Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-28 15:58:54.445 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:32982 10 6452 1 2025-11-28 15:59:13.884 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 15:59:13.802 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 15:59:13.800 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 15:59:13.855 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 15:59:13.599 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 15:59:54.857 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:42444 10 6452 1 2025-11-28 16:00:55.273 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:49160 10 6452 1 2025-11-28 16:01:55.679 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:40400 10 6452 1 2025-11-28 15:58:07.614 00:05:02.089 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 16:02:56.109 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:53698 10 6452 1 2025-11-28 15:59:07.619 00:05:02.084 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 16:03:56.525 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56878 10 6452 1 2025-11-28 16:04:13.998 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 16:04:13.915 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 16:04:14.180 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 16:04:13.761 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 16:04:13.915 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 16:04:56.929 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:41484 10 6452 1 2025-11-28 16:05:57.351 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:42342 10 6452 1 2025-11-28 16:06:57.709 00:00:10.399 TCP 1.101.0.1:3000 -> 23.104.0.1:52142 12 10584 1 2025-11-28 16:07:58.157 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:43516 10 6661 1 2025-11-28 16:04:07.617 00:05:02.088 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 16:08:58.517 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:60796 10 6661 1 2025-11-28 16:09:13.982 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 16:05:07.620 00:05:02.085 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 16:09:13.979 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 16:09:13.704 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 16:09:14.079 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 16:09:14.161 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 16:09:58.928 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:41936 10 6661 1 2025-11-28 16:10:59.348 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56398 10 6661 1 2025-11-28 16:11:59.748 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:40674 10 6661 1 2025-11-28 16:13:00.118 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:45286 10 6661 1 2025-11-28 16:10:07.617 00:05:02.096 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 16:14:14.077 00:00:00.050 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 16:14:14.274 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 16:14:14.150 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 16:14:14.101 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 16:14:13.994 00:00:00.050 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 16:14:00.481 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:47222 10 6661 1 2025-11-28 16:11:07.621 00:05:02.085 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 16:15:00.849 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:47258 10 6661 1 2025-11-28 16:16:01.282 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55652 10 6661 1 2025-11-28 16:17:01.683 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:55034 10 6661 1 2025-11-28 16:18:02.058 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:33866 10 6661 1 2025-11-28 16:19:14.443 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 16:19:14.026 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 16:19:14.175 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 16:19:14.105 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 16:19:14.362 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 16:19:02.473 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:48560 10 6661 1 2025-11-28 16:16:07.621 00:05:02.088 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 16:20:02.870 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:54576 10 6661 1 2025-11-28 16:17:07.623 00:05:02.083 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 16:21:03.236 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:45506 10 6661 1 2025-11-28 16:22:03.640 00:00:10.551 TCP 1.101.0.1:3000 -> 23.104.0.1:58080 10 6661 1 2025-11-28 16:23:04.232 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:45296 10 6661 1 2025-11-28 16:24:14.256 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 16:24:14.352 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 16:24:14.356 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 16:24:14.122 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 16:24:04.594 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47100 10 6661 1 2025-11-28 16:24:14.174 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 16:25:05.002 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:60912 10 6661 1 2025-11-28 16:22:07.621 00:05:02.089 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 16:26:05.404 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41534 10 6661 1 2025-11-28 16:23:07.623 00:05:02.085 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 16:27:05.806 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40880 10 6661 1 2025-11-28 16:28:06.214 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:35402 10 6661 1 2025-11-28 16:29:14.561 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 16:29:14.485 00:00:00.026 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 16:29:14.300 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 16:29:14.316 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 16:29:14.478 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 16:29:06.615 00:00:10.744 TCP 1.101.0.1:3000 -> 23.104.0.1:47832 10 6661 1 2025-11-28 16:30:07.396 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:58310 10 6661 1 2025-11-28 16:31:07.793 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:33088 10 6661 1 2025-11-28 16:28:07.622 00:05:02.090 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 16:32:08.152 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:57796 10 6661 1 2025-11-28 16:29:07.624 00:05:02.086 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 16:33:08.507 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37204 10 6661 1 2025-11-28 16:34:14.551 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 16:34:14.544 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 16:34:14.675 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 16:34:14.622 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 16:34:14.757 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 16:34:08.914 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43580 10 6661 1 2025-11-28 16:35:09.319 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35300 10 6661 1 2025-11-28 16:36:09.718 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:37346 10 6661 1 2025-11-28 16:37:10.105 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:37720 10 6661 1 2025-11-28 16:34:07.624 00:05:02.090 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 16:38:10.508 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:54260 10 6661 1 2025-11-28 16:35:07.628 00:05:02.084 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 16:39:14.935 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 16:39:14.541 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 16:39:14.936 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 16:39:15.021 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 16:39:15.186 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 16:39:10.914 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55304 10 6661 1 2025-11-28 16:40:11.319 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:42878 10 6661 1 2025-11-28 16:41:11.716 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:38850 10 6661 1 2025-11-28 16:42:12.130 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:43420 10 6661 1 2025-11-28 16:43:12.495 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:49070 10 6661 1 2025-11-28 16:44:14.914 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 16:44:14.711 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 16:40:07.627 00:05:02.088 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 16:44:15.069 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 16:44:14.992 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 16:44:14.986 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 16:44:12.912 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52310 10 6661 1 2025-11-28 16:41:07.631 00:05:02.083 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 16:45:13.314 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40030 10 6661 1 2025-11-28 16:46:13.717 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:45176 10 6661 1 2025-11-28 16:47:14.130 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:58502 10 6661 1 2025-11-28 16:48:14.488 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:50400 10 6661 1 2025-11-28 16:49:14.805 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 16:49:14.596 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 16:49:14.911 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 16:49:14.723 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 16:49:14.979 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 16:49:14.897 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:33858 12 6765 1 2025-11-28 16:46:07.628 00:05:02.096 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 16:50:15.303 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:55108 10 6661 1 2025-11-28 16:47:07.630 00:05:02.090 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 16:51:15.705 00:00:11.679 TCP 1.101.0.1:3000 -> 23.104.0.1:58026 10 6661 1 2025-11-28 16:52:17.427 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48628 10 6661 1 2025-11-28 16:53:17.833 00:00:10.345 TCP 1.101.0.1:3000 -> 23.104.0.1:54928 10 6661 1 2025-11-28 16:54:14.948 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 16:54:15.068 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 16:54:14.992 00:00:00.042 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 16:54:15.006 00:00:00.040 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 16:54:14.985 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 16:54:18.217 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:33804 10 6661 1 2025-11-28 16:55:18.614 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:46660 10 6661 1 2025-11-28 16:52:07.629 00:05:02.098 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 16:56:19.017 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54942 10 6661 1 2025-11-28 16:53:07.632 00:05:02.092 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 16:57:19.422 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:34368 10 6661 1 2025-11-28 16:58:19.831 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:56416 10 6661 1 Summary: total flows: 140, total bytes: 431895, total packets: 1024, avg bps: 953, avg pps: 0, avg bpp: 421 Time window: 2025-11-28 15:58:07 - 2025-11-28 16:58:30 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0040s User: 0.0020s Wall: 0.0022s flows/second: 63317.1 Runtime: 0.0022s