Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-28 13:59:05.423 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:52746 10 6452 1 2025-11-28 13:59:11.450 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 13:59:11.207 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 13:59:11.530 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 13:59:11.384 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 13:59:11.613 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 14:00:05.785 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35346 10 6452 1 2025-11-28 14:01:06.187 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:40154 10 6452 1 2025-11-28 13:58:07.574 00:05:02.076 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 13:58:07.571 00:05:02.081 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 14:02:06.565 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:57932 10 6452 1 2025-11-28 14:03:06.932 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:36670 10 6452 1 2025-11-28 14:04:11.678 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 14:04:11.602 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 14:04:11.614 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 14:04:11.595 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 14:04:11.742 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 14:04:07.358 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:42318 10 6452 1 2025-11-28 14:05:07.724 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:48506 10 6452 1 2025-11-28 14:06:08.148 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:35442 10 6452 1 2025-11-28 14:07:08.550 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:52556 10 6452 1 2025-11-28 14:04:07.573 00:05:02.080 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 14:04:07.577 00:05:02.075 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 14:08:08.948 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:42606 10 6452 1 2025-11-28 14:09:11.733 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 14:09:11.649 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 14:09:11.554 00:00:00.028 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 14:09:11.650 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 14:09:11.664 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 14:09:09.318 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:56828 10 6452 1 2025-11-28 14:10:09.681 00:00:10.684 TCP 1.101.0.1:3000 -> 23.104.0.1:55280 10 6452 1 2025-11-28 14:11:10.409 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38076 10 6452 1 2025-11-28 14:12:10.807 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:57332 10 6452 1 2025-11-28 14:13:11.170 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:51602 10 6452 1 2025-11-28 14:10:07.574 00:05:02.086 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 14:10:07.576 00:05:02.080 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 14:14:11.733 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 14:14:11.772 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 14:14:11.725 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 14:14:11.729 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 14:14:11.807 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 14:14:11.580 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:41702 10 6452 1 2025-11-28 14:15:11.944 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:38314 10 6452 1 2025-11-28 14:16:12.361 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:51954 10 6452 1 2025-11-28 14:17:12.769 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:51992 10 6452 1 2025-11-28 14:18:13.180 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53946 10 6452 1 2025-11-28 14:19:11.820 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 14:19:11.803 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 14:19:11.413 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 14:19:11.738 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 14:19:11.914 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 14:19:13.581 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49934 10 6452 1 2025-11-28 14:16:07.578 00:05:02.085 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 14:16:07.582 00:05:02.080 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 14:20:13.986 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:39684 10 6452 1 2025-11-28 14:21:14.395 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51636 10 6452 1 2025-11-28 14:22:14.794 00:00:10.431 TCP 1.101.0.1:3000 -> 23.104.0.1:34768 12 10375 1 2025-11-28 14:23:15.264 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38454 10 6452 1 2025-11-28 14:24:11.988 00:00:00.046 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 14:24:11.961 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 14:24:11.989 00:00:00.032 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 14:24:11.859 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 14:24:12.072 00:00:00.031 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 14:24:15.668 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:37828 10 6452 1 2025-11-28 14:25:16.097 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:37780 10 6452 1 2025-11-28 14:22:07.581 00:05:02.084 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 14:22:07.583 00:05:02.079 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 14:26:16.505 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41386 10 6452 1 2025-11-28 14:27:16.907 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58922 10 6452 1 2025-11-28 14:28:17.310 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48920 10 6452 1 2025-11-28 14:29:12.045 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 14:29:11.960 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 14:29:11.812 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 14:29:11.962 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 14:29:11.877 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 14:29:17.715 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:35230 10 6452 1 2025-11-28 14:30:18.109 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39882 10 6452 1 2025-11-28 14:31:18.515 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49238 10 6452 1 2025-11-28 14:28:07.581 00:05:02.086 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 14:28:07.584 00:05:02.081 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 14:32:18.916 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56588 10 6452 1 2025-11-28 14:33:19.320 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37574 10 6452 1 2025-11-28 14:34:12.349 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 14:34:12.264 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 14:34:12.104 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 14:34:12.266 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 14:34:12.264 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 14:34:19.720 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:35880 10 6452 1 2025-11-28 14:35:20.152 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:35166 10 6452 1 2025-11-28 14:36:20.554 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45542 10 6452 1 2025-11-28 14:37:20.960 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49106 10 6452 1 2025-11-28 14:34:07.588 00:05:02.079 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 14:34:07.586 00:05:02.084 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 14:38:21.364 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:41778 10 6452 1 2025-11-28 14:39:11.972 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 14:39:11.888 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 14:39:12.003 00:00:00.048 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 14:39:12.130 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 14:39:12.189 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 14:39:21.767 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:45744 10 6452 1 2025-11-28 14:40:22.183 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54486 10 6452 1 2025-11-28 14:41:22.589 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43934 10 6452 1 2025-11-28 14:42:22.994 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:37042 10 6452 1 2025-11-28 14:43:23.358 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:53160 10 6452 1 2025-11-28 14:40:07.591 00:05:02.078 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 14:40:07.588 00:05:02.083 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 14:44:12.266 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 14:44:12.292 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 14:44:12.377 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 14:44:12.184 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 14:44:12.200 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 14:44:23.762 00:00:10.348 TCP 1.101.0.1:3000 -> 23.104.0.1:60566 10 6452 1 2025-11-28 14:45:24.144 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:35992 10 6452 1 2025-11-28 14:46:24.544 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:58040 12 6556 1 2025-11-28 14:47:24.954 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:58668 10 6452 1 2025-11-28 14:48:25.359 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37110 10 6452 1 2025-11-28 14:49:12.409 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 14:49:12.335 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 14:49:12.318 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 14:49:12.325 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 14:49:12.333 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 14:49:25.761 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:54054 10 6452 1 2025-11-28 14:46:07.588 00:05:02.086 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 14:46:07.591 00:05:02.080 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 14:50:26.165 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:42840 10 6452 1 2025-11-28 14:51:26.523 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:44928 10 6452 1 2025-11-28 14:52:26.930 00:00:10.395 TCP 1.101.0.1:3000 -> 23.104.0.1:59352 13 6608 1 2025-11-28 14:53:27.364 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:52394 10 6452 1 2025-11-28 14:54:12.612 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 14:54:12.590 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 14:54:12.271 00:00:00.026 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 14:54:12.527 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 14:54:12.662 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 14:54:27.773 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:45568 10 6452 1 2025-11-28 14:55:28.192 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:45868 10 6452 1 2025-11-28 14:52:07.591 00:05:02.085 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 14:52:07.593 00:05:02.080 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 14:56:28.596 00:00:10.438 TCP 1.101.0.1:3000 -> 23.104.0.1:54704 12 10369 1 2025-11-28 14:57:29.098 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34138 10 6452 1 2025-11-28 14:58:29.496 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:39396 10 6452 1 Summary: total flows: 140, total bytes: 425100, total packets: 1029, avg bps: 936, avg pps: 0, avg bpp: 413 Time window: 2025-11-28 13:58:07 - 2025-11-28 14:58:39 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0038s User: 0.0019s Wall: 0.0020s flows/second: 69204.8 Runtime: 0.0020s