Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-30 01:59:33.195 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59834 10 6452 1 2025-11-30 01:59:54.801 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 01:59:54.716 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 01:59:54.931 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 01:59:54.760 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 01:59:54.718 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 02:00:33.596 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39000 10 6452 1 2025-11-30 02:01:33.999 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49834 10 6452 1 2025-11-30 01:58:08.449 00:05:02.070 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 02:02:34.401 00:00:10.440 TCP 1.101.0.1:3000 -> 23.104.0.1:38196 12 10375 1 2025-11-30 01:58:10.504 00:05:57.948 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 02:03:34.882 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59836 10 6452 1 2025-11-30 02:04:54.971 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 02:04:35.284 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:53884 10 6452 1 2025-11-30 02:04:54.909 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 02:04:54.888 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 02:04:55.109 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 02:04:55.109 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 02:05:35.695 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38752 10 6452 1 2025-11-30 02:06:36.115 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55638 10 6452 1 2025-11-30 02:07:36.523 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:44004 10 6452 1 2025-11-30 02:04:08.451 00:05:02.071 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 02:08:36.932 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:41558 10 6452 1 2025-11-30 02:04:10.516 00:05:57.938 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 02:09:37.365 00:00:10.425 TCP 1.101.0.1:3000 -> 23.104.0.1:54240 11 6504 1 2025-11-30 02:09:54.873 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 02:09:54.836 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 02:09:54.790 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 02:09:55.119 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 02:09:55.058 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 02:10:37.831 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:60178 10 6452 1 2025-11-30 02:11:38.240 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:55360 10 6452 1 2025-11-30 02:12:38.654 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:34794 10 6452 1 2025-11-30 02:13:39.068 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:54806 12 6556 1 2025-11-30 02:10:08.451 00:05:02.072 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 02:14:39.476 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:55692 10 6452 1 2025-11-30 02:14:55.351 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 02:14:54.974 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 02:14:55.072 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 02:14:55.077 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 02:14:55.267 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 02:10:10.518 00:05:57.937 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 02:15:39.883 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:49476 10 6452 1 2025-11-30 02:16:40.301 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:57396 10 6452 1 2025-11-30 02:17:40.719 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:33096 10 6452 1 2025-11-30 02:18:41.136 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44312 10 6452 1 2025-11-30 02:19:55.554 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 02:19:41.547 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:54684 10 6452 1 2025-11-30 02:19:55.401 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 02:19:55.476 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 02:19:55.507 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 02:19:55.472 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 02:16:08.454 00:05:02.073 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 02:20:41.906 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:47830 10 6452 1 2025-11-30 02:16:10.521 00:05:57.935 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 02:21:42.314 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:36196 10 6452 1 2025-11-30 02:22:42.682 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:53118 10 6452 1 2025-11-30 02:23:43.115 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44242 10 6452 1 2025-11-30 02:24:43.518 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55568 10 6452 1 2025-11-30 02:24:55.491 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 02:24:55.246 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 02:24:55.300 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 02:24:55.354 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 02:24:55.436 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 02:25:43.921 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:38758 10 6452 1 2025-11-30 02:22:08.454 00:05:02.075 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 02:26:44.331 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:52046 10 6452 1 2025-11-30 02:22:10.524 00:05:57.936 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 02:27:44.737 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:54844 10 6452 1 2025-11-30 02:28:45.111 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35870 10 6452 1 2025-11-30 02:29:55.474 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 02:29:55.391 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 02:29:55.386 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 02:29:55.348 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 02:29:45.524 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:43498 10 6452 1 2025-11-30 02:29:55.391 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 02:30:45.952 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:58120 10 6452 1 2025-11-30 02:31:46.361 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51444 10 6452 1 2025-11-30 02:28:08.457 00:05:02.076 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 02:32:46.764 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:38204 10 6452 1 2025-11-30 02:28:10.528 00:05:57.936 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 02:33:47.174 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:54348 10 6452 1 2025-11-30 02:34:55.913 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 02:34:55.765 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 02:34:47.533 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:56512 10 6452 1 2025-11-30 02:34:55.960 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 02:34:55.850 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 02:34:55.832 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 02:35:47.933 00:00:10.349 TCP 1.101.0.1:3000 -> 23.104.0.1:56830 10 6452 1 2025-11-30 02:36:48.320 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:34486 10 6452 1 2025-11-30 02:37:48.741 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:60000 10 6452 1 2025-11-30 02:34:08.462 00:05:02.076 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 02:38:49.148 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39876 10 6452 1 2025-11-30 02:34:10.531 00:05:57.934 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 02:39:55.669 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 02:39:55.677 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 02:39:55.604 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 02:39:49.555 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:59418 10 6452 1 2025-11-30 02:39:55.682 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 02:39:55.764 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 02:40:49.962 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:52502 10 6452 1 2025-11-30 02:41:50.374 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:54394 10 6452 1 2025-11-30 02:42:50.782 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53862 10 6452 1 2025-11-30 02:43:51.189 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:52278 10 6452 1 2025-11-30 02:40:08.463 00:05:02.076 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 02:44:55.830 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 02:44:55.630 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 02:44:55.692 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 02:44:55.764 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 02:44:55.847 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 02:44:51.589 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:55482 10 6452 1 2025-11-30 02:40:10.535 00:05:57.932 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 02:45:51.988 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:60716 10 6452 1 2025-11-30 02:46:52.395 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38054 10 6452 1 2025-11-30 02:47:52.796 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:36100 10 6452 1 2025-11-30 02:48:53.211 00:00:10.567 TCP 1.101.0.1:3000 -> 23.104.0.1:56200 10 6452 1 2025-11-30 02:49:55.619 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 02:49:55.866 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 02:49:55.639 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 02:49:55.773 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 02:49:55.862 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 02:49:53.816 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:60466 10 6452 1 2025-11-30 02:46:08.463 00:05:02.077 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 02:50:54.184 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:51200 10 6452 1 2025-11-30 02:46:10.536 00:05:57.934 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 02:51:54.592 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:53244 10 6452 1 2025-11-30 02:52:54.965 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:54298 10 6452 1 2025-11-30 02:53:55.365 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:44890 10 6452 1 2025-11-30 02:54:56.048 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 02:54:55.775 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 02:54:55.830 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 02:54:55.771 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 02:54:55.855 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 02:54:55.768 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:56888 10 6452 1 2025-11-30 02:55:56.189 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:36184 10 6452 1 2025-11-30 02:52:08.468 00:05:02.074 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 02:52:10.538 00:05:57.936 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 02:56:56.559 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:41634 10 6452 1 2025-11-30 02:57:56.979 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58032 10 6452 1 Summary: total flows: 139, total bytes: 414627, total packets: 1015, avg bps: 921, avg pps: 0, avg bpp: 408 Time window: 2025-11-30 01:58:08 - 2025-11-30 02:58:08 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0039s User: 0.0015s Wall: 0.0024s flows/second: 57484.5 Runtime: 0.0024s