Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-28 19:58:46.934 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:44940 10 6452 1 2025-11-28 19:59:18.805 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 19:59:18.815 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 19:59:18.428 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 19:59:18.722 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 19:59:18.730 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 19:59:47.353 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:32856 10 6452 1 2025-11-28 20:00:47.716 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:42450 10 6452 1 2025-11-28 20:01:48.100 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:58618 10 6452 1 2025-11-28 19:58:07.688 00:05:02.131 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 19:58:07.691 00:05:02.127 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 20:02:48.507 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47264 10 6452 1 2025-11-28 20:03:48.912 00:00:10.418 TCP 1.101.0.1:3000 -> 23.104.0.1:53070 13 6608 1 2025-11-28 20:04:18.541 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 20:04:18.744 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 20:04:18.796 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 20:04:18.730 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 20:04:18.881 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 20:04:49.383 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36180 10 6452 1 2025-11-28 20:05:49.788 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:42690 10 6452 1 2025-11-28 20:06:50.195 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53862 10 6452 1 2025-11-28 20:07:50.603 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:36450 10 6452 1 2025-11-28 20:04:07.692 00:05:02.129 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 20:04:07.694 00:05:02.124 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 20:08:50.998 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:37936 10 6452 1 2025-11-28 20:09:18.825 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 20:09:18.820 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 20:09:18.829 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 20:09:18.742 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 20:09:18.667 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 20:09:51.395 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45808 10 6452 1 2025-11-28 20:10:51.798 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57220 10 6452 1 2025-11-28 20:11:52.200 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57684 10 6452 1 2025-11-28 20:12:52.606 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:54984 10 6452 1 2025-11-28 20:13:53.011 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48528 10 6452 1 2025-11-28 20:10:07.697 00:05:02.122 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 20:10:07.695 00:05:02.128 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 20:14:18.791 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 20:14:18.909 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 20:14:18.703 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 20:14:18.781 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 20:14:18.786 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 20:14:53.416 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:47316 10 6452 1 2025-11-28 20:15:53.819 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:33498 10 6452 1 2025-11-28 20:16:54.232 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:53364 10 6452 1 2025-11-28 20:17:54.634 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:33888 10 6452 1 2025-11-28 20:18:55.038 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:33592 10 6452 1 2025-11-28 20:19:19.243 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 20:19:19.021 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 20:19:18.881 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 20:19:19.159 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 20:19:19.014 00:00:00.040 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 20:19:55.458 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39006 10 6452 1 2025-11-28 20:16:07.699 00:05:02.125 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 20:16:07.703 00:05:02.119 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 20:20:55.859 00:00:10.344 TCP 1.101.0.1:3000 -> 23.104.0.1:41488 10 6452 1 2025-11-28 20:21:56.241 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51898 10 6452 1 2025-11-28 20:22:56.643 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33738 10 6452 1 2025-11-28 20:23:57.042 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:37418 10 6452 1 2025-11-28 20:24:19.334 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 20:24:19.304 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 20:24:19.208 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 20:24:19.252 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 20:24:19.252 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 20:24:57.447 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:59726 10 6452 1 2025-11-28 20:22:07.701 00:05:02.124 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 20:25:57.823 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51458 10 6452 1 2025-11-28 20:22:07.705 00:05:02.120 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 20:26:58.226 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36640 10 6452 1 2025-11-28 20:27:58.629 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:46078 12 6556 1 2025-11-28 20:28:59.030 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54560 12 6556 1 2025-11-28 20:29:19.462 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 20:29:19.220 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 20:29:19.286 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 20:29:19.379 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 20:29:19.284 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 20:29:59.436 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55562 10 6452 1 2025-11-28 20:30:59.845 00:00:10.346 TCP 1.101.0.1:3000 -> 23.104.0.1:38110 10 6452 1 2025-11-28 20:28:07.703 00:05:02.123 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 20:32:00.228 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42992 10 6452 1 2025-11-28 20:28:07.705 00:05:02.119 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 20:33:00.631 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:46466 10 6452 1 2025-11-28 20:34:19.502 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 20:34:01.051 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42456 10 6452 1 2025-11-28 20:34:19.421 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 20:34:19.416 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 20:34:19.419 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 20:34:19.522 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 20:35:01.453 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:52276 10 6452 1 2025-11-28 20:36:01.819 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44902 10 6452 1 2025-11-28 20:37:02.226 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48584 10 6452 1 2025-11-28 20:34:07.705 00:05:02.124 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 20:34:07.706 00:05:02.119 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 20:38:02.629 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41740 10 6452 1 2025-11-28 20:39:03.032 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40848 10 6452 1 2025-11-28 20:39:19.493 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 20:39:19.301 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 20:39:19.585 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 20:39:19.433 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 20:39:19.575 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 20:40:03.439 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45684 10 6452 1 2025-11-28 20:41:03.845 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:40736 10 6452 1 2025-11-28 20:42:04.272 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:34366 10 6452 1 2025-11-28 20:43:04.678 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:59366 10 6452 1 2025-11-28 20:40:07.707 00:05:02.124 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 20:40:07.709 00:05:02.118 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 20:44:05.038 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:40434 10 6452 1 2025-11-28 20:44:19.881 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 20:44:19.765 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 20:44:19.468 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 20:44:19.754 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 20:44:19.551 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 20:45:05.442 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:54888 10 6452 1 2025-11-28 20:46:05.858 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:43972 10 6452 1 2025-11-28 20:47:06.279 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:60550 10 6452 1 2025-11-28 20:48:06.687 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:34934 10 6452 1 2025-11-28 20:49:19.660 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 20:49:19.615 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 20:49:07.111 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:44926 10 6452 1 2025-11-28 20:49:19.751 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 20:49:19.371 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 20:49:19.833 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 20:46:07.710 00:05:02.121 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 20:46:07.708 00:05:02.126 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 20:50:07.518 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:39820 10 6452 1 2025-11-28 20:51:07.881 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46398 10 6452 1 2025-11-28 20:52:08.286 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56770 10 6452 1 2025-11-28 20:53:08.686 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:37902 10 6452 1 2025-11-28 20:54:19.798 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 20:54:19.839 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 20:54:19.696 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 20:54:09.049 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43110 10 6452 1 2025-11-28 20:54:19.715 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 20:54:19.842 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 20:55:09.453 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41410 10 6452 1 2025-11-28 20:52:07.711 00:05:02.132 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 20:52:07.710 00:05:02.137 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 20:56:09.856 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:53098 10 6452 1 2025-11-28 20:57:10.276 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:49076 10 6452 1 2025-11-28 20:58:10.688 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57164 10 6452 1 Summary: total flows: 140, total bytes: 417364, total packets: 1027, avg bps: 924, avg pps: 0, avg bpp: 406 Time window: 2025-11-28 19:58:07 - 2025-11-28 20:58:21 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0051s User: 0.0009s Wall: 0.0026s flows/second: 54035.4 Runtime: 0.0026s