018s Wall: 0.0020s flows/second: 68775.3 Runtime: 0.0020s