Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-28 12:58:40.327 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:42916 10 6452 1 2025-11-28 12:59:10.490 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 12:59:09.997 00:00:00.040 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 12:59:10.436 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 12:59:10.298 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 12:59:10.406 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 12:59:40.748 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45960 10 6452 1 2025-11-28 13:00:41.147 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:48140 10 6452 1 2025-11-28 13:01:41.556 00:00:10.442 TCP 1.101.0.1:3000 -> 23.104.0.1:40204 12 10375 1 2025-11-28 12:58:07.554 00:05:02.070 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 13:02:42.041 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:54054 10 6452 1 2025-11-28 12:59:07.556 00:05:02.073 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 13:03:42.445 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:54584 10 6452 1 2025-11-28 13:04:10.555 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 13:04:10.524 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 13:04:10.465 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 13:04:10.395 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 13:04:10.474 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 13:04:42.857 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:57694 10 6452 1 2025-11-28 13:05:43.275 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:36498 10 6452 1 2025-11-28 13:06:43.690 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:50118 10 6452 1 2025-11-28 13:07:44.111 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:50132 10 6452 1 2025-11-28 13:04:07.557 00:05:02.071 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 13:08:44.520 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:53126 10 6452 1 2025-11-28 13:09:10.399 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 13:05:07.560 00:05:02.067 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 13:09:10.397 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 13:09:10.303 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 13:09:10.394 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 13:09:10.477 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 13:09:44.939 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:47326 10 6452 1 2025-11-28 13:10:45.362 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43150 10 6452 1 2025-11-28 13:11:45.769 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:37268 10 6452 1 2025-11-28 13:12:46.183 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:46490 10 6452 1 2025-11-28 13:13:46.591 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:41600 10 6452 1 2025-11-28 13:14:10.460 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 13:10:07.557 00:05:02.072 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 13:14:10.559 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 13:14:10.470 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 13:14:10.573 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 13:14:10.378 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 13:14:46.956 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:46976 10 6452 1 2025-11-28 13:11:07.560 00:05:02.068 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 13:15:47.363 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:38538 10 6452 1 2025-11-28 13:16:47.769 00:00:10.475 TCP 1.101.0.1:3000 -> 23.104.0.1:56700 12 10375 1 2025-11-28 13:17:48.283 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40116 10 6452 1 2025-11-28 13:18:48.686 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:37732 10 6452 1 2025-11-28 13:19:10.780 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 13:19:10.698 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 13:19:10.766 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 13:19:10.694 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 13:19:10.526 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 13:19:49.055 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:51970 10 6452 1 2025-11-28 13:16:07.559 00:05:02.075 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 13:20:49.473 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:44682 10 6452 1 2025-11-28 13:17:07.563 00:05:02.070 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 13:21:49.838 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:49976 10 6452 1 2025-11-28 13:22:50.264 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55556 10 6452 1 2025-11-28 13:23:50.666 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:59166 10 6452 1 2025-11-28 13:24:10.771 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 13:24:10.688 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 13:24:10.690 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 13:24:10.691 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 13:24:10.679 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 13:24:51.028 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:37764 10 6452 1 2025-11-28 13:25:51.424 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:50288 10 6452 1 2025-11-28 13:22:07.561 00:05:02.077 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 13:26:51.844 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:33914 10 6452 1 2025-11-28 13:23:07.564 00:05:02.072 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 13:27:52.274 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48186 10 6452 1 2025-11-28 13:28:52.682 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49916 10 6452 1 2025-11-28 13:29:10.978 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 13:29:10.847 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 13:29:10.555 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 13:29:10.845 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 13:29:10.896 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 13:29:53.106 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:45994 10 6452 1 2025-11-28 13:30:53.503 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45772 10 6452 1 2025-11-28 13:31:53.907 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:56676 10 6452 1 2025-11-28 13:28:07.563 00:05:02.075 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 13:32:54.327 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:52562 10 6452 1 2025-11-28 13:29:07.565 00:05:02.070 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 13:33:54.692 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51086 10 6452 1 2025-11-28 13:34:10.982 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 13:34:11.062 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 13:34:10.797 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 13:34:10.950 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 13:34:11.033 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 13:34:55.115 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40280 10 6452 1 2025-11-28 13:35:55.519 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:44170 10 6452 1 2025-11-28 13:36:55.878 00:00:10.837 TCP 1.101.0.1:3000 -> 23.104.0.1:38158 10 6452 1 2025-11-28 13:37:56.761 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:41842 10 6452 1 2025-11-28 13:34:07.564 00:05:02.079 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 13:39:11.179 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 13:35:07.566 00:05:02.074 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 13:38:57.175 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:44390 10 6452 1 2025-11-28 13:39:11.008 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 13:39:11.046 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 13:39:10.887 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 13:39:11.095 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 13:39:57.572 00:00:10.497 TCP 1.101.0.1:3000 -> 23.104.0.1:51932 11 6504 1 2025-11-28 13:40:58.110 00:00:10.512 TCP 1.101.0.1:3000 -> 23.104.0.1:45798 10 6452 1 2025-11-28 13:41:58.659 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:41002 10 6452 1 2025-11-28 13:42:59.063 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49758 10 6452 1 2025-11-28 13:43:59.468 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52024 10 6452 1 2025-11-28 13:44:11.573 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 13:40:07.565 00:05:02.080 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 13:44:11.437 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 13:44:11.353 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 13:44:11.491 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 13:44:11.441 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 13:41:07.567 00:05:02.077 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 13:44:59.871 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:40932 10 6452 1 2025-11-28 13:46:00.235 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:38062 10 6452 1 2025-11-28 13:47:00.600 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51880 10 6452 1 2025-11-28 13:48:01.003 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:39108 10 6452 1 2025-11-28 13:49:11.421 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 13:49:11.200 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 13:49:01.377 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51652 10 6452 1 2025-11-28 13:49:11.344 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 13:49:11.214 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 13:49:11.339 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 13:46:07.570 00:05:02.079 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 13:50:01.783 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:40526 10 6452 1 2025-11-28 13:47:07.572 00:05:02.074 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 13:51:02.190 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:56876 10 6452 1 2025-11-28 13:52:02.590 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:43318 10 6452 1 2025-11-28 13:53:03.004 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57960 10 6452 1 2025-11-28 13:54:11.522 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 13:54:11.440 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 13:54:11.445 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 13:54:11.310 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 13:54:11.438 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 13:54:03.403 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39644 10 6452 1 2025-11-28 13:55:03.811 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57488 10 6452 1 2025-11-28 13:56:04.213 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:49862 10 6452 1 2025-11-28 13:52:07.571 00:05:02.083 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 13:53:07.574 00:05:02.076 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 13:57:04.612 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37360 10 6452 1 2025-11-28 13:58:05.017 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37590 10 6452 1 Summary: total flows: 140, total bytes: 424898, total packets: 1025, avg bps: 942, avg pps: 0, avg bpp: 414 Time window: 2025-11-28 12:58:07 - 2025-11-28 13:58:15 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0048s User: 0.0010s Wall: 0.0018s flows/second: 78471.5 Runtime: 0.0018s