Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-28 17:58:44.277 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:34208 10 6452 1 2025-11-28 17:59:16.488 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 17:59:16.286 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 17:59:16.321 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 17:59:16.405 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 17:59:16.452 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 17:59:44.646 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:41000 10 6452 1 2025-11-28 18:00:45.007 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:49796 10 6452 1 2025-11-28 18:01:45.422 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:42288 10 6452 1 2025-11-28 17:58:07.642 00:05:02.109 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 17:58:07.645 00:05:02.104 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 18:02:45.832 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:42008 10 6452 1 2025-11-28 18:03:46.195 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41324 10 6452 1 2025-11-28 18:04:16.693 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 18:04:16.539 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 18:04:16.484 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 18:04:16.611 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 18:04:16.342 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 18:04:46.602 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38356 10 6452 1 2025-11-28 18:05:47.005 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:54542 10 6452 1 2025-11-28 18:06:47.420 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:54340 10 6452 1 2025-11-28 18:07:47.836 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:39738 10 6452 1 2025-11-28 18:04:07.645 00:05:02.107 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 18:04:07.644 00:05:02.111 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 18:08:48.261 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:39132 10 6452 1 2025-11-28 18:09:16.489 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 18:09:16.402 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 18:09:16.333 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 18:09:16.407 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 18:09:16.585 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 18:09:48.627 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:56140 10 6452 1 2025-11-28 18:10:49.023 00:00:10.811 TCP 1.101.0.1:3000 -> 23.104.0.1:47762 10 6452 1 2025-11-28 18:11:49.873 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:37750 10 6452 1 2025-11-28 18:12:50.287 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:37276 10 6452 1 2025-11-28 18:10:07.644 00:05:02.110 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 18:13:50.648 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:42518 10 6452 1 2025-11-28 18:10:07.646 00:05:02.106 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 18:14:16.566 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 18:14:16.285 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 18:14:16.456 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 18:14:16.463 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 18:14:16.538 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 18:14:51.060 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:42522 10 6452 1 2025-11-28 18:15:51.472 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:37376 10 6452 1 2025-11-28 18:16:51.831 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51550 10 6452 1 2025-11-28 18:17:52.232 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52544 10 6452 1 2025-11-28 18:18:52.635 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:42164 10 6452 1 2025-11-28 18:19:16.940 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 18:19:16.776 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 18:19:16.372 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 18:19:16.858 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 18:19:16.760 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 18:19:53.004 00:00:10.356 TCP 1.101.0.1:3000 -> 23.104.0.1:59972 10 6452 1 2025-11-28 18:16:07.647 00:05:02.105 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 18:16:07.646 00:05:02.109 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 18:20:53.406 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:50992 10 6452 1 2025-11-28 18:21:53.813 00:00:10.343 TCP 1.101.0.1:3000 -> 23.104.0.1:44432 10 6452 1 2025-11-28 18:22:54.193 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:50748 10 6452 1 2025-11-28 18:23:54.590 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:49068 10 6452 1 2025-11-28 18:24:16.932 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 18:24:16.576 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 18:24:16.721 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 18:24:16.851 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 18:24:16.685 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 18:24:54.967 00:00:21.331 TCP 1.101.0.1:3000 -> 23.104.0.1:49392 10 6452 1 2025-11-28 18:22:07.651 00:05:02.103 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 18:22:07.649 00:05:02.109 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 18:26:06.343 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60878 10 6452 1 2025-11-28 18:27:06.751 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44660 10 6452 1 2025-11-28 18:28:07.155 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:48358 10 6452 1 2025-11-28 18:29:17.002 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 18:29:07.526 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:55596 10 6452 1 2025-11-28 18:29:16.761 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 18:29:16.505 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 18:29:16.918 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 18:29:16.772 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 18:30:07.921 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:53466 10 6452 1 2025-11-28 18:31:08.322 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:55708 10 6452 1 2025-11-28 18:28:07.651 00:05:02.106 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 18:28:07.653 00:05:02.101 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 18:32:08.726 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:37812 10 6452 1 2025-11-28 18:33:09.136 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45004 10 6452 1 2025-11-28 18:34:16.863 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 18:34:16.971 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 18:34:16.569 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 18:34:16.780 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 18:34:16.931 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 18:34:09.544 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:60092 10 6452 1 2025-11-28 18:35:09.947 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:36384 10 6452 1 2025-11-28 18:36:10.361 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:36152 10 6452 1 2025-11-28 18:37:10.770 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:35820 10 6452 1 2025-11-28 18:34:07.656 00:05:02.103 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 18:34:07.653 00:05:02.107 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 18:38:11.195 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54386 10 6452 1 2025-11-28 18:39:17.175 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 18:39:17.155 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 18:39:16.922 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 18:39:17.092 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 18:39:16.968 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 18:39:11.598 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:43226 10 6452 1 2025-11-28 18:40:11.957 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44146 10 6452 1 2025-11-28 18:41:12.366 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:52684 10 6452 1 2025-11-28 18:42:12.730 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:45440 10 6452 1 2025-11-28 18:43:13.145 00:00:11.423 TCP 1.101.0.1:3000 -> 23.104.0.1:52814 10 6452 1 2025-11-28 18:40:07.656 00:05:02.107 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 18:40:07.658 00:05:02.102 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 18:44:17.006 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 18:44:17.231 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 18:44:17.103 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 18:44:16.921 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 18:44:17.064 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 18:44:14.605 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:57360 10 6452 1 2025-11-28 18:45:14.969 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:40620 10 6452 1 2025-11-28 18:46:15.377 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:46850 10 6452 1 2025-11-28 18:47:15.779 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:47898 10 6452 1 2025-11-28 18:48:16.185 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:45738 10 6452 1 2025-11-28 18:49:17.185 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 18:49:17.008 00:00:00.039 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 18:49:16.960 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 18:49:17.102 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 18:49:17.103 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 18:49:16.610 00:00:11.141 TCP 1.101.0.1:3000 -> 23.104.0.1:41360 10 6452 1 2025-11-28 18:46:07.656 00:05:02.108 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 18:46:07.660 00:05:02.103 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 18:50:17.791 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:48270 10 6452 1 2025-11-28 18:51:18.156 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44422 10 6452 1 2025-11-28 18:52:18.557 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:34902 10 6452 1 2025-11-28 18:53:18.923 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:46132 10 6452 1 2025-11-28 18:54:17.466 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 18:54:17.383 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 18:54:17.331 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 18:54:17.383 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 18:54:17.389 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 18:54:19.335 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:43960 10 6452 1 2025-11-28 18:55:19.695 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:33212 10 6452 1 2025-11-28 18:52:07.660 00:05:02.102 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 18:52:07.658 00:05:02.107 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 18:56:20.105 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:52388 10 6452 1 2025-11-28 18:57:20.469 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:59448 10 6452 1 2025-11-28 18:58:20.834 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:35056 10 6452 1 Summary: total flows: 140, total bytes: 417000, total packets: 1020, avg bps: 920, avg pps: 0, avg bpp: 408 Time window: 2025-11-28 17:58:07 - 2025-11-28 18:58:31 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0036s User: 0.0018s Wall: 0.0023s flows/second: 61862.9 Runtime: 0.0023s