Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-28 19:58:46.934 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:44940 10 6452 1 2025-11-28 19:59:18.805 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 19:59:18.815 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 19:59:18.729 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 19:59:18.428 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 19:59:18.722 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 19:59:47.353 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:32856 10 6452 1 2025-11-28 20:00:47.715 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:42450 10 6452 1 2025-11-28 20:01:48.101 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:58618 10 6452 1 2025-11-28 19:58:07.687 00:05:02.131 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 20:02:48.506 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47264 10 6452 1 2025-11-28 19:59:07.691 00:05:02.126 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 20:03:48.913 00:00:10.419 TCP 1.101.0.1:3000 -> 23.104.0.1:53070 13 6608 1 2025-11-28 20:04:18.880 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 20:04:18.541 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 20:04:18.730 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 20:04:18.744 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 20:04:18.796 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 20:04:49.383 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36180 10 6452 1 2025-11-28 20:05:49.789 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:42690 10 6452 1 2025-11-28 20:06:50.195 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53862 10 6452 1 2025-11-28 20:07:50.605 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:36450 10 6452 1 2025-11-28 20:04:07.693 00:05:02.128 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 20:08:50.998 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:37936 10 6452 1 2025-11-28 20:05:07.697 00:05:02.120 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 20:09:18.820 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 20:09:18.667 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 20:09:18.830 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 20:09:18.743 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 20:09:18.826 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 20:09:51.396 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45808 10 6452 1 2025-11-28 20:10:51.799 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57220 10 6452 1 2025-11-28 20:11:52.201 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57684 10 6452 1 2025-11-28 20:12:52.606 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54984 10 6452 1 2025-11-28 20:13:53.011 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48528 10 6452 1 2025-11-28 20:10:07.695 00:05:02.127 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 20:14:18.791 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 20:14:18.781 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 20:14:18.908 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 20:14:18.702 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 20:14:18.785 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 20:14:53.416 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:47316 10 6452 1 2025-11-28 20:11:07.699 00:05:02.122 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 20:15:53.820 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:33498 10 6452 1 2025-11-28 20:16:54.231 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:53364 10 6452 1 2025-11-28 20:17:54.636 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:33888 10 6452 1 2025-11-28 20:18:55.038 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:33592 10 6452 1 2025-11-28 20:19:19.243 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 20:19:19.021 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 20:19:19.014 00:00:00.040 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 20:19:18.882 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 20:19:19.159 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 20:19:55.459 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39006 10 6452 1 2025-11-28 20:16:07.699 00:05:02.124 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 20:17:07.702 00:05:02.120 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 20:20:55.859 00:00:10.344 TCP 1.101.0.1:3000 -> 23.104.0.1:41488 10 6452 1 2025-11-28 20:21:56.241 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51898 10 6452 1 2025-11-28 20:22:56.643 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33738 10 6452 1 2025-11-28 20:23:57.041 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:37418 10 6452 1 2025-11-28 20:24:19.334 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 20:24:19.305 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 20:24:19.253 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 20:24:19.209 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 20:24:19.253 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 20:24:57.448 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:59726 10 6452 1 2025-11-28 20:25:57.823 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51458 10 6452 1 2025-11-28 20:22:07.702 00:05:02.125 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 20:26:58.225 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36640 10 6452 1 2025-11-28 20:23:07.705 00:05:02.119 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 20:27:58.628 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:46078 12 6556 1 2025-11-28 20:28:59.031 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54560 12 6556 1 2025-11-28 20:29:19.462 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 20:29:19.221 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 20:29:19.285 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 20:29:19.288 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 20:29:19.381 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 20:29:59.436 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55562 10 6452 1 2025-11-28 20:30:59.844 00:00:10.347 TCP 1.101.0.1:3000 -> 23.104.0.1:38110 10 6452 1 2025-11-28 20:32:00.228 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42992 10 6452 1 2025-11-28 20:28:07.704 00:05:02.123 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 20:29:07.705 00:05:02.120 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 20:33:00.631 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:46466 10 6452 1 2025-11-28 20:34:19.502 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 20:34:01.051 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42456 10 6452 1 2025-11-28 20:34:19.421 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 20:34:19.522 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 20:34:19.416 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 20:34:19.419 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 20:35:01.453 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:52276 10 6452 1 2025-11-28 20:36:01.819 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44902 10 6452 1 2025-11-28 20:37:02.226 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48584 10 6452 1 2025-11-28 20:38:02.629 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41740 10 6452 1 2025-11-28 20:34:07.703 00:05:02.124 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 20:35:07.707 00:05:02.118 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 20:39:03.032 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40848 10 6452 1 2025-11-28 20:39:19.575 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 20:39:19.584 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 20:39:19.300 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 20:39:19.432 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 20:39:19.492 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 20:40:03.440 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45684 10 6452 1 2025-11-28 20:41:03.845 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:40736 10 6452 1 2025-11-28 20:42:04.271 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:34366 10 6452 1 2025-11-28 20:43:04.677 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:59366 10 6452 1 2025-11-28 20:40:07.707 00:05:02.124 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 20:44:19.551 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 20:44:19.881 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 20:44:19.755 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 20:44:19.765 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 20:44:19.468 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 20:44:05.039 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:40434 10 6452 1 2025-11-28 20:41:07.708 00:05:02.119 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 20:45:05.441 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:54888 10 6452 1 2025-11-28 20:46:05.858 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:43972 10 6452 1 2025-11-28 20:47:06.279 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:60550 10 6452 1 2025-11-28 20:48:06.688 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:34934 10 6452 1 2025-11-28 20:49:19.834 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 20:49:19.660 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 20:49:19.371 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 20:49:19.615 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 20:49:07.111 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:44926 10 6452 1 2025-11-28 20:49:19.751 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 20:46:07.708 00:05:02.125 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 20:50:07.517 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:39820 10 6452 1 2025-11-28 20:47:07.711 00:05:02.120 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 20:51:07.880 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46398 10 6452 1 2025-11-28 20:52:08.288 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:56770 10 6452 1 2025-11-28 20:53:08.686 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:37902 10 6452 1 2025-11-28 20:54:19.797 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 20:54:19.716 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 20:54:19.841 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 20:54:19.843 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 20:54:19.698 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 20:54:09.051 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43110 10 6452 1 2025-11-28 20:55:09.453 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41410 10 6452 1 2025-11-28 20:52:07.708 00:05:02.138 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 20:56:09.856 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:53098 10 6452 1 2025-11-28 20:53:07.712 00:05:02.134 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 20:57:10.276 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:49076 10 6452 1 2025-11-28 20:58:10.689 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57164 10 6452 1 Summary: total flows: 140, total bytes: 417364, total packets: 1027, avg bps: 924, avg pps: 0, avg bpp: 406 Time window: 2025-11-28 19:58:07 - 2025-11-28 20:58:21 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0029s User: 0.0019s Wall: 0.0022s flows/second: 64161.1 Runtime: 0.0022s