Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-29 17:59:08.038 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49862 10 6452 1 2025-11-29 17:59:45.213 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-29 17:59:45.131 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-29 17:59:45.219 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-29 17:59:45.211 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 17:59:45.129 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 18:00:08.441 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:54068 10 6452 1 2025-11-29 18:01:08.806 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:47076 10 6452 1 2025-11-29 17:58:08.212 00:05:02.112 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-29 18:02:09.215 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47154 10 6452 1 2025-11-29 17:58:10.321 00:05:57.898 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-29 18:03:09.620 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:40646 10 6452 1 2025-11-29 18:04:09.985 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:40474 10 6452 1 2025-11-29 18:04:45.449 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-29 18:04:45.299 00:00:00.029 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-29 18:04:45.116 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-29 18:04:45.219 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 18:04:45.367 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 18:05:10.391 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:48292 10 6452 1 2025-11-29 18:06:10.796 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:46068 10 6452 1 2025-11-29 18:07:11.210 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:52040 10 6452 1 2025-11-29 18:04:08.217 00:05:02.109 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-29 18:08:11.619 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46202 10 6452 1 2025-11-29 18:04:10.322 00:05:57.907 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-29 18:09:12.032 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46054 10 6452 1 2025-11-29 18:09:45.511 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-29 18:09:45.332 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-29 18:09:45.318 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-29 18:09:44.992 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 18:09:45.430 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 18:10:12.436 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45316 10 6452 1 2025-11-29 18:11:12.840 00:00:10.396 TCP 1.101.0.1:3000 -> 23.104.0.1:37244 10 6452 1 2025-11-29 18:12:13.278 00:00:10.675 TCP 1.101.0.1:3000 -> 23.104.0.1:56904 10 6452 1 2025-11-29 18:13:13.995 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:45218 10 6452 1 2025-11-29 18:10:08.226 00:05:02.102 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-29 18:14:14.363 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:51316 10 6452 1 2025-11-29 18:14:45.914 00:00:00.017 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-29 18:14:45.701 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-29 18:14:45.510 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 18:14:45.707 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 18:14:45.789 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-29 18:10:10.324 00:05:57.907 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-29 18:15:14.776 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:44638 10 6452 1 2025-11-29 18:16:15.150 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:57344 10 6452 1 2025-11-29 18:17:15.586 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51202 10 6452 1 2025-11-29 18:18:15.992 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:42728 10 6452 1 2025-11-29 18:19:16.406 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:55194 10 6452 1 2025-11-29 18:19:45.582 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-29 18:19:45.406 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-29 18:19:45.674 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-29 18:19:45.443 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 18:19:45.501 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 18:16:08.227 00:05:02.102 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-29 18:20:16.815 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59744 10 6452 1 2025-11-29 18:16:10.326 00:05:57.908 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-29 18:21:17.226 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44934 10 6452 1 2025-11-29 18:22:17.627 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36214 10 6452 1 2025-11-29 18:23:18.028 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:50824 10 6452 1 2025-11-29 18:24:18.391 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:43614 10 6452 1 2025-11-29 18:24:45.735 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-29 18:24:45.654 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-29 18:24:45.545 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-29 18:24:45.654 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 18:24:45.653 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 18:25:18.751 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52124 10 6452 1 2025-11-29 18:22:08.231 00:05:02.099 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-29 18:26:19.160 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52824 10 6452 1 2025-11-29 18:22:10.328 00:05:57.908 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-29 18:27:19.564 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45034 10 6452 1 2025-11-29 18:28:19.965 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59256 10 6452 1 2025-11-29 18:29:20.373 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:42688 10 6452 1 2025-11-29 18:29:45.753 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-29 18:29:45.691 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-29 18:29:45.711 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 18:29:45.698 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 18:29:45.780 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-29 18:30:20.746 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:53060 10 6452 1 2025-11-29 18:31:21.145 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:33710 10 6452 1 2025-11-29 18:28:08.232 00:05:02.104 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-29 18:32:21.518 00:00:10.438 TCP 1.101.0.1:3000 -> 23.104.0.1:44048 12 10375 1 2025-11-29 18:28:10.328 00:05:57.910 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-29 18:33:21.994 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:59922 10 6452 1 2025-11-29 18:34:22.402 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49764 10 6452 1 2025-11-29 18:34:46.015 00:00:00.038 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-29 18:34:45.931 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-29 18:34:45.931 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-29 18:34:45.828 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 18:34:45.931 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 18:35:22.800 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:56242 10 6452 1 2025-11-29 18:36:23.203 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:41058 10 6452 1 2025-11-29 18:37:23.612 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53638 10 6452 1 2025-11-29 18:34:08.236 00:05:02.103 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-29 18:38:24.020 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:39128 10 6452 1 2025-11-29 18:34:10.334 00:05:57.905 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-29 18:39:24.417 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49240 10 6452 1 2025-11-29 18:39:46.164 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-29 18:39:46.116 00:00:00.030 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-29 18:39:46.199 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-29 18:39:46.291 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 18:39:46.080 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 18:40:24.823 00:00:10.608 TCP 1.101.0.1:3000 -> 23.104.0.1:40088 10 6452 1 2025-11-29 18:41:25.466 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:56472 10 6452 1 2025-11-29 18:42:25.827 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41754 10 6452 1 2025-11-29 18:43:26.236 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48428 10 6452 1 2025-11-29 18:40:08.237 00:05:02.105 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-29 18:44:26.637 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:37294 10 6452 1 2025-11-29 18:44:46.179 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-29 18:44:45.940 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-29 18:44:45.927 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 18:44:46.103 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 18:44:46.186 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-29 18:40:10.340 00:05:57.903 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-29 18:45:27.069 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:50330 10 6452 1 2025-11-29 18:46:27.470 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:45592 10 6452 1 2025-11-29 18:47:27.834 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:38968 10 6452 1 2025-11-29 18:48:28.269 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:45812 10 6452 1 2025-11-29 18:49:28.680 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:48564 10 6452 1 2025-11-29 18:49:46.367 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-29 18:49:46.171 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-29 18:49:46.166 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-29 18:49:45.968 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 18:49:46.284 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 18:46:08.239 00:05:02.105 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-29 18:50:29.108 00:00:10.426 TCP 1.101.0.1:3000 -> 23.104.0.1:38354 11 6504 1 2025-11-29 18:46:10.340 00:05:57.934 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-29 18:51:29.570 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47046 10 6452 1 2025-11-29 18:52:29.969 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:57230 10 6452 1 2025-11-29 18:53:30.390 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51498 10 6452 1 2025-11-29 18:54:30.792 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:57448 10 6452 1 2025-11-29 18:54:46.332 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-29 18:54:46.292 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-29 18:54:46.306 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 18:54:46.279 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 18:54:46.362 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-29 18:55:31.204 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59874 10 6452 1 2025-11-29 18:52:08.271 00:05:02.075 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-29 18:56:31.611 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:59966 11 6492 1 2025-11-29 18:52:10.343 00:05:57.933 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-29 18:57:32.017 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45100 10 6452 1 2025-11-29 18:58:32.422 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39150 10 6452 1 Summary: total flows: 140, total bytes: 421015, total packets: 1024, avg bps: 926, avg pps: 0, avg bpp: 411 Time window: 2025-11-29 17:58:08 - 2025-11-29 18:58:42 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0044s User: 0.0018s Wall: 0.0019s flows/second: 74669.7 Runtime: 0.0019s