Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-30 11:59:07.560 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34764 10 6452 1 2025-11-30 12:00:06.870 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 12:00:06.910 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 12:00:06.807 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 12:00:06.804 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 12:00:06.887 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 12:00:07.965 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:43192 10 6452 1 2025-11-30 12:01:08.328 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:43152 10 6452 1 2025-11-30 11:58:08.643 00:05:02.093 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 12:02:08.739 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:42132 10 6452 1 2025-11-30 11:58:10.730 00:05:57.918 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 12:03:09.148 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60908 10 6452 1 2025-11-30 12:04:09.554 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:53226 10 6452 1 2025-11-30 12:05:07.037 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 12:05:06.953 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 12:05:06.959 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 12:05:06.805 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 12:05:06.955 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 12:05:09.972 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:49574 10 6452 1 2025-11-30 12:06:10.382 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38830 10 6452 1 2025-11-30 12:07:10.783 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:56474 10 6452 1 2025-11-30 12:04:08.645 00:05:02.095 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 12:08:11.151 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:51890 10 6452 1 2025-11-30 12:04:10.733 00:05:57.920 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 12:09:11.549 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:49968 10 6452 1 2025-11-30 12:10:07.298 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 12:10:07.297 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 12:10:06.787 00:00:00.030 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 12:10:07.367 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 12:10:07.450 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 12:10:11.957 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:54758 10 6452 1 2025-11-30 12:11:12.372 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41890 10 6452 1 2025-11-30 12:12:12.777 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:54522 10 6452 1 2025-11-30 12:13:13.185 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:48140 10 6452 1 2025-11-30 12:10:08.647 00:05:02.095 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 12:14:13.551 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45042 10 6452 1 2025-11-30 12:15:07.201 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 12:15:07.385 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 12:10:10.739 00:05:57.912 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 12:15:07.119 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 12:15:07.006 00:00:00.042 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 12:15:07.118 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 12:15:13.957 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:37766 10 6452 1 2025-11-30 12:16:14.371 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:37650 10 6452 1 2025-11-30 12:17:14.746 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:38562 10 6452 1 2025-11-30 12:18:15.148 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46518 10 6452 1 2025-11-30 12:19:15.559 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33242 10 6452 1 2025-11-30 12:20:06.980 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 12:20:07.298 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 12:20:07.265 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 12:20:07.347 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 12:20:07.430 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 12:16:08.647 00:05:02.097 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 12:20:15.962 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58992 10 6452 1 2025-11-30 12:16:10.742 00:05:57.911 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 12:21:16.371 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47520 10 6452 1 2025-11-30 12:22:16.806 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:53496 10 6452 1 2025-11-30 12:23:17.215 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:46954 10 6452 1 2025-11-30 12:24:17.620 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:40170 10 6452 1 2025-11-30 12:25:07.504 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 12:25:07.619 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 12:25:07.338 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 12:25:07.503 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 12:25:07.585 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 12:25:17.979 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:53822 10 6452 1 2025-11-30 12:22:08.650 00:05:02.095 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 12:26:18.341 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:35052 10 6452 1 2025-11-30 12:22:10.741 00:05:57.911 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 12:27:18.708 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:52702 10 6452 1 2025-11-30 12:28:19.102 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:55260 10 6452 1 2025-11-30 12:29:19.465 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:44274 10 6452 1 2025-11-30 12:30:07.336 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 12:30:07.591 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 12:30:07.162 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 12:30:07.618 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 12:30:07.701 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 12:30:19.830 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:41826 10 6452 1 2025-11-30 12:31:20.242 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:53674 10 6452 1 2025-11-30 12:28:08.649 00:05:02.097 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 12:32:20.602 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:57048 10 6452 1 2025-11-30 12:28:10.742 00:05:57.911 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 12:33:20.966 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46814 10 6452 1 2025-11-30 12:34:21.368 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:42456 10 6452 1 2025-11-30 12:35:07.463 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 12:35:07.535 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 12:35:07.471 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 12:35:07.436 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 12:35:07.381 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 12:35:21.775 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:51476 10 6452 1 2025-11-30 12:36:22.184 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:56298 10 6452 1 2025-11-30 12:37:22.598 00:00:10.442 TCP 1.101.0.1:3000 -> 23.104.0.1:55370 12 10375 1 2025-11-30 12:34:08.651 00:05:02.099 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 12:38:23.106 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:44212 10 6452 1 2025-11-30 12:34:10.745 00:05:57.913 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 12:39:23.464 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:50492 10 6452 1 2025-11-30 12:40:07.910 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 12:40:07.719 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 12:40:07.606 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 12:40:07.530 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 12:40:07.826 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 12:40:23.827 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:40456 10 6452 1 2025-11-30 12:41:24.230 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:43068 10 6452 1 2025-11-30 12:42:24.634 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56322 10 6452 1 2025-11-30 12:43:25.036 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:36276 10 6452 1 2025-11-30 12:40:08.655 00:05:02.094 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 12:44:25.438 00:00:11.315 TCP 1.101.0.1:3000 -> 23.104.0.1:48904 10 6452 1 2025-11-30 12:45:07.766 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 12:45:07.901 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 12:40:10.747 00:05:57.917 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 12:45:07.691 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 12:45:07.843 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 12:45:07.684 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 12:45:26.788 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:47200 10 6452 1 2025-11-30 12:46:27.193 00:00:10.395 TCP 1.101.0.1:3000 -> 23.104.0.1:50526 10 6452 1 2025-11-30 12:47:27.630 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:47656 10 6452 1 2025-11-30 12:48:28.033 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:58850 10 6452 1 2025-11-30 12:49:28.393 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59136 10 6452 1 2025-11-30 12:50:07.798 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 12:50:07.941 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 12:50:07.846 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 12:50:07.993 00:00:00.029 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 12:50:08.077 00:00:00.029 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 12:46:08.662 00:05:02.090 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 12:50:28.798 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:38378 10 6452 1 2025-11-30 12:46:10.747 00:05:57.918 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 12:51:29.205 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:59076 10 6452 1 2025-11-30 12:52:29.602 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:53028 10 6452 1 2025-11-30 12:53:29.975 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56780 10 6452 1 2025-11-30 12:54:30.379 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54396 10 6452 1 2025-11-30 12:55:07.793 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 12:55:07.711 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 12:55:08.054 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 12:55:07.850 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 12:55:07.711 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 12:55:30.787 00:00:18.317 TCP 1.101.0.1:3000 -> 23.104.0.1:58108 10 6452 1 2025-11-30 12:52:08.663 00:05:02.090 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 12:56:39.147 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:43304 10 6452 1 2025-11-30 12:52:10.749 00:05:57.918 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 12:57:39.545 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:41456 10 6452 1 Summary: total flows: 139, total bytes: 414471, total packets: 1012, avg bps: 921, avg pps: 0, avg bpp: 409 Time window: 2025-11-30 11:58:08 - 2025-11-30 12:58:08 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0052s User: 0.0021s Wall: 0.0025s flows/second: 54959.3 Runtime: 0.0026s