Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-28 01:58:43.454 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:57106 10 6452 1 2025-11-28 01:58:56.946 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 01:58:56.987 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 01:58:56.679 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 01:58:56.864 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 01:58:56.940 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 01:59:43.861 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:55806 10 6452 1 2025-11-28 02:00:44.280 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52900 10 6452 1 2025-11-28 02:01:44.687 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55226 10 6452 1 2025-11-28 01:58:07.317 00:05:01.987 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 01:58:07.320 00:05:01.982 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 02:02:45.114 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:40190 10 6452 1 2025-11-28 02:03:57.151 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 02:03:45.528 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49540 10 6452 1 2025-11-28 02:03:57.117 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 02:03:56.907 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 02:03:57.067 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 02:03:57.069 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 02:04:45.935 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:46028 10 6452 1 2025-11-28 02:05:46.360 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:47054 10 6452 1 2025-11-28 02:06:46.772 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:57260 10 6452 1 2025-11-28 02:07:47.139 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49546 10 6452 1 2025-11-28 02:04:07.317 00:05:01.990 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 02:04:07.320 00:05:01.985 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 02:08:57.296 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 02:08:57.387 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 02:08:57.240 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 02:08:57.206 00:00:00.029 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 02:08:57.279 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 02:08:47.546 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43606 10 6452 1 2025-11-28 02:09:47.950 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:38696 10 6452 1 2025-11-28 02:10:48.358 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46632 10 6452 1 2025-11-28 02:11:48.759 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:50818 10 6452 1 2025-11-28 02:12:49.182 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:36828 10 6452 1 2025-11-28 02:13:57.713 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 02:13:57.516 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 02:13:57.399 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 02:13:57.631 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 02:13:57.562 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 02:13:49.576 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46992 10 6452 1 2025-11-28 02:10:07.324 00:05:01.982 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 02:10:07.322 00:05:01.987 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 02:14:49.982 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:58138 10 6452 1 2025-11-28 02:15:50.399 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:34982 10 6452 1 2025-11-28 02:16:50.797 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:46898 10 6452 1 2025-11-28 02:17:51.195 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52134 10 6452 1 2025-11-28 02:18:57.480 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 02:18:57.369 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 02:18:57.354 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 02:18:57.108 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 02:18:57.438 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 02:18:51.599 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51964 10 6452 1 2025-11-28 02:19:51.999 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:49414 10 6452 1 2025-11-28 02:16:07.328 00:05:01.981 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 02:16:07.330 00:05:01.976 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 02:20:52.364 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:58806 10 6452 1 2025-11-28 02:21:52.734 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:44090 10 6452 1 2025-11-28 02:22:53.107 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47632 10 6452 1 2025-11-28 02:23:57.386 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 02:23:57.414 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 02:23:57.687 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 02:23:57.467 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 02:23:57.769 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 02:23:53.510 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:37678 10 6452 1 2025-11-28 02:24:53.920 00:00:10.345 TCP 1.101.0.1:3000 -> 23.104.0.1:37758 10 6452 1 2025-11-28 02:25:54.302 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:52206 10 6452 1 2025-11-28 02:22:07.330 00:05:01.992 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 02:22:07.333 00:05:01.987 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 02:26:54.704 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:42074 10 6452 1 2025-11-28 02:27:55.093 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55666 10 6452 1 2025-11-28 02:28:57.660 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 02:28:57.575 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 02:28:57.543 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 02:28:57.579 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 02:28:57.318 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 02:28:55.496 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:59946 10 6452 1 2025-11-28 02:29:55.903 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:53560 10 6452 1 2025-11-28 02:30:56.287 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45678 10 6452 1 2025-11-28 02:28:07.336 00:05:01.986 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 02:31:56.687 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46464 10 6452 1 2025-11-28 02:28:07.339 00:05:01.980 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 02:32:57.108 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:34376 10 6452 1 2025-11-28 02:33:57.576 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 02:33:57.688 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 02:33:57.515 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 02:33:57.493 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 02:33:57.585 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 02:33:57.467 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:39928 10 6452 1 2025-11-28 02:34:57.871 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34642 10 6452 1 2025-11-28 02:35:58.275 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50612 10 6452 1 2025-11-28 02:36:58.674 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:57562 10 6452 1 2025-11-28 02:34:07.337 00:05:01.991 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 02:37:59.098 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52874 10 6452 1 2025-11-28 02:34:07.340 00:05:01.986 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 02:38:58.083 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 02:38:58.092 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 02:38:57.817 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 02:38:58.206 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 02:38:58.288 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 02:38:59.499 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54452 10 6452 1 2025-11-28 02:39:59.903 00:00:10.736 TCP 1.101.0.1:3000 -> 23.104.0.1:52224 10 6452 1 2025-11-28 02:41:00.682 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38046 10 6452 1 2025-11-28 02:42:01.115 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:34380 10 6452 1 2025-11-28 02:43:01.523 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:40222 10 6452 1 2025-11-28 02:43:57.804 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 02:43:57.805 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 02:43:57.973 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 02:43:57.802 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 02:43:57.886 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 02:40:07.339 00:05:01.992 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 02:40:07.341 00:05:01.987 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 02:44:01.942 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:39660 10 6452 1 2025-11-28 02:45:02.361 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:45290 10 6452 1 2025-11-28 02:46:02.727 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:57664 10 6452 1 2025-11-28 02:47:03.111 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:52170 10 6452 1 2025-11-28 02:48:03.488 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:53530 10 6452 1 2025-11-28 02:48:58.216 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 02:48:58.134 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 02:48:58.141 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 02:48:57.773 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 02:48:58.075 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 02:49:03.859 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:53038 10 6452 1 2025-11-28 02:46:07.345 00:05:01.986 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 02:46:07.342 00:05:01.991 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 02:50:04.276 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:43902 10 6452 1 2025-11-28 02:51:04.643 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:53898 10 6452 1 2025-11-28 02:52:05.008 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:38648 10 6452 1 2025-11-28 02:53:05.369 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:38644 10 6452 1 2025-11-28 02:53:58.043 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 02:53:58.138 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 02:53:57.909 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 02:53:57.960 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 02:53:57.775 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 02:54:05.777 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:39944 10 6452 1 2025-11-28 02:55:06.191 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:59234 10 6452 1 2025-11-28 02:52:07.344 00:05:01.991 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 02:52:07.347 00:05:01.985 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 02:56:06.593 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:55696 10 6452 1 2025-11-28 02:57:07.005 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:56054 10 6452 1 2025-11-28 02:58:07.410 00:00:10.649 TCP 1.101.0.1:3000 -> 23.104.0.1:38340 10 6452 1 Summary: total flows: 140, total bytes: 417000, total packets: 1020, avg bps: 923, avg pps: 0, avg bpp: 408 Time window: 2025-11-28 01:58:07 - 2025-11-28 02:58:18 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0034s User: 0.0017s Wall: 0.0014s flows/second: 103544.8 Runtime: 0.0014s