Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-30 14:58:42.777 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:57530 10 6452 1 2025-11-30 14:59:43.192 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40194 10 6452 1 2025-11-30 15:00:10.600 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 15:00:10.447 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 15:00:10.372 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 15:00:10.602 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 15:00:10.686 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 15:00:43.596 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:32844 10 6452 1 2025-11-30 15:01:43.962 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:57304 10 6452 1 2025-11-30 14:58:08.707 00:05:02.092 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 15:02:44.370 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:48314 10 6452 1 2025-11-30 14:58:10.794 00:05:57.917 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 15:03:44.789 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:48638 10 6452 1 2025-11-30 15:04:45.156 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:37926 12 6556 1 2025-11-30 15:05:10.789 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 15:05:10.704 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 15:05:10.843 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 15:05:10.438 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 15:05:10.706 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 15:05:45.564 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50986 10 6452 1 2025-11-30 15:06:45.968 00:00:10.573 TCP 1.101.0.1:3000 -> 23.104.0.1:49370 10 6452 1 2025-11-30 15:07:46.582 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41286 10 6452 1 2025-11-30 15:04:08.709 00:05:02.092 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 15:08:46.985 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:40616 10 6452 1 2025-11-30 15:04:10.798 00:05:57.916 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 15:09:47.396 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39538 10 6452 1 2025-11-30 15:10:10.535 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 15:10:10.672 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 15:10:10.722 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 15:10:10.689 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 15:10:10.451 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 15:10:47.803 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:34852 10 6452 1 2025-11-30 15:11:48.205 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58098 10 6452 1 2025-11-30 15:12:48.612 00:00:10.453 TCP 1.101.0.1:3000 -> 23.104.0.1:51496 12 10375 1 2025-11-30 15:13:49.112 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:44858 10 6452 1 2025-11-30 15:10:08.711 00:05:02.090 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 15:14:49.510 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46482 10 6452 1 2025-11-30 15:10:10.799 00:05:57.928 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 15:15:10.605 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 15:15:10.522 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 15:15:10.735 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 15:15:10.927 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 15:15:10.756 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 15:15:49.913 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:36646 10 6452 1 2025-11-30 15:16:50.314 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:39064 10 6452 1 2025-11-30 15:17:50.671 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50328 10 6452 1 2025-11-30 15:18:51.098 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:46248 10 6452 1 2025-11-30 15:19:51.503 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:40118 10 6452 1 2025-11-30 15:20:10.874 00:00:00.034 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 15:20:10.771 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 15:20:10.941 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 15:20:10.725 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 15:20:10.962 00:00:00.029 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 15:16:08.723 00:05:02.080 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 15:20:51.918 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:46846 10 6452 1 2025-11-30 15:16:10.801 00:05:57.919 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 15:21:52.318 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:37326 10 6452 1 2025-11-30 15:22:52.725 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:32850 10 6452 1 2025-11-30 15:23:53.148 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:55708 10 6452 1 2025-11-30 15:24:53.563 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36704 10 6452 1 2025-11-30 15:25:11.180 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 15:25:10.884 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 15:25:10.903 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 15:25:10.904 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 15:25:10.986 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 15:25:53.964 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:57128 10 6452 1 2025-11-30 15:22:08.715 00:05:02.092 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 15:26:54.328 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48864 10 6452 1 2025-11-30 15:22:10.804 00:05:57.916 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 15:27:54.736 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43590 10 6452 1 2025-11-30 15:28:55.142 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:36710 10 6452 1 2025-11-30 15:29:55.559 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33312 10 6452 1 2025-11-30 15:30:11.154 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 15:30:11.182 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 15:30:11.178 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 15:30:10.674 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 15:30:11.071 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 15:30:55.964 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:40532 10 6452 1 2025-11-30 15:31:56.371 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48988 10 6452 1 2025-11-30 15:28:08.717 00:05:02.093 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 15:28:10.805 00:05:57.917 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 15:32:56.778 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:35756 10 6452 1 2025-11-30 15:33:57.201 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:54218 10 6452 1 2025-11-30 15:34:57.608 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:54036 10 6452 1 2025-11-30 15:35:11.436 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 15:35:11.372 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 15:35:11.377 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 15:35:11.403 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 15:35:11.520 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 15:35:57.973 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:33142 10 6452 1 2025-11-30 15:36:58.385 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:38658 10 6452 1 2025-11-30 15:37:58.805 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53358 10 6452 1 2025-11-30 15:34:08.718 00:05:02.094 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 15:38:59.209 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47566 10 6452 1 2025-11-30 15:34:10.807 00:05:57.914 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 15:39:59.616 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:32912 10 6452 1 2025-11-30 15:40:11.304 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 15:40:11.368 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 15:40:11.193 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 15:40:11.363 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 15:40:11.446 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 15:41:00.018 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:45714 10 6452 1 2025-11-30 15:42:00.419 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40248 10 6452 1 2025-11-30 15:43:00.824 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:40560 10 6452 1 2025-11-30 15:40:08.719 00:05:02.095 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 15:44:01.235 00:00:10.420 TCP 1.101.0.1:3000 -> 23.104.0.1:44564 11 6504 1 2025-11-30 15:40:10.809 00:05:57.914 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 15:45:01.698 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:54342 10 6452 1 2025-11-30 15:45:11.674 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 15:45:11.516 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 15:45:11.331 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 15:45:11.671 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 15:45:11.754 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 15:46:02.106 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48574 10 6452 1 2025-11-30 15:47:02.506 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:39432 10 6452 1 2025-11-30 15:48:02.905 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:44820 10 6452 1 2025-11-30 15:49:03.270 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58116 10 6452 1 2025-11-30 15:50:11.677 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 15:50:11.786 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 15:50:11.625 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 15:50:03.673 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:55386 10 6452 1 2025-11-30 15:50:11.680 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 15:46:08.721 00:05:02.093 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 15:50:11.762 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 15:46:10.811 00:05:57.913 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 15:51:04.104 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36746 10 6452 1 2025-11-30 15:52:04.503 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:59454 10 6452 1 2025-11-30 15:53:04.910 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:52178 10 6452 1 2025-11-30 15:54:05.321 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39780 10 6452 1 2025-11-30 15:55:11.589 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 15:55:11.530 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 15:55:11.558 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 15:55:11.436 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 15:55:11.519 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 15:55:05.726 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:37920 10 6452 1 2025-11-30 15:52:08.723 00:05:02.094 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 15:56:06.120 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:59154 10 6452 1 2025-11-30 15:52:10.813 00:05:57.914 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 15:57:06.479 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:45512 10 6452 1 2025-11-30 15:58:06.875 00:00:10.421 TCP 1.101.0.1:3000 -> 23.104.0.1:33334 10 6452 1 Summary: total flows: 140, total bytes: 421079, total packets: 1025, avg bps: 933, avg pps: 0, avg bpp: 410 Time window: 2025-11-30 14:58:08 - 2025-11-30 15:58:17 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0061s User: 0.0000s Wall: 0.0019s flows/second: 73107.9 Runtime: 0.0019s