Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-28 15:58:54.445 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:32982 10 6452 1 2025-11-28 15:59:13.799 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 15:59:13.599 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 15:59:13.802 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 15:59:13.854 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 15:59:13.885 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 15:59:54.857 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:42444 10 6452 1 2025-11-28 16:00:55.273 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:49160 10 6452 1 2025-11-28 15:58:07.615 00:05:02.089 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 16:01:55.678 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:40400 10 6452 1 2025-11-28 15:58:07.617 00:05:02.084 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 16:02:56.110 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:53698 10 6452 1 2025-11-28 16:04:13.998 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 16:03:56.526 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56878 10 6452 1 2025-11-28 16:04:13.916 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 16:04:13.762 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 16:04:13.915 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 16:04:14.181 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 16:04:56.930 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:41484 10 6452 1 2025-11-28 16:05:57.352 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:42342 10 6452 1 2025-11-28 16:06:57.709 00:00:10.399 TCP 1.101.0.1:3000 -> 23.104.0.1:52142 12 10584 1 2025-11-28 16:04:07.617 00:05:02.088 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 16:07:58.157 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:43516 10 6661 1 2025-11-28 16:04:07.620 00:05:02.083 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 16:08:58.517 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:60796 10 6661 1 2025-11-28 16:09:14.161 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 16:09:13.981 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 16:09:13.702 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 16:09:14.078 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 16:09:13.977 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 16:09:58.930 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:41936 10 6661 1 2025-11-28 16:10:59.347 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56398 10 6661 1 2025-11-28 16:11:59.747 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:40674 10 6661 1 2025-11-28 16:13:00.118 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:45286 10 6661 1 2025-11-28 16:10:07.617 00:05:02.095 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 16:14:00.482 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:47222 10 6661 1 2025-11-28 16:10:07.621 00:05:02.085 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 16:14:14.273 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 16:14:14.100 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 16:14:13.994 00:00:00.049 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 16:14:14.149 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 16:14:14.078 00:00:00.049 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 16:15:00.847 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:47258 10 6661 1 2025-11-28 16:16:01.282 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55652 10 6661 1 2025-11-28 16:17:01.685 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:55034 10 6661 1 2025-11-28 16:18:02.058 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:33866 10 6661 1 2025-11-28 16:19:14.025 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 16:19:14.106 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 16:19:14.362 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 16:19:14.175 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 16:19:02.473 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:48560 10 6661 1 2025-11-28 16:19:14.445 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 16:16:07.621 00:05:02.088 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 16:16:07.624 00:05:02.083 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 16:20:02.871 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:54576 10 6661 1 2025-11-28 16:21:03.236 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:45506 10 6661 1 2025-11-28 16:22:03.640 00:00:10.551 TCP 1.101.0.1:3000 -> 23.104.0.1:58080 10 6661 1 2025-11-28 16:23:04.233 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:45296 10 6661 1 2025-11-28 16:24:14.256 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 16:24:04.594 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47100 10 6661 1 2025-11-28 16:24:14.352 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 16:24:14.122 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 16:24:14.174 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 16:24:14.356 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 16:25:05.001 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:60912 10 6661 1 2025-11-28 16:22:07.621 00:05:02.088 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 16:22:07.624 00:05:02.084 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 16:26:05.402 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41534 10 6661 1 2025-11-28 16:27:05.807 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40880 10 6661 1 2025-11-28 16:28:06.215 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:35402 10 6661 1 2025-11-28 16:29:14.560 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 16:29:14.484 00:00:00.026 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 16:29:14.315 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 16:29:14.478 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 16:29:14.299 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 16:29:06.615 00:00:10.744 TCP 1.101.0.1:3000 -> 23.104.0.1:47832 10 6661 1 2025-11-28 16:30:07.397 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:58310 10 6661 1 2025-11-28 16:31:07.794 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:33088 10 6661 1 2025-11-28 16:28:07.622 00:05:02.090 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 16:28:07.625 00:05:02.086 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 16:32:08.151 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:57796 10 6661 1 2025-11-28 16:33:08.508 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37204 10 6661 1 2025-11-28 16:34:14.757 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 16:34:14.622 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 16:34:14.543 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 16:34:14.674 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 16:34:14.551 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 16:34:08.912 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43580 10 6661 1 2025-11-28 16:35:09.320 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35300 10 6661 1 2025-11-28 16:36:09.718 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:37346 10 6661 1 2025-11-28 16:37:10.105 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:37720 10 6661 1 2025-11-28 16:34:07.624 00:05:02.090 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 16:34:07.626 00:05:02.085 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 16:38:10.508 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54260 10 6661 1 2025-11-28 16:39:14.936 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 16:39:14.542 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 16:39:14.937 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 16:39:15.187 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 16:39:15.020 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 16:39:10.914 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55304 10 6661 1 2025-11-28 16:40:11.319 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:42878 10 6661 1 2025-11-28 16:41:11.717 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:38850 10 6661 1 2025-11-28 16:42:12.131 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:43420 10 6661 1 2025-11-28 16:43:12.496 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:49070 10 6661 1 2025-11-28 16:40:07.627 00:05:02.089 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 16:40:07.631 00:05:02.083 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 16:44:15.068 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 16:44:14.913 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 16:44:14.711 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 16:44:14.985 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 16:44:14.991 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 16:44:12.912 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52310 10 6661 1 2025-11-28 16:45:13.314 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40030 10 6661 1 2025-11-28 16:46:13.717 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:45176 10 6661 1 2025-11-28 16:47:14.129 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:58502 10 6661 1 2025-11-28 16:48:14.488 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:50400 10 6661 1 2025-11-28 16:49:14.804 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 16:49:14.596 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 16:49:14.911 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 16:49:14.723 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 16:49:14.979 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 16:49:14.896 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:33858 12 6765 1 2025-11-28 16:46:07.627 00:05:02.096 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 16:46:07.630 00:05:02.090 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 16:50:15.304 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:55108 10 6661 1 2025-11-28 16:51:15.705 00:00:11.679 TCP 1.101.0.1:3000 -> 23.104.0.1:58026 10 6661 1 2025-11-28 16:52:17.427 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48628 10 6661 1 2025-11-28 16:53:17.834 00:00:10.344 TCP 1.101.0.1:3000 -> 23.104.0.1:54928 10 6661 1 2025-11-28 16:54:14.948 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 16:54:15.005 00:00:00.041 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 16:54:14.985 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 16:54:14.992 00:00:00.042 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 16:54:15.069 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 16:54:18.217 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:33804 10 6661 1 2025-11-28 16:55:18.615 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:46660 10 6661 1 2025-11-28 16:52:07.631 00:05:02.093 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 16:52:07.628 00:05:02.098 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 16:56:19.018 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54942 10 6661 1 2025-11-28 16:57:19.422 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:34368 10 6661 1 2025-11-28 16:58:19.831 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:56416 10 6661 1 Summary: total flows: 140, total bytes: 431895, total packets: 1024, avg bps: 953, avg pps: 0, avg bpp: 421 Time window: 2025-11-28 15:58:07 - 2025-11-28 16:58:30 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0031s User: 0.0023s Wall: 0.0020s flows/second: 69409.3 Runtime: 0.0020s