Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-30 04:58:54.467 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50054 10 6452 1 2025-11-30 04:59:58.354 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 04:59:58.434 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 04:59:58.517 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 04:59:58.444 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 04:59:58.436 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 04:59:54.868 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:40168 10 6452 1 2025-11-30 05:00:55.277 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42818 10 6452 1 2025-11-30 05:01:55.682 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47166 10 6452 1 2025-11-30 04:58:08.496 00:05:02.089 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 04:58:10.584 00:05:57.917 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 05:02:56.111 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:42850 10 6452 1 2025-11-30 05:03:56.480 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41112 10 6452 1 2025-11-30 05:04:58.582 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 05:04:58.650 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 05:04:58.562 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 05:04:58.421 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 05:04:58.499 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 05:04:56.882 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:40002 10 6452 1 2025-11-30 05:05:57.284 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:33186 10 6452 1 2025-11-30 05:06:57.651 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42324 10 6452 1 2025-11-30 05:07:58.070 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58546 10 6452 1 2025-11-30 05:04:08.497 00:05:02.091 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 05:04:10.583 00:05:57.916 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 05:08:58.474 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50614 10 6452 1 2025-11-30 05:09:58.918 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 05:09:58.744 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 05:09:58.653 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 05:09:58.810 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 05:09:58.835 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 05:09:58.879 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:49132 10 6452 1 2025-11-30 05:10:59.239 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:57836 10 6452 1 2025-11-30 05:11:59.603 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:58328 10 6452 1 2025-11-30 05:12:59.985 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59890 10 6452 1 2025-11-30 05:14:00.393 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:53096 10 6452 1 2025-11-30 05:10:08.497 00:05:02.094 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 05:14:59.084 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 05:14:59.082 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 05:14:58.778 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 05:14:59.225 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 05:14:59.309 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 05:10:10.585 00:05:57.916 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 05:15:00.807 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:42592 10 6452 1 2025-11-30 05:16:01.215 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:38024 10 6452 1 2025-11-30 05:17:01.623 00:00:10.460 TCP 1.101.0.1:3000 -> 23.104.0.1:53976 12 10369 1 2025-11-30 05:18:02.119 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60448 10 6452 1 2025-11-30 05:19:02.525 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:56262 10 6452 1 2025-11-30 05:19:58.946 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 05:19:58.920 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 05:19:58.920 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 05:19:58.672 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 05:19:58.865 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 05:16:08.498 00:05:02.092 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 05:20:02.941 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:33608 10 6452 1 2025-11-30 05:16:10.588 00:05:57.915 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 05:21:03.361 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:50814 10 6452 1 2025-11-30 05:22:03.760 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:57088 10 6452 1 2025-11-30 05:23:04.185 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39160 10 6452 1 2025-11-30 05:24:04.596 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58362 10 6452 1 2025-11-30 05:24:59.005 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 05:24:58.829 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 05:24:58.833 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 05:24:58.769 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 05:24:58.921 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 05:25:05.001 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38568 10 6452 1 2025-11-30 05:22:08.500 00:05:02.094 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 05:26:05.405 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:56260 10 6452 1 2025-11-30 05:22:10.589 00:05:57.914 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 05:27:05.810 00:00:10.468 TCP 1.101.0.1:3000 -> 23.104.0.1:35660 10 6452 1 2025-11-30 05:28:06.313 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:50094 10 6452 1 2025-11-30 05:29:06.714 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41230 10 6452 1 2025-11-30 05:29:59.383 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 05:29:59.265 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 05:29:59.060 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 05:29:59.213 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 05:29:59.300 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 05:30:07.115 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:32998 10 6452 1 2025-11-30 05:31:07.518 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:47834 10 6452 1 2025-11-30 05:28:08.502 00:05:02.095 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 05:32:07.876 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:37744 10 6452 1 2025-11-30 05:28:10.591 00:05:57.914 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 05:33:08.281 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:48180 10 6452 1 2025-11-30 05:34:08.643 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:43360 10 6452 1 2025-11-30 05:34:59.235 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 05:34:59.059 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 05:34:59.090 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 05:34:59.065 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 05:34:59.148 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 05:35:09.049 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:56756 10 6452 1 2025-11-30 05:36:09.453 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41504 10 6452 1 2025-11-30 05:37:09.854 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:37616 10 6452 1 2025-11-30 05:34:08.502 00:05:02.095 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 05:38:10.273 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:43028 10 6452 1 2025-11-30 05:34:10.593 00:05:57.914 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 05:39:10.644 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55878 10 6452 1 2025-11-30 05:39:59.349 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 05:39:59.299 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 05:39:59.012 00:00:00.045 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 05:39:59.234 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 05:39:59.316 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 05:40:11.055 00:00:11.263 TCP 1.101.0.1:3000 -> 23.104.0.1:38606 10 6452 1 2025-11-30 05:41:12.355 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:59338 10 6452 1 2025-11-30 05:42:12.753 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:55992 10 6452 1 2025-11-30 05:43:13.179 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:52690 10 6452 1 2025-11-30 05:40:08.503 00:05:02.096 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 05:44:13.573 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34822 10 6452 1 2025-11-30 05:44:59.342 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 05:44:59.265 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 05:44:59.441 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 05:44:59.345 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 05:44:59.523 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 05:40:10.596 00:05:57.912 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 05:45:13.975 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:43554 10 6452 1 2025-11-30 05:46:14.386 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37008 10 6452 1 2025-11-30 05:47:14.788 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:44328 10 6452 1 2025-11-30 05:48:15.188 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48724 10 6452 1 2025-11-30 05:49:15.588 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56148 10 6452 1 2025-11-30 05:49:59.340 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 05:49:59.449 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 05:49:59.397 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 05:49:59.366 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 05:49:59.258 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 05:46:08.505 00:05:02.097 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 05:50:15.993 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47838 10 6452 1 2025-11-30 05:46:10.598 00:05:57.910 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 05:51:16.394 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:45026 10 6452 1 2025-11-30 05:52:16.793 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:41120 10 6452 1 2025-11-30 05:53:17.203 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:38654 10 6452 1 2025-11-30 05:54:17.572 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59538 10 6452 1 2025-11-30 05:54:59.638 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 05:54:59.381 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 05:54:59.493 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 05:54:59.434 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 05:54:59.555 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 05:55:17.976 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:59856 10 6452 1 2025-11-30 05:52:08.506 00:05:02.097 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 05:56:18.387 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:52160 10 6452 1 2025-11-30 05:52:10.600 00:05:57.912 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 05:57:18.746 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45400 10 6452 1 2025-11-30 05:58:19.152 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:47974 10 6452 1 Summary: total flows: 140, total bytes: 420917, total packets: 1022, avg bps: 929, avg pps: 0, avg bpp: 411 Time window: 2025-11-30 04:58:08 - 2025-11-30 05:58:29 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0045s User: 0.0011s Wall: 0.0021s flows/second: 67471.3 Runtime: 0.0021s