Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-30 17:58:56.955 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:42418 10 6452 1 2025-11-30 17:59:57.360 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49378 10 6452 1 2025-11-30 18:00:14.295 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 18:00:14.075 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 18:00:14.201 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 18:00:13.895 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 18:00:14.212 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 18:00:57.765 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:49856 10 6452 1 2025-11-30 18:01:58.185 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:51190 10 6452 1 2025-11-30 17:58:08.757 00:05:02.108 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 17:58:10.861 00:05:57.900 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 18:02:58.580 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:33492 10 6452 1 2025-11-30 18:03:58.959 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36824 10 6452 1 2025-11-30 18:04:59.360 00:00:10.356 TCP 1.101.0.1:3000 -> 23.104.0.1:34024 10 6452 1 2025-11-30 18:05:14.330 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 18:05:14.403 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 18:05:14.013 00:00:00.040 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 18:05:14.367 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 18:05:14.451 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 18:05:59.755 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:57502 10 6452 1 2025-11-30 18:07:00.134 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48722 10 6452 1 2025-11-30 18:08:00.541 00:00:10.819 TCP 1.101.0.1:3000 -> 23.104.0.1:53726 10 6452 1 2025-11-30 18:04:08.757 00:05:02.109 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 18:04:10.863 00:05:57.904 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 18:09:01.401 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:53832 10 6452 1 2025-11-30 18:10:14.451 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 18:10:14.423 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 18:10:14.465 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 18:10:14.388 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 18:10:01.805 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39814 10 6452 1 2025-11-30 18:10:14.369 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 18:11:02.216 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43578 10 6452 1 2025-11-30 18:12:02.631 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:50300 10 6452 1 2025-11-30 18:13:02.997 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48868 10 6452 1 2025-11-30 18:10:08.764 00:05:02.103 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 18:14:03.401 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:38882 10 6452 1 2025-11-30 18:15:14.514 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 18:10:10.864 00:05:57.904 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 18:15:14.437 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 18:15:03.821 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41988 10 6452 1 2025-11-30 18:15:14.326 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 18:15:14.254 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 18:15:14.431 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 18:16:04.226 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:43506 10 6452 1 2025-11-30 18:17:04.590 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58998 10 6452 1 2025-11-30 18:18:04.989 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:46572 10 6452 1 2025-11-30 18:19:05.406 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:42258 10 6452 1 2025-11-30 18:16:08.765 00:05:02.104 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 18:20:15.338 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 18:20:05.821 00:00:10.742 TCP 1.101.0.1:3000 -> 23.104.0.1:56544 10 6452 1 2025-11-30 18:20:15.427 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 18:20:15.201 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 18:20:15.428 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 18:20:15.511 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 18:16:10.865 00:05:57.905 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 18:21:06.614 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:46680 10 6452 1 2025-11-30 18:22:07.020 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:45608 10 6452 1 2025-11-30 18:23:07.417 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:42368 10 6452 1 2025-11-30 18:24:07.785 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56516 10 6452 1 2025-11-30 18:25:14.788 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 18:25:14.789 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 18:25:15.191 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 18:25:08.199 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40888 10 6452 1 2025-11-30 18:25:15.069 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 18:25:15.108 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 18:22:08.767 00:05:02.104 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 18:26:08.603 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51966 10 6452 1 2025-11-30 18:22:10.868 00:05:57.903 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 18:27:09.009 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:45696 10 6452 1 2025-11-30 18:28:09.372 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:49310 10 6452 1 2025-11-30 18:29:09.734 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:42542 10 6452 1 2025-11-30 18:30:14.861 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 18:30:14.677 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 18:30:14.772 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 18:30:14.493 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 18:30:14.778 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 18:30:10.116 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56674 10 6452 1 2025-11-30 18:31:10.516 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:55226 10 6452 1 2025-11-30 18:28:08.769 00:05:02.104 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 18:32:10.883 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:37796 10 6452 1 2025-11-30 18:28:10.868 00:05:57.904 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 18:33:11.252 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:59486 10 6452 1 2025-11-30 18:34:11.618 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34628 10 6452 1 2025-11-30 18:35:14.859 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 18:35:14.926 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 18:35:14.868 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 18:35:14.987 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 18:35:15.071 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 18:35:12.032 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:37002 10 6452 1 2025-11-30 18:36:12.441 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:37448 10 6452 1 2025-11-30 18:37:12.845 00:00:10.347 TCP 1.101.0.1:3000 -> 23.104.0.1:50150 10 6452 1 2025-11-30 18:34:08.770 00:05:02.110 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 18:38:13.233 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58142 10 6452 1 2025-11-30 18:34:10.871 00:05:57.903 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 18:39:13.649 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:38534 10 6452 1 2025-11-30 18:40:15.347 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 18:40:14.934 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 18:40:14.767 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 18:40:15.282 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 18:40:15.265 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 18:40:14.035 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:33170 10 6452 1 2025-11-30 18:41:14.460 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:35964 10 6452 1 2025-11-30 18:42:14.862 00:00:10.448 TCP 1.101.0.1:3000 -> 23.104.0.1:44736 12 10375 1 2025-11-30 18:43:15.356 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:33804 10 6452 1 2025-11-30 18:40:08.771 00:05:02.109 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 18:44:15.757 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:53004 10 6452 1 2025-11-30 18:40:10.877 00:05:57.898 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 18:45:14.928 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 18:45:14.818 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 18:45:15.094 00:00:00.040 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 18:45:15.012 00:00:00.040 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 18:45:15.089 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 18:45:16.186 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42966 10 6452 1 2025-11-30 18:46:16.587 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:43580 10 6452 1 2025-11-30 18:47:17.005 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:42492 10 6452 1 2025-11-30 18:48:17.377 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:33778 10 6452 1 2025-11-30 18:49:17.782 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:55296 10 6452 1 2025-11-30 18:46:08.772 00:05:02.109 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 18:50:15.291 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 18:50:15.111 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 18:50:15.006 00:00:00.049 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 18:50:15.014 00:00:00.035 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 18:50:15.208 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 18:50:18.191 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:49868 10 6452 1 2025-11-30 18:46:10.877 00:05:57.898 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 18:51:18.586 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41714 10 6452 1 2025-11-30 18:52:18.994 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37736 10 6452 1 2025-11-30 18:53:19.395 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:44282 10 6452 1 2025-11-30 18:54:19.792 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:37596 10 6452 1 2025-11-30 18:55:14.941 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 18:55:15.134 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 18:55:15.193 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 18:55:15.194 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 18:55:15.278 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 18:55:20.207 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:40116 10 6452 1 2025-11-30 18:52:08.774 00:05:02.109 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 18:56:20.623 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41690 10 6452 1 2025-11-30 18:52:10.879 00:05:57.898 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 18:57:21.030 00:00:10.424 TCP 1.101.0.1:3000 -> 23.104.0.1:46372 10 6452 1 2025-11-30 18:58:21.491 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39590 10 6452 1 Summary: total flows: 140, total bytes: 420923, total packets: 1022, avg bps: 929, avg pps: 0, avg bpp: 411 Time window: 2025-11-30 17:58:08 - 2025-11-30 18:58:31 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0026s User: 0.0026s Wall: 0.0024s flows/second: 57237.8 Runtime: 0.0025s