Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-30 15:59:07.338 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38810 10 6452 1 2025-11-30 16:00:11.729 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 16:00:11.729 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 16:00:11.533 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 16:00:11.819 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 16:00:11.901 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 16:00:07.744 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:40242 10 6452 1 2025-11-30 16:01:08.115 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:46752 10 6452 1 2025-11-30 15:58:08.724 00:05:02.096 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 16:02:08.479 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49366 10 6452 1 2025-11-30 15:58:10.814 00:05:57.915 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 16:03:08.882 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:40262 10 6452 1 2025-11-30 16:04:09.245 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:38796 10 6452 1 2025-11-30 16:05:11.630 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 16:05:11.734 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 16:05:11.676 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 16:05:11.634 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 16:05:11.718 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 16:05:09.654 00:00:10.766 TCP 1.101.0.1:3000 -> 23.104.0.1:51004 10 6452 1 2025-11-30 16:06:10.460 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40652 10 6452 1 2025-11-30 16:07:10.864 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:51780 10 6452 1 2025-11-30 16:04:08.727 00:05:02.094 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 16:08:11.276 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37054 12 6556 1 2025-11-30 16:04:10.817 00:05:57.913 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 16:09:11.687 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:37222 10 6452 1 2025-11-30 16:10:12.139 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 16:10:12.021 00:00:00.030 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 16:10:12.143 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 16:10:11.788 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 16:10:12.057 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 16:10:12.110 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44022 10 6452 1 2025-11-30 16:11:12.515 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45178 10 6452 1 2025-11-30 16:12:12.918 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56272 10 6452 1 2025-11-30 16:13:13.316 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:53354 10 6452 1 2025-11-30 16:10:08.727 00:05:02.096 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 16:14:13.729 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:41396 10 6452 1 2025-11-30 16:10:10.820 00:05:57.912 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 16:15:12.146 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 16:15:12.151 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 16:15:11.818 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 16:15:12.079 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 16:15:12.161 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 16:15:14.132 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:34902 10 6452 1 2025-11-30 16:16:14.542 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:49266 10 6452 1 2025-11-30 16:17:14.938 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:42392 10 6452 1 2025-11-30 16:18:15.364 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:52650 10 6452 1 2025-11-30 16:19:15.766 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:49900 10 6452 1 2025-11-30 16:20:12.597 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 16:16:08.728 00:05:02.097 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 16:20:12.517 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 16:20:12.435 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 16:20:12.107 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 16:20:12.515 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 16:20:16.185 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:37564 10 6452 1 2025-11-30 16:16:10.822 00:05:57.910 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 16:21:16.599 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:42452 10 6452 1 2025-11-30 16:22:17.010 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:49478 10 6452 1 2025-11-30 16:23:17.416 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:50664 10 6452 1 2025-11-30 16:24:17.822 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:53628 10 6452 1 2025-11-30 16:25:12.234 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 16:25:12.233 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 16:25:11.970 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 16:25:12.055 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 16:25:12.138 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 16:25:18.184 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:43916 10 6452 1 2025-11-30 16:22:08.731 00:05:02.097 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 16:26:18.599 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38220 10 6452 1 2025-11-30 16:22:10.824 00:05:57.910 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 16:27:19.002 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40472 10 6452 1 2025-11-30 16:28:19.406 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50212 10 6452 1 2025-11-30 16:29:19.810 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:57486 10 6452 1 2025-11-30 16:30:12.625 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 16:30:12.476 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 16:30:12.118 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 16:30:12.536 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 16:30:12.618 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 16:30:20.210 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:40910 10 6452 1 2025-11-30 16:31:20.576 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:43972 10 6452 1 2025-11-30 16:28:08.732 00:05:02.103 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 16:32:20.982 00:00:10.445 TCP 1.101.0.1:3000 -> 23.104.0.1:60818 12 10369 1 2025-11-30 16:28:10.826 00:05:57.911 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 16:33:21.465 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43366 10 6452 1 2025-11-30 16:34:21.863 00:00:10.419 TCP 1.101.0.1:3000 -> 23.104.0.1:55608 11 6504 1 2025-11-30 16:35:12.449 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 16:35:12.384 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 16:35:12.087 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 16:35:12.542 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 16:35:12.625 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 16:35:22.321 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:52804 10 6452 1 2025-11-30 16:36:22.726 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:54960 10 6452 1 2025-11-30 16:37:23.146 00:00:10.879 TCP 1.101.0.1:3000 -> 23.104.0.1:37772 10 6452 1 2025-11-30 16:34:08.734 00:05:02.103 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 16:38:24.089 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50722 10 6452 1 2025-11-30 16:34:10.833 00:05:57.903 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 16:39:24.490 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:36852 10 6452 1 2025-11-30 16:40:12.444 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 16:40:12.564 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 16:40:12.560 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 16:40:12.291 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 16:40:12.362 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 16:40:24.888 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:59754 12 6556 1 2025-11-30 16:41:25.309 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:34990 10 6452 1 2025-11-30 16:42:25.720 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:40298 10 6452 1 2025-11-30 16:43:26.132 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:49966 10 6452 1 2025-11-30 16:40:08.734 00:05:02.106 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 16:44:26.540 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:46756 10 6452 1 2025-11-30 16:40:10.834 00:05:57.904 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 16:45:12.890 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 16:45:12.821 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 16:45:12.894 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 16:45:12.480 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 16:45:12.974 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 16:45:26.909 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:33372 10 6452 1 2025-11-30 16:46:27.274 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:44728 10 6452 1 2025-11-30 16:47:27.676 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:59352 10 6452 1 2025-11-30 16:48:28.041 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48616 10 6452 1 2025-11-30 16:49:28.438 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39200 10 6452 1 2025-11-30 16:50:12.735 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 16:50:12.736 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 16:50:12.696 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 16:50:12.674 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 16:50:12.757 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 16:46:08.735 00:05:02.106 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 16:50:28.842 00:00:10.468 TCP 1.101.0.1:3000 -> 23.104.0.1:33640 10 6452 1 2025-11-30 16:46:10.837 00:05:57.901 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 16:51:29.359 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52082 10 6452 1 2025-11-30 16:52:29.764 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:39880 10 6452 1 2025-11-30 16:53:30.133 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:43152 10 6452 1 2025-11-30 16:54:30.535 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56896 10 6452 1 2025-11-30 16:55:13.120 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 16:55:13.174 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 16:55:13.114 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 16:55:13.165 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 16:55:13.247 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 16:55:30.936 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:56818 10 6452 1 2025-11-30 16:52:08.736 00:05:02.108 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 16:56:31.351 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:34812 10 6452 1 2025-11-30 16:52:10.840 00:05:57.900 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 16:57:31.755 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:58330 10 6452 1 2025-11-30 16:58:32.169 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:55202 10 6452 1 Summary: total flows: 140, total bytes: 421177, total packets: 1027, avg bps: 927, avg pps: 0, avg bpp: 410 Time window: 2025-11-30 15:58:08 - 2025-11-30 16:58:42 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0041s User: 0.0010s Wall: 0.0027s flows/second: 52181.9 Runtime: 0.0027s