Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-30 19:58:45.815 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35464 10 6452 1 2025-11-30 19:59:46.216 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50220 10 6452 1 2025-11-30 20:00:16.553 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 20:00:16.372 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 20:00:16.460 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 20:00:16.466 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 20:00:16.470 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 20:00:46.612 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60936 10 6452 1 2025-11-30 20:01:47.018 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47120 10 6452 1 2025-11-30 19:58:08.788 00:05:02.129 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 20:02:47.419 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59718 10 6452 1 2025-11-30 19:58:10.911 00:05:57.883 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 20:03:47.821 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:33102 10 6452 1 2025-11-30 20:04:48.216 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:46812 10 6452 1 2025-11-30 20:05:16.833 00:00:00.028 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 20:05:16.750 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 20:05:17.022 00:00:00.031 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 20:05:17.023 00:00:00.035 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 20:05:16.798 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 20:05:48.579 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45728 10 6452 1 2025-11-30 20:06:48.983 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:35234 10 6452 1 2025-11-30 20:07:49.355 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:35488 10 6452 1 2025-11-30 20:04:08.792 00:05:02.127 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 20:08:49.760 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:43062 10 6452 1 2025-11-30 20:04:10.916 00:05:57.881 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 20:09:50.184 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58078 10 6452 1 2025-11-30 20:10:16.812 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 20:10:16.630 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 20:10:16.630 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 20:10:16.667 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 20:10:16.729 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 20:10:50.586 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:49024 10 6452 1 2025-11-30 20:11:50.992 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:57082 10 6452 1 2025-11-30 20:12:51.364 00:00:10.943 TCP 1.101.0.1:3000 -> 23.104.0.1:57048 12 10375 1 2025-11-30 20:13:52.352 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:60504 10 6452 1 2025-11-30 20:10:08.793 00:05:02.131 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 20:14:52.715 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46590 10 6452 1 2025-11-30 20:10:10.917 00:05:57.883 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 20:15:16.977 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 20:15:16.894 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 20:15:16.756 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 20:15:16.796 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 20:15:16.894 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 20:15:53.113 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55728 10 6452 1 2025-11-30 20:16:53.515 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:50586 10 6452 1 2025-11-30 20:17:53.917 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:49408 10 6452 1 2025-11-30 20:18:54.315 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:57334 10 6452 1 2025-11-30 20:19:54.683 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:42262 10 6452 1 2025-11-30 20:16:08.796 00:05:02.129 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 20:20:16.789 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 20:20:16.818 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 20:20:16.933 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 20:20:16.851 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 20:20:16.707 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 20:16:10.921 00:05:57.879 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 20:20:55.111 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:56092 10 6452 1 2025-11-30 20:21:55.524 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:51596 10 6452 1 2025-11-30 20:22:55.958 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:48754 10 6452 1 2025-11-30 20:23:56.357 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:38814 10 6452 1 2025-11-30 20:24:56.714 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:41932 10 6452 1 2025-11-30 20:25:16.771 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 20:25:16.978 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 20:25:16.600 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 20:25:16.775 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 20:25:16.858 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 20:25:57.114 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:43228 10 6452 1 2025-11-30 20:22:08.798 00:05:02.132 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 20:22:10.922 00:05:57.882 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 20:26:57.521 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38952 10 6452 1 2025-11-30 20:27:57.922 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:52200 10 6452 1 2025-11-30 20:28:58.334 00:00:10.846 TCP 1.101.0.1:3000 -> 23.104.0.1:48998 10 6452 1 2025-11-30 20:29:59.224 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48660 10 6452 1 2025-11-30 20:30:17.114 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 20:30:17.188 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 20:30:16.924 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 20:30:17.042 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 20:30:17.124 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 20:30:59.628 00:00:10.514 TCP 1.101.0.1:3000 -> 23.104.0.1:50662 10 6452 1 2025-11-30 20:28:08.802 00:05:02.129 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 20:32:00.201 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:53538 10 6452 1 2025-11-30 20:28:10.928 00:05:57.878 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 20:33:00.563 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:43832 10 6452 1 2025-11-30 20:34:00.926 00:00:10.393 TCP 1.101.0.1:3000 -> 23.104.0.1:58688 10 6452 1 2025-11-30 20:35:17.462 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 20:35:01.350 00:00:10.415 TCP 1.101.0.1:3000 -> 23.104.0.1:59862 11 6504 1 2025-11-30 20:35:17.379 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 20:35:17.191 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 20:35:17.177 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 20:35:17.381 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 20:36:01.800 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:38192 10 6452 1 2025-11-30 20:37:02.208 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:44814 10 6452 1 2025-11-30 20:38:02.578 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47908 10 6452 1 2025-11-30 20:34:08.803 00:05:02.131 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 20:34:10.929 00:05:57.881 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 20:39:02.979 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:44544 10 6452 1 2025-11-30 20:40:03.388 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54846 10 6452 1 2025-11-30 20:40:17.201 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 20:40:17.316 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 20:40:17.283 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 20:40:17.360 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 20:40:17.442 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 20:41:03.793 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33584 10 6452 1 2025-11-30 20:42:04.197 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:41122 10 6452 1 2025-11-30 20:43:04.596 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:54946 10 6452 1 2025-11-30 20:40:08.808 00:05:02.129 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 20:44:04.967 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:56672 10 6452 1 2025-11-30 20:40:10.934 00:05:57.876 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 20:45:17.571 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 20:45:17.399 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 20:45:17.336 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 20:45:17.237 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 20:45:05.335 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:56482 10 6452 1 2025-11-30 20:45:17.488 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 20:46:05.699 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:43844 10 6452 1 2025-11-30 20:47:06.070 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:39968 10 6452 1 2025-11-30 20:48:06.483 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:51438 10 6452 1 2025-11-30 20:49:06.842 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:52730 10 6452 1 2025-11-30 20:46:08.808 00:05:02.129 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 20:50:17.572 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 20:50:17.569 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 20:50:17.365 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 20:50:07.274 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52022 10 6452 1 2025-11-30 20:50:17.755 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 20:50:17.838 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 20:46:10.933 00:05:57.877 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 20:51:07.679 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57390 10 6452 1 2025-11-30 20:52:08.107 00:00:10.690 TCP 1.101.0.1:3000 -> 23.104.0.1:38858 10 6452 1 2025-11-30 20:53:08.833 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:54238 10 6452 1 2025-11-30 20:54:09.231 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41960 10 6452 1 2025-11-30 20:55:17.820 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 20:55:17.777 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 20:55:17.592 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 20:55:17.608 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 20:55:17.736 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 20:55:09.634 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42982 10 6452 1 2025-11-30 20:52:08.807 00:05:02.132 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 20:56:10.067 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:41798 10 6452 1 2025-11-30 20:52:10.936 00:05:57.878 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 20:57:10.432 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:60240 10 6452 1 2025-11-30 20:58:10.798 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:58806 10 6452 1 Summary: total flows: 140, total bytes: 420975, total packets: 1023, avg bps: 932, avg pps: 0, avg bpp: 411 Time window: 2025-11-30 19:58:08 - 2025-11-30 20:58:21 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0044s User: 0.0011s Wall: 0.0023s flows/second: 61001.7 Runtime: 0.0023s