Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-29 01:58:48.355 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:44930 10 6452 1 2025-11-29 01:59:25.894 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-29 01:59:25.905 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-29 01:59:25.868 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 01:59:25.812 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 01:59:25.960 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-29 01:59:48.756 00:00:10.734 TCP 1.101.0.1:3000 -> 23.104.0.1:41572 10 6452 1 2025-11-29 02:00:49.529 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:34008 10 6452 1 2025-11-29 02:01:49.887 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:52544 12 6556 1 2025-11-29 01:58:07.852 00:05:02.106 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-29 01:58:07.850 00:05:02.111 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-29 02:02:50.309 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:36592 10 6452 1 2025-11-29 02:03:50.674 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:47698 10 6452 1 2025-11-29 02:04:26.087 00:00:00.035 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-29 02:04:26.163 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-29 02:04:26.084 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 02:04:26.005 00:00:00.035 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 02:04:26.005 00:00:00.047 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-29 02:04:51.036 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:45082 10 6452 1 2025-11-29 02:05:51.402 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:60468 10 6452 1 2025-11-29 02:06:51.809 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:35142 10 6452 1 2025-11-29 02:07:52.214 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46480 10 6452 1 2025-11-29 02:04:07.852 00:05:02.108 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-29 02:04:07.851 00:05:02.112 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-29 02:08:52.623 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33812 10 6452 1 2025-11-29 02:09:25.965 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 02:09:26.285 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-29 02:09:26.110 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 02:09:26.192 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-29 02:09:26.048 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-29 02:09:53.028 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:53964 10 6452 1 2025-11-29 02:10:53.391 00:00:10.604 TCP 1.101.0.1:3000 -> 23.104.0.1:48456 10 6452 1 2025-11-29 02:11:54.030 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55222 10 6452 1 2025-11-29 02:12:54.437 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50548 10 6452 1 2025-11-29 02:10:07.851 00:05:02.125 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-29 02:13:54.840 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:57038 10 6452 1 2025-11-29 02:10:07.854 00:05:02.120 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-29 02:14:25.913 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 02:14:25.948 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 02:14:26.223 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-29 02:14:26.227 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-29 02:14:26.031 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-29 02:14:55.269 00:00:10.413 TCP 1.101.0.1:3000 -> 23.104.0.1:49324 11 6504 1 2025-11-29 02:15:55.719 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:58914 10 6452 1 2025-11-29 02:16:56.134 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36982 10 6452 1 2025-11-29 02:17:56.536 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:53194 10 6452 1 2025-11-29 02:18:56.930 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:49986 10 6452 1 2025-11-29 02:19:25.948 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 02:19:26.400 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-29 02:19:26.375 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-29 02:19:26.318 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 02:19:26.319 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-29 02:16:07.856 00:05:02.125 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-29 02:19:57.360 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42992 10 6452 1 2025-11-29 02:16:07.860 00:05:02.120 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-29 02:20:57.761 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:50680 10 6452 1 2025-11-29 02:21:58.181 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:59838 10 6452 1 2025-11-29 02:22:58.582 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:34790 10 6452 1 2025-11-29 02:23:58.984 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:43278 10 6452 1 2025-11-29 02:24:26.361 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-29 02:24:26.392 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 02:24:26.142 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 02:24:26.261 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-29 02:24:26.226 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-29 02:24:59.395 00:00:10.927 TCP 1.101.0.1:3000 -> 23.104.0.1:34180 10 6452 1 2025-11-29 02:22:07.859 00:05:02.122 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-29 02:26:00.369 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:57424 10 6452 1 2025-11-29 02:22:07.862 00:05:02.116 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-29 02:27:00.779 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:46836 10 6452 1 2025-11-29 02:28:01.195 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:49670 10 6452 1 2025-11-29 02:29:01.611 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:38652 10 6452 1 2025-11-29 02:29:26.447 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-29 02:29:26.496 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 02:29:26.513 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 02:29:26.330 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-29 02:29:26.596 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-29 02:30:02.019 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54194 10 6452 1 2025-11-29 02:31:02.431 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:39868 10 6452 1 2025-11-29 02:28:07.871 00:05:02.109 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-29 02:28:07.868 00:05:02.114 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-29 02:32:02.796 00:00:10.345 TCP 1.101.0.1:3000 -> 23.104.0.1:44810 10 6452 1 2025-11-29 02:33:03.180 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:53156 10 6452 1 2025-11-29 02:34:03.590 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52614 10 6452 1 2025-11-29 02:34:26.500 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-29 02:34:26.463 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 02:34:26.613 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 02:34:26.497 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-29 02:34:26.696 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-29 02:35:03.991 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45982 10 6452 1 2025-11-29 02:36:04.395 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:57964 10 6452 1 2025-11-29 02:37:04.761 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:54210 10 6452 1 2025-11-29 02:34:07.871 00:05:02.109 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-29 02:34:07.869 00:05:02.115 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-29 02:38:05.180 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:58032 10 6452 1 2025-11-29 02:39:05.545 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:58424 10 6452 1 2025-11-29 02:39:26.888 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-29 02:39:26.693 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-29 02:39:26.529 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 02:39:26.805 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 02:39:26.697 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-29 02:40:05.946 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:35042 10 6452 1 2025-11-29 02:41:06.368 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43592 10 6452 1 2025-11-29 02:42:06.774 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:37348 10 6452 1 2025-11-29 02:43:07.186 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:49752 10 6452 1 2025-11-29 02:40:07.872 00:05:02.110 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-29 02:40:07.871 00:05:02.115 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-29 02:44:07.588 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54342 10 6452 1 2025-11-29 02:44:26.961 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-29 02:44:26.751 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-29 02:44:26.641 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 02:44:26.879 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 02:44:26.878 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-29 02:45:07.993 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:45508 10 6452 1 2025-11-29 02:46:08.399 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:51580 10 6452 1 2025-11-29 02:47:08.767 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:60712 10 6452 1 2025-11-29 02:48:09.184 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:52300 10 6452 1 2025-11-29 02:49:09.593 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:57838 10 6452 1 2025-11-29 02:49:27.165 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-29 02:49:27.126 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 02:49:27.119 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 02:49:27.118 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-29 02:49:27.203 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-29 02:46:07.871 00:05:02.116 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-29 02:46:07.874 00:05:02.110 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-29 02:50:09.958 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:39890 10 6452 1 2025-11-29 02:51:10.367 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56082 10 6452 1 2025-11-29 02:52:10.765 00:00:10.444 TCP 1.101.0.1:3000 -> 23.104.0.1:38652 12 10375 1 2025-11-29 02:53:11.250 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:33946 10 6452 1 2025-11-29 02:54:11.647 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:50908 10 6452 1 2025-11-29 02:54:26.834 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-29 02:54:26.927 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 02:54:26.929 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 02:54:27.090 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-29 02:54:27.014 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-29 02:55:12.058 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39910 10 6452 1 2025-11-29 02:52:07.874 00:05:02.113 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-29 02:52:07.872 00:05:02.118 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-29 02:56:12.463 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56742 10 6452 1 2025-11-29 02:57:12.865 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:51124 10 6452 1 2025-11-29 02:58:13.279 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34084 10 6452 1 Summary: total flows: 140, total bytes: 421079, total packets: 1025, avg bps: 931, avg pps: 0, avg bpp: 410 Time window: 2025-11-29 01:58:07 - 2025-11-29 02:58:23 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0035s User: 0.0017s Wall: 0.0039s flows/second: 35668.0 Runtime: 0.0039s