Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-30 01:59:33.195 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59834 10 6452 1 2025-11-30 01:59:54.802 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 01:59:54.717 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 01:59:54.760 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 01:59:54.719 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 01:59:54.932 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 02:00:33.596 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39000 10 6452 1 2025-11-30 02:01:33.998 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49834 10 6452 1 2025-11-30 01:58:08.448 00:05:02.070 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 01:58:08.452 00:05:02.065 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 02:02:34.401 00:00:10.440 TCP 1.101.0.1:3000 -> 23.104.0.1:38196 12 10375 1 2025-11-30 02:03:34.881 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59836 10 6452 1 2025-11-30 02:04:35.284 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:53884 10 6452 1 2025-11-30 02:04:54.970 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 02:04:54.887 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 02:04:55.109 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 02:04:55.109 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 02:04:54.909 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 02:05:35.696 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38752 10 6452 1 2025-11-30 02:06:36.115 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55638 10 6452 1 2025-11-30 02:07:36.522 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:44004 10 6452 1 2025-11-30 02:04:08.453 00:05:02.067 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 02:04:08.449 00:05:02.072 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 02:08:36.933 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:41558 10 6452 1 2025-11-30 02:09:37.364 00:00:10.425 TCP 1.101.0.1:3000 -> 23.104.0.1:54240 11 6504 1 2025-11-30 02:09:55.118 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 02:09:54.835 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 02:09:54.789 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 02:09:55.057 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 02:09:54.873 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 02:10:37.832 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:60178 10 6452 1 2025-11-30 02:11:38.240 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55360 10 6452 1 2025-11-30 02:12:38.653 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34794 10 6452 1 2025-11-30 02:13:39.070 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:54806 12 6556 1 2025-11-30 02:10:08.455 00:05:02.066 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 02:10:08.452 00:05:02.072 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 02:14:39.476 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:55692 10 6452 1 2025-11-30 02:14:55.072 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 02:14:54.973 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 02:14:55.267 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 02:14:55.077 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 02:14:55.350 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 02:15:39.884 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:49476 10 6452 1 2025-11-30 02:16:40.301 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:57396 10 6452 1 2025-11-30 02:17:40.719 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:33096 10 6452 1 2025-11-30 02:18:41.136 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44312 10 6452 1 2025-11-30 02:19:41.547 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:54684 10 6452 1 2025-11-30 02:19:55.400 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 02:19:55.507 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 02:19:55.472 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 02:19:55.475 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 02:19:55.555 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 02:16:08.453 00:05:02.073 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 02:16:08.457 00:05:02.068 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 02:20:41.906 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:47830 10 6452 1 2025-11-30 02:21:42.314 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:36196 10 6452 1 2025-11-30 02:22:42.681 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:53118 10 6452 1 2025-11-30 02:23:43.117 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44242 10 6452 1 2025-11-30 02:24:43.517 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55568 10 6452 1 2025-11-30 02:24:55.490 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 02:24:55.299 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 02:24:55.352 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 02:24:55.245 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 02:24:55.436 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 02:25:43.923 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:38758 10 6452 1 2025-11-30 02:22:08.454 00:05:02.075 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 02:22:08.456 00:05:02.069 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 02:26:44.331 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52046 10 6452 1 2025-11-30 02:27:44.738 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:54844 10 6452 1 2025-11-30 02:28:45.110 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35870 10 6452 1 2025-11-30 02:29:45.524 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:43498 10 6452 1 2025-11-30 02:29:55.392 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 02:29:55.348 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 02:29:55.391 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 02:29:55.386 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 02:29:55.473 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 02:30:45.951 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:58120 10 6452 1 2025-11-30 02:31:46.361 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51444 10 6452 1 2025-11-30 02:28:08.460 00:05:02.071 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 02:28:08.459 00:05:02.076 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 02:32:46.764 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:38204 10 6452 1 2025-11-30 02:33:47.173 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:54348 10 6452 1 2025-11-30 02:34:55.764 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 02:34:55.850 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 02:34:55.831 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 02:34:55.959 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 02:34:55.916 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 02:34:47.532 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:56512 10 6452 1 2025-11-30 02:35:47.933 00:00:10.349 TCP 1.101.0.1:3000 -> 23.104.0.1:56830 10 6452 1 2025-11-30 02:36:48.321 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:34486 10 6452 1 2025-11-30 02:37:48.742 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:60000 10 6452 1 2025-11-30 02:34:08.461 00:05:02.076 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 02:34:08.464 00:05:02.071 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 02:38:49.149 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39876 10 6452 1 2025-11-30 02:39:55.764 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 02:39:55.669 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 02:39:55.604 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 02:39:55.682 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 02:39:55.677 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 02:39:49.555 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59418 10 6452 1 2025-11-30 02:40:49.961 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:52502 10 6452 1 2025-11-30 02:41:50.374 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:54394 10 6452 1 2025-11-30 02:42:50.782 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53862 10 6452 1 2025-11-30 02:43:51.189 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:52278 10 6452 1 2025-11-30 02:40:08.465 00:05:02.071 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 02:40:08.463 00:05:02.076 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 02:44:55.831 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 02:44:55.693 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 02:44:55.765 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 02:44:55.631 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 02:44:55.847 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 02:44:51.589 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:55482 10 6452 1 2025-11-30 02:45:51.988 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:60716 10 6452 1 2025-11-30 02:46:52.395 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38054 10 6452 1 2025-11-30 02:47:52.796 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:36100 10 6452 1 2025-11-30 02:48:53.210 00:00:10.567 TCP 1.101.0.1:3000 -> 23.104.0.1:56200 10 6452 1 2025-11-30 02:49:55.618 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 02:49:55.638 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 02:49:55.772 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 02:49:55.865 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 02:49:55.861 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 02:49:53.816 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:60466 10 6452 1 2025-11-30 02:46:08.466 00:05:02.071 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 02:46:08.464 00:05:02.077 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 02:50:54.185 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:51200 10 6452 1 2025-11-30 02:51:54.592 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:53244 10 6452 1 2025-11-30 02:52:54.965 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:54298 10 6452 1 2025-11-30 02:53:55.365 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:44890 10 6452 1 2025-11-30 02:54:55.830 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 02:54:55.771 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 02:54:55.774 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 02:54:55.853 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 02:54:56.048 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 02:54:55.769 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:56888 10 6452 1 2025-11-30 02:52:08.467 00:05:02.075 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 02:55:56.189 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:36184 10 6452 1 2025-11-30 02:52:08.470 00:05:02.069 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 02:56:56.560 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:41634 10 6452 1 2025-11-30 02:57:56.979 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58032 10 6452 1 Summary: total flows: 139, total bytes: 414627, total packets: 1015, avg bps: 921, avg pps: 0, avg bpp: 408 Time window: 2025-11-30 01:58:08 - 2025-11-30 02:58:07 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0043s User: 0.0009s Wall: 0.0019s flows/second: 74363.3 Runtime: 0.0019s