Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-29 02:59:13.682 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:52520 10 6452 1 2025-11-29 02:59:27.254 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-29 02:59:26.941 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-29 02:59:27.124 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-29 02:59:26.782 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 02:59:27.173 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 03:00:14.111 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:35266 10 6452 1 2025-11-29 03:01:14.524 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:60408 10 6452 1 2025-11-29 02:58:07.874 00:05:02.121 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-29 03:02:14.943 00:00:10.354 TCP 1.101.0.1:3000 -> 23.104.0.1:43342 10 6452 1 2025-11-29 02:59:07.875 00:05:02.115 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-29 03:03:15.334 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41986 10 6452 1 2025-11-29 03:04:27.738 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-29 03:04:27.442 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-29 03:04:27.189 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 03:04:15.733 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:36234 10 6452 1 2025-11-29 03:04:27.605 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 03:04:27.687 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-29 03:05:16.151 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:35292 10 6452 1 2025-11-29 03:06:16.577 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:46554 10 6452 1 2025-11-29 03:07:16.973 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:56324 10 6452 1 2025-11-29 03:04:07.876 00:05:02.117 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-29 03:08:17.381 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:58890 10 6452 1 2025-11-29 03:05:07.879 00:05:02.112 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-29 03:09:27.310 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-29 03:09:27.216 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-29 03:09:17.781 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41122 10 6452 1 2025-11-29 03:09:27.358 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-29 03:09:27.244 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 03:09:27.226 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 03:10:18.185 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45764 10 6452 1 2025-11-29 03:11:18.584 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51592 10 6452 1 2025-11-29 03:12:18.990 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41064 10 6452 1 2025-11-29 03:13:19.391 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:37464 10 6452 1 2025-11-29 03:10:07.877 00:05:02.117 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-29 03:14:27.469 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-29 03:14:27.369 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-29 03:14:27.515 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 03:14:27.368 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 03:14:27.450 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-29 03:14:19.754 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:35590 10 6452 1 2025-11-29 03:11:07.880 00:05:02.113 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-29 03:15:20.155 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:34822 10 6452 1 2025-11-29 03:16:20.560 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:42592 10 6452 1 2025-11-29 03:17:20.958 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:42062 10 6452 1 2025-11-29 03:18:21.330 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:41814 10 6452 1 2025-11-29 03:19:27.575 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-29 03:19:27.503 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-29 03:19:27.502 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-29 03:19:27.482 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 03:19:27.493 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 03:19:21.729 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:52746 10 6452 1 2025-11-29 03:16:07.879 00:05:02.120 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-29 03:20:22.114 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:45790 10 6452 1 2025-11-29 03:17:07.881 00:05:02.113 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-29 03:21:22.520 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47920 10 6452 1 2025-11-29 03:22:22.921 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:45702 10 6452 1 2025-11-29 03:23:23.351 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:58098 10 6452 1 2025-11-29 03:24:27.553 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-29 03:24:27.579 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 03:24:27.630 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 03:24:27.623 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-29 03:24:27.712 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-29 03:24:23.776 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:40208 10 6452 1 2025-11-29 03:25:24.182 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:51804 10 6452 1 2025-11-29 03:22:07.881 00:05:02.119 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-29 03:26:24.583 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47446 10 6452 1 2025-11-29 03:23:07.883 00:05:02.113 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-29 03:27:24.987 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36744 10 6452 1 2025-11-29 03:28:25.391 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59184 10 6452 1 2025-11-29 03:29:27.680 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-29 03:29:27.774 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-29 03:29:27.774 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-29 03:29:27.592 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 03:29:27.599 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 03:29:25.790 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50960 10 6452 1 2025-11-29 03:30:26.195 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:43374 10 6452 1 2025-11-29 03:31:26.557 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:40898 10 6452 1 2025-11-29 03:28:07.883 00:05:02.119 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-29 03:32:26.931 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:60746 10 6452 1 2025-11-29 03:29:07.885 00:05:02.115 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-29 03:33:27.358 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:46724 10 6452 1 2025-11-29 03:34:28.012 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-29 03:34:27.933 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-29 03:34:27.591 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-29 03:34:27.587 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 03:34:27.929 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 03:34:27.722 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:43106 10 6452 1 2025-11-29 03:35:28.135 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47390 10 6452 1 2025-11-29 03:36:28.543 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43022 10 6452 1 2025-11-29 03:37:28.944 00:00:10.452 TCP 1.101.0.1:3000 -> 23.104.0.1:36376 12 10375 1 2025-11-29 03:34:07.885 00:05:02.153 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-29 03:38:29.432 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58424 10 6452 1 2025-11-29 03:35:07.889 00:05:02.147 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-29 03:39:27.935 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-29 03:39:27.907 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-29 03:39:27.855 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-29 03:39:27.724 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 03:39:27.852 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 03:39:29.836 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:45912 10 6452 1 2025-11-29 03:40:30.265 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33766 10 6452 1 2025-11-29 03:41:30.666 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43406 10 6452 1 2025-11-29 03:42:31.098 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49428 10 6452 1 2025-11-29 03:43:31.498 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:45316 10 6452 1 2025-11-29 03:40:07.888 00:05:02.149 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-29 03:44:27.971 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-29 03:44:27.887 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-29 03:44:27.888 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-29 03:44:27.910 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 03:44:27.888 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 03:44:31.903 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:52258 10 6452 1 2025-11-29 03:41:07.892 00:05:02.143 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-29 03:45:32.318 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:33860 10 6452 1 2025-11-29 03:46:32.681 00:00:10.465 TCP 1.101.0.1:3000 -> 23.104.0.1:47512 12 10369 1 2025-11-29 03:47:33.184 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51718 10 6452 1 2025-11-29 03:48:33.589 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:42206 10 6452 1 2025-11-29 03:49:28.330 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-29 03:49:28.152 00:00:00.031 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-29 03:49:28.083 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-29 03:49:28.112 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 03:49:28.248 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 03:49:33.996 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59558 10 6452 1 2025-11-29 03:46:07.891 00:05:02.153 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-29 03:50:34.404 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:47940 10 6452 1 2025-11-29 03:47:07.896 00:05:02.142 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-29 03:51:34.766 00:00:10.816 TCP 1.101.0.1:3000 -> 23.104.0.1:36588 10 6452 1 2025-11-29 03:52:35.625 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47258 10 6452 1 2025-11-29 03:53:36.026 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:36768 10 6452 1 2025-11-29 03:54:28.281 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-29 03:54:28.001 00:00:00.029 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-29 03:54:27.944 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 03:54:28.213 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 03:54:28.294 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-29 03:54:36.455 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:42718 10 6452 1 2025-11-29 03:55:36.869 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43420 10 6452 1 2025-11-29 03:52:07.894 00:05:02.149 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-29 03:56:37.268 00:00:10.345 TCP 1.101.0.1:3000 -> 23.104.0.1:50776 10 6452 1 2025-11-29 03:53:07.899 00:05:02.141 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-29 03:57:37.653 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:49830 10 6452 1 2025-11-29 03:58:38.016 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:51320 10 6452 1 Summary: total flows: 140, total bytes: 424840, total packets: 1024, avg bps: 933, avg pps: 0, avg bpp: 414 Time window: 2025-11-29 02:58:07 - 2025-11-29 03:58:48 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0039s User: 0.0020s Wall: 0.0019s flows/second: 72093.6 Runtime: 0.0020s