Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-28 01:58:43.455 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:57106 10 6452 1 2025-11-28 01:58:56.947 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 01:58:56.986 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 01:58:56.939 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 01:58:56.678 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 01:58:56.863 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 01:59:43.861 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:55806 10 6452 1 2025-11-28 02:00:44.279 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52900 10 6452 1 2025-11-28 02:01:44.688 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55226 10 6452 1 2025-11-28 01:58:07.318 00:05:01.987 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 02:02:45.112 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:40190 10 6452 1 2025-11-28 01:59:07.320 00:05:01.981 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 02:03:57.116 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 02:03:57.068 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 02:03:56.906 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 02:03:45.527 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49540 10 6452 1 2025-11-28 02:03:57.067 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 02:03:57.150 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 02:04:45.936 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:46028 10 6452 1 2025-11-28 02:05:46.361 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:47054 10 6452 1 2025-11-28 02:06:46.772 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:57260 10 6452 1 2025-11-28 02:07:47.140 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49546 10 6452 1 2025-11-28 02:04:07.318 00:05:01.989 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 02:08:57.297 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 02:08:57.386 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 02:08:57.278 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 02:08:57.239 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 02:08:57.205 00:00:00.029 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 02:08:47.545 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43606 10 6452 1 2025-11-28 02:05:07.320 00:05:01.984 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 02:09:47.951 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:38696 10 6452 1 2025-11-28 02:10:48.359 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46632 10 6452 1 2025-11-28 02:11:48.759 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:50818 10 6452 1 2025-11-28 02:12:49.181 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:36828 10 6452 1 2025-11-28 02:13:57.517 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 02:13:49.576 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46992 10 6452 1 2025-11-28 02:13:57.562 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 02:13:57.399 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 02:13:57.631 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 02:13:57.714 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 02:10:07.322 00:05:01.987 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 02:14:49.981 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:58138 10 6452 1 2025-11-28 02:11:07.324 00:05:01.981 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 02:15:50.398 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:34982 10 6452 1 2025-11-28 02:16:50.797 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:46898 10 6452 1 2025-11-28 02:17:51.195 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52134 10 6452 1 2025-11-28 02:18:57.437 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 02:18:57.481 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 02:18:57.109 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 02:18:57.371 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 02:18:57.355 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 02:18:51.599 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51964 10 6452 1 2025-11-28 02:19:51.999 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:49414 10 6452 1 2025-11-28 02:16:07.328 00:05:01.982 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 02:20:52.364 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:58806 10 6452 1 2025-11-28 02:17:07.330 00:05:01.986 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 02:21:52.733 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:44090 10 6452 1 2025-11-28 02:22:53.106 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47632 10 6452 1 2025-11-28 02:23:57.769 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 02:23:57.384 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 02:23:57.466 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 02:23:57.413 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 02:23:57.686 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 02:23:53.512 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:37678 10 6452 1 2025-11-28 02:24:53.921 00:00:10.345 TCP 1.101.0.1:3000 -> 23.104.0.1:37758 10 6452 1 2025-11-28 02:25:54.302 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:52206 10 6452 1 2025-11-28 02:22:07.330 00:05:01.992 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 02:23:07.333 00:05:01.986 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 02:26:54.703 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:42074 10 6452 1 2025-11-28 02:27:55.094 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55666 10 6452 1 2025-11-28 02:28:57.660 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 02:28:57.575 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 02:28:57.318 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 02:28:57.543 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 02:28:57.578 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 02:28:55.496 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59946 10 6452 1 2025-11-28 02:29:55.905 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:53560 10 6452 1 2025-11-28 02:30:56.287 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45678 10 6452 1 2025-11-28 02:28:07.336 00:05:01.986 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 02:31:56.687 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46464 10 6452 1 2025-11-28 02:32:57.108 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:34376 10 6452 1 2025-11-28 02:29:07.341 00:05:01.978 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 02:33:57.576 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 02:33:57.688 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 02:33:57.585 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 02:33:57.515 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 02:33:57.493 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 02:33:57.466 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:39928 10 6452 1 2025-11-28 02:34:57.871 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34642 10 6452 1 2025-11-28 02:35:58.276 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50612 10 6452 1 2025-11-28 02:36:58.674 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:57562 10 6452 1 2025-11-28 02:37:59.098 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52874 10 6452 1 2025-11-28 02:34:07.337 00:05:01.991 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 02:38:58.289 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 02:38:58.091 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 02:38:58.083 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 02:38:57.817 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 02:38:58.205 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 02:38:59.500 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54452 10 6452 1 2025-11-28 02:35:07.341 00:05:01.986 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 02:39:59.903 00:00:10.736 TCP 1.101.0.1:3000 -> 23.104.0.1:52224 10 6452 1 2025-11-28 02:41:00.682 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:38046 10 6452 1 2025-11-28 02:42:01.115 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:34380 10 6452 1 2025-11-28 02:43:01.523 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:40222 10 6452 1 2025-11-28 02:43:57.886 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 02:43:57.972 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 02:43:57.805 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 02:43:57.802 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 02:43:57.804 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 02:40:07.339 00:05:01.992 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 02:44:01.943 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:39660 10 6452 1 2025-11-28 02:41:07.342 00:05:01.987 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 02:45:02.362 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:45290 10 6452 1 2025-11-28 02:46:02.726 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:57664 10 6452 1 2025-11-28 02:47:03.111 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:52170 10 6452 1 2025-11-28 02:48:03.488 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:53530 10 6452 1 2025-11-28 02:48:57.772 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 02:48:58.141 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 02:48:58.074 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 02:48:58.134 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 02:48:58.218 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 02:49:03.858 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:53038 10 6452 1 2025-11-28 02:46:07.342 00:05:01.991 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 02:50:04.276 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:43902 10 6452 1 2025-11-28 02:47:07.347 00:05:01.986 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 02:51:04.643 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:53898 10 6452 1 2025-11-28 02:52:05.008 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:38648 10 6452 1 2025-11-28 02:53:05.369 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:38644 10 6452 1 2025-11-28 02:53:58.044 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 02:53:58.138 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 02:53:57.776 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 02:53:57.909 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 02:53:57.961 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 02:54:05.776 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:39944 10 6452 1 2025-11-28 02:55:06.191 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:59234 10 6452 1 2025-11-28 02:52:07.344 00:05:01.990 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 02:56:06.593 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:55696 10 6452 1 2025-11-28 02:53:07.347 00:05:01.986 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 02:57:07.004 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:56054 10 6452 1 2025-11-28 02:58:07.409 00:00:10.649 TCP 1.101.0.1:3000 -> 23.104.0.1:38340 10 6452 1 Summary: total flows: 140, total bytes: 417000, total packets: 1020, avg bps: 923, avg pps: 0, avg bpp: 408 Time window: 2025-11-28 01:58:07 - 2025-11-28 02:58:18 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0049s User: 0.0010s Wall: 0.0022s flows/second: 64791.2 Runtime: 0.0022s