Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-29 13:59:14.102 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:54200 10 6452 1 2025-11-29 13:59:40.553 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-29 13:59:40.431 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-29 13:59:40.135 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 13:59:40.470 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 13:59:40.432 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-29 14:00:14.503 00:00:10.556 TCP 1.101.0.1:3000 -> 23.104.0.1:41528 10 6452 1 2025-11-29 14:01:15.106 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48526 10 6452 1 2025-11-29 13:58:08.129 00:05:02.107 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-29 13:58:08.132 00:05:02.101 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-29 14:02:15.507 00:00:10.416 TCP 1.101.0.1:3000 -> 23.104.0.1:50866 11 6504 1 2025-11-29 14:03:15.961 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51934 10 6452 1 2025-11-29 14:04:16.368 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:49000 10 6452 1 2025-11-29 14:04:40.638 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-29 14:04:40.555 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 14:04:40.633 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-29 14:04:40.467 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-29 14:04:40.506 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 14:05:16.738 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:40756 10 6452 1 2025-11-29 14:06:17.109 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:42810 10 6452 1 2025-11-29 14:07:17.470 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57470 10 6452 1 2025-11-29 14:04:08.132 00:05:02.106 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-29 14:04:08.129 00:05:02.112 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-29 14:08:17.873 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:57414 10 6452 1 2025-11-29 14:09:18.245 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:56438 10 6452 1 2025-11-29 14:09:40.480 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 14:09:40.512 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-29 14:09:40.811 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-29 14:09:40.574 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 14:09:40.563 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-29 14:10:18.617 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:35514 10 6452 1 2025-11-29 14:11:18.985 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:44198 10 6452 1 2025-11-29 14:12:19.395 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:54426 10 6452 1 2025-11-29 14:13:19.809 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36172 10 6452 1 2025-11-29 14:10:08.131 00:05:02.112 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-29 14:10:08.134 00:05:02.106 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-29 14:14:20.212 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33844 10 6452 1 2025-11-29 14:14:40.716 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-29 14:14:40.451 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-29 14:14:40.339 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 14:14:40.634 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 14:14:40.761 00:00:00.034 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-29 14:15:20.615 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39552 10 6452 1 2025-11-29 14:16:21.023 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:55472 10 6452 1 2025-11-29 14:17:21.435 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:44576 10 6452 1 2025-11-29 14:18:21.845 00:00:10.345 TCP 1.101.0.1:3000 -> 23.104.0.1:33130 10 6452 1 2025-11-29 14:19:22.228 00:00:10.577 TCP 1.101.0.1:3000 -> 23.104.0.1:57068 10 6452 1 2025-11-29 14:19:40.429 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-29 14:19:40.500 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 14:19:40.722 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 14:19:40.658 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-29 14:19:40.805 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-29 14:16:08.136 00:05:02.107 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-29 14:16:08.134 00:05:02.112 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-29 14:20:22.845 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:52144 10 6452 1 2025-11-29 14:21:23.278 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:59602 10 6452 1 2025-11-29 14:22:23.645 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60282 10 6452 1 2025-11-29 14:23:24.070 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:55458 10 6452 1 2025-11-29 14:24:24.491 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:53968 10 6452 1 2025-11-29 14:24:40.972 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-29 14:24:40.884 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 14:24:41.170 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-29 14:24:41.088 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 14:24:41.133 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-29 14:25:24.892 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:35568 10 6452 1 2025-11-29 14:22:08.136 00:05:02.109 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-29 14:22:08.134 00:05:02.114 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-29 14:26:25.313 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:43604 10 6452 1 2025-11-29 14:27:25.715 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:47086 10 6452 1 2025-11-29 14:28:26.134 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:52766 10 6452 1 2025-11-29 14:29:26.531 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:51742 10 6452 1 2025-11-29 14:29:40.780 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 14:29:40.840 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-29 14:29:41.004 00:00:00.031 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-29 14:29:41.089 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 14:29:41.171 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-29 14:30:26.937 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:58882 10 6452 1 2025-11-29 14:31:27.359 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:45462 10 6452 1 2025-11-29 14:28:08.135 00:05:02.115 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-29 14:28:08.138 00:05:02.110 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-29 14:32:27.759 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:56652 10 6452 1 2025-11-29 14:33:28.180 00:00:10.578 TCP 1.101.0.1:3000 -> 23.104.0.1:36774 10 6452 1 2025-11-29 14:34:40.810 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 14:34:28.804 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:51026 10 6452 1 2025-11-29 14:34:40.873 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-29 14:34:40.993 00:00:00.049 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 14:34:40.997 00:00:00.042 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-29 14:34:41.076 00:00:00.049 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-29 14:35:29.178 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:50876 10 6452 1 2025-11-29 14:36:29.582 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:49432 10 6452 1 2025-11-29 14:37:29.945 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:37292 10 6452 1 2025-11-29 14:34:08.140 00:05:02.109 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-29 14:34:08.137 00:05:02.115 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-29 14:38:30.360 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:35882 10 6452 1 2025-11-29 14:39:41.238 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-29 14:39:41.194 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 14:39:30.720 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:54502 10 6452 1 2025-11-29 14:39:41.304 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 14:39:41.125 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-29 14:39:41.387 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-29 14:40:31.109 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:43796 10 6452 1 2025-11-29 14:41:31.539 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47460 10 6452 1 2025-11-29 14:42:31.955 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41682 10 6452 1 2025-11-29 14:43:32.362 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:43318 10 6452 1 2025-11-29 14:40:08.139 00:05:02.113 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-29 14:40:08.143 00:05:02.108 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-29 14:44:41.205 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-29 14:44:41.130 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-29 14:44:32.725 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:38906 10 6452 1 2025-11-29 14:44:41.351 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 14:44:41.122 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 14:44:41.342 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-29 14:45:33.136 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33938 10 6452 1 2025-11-29 14:46:33.539 00:00:10.413 TCP 1.101.0.1:3000 -> 23.104.0.1:45534 11 6504 1 2025-11-29 14:47:33.992 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:54354 10 6452 1 2025-11-29 14:48:34.397 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41202 10 6452 1 2025-11-29 14:49:41.591 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-29 14:49:41.465 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-29 14:49:41.246 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 14:49:41.508 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 14:49:41.129 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-29 14:49:34.800 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:52068 10 6452 1 2025-11-29 14:46:08.141 00:05:02.112 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-29 14:46:08.145 00:05:02.107 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-29 14:50:35.207 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38840 10 6452 1 2025-11-29 14:51:35.605 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:58430 10 6452 1 2025-11-29 14:52:36.011 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:44494 10 6452 1 2025-11-29 14:53:36.375 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56652 10 6452 1 2025-11-29 14:54:41.539 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-29 14:54:41.346 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 14:54:41.477 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-29 14:54:41.348 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-29 14:54:41.559 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-29 14:54:36.779 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55978 10 6452 1 2025-11-29 14:55:37.185 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:57170 10 6452 1 2025-11-29 14:52:08.152 00:05:02.099 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-29 14:52:08.151 00:05:02.104 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-29 14:56:37.547 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46500 10 6452 1 2025-11-29 14:57:37.950 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:43062 10 6452 1 2025-11-29 14:58:38.363 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:52468 10 6452 1 Summary: total flows: 140, total bytes: 417104, total packets: 1022, avg bps: 916, avg pps: 0, avg bpp: 408 Time window: 2025-11-29 13:58:08 - 2025-11-29 14:58:48 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0019s User: 0.0029s Wall: 0.0019s flows/second: 75514.7 Runtime: 0.0019s