Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-28 23:58:54.673 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:51026 10 6452 1 2025-11-28 23:59:23.701 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 23:59:23.625 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 23:59:23.638 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 23:59:23.620 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 23:59:23.578 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 23:59:55.037 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43700 10 6452 1 2025-11-29 00:00:55.442 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46520 10 6452 1 2025-11-28 23:58:07.794 00:05:02.128 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-29 00:01:55.844 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:34108 10 6452 1 2025-11-28 23:58:07.796 00:05:02.124 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-29 00:02:56.262 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:51186 10 6452 1 2025-11-29 00:03:56.666 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:37874 10 6452 1 2025-11-29 00:04:23.613 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-29 00:04:23.543 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-29 00:04:23.456 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 00:04:23.531 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 00:04:23.607 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-29 00:04:57.018 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:47902 10 6452 1 2025-11-29 00:05:57.430 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52410 10 6452 1 2025-11-29 00:06:57.836 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:42476 10 6452 1 2025-11-29 00:07:58.255 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54564 10 6452 1 2025-11-29 00:04:07.807 00:05:02.112 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-29 00:04:07.805 00:05:02.117 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-29 00:08:58.661 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42936 10 6452 1 2025-11-29 00:09:23.621 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-29 00:09:23.753 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-29 00:09:23.678 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 00:09:23.529 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 00:09:23.530 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-29 00:09:59.091 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:42344 10 6452 1 2025-11-29 00:10:59.491 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:51206 10 6452 1 2025-11-29 00:11:59.891 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:40260 12 6556 1 2025-11-29 00:13:00.327 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55748 10 6452 1 2025-11-29 00:10:07.812 00:05:02.110 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-29 00:10:07.809 00:05:02.115 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-29 00:14:00.729 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:47060 10 6452 1 2025-11-29 00:14:23.840 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-29 00:14:23.666 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 00:14:23.716 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 00:14:23.501 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-29 00:14:23.799 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-29 00:15:01.114 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:45892 10 6452 1 2025-11-29 00:16:01.517 00:00:10.743 TCP 1.101.0.1:3000 -> 23.104.0.1:42708 10 6452 1 2025-11-29 00:17:02.300 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:55254 10 6452 1 2025-11-29 00:18:02.662 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:34464 10 6452 1 2025-11-29 00:19:03.092 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:33840 10 6452 1 2025-11-29 00:19:23.992 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-29 00:19:23.836 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-29 00:19:23.600 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 00:19:23.909 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 00:19:23.837 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-29 00:16:07.810 00:05:02.114 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-29 00:16:07.813 00:05:02.110 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-29 00:20:03.498 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53878 10 6452 1 2025-11-29 00:21:03.900 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53702 10 6452 1 2025-11-29 00:22:04.304 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59686 10 6452 1 2025-11-29 00:23:04.705 00:00:10.767 TCP 1.101.0.1:3000 -> 23.104.0.1:41310 10 6452 1 2025-11-29 00:24:05.504 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:46622 10 6452 1 2025-11-29 00:24:23.937 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-29 00:24:23.892 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 00:24:23.994 00:00:00.040 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 00:24:23.944 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-29 00:24:24.078 00:00:00.040 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-29 00:25:05.860 00:00:10.775 TCP 1.101.0.1:3000 -> 23.104.0.1:41950 10 6452 1 2025-11-29 00:22:07.815 00:05:02.116 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-29 00:22:07.813 00:05:02.122 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-29 00:26:06.704 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39264 10 6452 1 2025-11-29 00:27:07.115 00:00:10.677 TCP 1.101.0.1:3000 -> 23.104.0.1:34538 10 6452 1 2025-11-29 00:28:07.835 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:51130 10 6452 1 2025-11-29 00:29:23.929 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-29 00:29:08.259 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:50166 10 6452 1 2025-11-29 00:29:24.209 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-29 00:29:24.097 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 00:29:23.847 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 00:29:24.075 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-29 00:30:08.664 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:59680 10 6452 1 2025-11-29 00:31:09.099 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:53290 10 6452 1 2025-11-29 00:28:07.814 00:05:02.124 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-29 00:28:07.816 00:05:02.120 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-29 00:32:09.465 00:00:10.440 TCP 1.101.0.1:3000 -> 23.104.0.1:43730 12 10375 1 2025-11-29 00:33:09.943 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:59188 10 6452 1 2025-11-29 00:34:10.355 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:37736 10 6452 1 2025-11-29 00:34:24.003 00:00:00.044 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-29 00:34:24.081 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 00:34:24.254 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 00:34:24.250 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-29 00:34:24.337 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-29 00:35:10.770 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:34480 12 6556 1 2025-11-29 00:36:11.185 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:57886 10 6452 1 2025-11-29 00:37:11.589 00:00:10.447 TCP 1.101.0.1:3000 -> 23.104.0.1:48444 12 10375 1 2025-11-29 00:34:07.819 00:05:02.118 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-29 00:34:07.817 00:05:02.122 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-29 00:38:12.111 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:39054 10 6452 1 2025-11-29 00:39:24.244 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-29 00:39:24.307 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-29 00:39:24.370 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 00:39:24.161 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 00:39:24.471 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-29 00:39:12.512 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:46884 10 6452 1 2025-11-29 00:40:12.921 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:52548 10 6452 1 2025-11-29 00:41:13.331 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:45242 10 6452 1 2025-11-29 00:42:13.755 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:50036 10 6452 1 2025-11-29 00:43:14.182 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46872 10 6452 1 2025-11-29 00:40:07.823 00:05:02.120 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-29 00:40:07.825 00:05:02.114 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-29 00:44:24.521 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-29 00:44:24.434 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-29 00:44:24.321 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 00:44:14.587 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:50102 10 6452 1 2025-11-29 00:44:24.438 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 00:44:24.205 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-29 00:45:14.983 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:51470 10 6452 1 2025-11-29 00:46:15.360 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:54826 10 6452 1 2025-11-29 00:47:15.725 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:56118 10 6452 1 2025-11-29 00:48:16.136 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:58122 10 6452 1 2025-11-29 00:49:24.528 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-29 00:49:24.609 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-29 00:49:24.598 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 00:49:24.446 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 00:49:24.759 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-29 00:49:16.545 00:00:10.950 TCP 1.101.0.1:3000 -> 23.104.0.1:43240 10 6452 1 2025-11-29 00:46:07.825 00:05:02.116 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-29 00:46:07.829 00:05:02.111 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-29 00:50:17.531 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:51624 10 6452 1 2025-11-29 00:51:17.938 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:58754 10 6452 1 2025-11-29 00:52:18.355 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37268 10 6452 1 2025-11-29 00:53:18.761 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:54724 10 6452 1 2025-11-29 00:54:24.534 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-29 00:54:24.720 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-29 00:54:24.427 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 00:54:24.452 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 00:54:24.533 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-29 00:54:19.188 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:33786 10 6452 1 2025-11-29 00:55:19.597 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45754 10 6452 1 2025-11-29 00:52:07.830 00:05:02.111 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-29 00:52:07.828 00:05:02.116 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-29 00:56:20.003 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58520 10 6452 1 2025-11-29 00:57:20.404 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:55918 10 6452 1 2025-11-29 00:58:20.822 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:37968 10 6452 1 Summary: total flows: 140, total bytes: 425054, total packets: 1028, avg bps: 938, avg pps: 0, avg bpp: 413 Time window: 2025-11-28 23:58:07 - 2025-11-29 00:58:31 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0037s User: 0.0028s Wall: 0.0019s flows/second: 72129.0 Runtime: 0.0020s