Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-29 02:59:27.254 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-29 02:59:13.682 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:52520 10 6452 1 2025-11-29 02:59:26.940 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-29 02:59:26.781 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 02:59:27.171 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 02:59:27.122 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-29 03:00:14.111 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:35266 10 6452 1 2025-11-29 03:01:14.523 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:60408 10 6452 1 2025-11-29 02:58:07.872 00:05:02.121 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-29 02:58:07.876 00:05:02.116 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-29 03:02:14.942 00:00:10.355 TCP 1.101.0.1:3000 -> 23.104.0.1:43342 10 6452 1 2025-11-29 03:03:15.335 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41986 10 6452 1 2025-11-29 03:04:27.738 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-29 03:04:27.188 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 03:04:27.604 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 03:04:27.441 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-29 03:04:15.732 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:36234 10 6452 1 2025-11-29 03:04:27.687 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-29 03:05:16.151 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:35292 10 6452 1 2025-11-29 03:06:16.578 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:46554 10 6452 1 2025-11-29 03:07:16.974 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:56324 10 6452 1 2025-11-29 03:04:07.879 00:05:02.112 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-29 03:04:07.876 00:05:02.118 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-29 03:08:17.382 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58890 10 6452 1 2025-11-29 03:09:27.309 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-29 03:09:17.781 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41122 10 6452 1 2025-11-29 03:09:27.216 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-29 03:09:27.245 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 03:09:27.226 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 03:09:27.358 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-29 03:10:18.187 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45764 10 6452 1 2025-11-29 03:11:18.584 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51592 10 6452 1 2025-11-29 03:12:18.991 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41064 10 6452 1 2025-11-29 03:13:19.391 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:37464 10 6452 1 2025-11-29 03:10:07.878 00:05:02.117 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-29 03:10:07.879 00:05:02.112 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-29 03:14:19.754 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:35590 10 6452 1 2025-11-29 03:14:27.469 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-29 03:14:27.516 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 03:14:27.368 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 03:14:27.369 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-29 03:14:27.450 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-29 03:15:20.156 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:34822 10 6452 1 2025-11-29 03:16:20.561 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:42592 10 6452 1 2025-11-29 03:17:20.959 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:42062 10 6452 1 2025-11-29 03:18:21.330 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:41814 10 6452 1 2025-11-29 03:19:27.503 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-29 03:19:27.483 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 03:19:27.493 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 03:19:27.502 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-29 03:19:27.575 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-29 03:19:21.729 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:52746 10 6452 1 2025-11-29 03:16:07.881 00:05:02.114 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-29 03:16:07.878 00:05:02.120 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-29 03:20:22.113 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:45790 10 6452 1 2025-11-29 03:21:22.519 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47920 10 6452 1 2025-11-29 03:22:22.922 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:45702 10 6452 1 2025-11-29 03:23:23.352 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:58098 10 6452 1 2025-11-29 03:24:27.622 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-29 03:24:27.578 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 03:24:27.629 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 03:24:27.552 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-29 03:24:27.712 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-29 03:24:23.775 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:40208 10 6452 1 2025-11-29 03:25:24.184 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:51804 10 6452 1 2025-11-29 03:22:07.881 00:05:02.119 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-29 03:22:07.885 00:05:02.112 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-29 03:26:24.580 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47446 10 6452 1 2025-11-29 03:27:24.985 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36744 10 6452 1 2025-11-29 03:28:25.390 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59184 10 6452 1 2025-11-29 03:29:27.773 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-29 03:29:27.592 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 03:29:27.598 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 03:29:27.773 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-29 03:29:27.681 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-29 03:29:25.789 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50960 10 6452 1 2025-11-29 03:30:26.195 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:43374 10 6452 1 2025-11-29 03:31:26.557 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:40898 10 6452 1 2025-11-29 03:28:07.882 00:05:02.120 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-29 03:28:07.884 00:05:02.113 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-29 03:32:26.930 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:60746 10 6452 1 2025-11-29 03:33:27.359 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:46724 10 6452 1 2025-11-29 03:34:27.933 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-29 03:34:27.587 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 03:34:27.929 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 03:34:27.591 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-29 03:34:28.012 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-29 03:34:27.722 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:43106 10 6452 1 2025-11-29 03:35:28.137 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47390 10 6452 1 2025-11-29 03:36:28.543 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43022 10 6452 1 2025-11-29 03:37:28.946 00:00:10.451 TCP 1.101.0.1:3000 -> 23.104.0.1:36376 12 10375 1 2025-11-29 03:34:07.885 00:05:02.153 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-29 03:34:07.887 00:05:02.147 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-29 03:38:29.432 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58424 10 6452 1 2025-11-29 03:39:27.908 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-29 03:39:27.724 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 03:39:27.853 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 03:39:27.855 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-29 03:39:27.935 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-29 03:39:29.835 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:45912 10 6452 1 2025-11-29 03:40:30.264 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33766 10 6452 1 2025-11-29 03:41:30.666 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43406 10 6452 1 2025-11-29 03:42:31.098 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49428 10 6452 1 2025-11-29 03:43:31.499 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45316 10 6452 1 2025-11-29 03:40:07.889 00:05:02.148 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-29 03:40:07.892 00:05:02.144 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-29 03:44:27.887 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-29 03:44:27.910 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 03:44:27.888 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 03:44:27.888 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-29 03:44:27.971 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-29 03:44:31.905 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:52258 10 6452 1 2025-11-29 03:45:32.318 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:33860 10 6452 1 2025-11-29 03:46:32.681 00:00:10.465 TCP 1.101.0.1:3000 -> 23.104.0.1:47512 12 10369 1 2025-11-29 03:47:33.184 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51718 10 6452 1 2025-11-29 03:48:33.590 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:42206 10 6452 1 2025-11-29 03:49:28.329 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-29 03:49:28.152 00:00:00.031 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-29 03:49:28.112 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 03:49:28.247 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 03:49:28.083 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-29 03:49:33.995 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59558 10 6452 1 2025-11-29 03:46:07.892 00:05:02.153 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-29 03:46:07.893 00:05:02.148 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-29 03:50:34.404 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:47940 10 6452 1 2025-11-29 03:51:34.767 00:00:10.816 TCP 1.101.0.1:3000 -> 23.104.0.1:36588 10 6452 1 2025-11-29 03:52:35.625 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47258 10 6452 1 2025-11-29 03:53:36.024 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:36768 10 6452 1 2025-11-29 03:54:28.280 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-29 03:54:27.943 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 03:54:28.212 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 03:54:28.000 00:00:00.029 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-29 03:54:28.295 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-29 03:54:36.456 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:42718 10 6452 1 2025-11-29 03:55:36.869 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43420 10 6452 1 2025-11-29 03:52:07.897 00:05:02.144 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-29 03:52:07.895 00:05:02.149 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-29 03:56:37.270 00:00:10.344 TCP 1.101.0.1:3000 -> 23.104.0.1:50776 10 6452 1 2025-11-29 03:57:37.653 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:49830 10 6452 1 2025-11-29 03:58:38.015 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:51320 10 6452 1 Summary: total flows: 140, total bytes: 424840, total packets: 1024, avg bps: 933, avg pps: 0, avg bpp: 414 Time window: 2025-11-29 02:58:07 - 2025-11-29 03:58:48 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0050s User: 0.0010s Wall: 0.0032s flows/second: 44357.3 Runtime: 0.0032s