Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-28 17:58:44.279 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:34208 10 6452 1 2025-11-28 17:59:16.489 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 17:59:16.286 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 17:59:16.452 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 17:59:16.321 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 17:59:16.405 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 17:59:44.648 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:41000 10 6452 1 2025-11-28 18:00:45.008 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:49796 10 6452 1 2025-11-28 18:01:45.423 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:42288 10 6452 1 2025-11-28 17:58:07.641 00:05:02.110 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 18:02:45.834 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:42008 10 6452 1 2025-11-28 17:59:07.644 00:05:02.105 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 18:03:46.197 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41324 10 6452 1 2025-11-28 18:04:16.694 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 18:04:16.538 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 18:04:16.341 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 18:04:16.483 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 18:04:16.610 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 18:04:46.602 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38356 10 6452 1 2025-11-28 18:05:47.003 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:54542 10 6452 1 2025-11-28 18:06:47.422 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:54340 10 6452 1 2025-11-28 18:07:47.836 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:39738 10 6452 1 2025-11-28 18:04:07.642 00:05:02.112 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 18:08:48.260 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:39132 10 6452 1 2025-11-28 18:05:07.645 00:05:02.106 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 18:09:16.402 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 18:09:16.585 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 18:09:16.333 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 18:09:16.407 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 18:09:16.490 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 18:09:48.626 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:56140 10 6452 1 2025-11-28 18:10:49.021 00:00:10.812 TCP 1.101.0.1:3000 -> 23.104.0.1:47762 10 6452 1 2025-11-28 18:11:49.874 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37750 10 6452 1 2025-11-28 18:12:50.287 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:37276 10 6452 1 2025-11-28 18:13:50.648 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:42518 10 6452 1 2025-11-28 18:10:07.644 00:05:02.110 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 18:14:16.566 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 18:14:16.463 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 18:14:16.285 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 18:14:16.456 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 18:14:16.540 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 18:14:51.060 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:42522 10 6452 1 2025-11-28 18:11:07.647 00:05:02.105 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 18:15:51.472 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:37376 10 6452 1 2025-11-28 18:16:51.832 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:51550 10 6452 1 2025-11-28 18:17:52.232 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52544 10 6452 1 2025-11-28 18:18:52.636 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:42164 10 6452 1 2025-11-28 18:19:16.940 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 18:19:16.777 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 18:19:16.760 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 18:19:16.372 00:00:00.026 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 18:19:16.859 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 18:19:53.004 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:59972 10 6452 1 2025-11-28 18:16:07.646 00:05:02.109 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 18:20:53.405 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:50992 10 6452 1 2025-11-28 18:17:07.648 00:05:02.105 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 18:21:53.811 00:00:10.344 TCP 1.101.0.1:3000 -> 23.104.0.1:44432 10 6452 1 2025-11-28 18:22:54.193 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:50748 10 6452 1 2025-11-28 18:23:54.591 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:49068 10 6452 1 2025-11-28 18:24:16.932 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 18:24:16.575 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 18:24:16.684 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 18:24:16.720 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 18:24:16.850 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 18:24:54.968 00:00:21.331 TCP 1.101.0.1:3000 -> 23.104.0.1:49392 10 6452 1 2025-11-28 18:22:07.648 00:05:02.108 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 18:26:06.342 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60878 10 6452 1 2025-11-28 18:23:07.654 00:05:02.101 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 18:27:06.750 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44660 10 6452 1 2025-11-28 18:28:07.154 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:48358 10 6452 1 2025-11-28 18:29:16.761 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 18:29:07.525 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:55596 10 6452 1 2025-11-28 18:29:16.771 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 18:29:16.504 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 18:29:16.917 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 18:29:17.001 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 18:30:07.921 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:53466 10 6452 1 2025-11-28 18:31:08.323 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:55708 10 6452 1 2025-11-28 18:28:07.651 00:05:02.107 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 18:32:08.726 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:37812 10 6452 1 2025-11-28 18:29:07.654 00:05:02.102 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 18:33:09.137 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45004 10 6452 1 2025-11-28 18:34:16.970 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 18:34:16.931 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 18:34:16.569 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 18:34:09.544 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:60092 10 6452 1 2025-11-28 18:34:16.779 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 18:34:16.862 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 18:35:09.946 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:36384 10 6452 1 2025-11-28 18:36:10.361 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:36152 10 6452 1 2025-11-28 18:37:10.771 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:35820 10 6452 1 2025-11-28 18:34:07.653 00:05:02.107 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 18:38:11.192 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54386 10 6452 1 2025-11-28 18:35:07.657 00:05:02.102 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 18:39:17.175 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 18:39:17.156 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 18:39:16.969 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 18:39:16.923 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 18:39:17.092 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 18:39:11.597 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:43226 10 6452 1 2025-11-28 18:40:11.955 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:44146 10 6452 1 2025-11-28 18:41:12.365 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:52684 10 6452 1 2025-11-28 18:42:12.732 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:45440 10 6452 1 2025-11-28 18:43:13.144 00:00:11.424 TCP 1.101.0.1:3000 -> 23.104.0.1:52814 10 6452 1 2025-11-28 18:40:07.655 00:05:02.107 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 18:44:17.005 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 18:44:17.231 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 18:44:17.063 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 18:44:17.103 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 18:44:16.921 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 18:44:14.606 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:57360 10 6452 1 2025-11-28 18:41:07.658 00:05:02.102 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 18:45:14.969 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:40620 10 6452 1 2025-11-28 18:46:15.377 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:46850 10 6452 1 2025-11-28 18:47:15.777 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:47898 10 6452 1 2025-11-28 18:48:16.185 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:45738 10 6452 1 2025-11-28 18:49:17.184 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 18:49:17.009 00:00:00.038 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 18:49:17.103 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 18:49:16.960 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 18:49:17.102 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 18:49:16.611 00:00:11.141 TCP 1.101.0.1:3000 -> 23.104.0.1:41360 10 6452 1 2025-11-28 18:46:07.656 00:05:02.109 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 18:50:17.791 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:48270 10 6452 1 2025-11-28 18:47:07.659 00:05:02.102 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 18:51:18.155 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44422 10 6452 1 2025-11-28 18:52:18.556 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:34902 10 6452 1 2025-11-28 18:53:18.922 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:46132 10 6452 1 2025-11-28 18:54:17.382 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 18:54:17.388 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 18:54:17.330 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 18:54:17.382 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 18:54:17.465 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 18:54:19.334 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:43960 10 6452 1 2025-11-28 18:55:19.696 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:33212 10 6452 1 2025-11-28 18:52:07.659 00:05:02.107 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 18:56:20.105 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:52388 10 6452 1 2025-11-28 18:53:07.661 00:05:02.102 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 18:57:20.468 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:59448 10 6452 1 2025-11-28 18:58:20.833 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:35056 10 6452 1 Summary: total flows: 140, total bytes: 417000, total packets: 1020, avg bps: 920, avg pps: 0, avg bpp: 408 Time window: 2025-11-28 17:58:07 - 2025-11-28 18:58:31 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0050s User: 0.0000s Wall: 0.0015s flows/second: 94542.4 Runtime: 0.0015s