Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-30 22:59:01.691 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53816 10 6452 1 2025-11-30 23:00:02.106 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:48020 10 6452 1 2025-11-30 23:00:20.377 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 23:00:20.294 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 23:00:20.217 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 23:00:20.072 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 23:00:20.294 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 23:01:02.468 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:57342 10 6452 1 2025-11-30 22:58:08.848 00:05:02.145 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 23:02:02.865 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:57318 10 6452 1 2025-11-30 22:58:10.984 00:05:57.867 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 23:03:03.272 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57784 12 6556 1 2025-11-30 23:04:03.671 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42632 10 6452 1 2025-11-30 23:05:04.103 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:51992 10 6452 1 2025-11-30 23:05:20.306 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 23:05:20.224 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 23:05:20.225 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 23:05:20.333 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 23:05:20.224 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 23:06:04.504 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52004 10 6452 1 2025-11-30 23:07:04.911 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:41718 10 6452 1 2025-11-30 23:04:08.849 00:05:02.140 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 23:08:05.318 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:50914 10 6452 1 2025-11-30 23:04:10.986 00:05:57.867 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 23:09:05.682 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:46834 11 6504 1 2025-11-30 23:10:06.114 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:55948 10 6452 1 2025-11-30 23:10:20.351 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 23:10:20.407 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 23:10:20.264 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 23:10:20.210 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 23:10:20.268 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 23:11:06.521 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:51678 10 6452 1 2025-11-30 23:12:06.882 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54220 10 6452 1 2025-11-30 23:13:07.286 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43638 10 6452 1 2025-11-30 23:10:08.850 00:05:02.140 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 23:14:07.685 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:36856 10 6452 1 2025-11-30 23:10:10.985 00:05:57.870 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 23:15:08.101 00:00:10.347 TCP 1.101.0.1:3000 -> 23.104.0.1:57090 10 6452 1 2025-11-30 23:15:20.715 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 23:15:20.677 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 23:15:20.518 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 23:15:20.719 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 23:15:20.803 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 23:16:08.487 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:39252 10 6452 1 2025-11-30 23:17:08.851 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:44440 10 6452 1 2025-11-30 23:18:09.265 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:37416 10 6452 1 2025-11-30 23:19:09.631 00:00:11.234 TCP 1.101.0.1:3000 -> 23.104.0.1:57186 12 6556 1 2025-11-30 23:16:08.852 00:05:02.141 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 23:20:20.687 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 23:20:20.613 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 23:20:20.418 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 23:20:20.404 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 23:20:10.906 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:50850 12 6556 1 2025-11-30 23:20:20.605 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 23:16:10.988 00:05:57.867 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 23:21:11.314 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:37574 10 6452 1 2025-11-30 23:22:11.678 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:52938 10 6452 1 2025-11-30 23:23:12.111 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:42272 10 6452 1 2025-11-30 23:24:12.517 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:38552 10 6452 1 2025-11-30 23:25:20.602 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 23:25:12.895 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:37012 10 6452 1 2025-11-30 23:25:20.605 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 23:25:20.708 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 23:25:20.602 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 23:25:20.685 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 23:22:08.854 00:05:02.144 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 23:26:13.265 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:57512 10 6452 1 2025-11-30 23:22:10.990 00:05:57.867 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 23:27:13.671 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53090 10 6452 1 2025-11-30 23:28:14.101 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:59526 10 6452 1 2025-11-30 23:29:14.497 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:38890 10 6452 1 2025-11-30 23:30:20.594 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 23:30:20.884 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 23:30:20.615 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 23:30:20.880 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 23:30:20.963 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 23:30:14.903 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36908 10 6452 1 2025-11-30 23:31:15.306 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48920 10 6452 1 2025-11-30 23:28:08.855 00:05:02.142 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 23:32:15.713 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:57826 10 6452 1 2025-11-30 23:28:10.994 00:05:57.865 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 23:33:16.117 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:53696 10 6452 1 2025-11-30 23:34:16.493 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:53716 10 6452 1 2025-11-30 23:35:20.800 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 23:35:20.717 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 23:35:20.726 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 23:35:20.920 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 23:35:20.757 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 23:35:16.905 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:41872 10 6452 1 2025-11-30 23:36:17.272 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:42914 10 6452 1 2025-11-30 23:37:17.681 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:33056 10 6452 1 2025-11-30 23:34:08.857 00:05:02.177 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 23:34:10.995 00:05:00.036 TCP 179.21.23.21:38570 -> 179.21.23.23:179 11 686 1 2025-11-30 23:38:18.043 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:45180 10 6452 1 2025-11-30 23:39:18.409 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:40316 10 6452 1 2025-11-30 23:40:21.005 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 23:40:20.922 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 23:40:20.841 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 23:40:20.780 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 23:40:20.921 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 23:40:18.809 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:45036 10 6452 1 2025-11-30 23:41:19.228 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51478 10 6452 1 2025-11-30 23:42:19.628 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:50720 10 6452 1 2025-11-30 23:43:19.989 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:48024 10 6452 1 2025-11-30 23:40:08.858 00:05:02.187 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 23:40:08.861 00:05:02.181 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 23:44:20.350 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52148 10 6452 1 2025-11-30 23:45:20.895 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 23:45:20.905 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 23:45:21.041 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 23:45:20.688 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 23:45:20.771 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 23:45:20.758 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:34800 10 6452 1 2025-11-30 23:46:21.181 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56938 10 6452 1 2025-11-30 23:47:21.582 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33466 10 6452 1 2025-11-30 23:48:21.986 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:47878 10 6452 1 2025-11-30 23:49:22.382 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:33244 10 6452 1 2025-11-30 23:46:08.863 00:05:02.180 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 23:46:08.865 00:05:02.175 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 23:50:21.216 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 23:50:21.070 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 23:50:21.151 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 23:50:20.946 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 23:50:21.028 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 23:50:22.788 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36336 10 6452 1 2025-11-30 23:51:23.192 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:40044 10 6452 1 2025-11-30 23:52:23.556 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:34744 10 6452 1 2025-11-30 23:53:23.957 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:36694 10 6452 1 2025-11-30 23:54:24.319 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53388 10 6452 1 2025-11-30 23:55:21.120 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 23:55:21.131 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 23:55:21.014 00:00:00.031 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 23:55:21.245 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 23:55:21.329 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 23:55:24.723 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:42744 10 6452 1 2025-11-30 23:52:08.864 00:05:02.177 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 23:52:08.862 00:05:02.182 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 23:56:25.136 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:60810 10 6452 1 2025-11-30 23:57:25.534 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:45198 10 6452 1 2025-11-30 23:58:25.947 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:47098 10 6452 1 Summary: total flows: 140, total bytes: 417312, total packets: 1026, avg bps: 920, avg pps: 0, avg bpp: 406 Time window: 2025-11-30 22:58:08 - 2025-11-30 23:58:36 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0031s User: 0.0020s Wall: 0.0021s flows/second: 67869.0 Runtime: 0.0021s