Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-30 03:59:28.041 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41992 10 6452 1 2025-11-30 03:59:57.530 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 03:59:57.205 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 03:59:57.298 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 03:59:57.300 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 03:59:57.381 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 04:00:28.451 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60618 10 6452 1 2025-11-30 04:01:28.858 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:46904 10 6452 1 2025-11-30 03:58:08.482 00:05:02.086 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 03:58:08.484 00:05:02.081 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 04:02:29.276 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55236 10 6452 1 2025-11-30 04:03:29.678 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60516 10 6452 1 2025-11-30 04:04:30.108 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:54380 10 6452 1 2025-11-30 04:04:57.340 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 04:04:56.910 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 04:04:57.343 00:00:00.026 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 04:04:57.422 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 04:04:57.428 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 04:05:30.533 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:46028 10 6452 1 2025-11-30 04:06:30.933 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:47382 10 6452 1 2025-11-30 04:07:31.362 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46246 10 6452 1 2025-11-30 04:04:08.486 00:05:02.084 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 04:04:08.484 00:05:02.088 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 04:08:31.773 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:44468 10 6452 1 2025-11-30 04:09:32.148 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57728 10 6452 1 2025-11-30 04:09:57.275 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 04:09:57.265 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 04:09:57.444 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 04:09:57.274 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 04:09:57.525 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 04:10:32.554 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:50408 10 6452 1 2025-11-30 04:11:32.912 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48216 10 6452 1 2025-11-30 04:12:33.318 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58076 10 6452 1 2025-11-30 04:13:33.718 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:44404 11 6504 1 2025-11-30 04:10:08.486 00:05:02.088 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 04:10:08.489 00:05:02.083 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 04:14:34.143 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47126 10 6452 1 2025-11-30 04:14:57.688 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 04:14:57.491 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 04:14:57.571 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 04:14:57.606 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 04:14:57.384 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 04:15:34.551 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:49386 10 6452 1 2025-11-30 04:16:34.951 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:45560 10 6452 1 2025-11-30 04:17:35.358 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:59028 10 6452 1 2025-11-30 04:18:35.723 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:46752 10 6452 1 2025-11-30 04:19:36.117 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:52984 10 6452 1 2025-11-30 04:19:57.811 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 04:19:57.613 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 04:19:57.619 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 04:19:57.728 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 04:19:57.798 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 04:16:08.489 00:05:02.085 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 04:16:08.487 00:05:02.090 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 04:20:36.482 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:38066 10 6452 1 2025-11-30 04:21:36.896 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:40452 10 6452 1 2025-11-30 04:22:37.308 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:41332 10 6452 1 2025-11-30 04:23:37.671 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:36666 10 6452 1 2025-11-30 04:24:38.100 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:45908 10 6452 1 2025-11-30 04:24:57.862 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 04:24:58.184 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 04:24:58.055 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 04:24:57.856 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 04:24:58.137 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 04:25:38.499 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51358 10 6452 1 2025-11-30 04:22:08.490 00:05:02.086 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 04:22:08.487 00:05:02.091 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 04:26:38.901 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:44024 10 6452 1 2025-11-30 04:27:39.310 00:00:11.355 TCP 1.101.0.1:3000 -> 23.104.0.1:37360 10 6452 1 2025-11-30 04:28:40.705 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54440 10 6452 1 2025-11-30 04:29:41.111 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51660 10 6452 1 2025-11-30 04:29:57.964 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 04:29:57.922 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 04:29:57.891 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 04:29:57.881 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 04:29:57.989 00:00:00.056 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 04:30:41.513 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:35378 10 6452 1 2025-11-30 04:31:41.913 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:45922 10 6452 1 2025-11-30 04:28:08.488 00:05:02.091 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 04:28:08.493 00:05:02.085 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 04:32:42.272 00:00:10.443 TCP 1.101.0.1:3000 -> 23.104.0.1:33998 12 10375 1 2025-11-30 04:33:42.766 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:35306 10 6452 1 2025-11-30 04:34:43.179 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:36922 10 6452 1 2025-11-30 04:34:58.300 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 04:34:57.855 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 04:34:58.333 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 04:34:57.932 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 04:34:58.417 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 04:35:43.544 00:00:11.012 TCP 1.101.0.1:3000 -> 23.104.0.1:37400 10 6452 1 2025-11-30 04:36:44.599 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60660 10 6452 1 2025-11-30 04:37:45.004 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:59252 10 6452 1 2025-11-30 04:34:08.492 00:05:02.089 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 04:34:08.495 00:05:02.084 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 04:38:45.366 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49324 10 6452 1 2025-11-30 04:39:58.155 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 04:39:57.890 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 04:39:58.104 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 04:39:58.073 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 04:39:57.990 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 04:39:45.770 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:47024 10 6452 1 2025-11-30 04:40:46.183 00:00:11.040 TCP 1.101.0.1:3000 -> 23.104.0.1:35172 10 6452 1 2025-11-30 04:41:47.258 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:35310 10 6452 1 2025-11-30 04:42:47.668 00:00:10.448 TCP 1.101.0.1:3000 -> 23.104.0.1:55140 12 10369 1 2025-11-30 04:43:48.153 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51562 10 6452 1 2025-11-30 04:40:08.493 00:05:02.089 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 04:40:08.496 00:05:02.084 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 04:44:58.011 00:00:00.027 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 04:44:58.218 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 04:44:48.558 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37944 10 6452 1 2025-11-30 04:44:58.275 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 04:44:58.071 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 04:44:58.093 00:00:00.028 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 04:45:48.961 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:36212 10 6452 1 2025-11-30 04:46:49.318 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60976 10 6452 1 2025-11-30 04:47:49.720 00:00:10.638 TCP 1.101.0.1:3000 -> 23.104.0.1:39316 12 10369 1 2025-11-30 04:48:50.399 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:48038 10 6452 1 2025-11-30 04:49:58.555 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 04:49:58.239 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 04:49:58.388 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 04:49:58.465 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 04:49:58.470 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 04:49:50.810 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:53228 10 6452 1 2025-11-30 04:46:08.496 00:05:02.084 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 04:46:08.493 00:05:02.090 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 04:50:51.221 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:53576 10 6452 1 2025-11-30 04:51:51.640 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51486 10 6452 1 2025-11-30 04:52:52.055 00:00:10.439 TCP 1.101.0.1:3000 -> 23.104.0.1:60030 12 10375 1 2025-11-30 04:53:52.530 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49046 10 6452 1 2025-11-30 04:54:58.597 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 04:54:58.519 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 04:54:58.342 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 04:54:58.451 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 04:54:58.426 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 04:54:52.934 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:36516 10 6452 1 2025-11-30 04:55:53.310 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:58758 10 6452 1 2025-11-30 04:52:08.495 00:05:02.090 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 04:52:08.499 00:05:02.084 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 04:56:53.679 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:53716 10 6452 1 2025-11-30 04:57:54.060 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41942 10 6452 1 Summary: total flows: 139, total bytes: 426280, total packets: 1019, avg bps: 948, avg pps: 0, avg bpp: 418 Time window: 2025-11-30 03:58:08 - 2025-11-30 04:58:04 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0121s User: 0.0019s Wall: 0.0031s flows/second: 44995.6 Runtime: 0.0031s