Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-30 10:58:40.836 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:49438 10 6452 1 2025-11-30 10:59:41.257 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:51552 10 6452 1 2025-11-30 11:00:05.852 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 11:00:05.518 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 11:00:05.790 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 11:00:05.769 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 11:00:05.619 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 11:00:41.686 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:39466 10 6452 1 2025-11-30 11:01:42.117 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:60982 10 6452 1 2025-11-30 10:58:08.626 00:05:02.083 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 10:58:08.629 00:05:02.078 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 11:02:42.517 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60744 10 6452 1 2025-11-30 11:03:42.923 00:00:10.547 TCP 1.101.0.1:3000 -> 23.104.0.1:43696 10 6452 1 2025-11-30 11:04:43.512 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45972 10 6452 1 2025-11-30 11:05:05.706 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 11:05:05.896 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 11:05:05.706 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 11:05:05.736 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 11:05:05.789 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 11:05:43.914 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:36892 10 6452 1 2025-11-30 11:06:44.277 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59646 10 6452 1 2025-11-30 11:07:44.678 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:57894 10 6452 1 2025-11-30 11:04:08.627 00:05:02.086 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 11:04:08.630 00:05:02.081 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 11:08:45.037 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:35642 10 6452 1 2025-11-30 11:09:45.448 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55880 10 6452 1 2025-11-30 11:10:05.872 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 11:10:05.831 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 11:10:05.790 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 11:10:05.888 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 11:10:06.074 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 11:10:45.854 00:00:10.393 TCP 1.101.0.1:3000 -> 23.104.0.1:38220 10 6452 1 2025-11-30 11:11:46.288 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50118 10 6452 1 2025-11-30 11:12:46.688 00:00:10.669 TCP 1.101.0.1:3000 -> 23.104.0.1:54188 12 10375 1 2025-11-30 11:13:47.397 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:44728 10 6452 1 2025-11-30 11:10:08.631 00:05:02.084 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 11:10:08.633 00:05:02.079 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 11:14:47.756 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:38084 10 6452 1 2025-11-30 11:15:05.789 00:00:00.026 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 11:15:06.380 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 11:15:06.297 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 11:15:06.297 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 11:15:06.205 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 11:15:48.178 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48396 10 6452 1 2025-11-30 11:16:48.581 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:45550 10 6452 1 2025-11-30 11:17:48.987 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57954 10 6452 1 2025-11-30 11:18:49.395 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:36250 10 6452 1 2025-11-30 11:19:49.792 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:37834 10 6452 1 2025-11-30 11:20:05.905 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 11:20:05.871 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 11:20:06.077 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 11:20:06.063 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 11:20:06.161 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 11:16:08.633 00:05:02.084 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 11:16:08.635 00:05:02.079 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 11:20:50.205 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:58154 10 6452 1 2025-11-30 11:21:50.568 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:41634 10 6452 1 2025-11-30 11:22:50.931 00:00:10.404 TCP 1.101.0.1:3000 -> 23.104.0.1:52204 13 6608 1 2025-11-30 11:23:51.372 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:42412 10 6452 1 2025-11-30 11:24:51.777 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45014 10 6452 1 2025-11-30 11:25:05.916 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 11:25:06.094 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 11:25:06.094 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 11:25:06.300 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 11:25:06.176 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 11:25:52.183 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:52950 10 6452 1 2025-11-30 11:22:08.637 00:05:02.079 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 11:22:08.635 00:05:02.084 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 11:26:52.596 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:59710 10 6452 1 2025-11-30 11:27:53.011 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:44660 10 6452 1 2025-11-30 11:28:53.423 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:56846 10 6452 1 2025-11-30 11:29:53.825 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33102 10 6452 1 2025-11-30 11:30:06.394 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 11:30:06.220 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 11:30:06.172 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 11:30:06.310 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 11:30:06.221 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 11:30:54.232 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:36246 10 6452 1 2025-11-30 11:31:54.645 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:34606 10 6452 1 2025-11-30 11:28:08.638 00:05:02.082 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 11:28:08.636 00:05:02.087 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 11:32:55.061 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50040 10 6452 1 2025-11-30 11:33:55.469 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:44228 10 6452 1 2025-11-30 11:34:55.873 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:59622 10 6452 1 2025-11-30 11:35:06.629 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 11:35:06.236 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 11:35:06.541 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 11:35:06.193 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 11:35:06.624 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 11:35:56.280 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53532 10 6452 1 2025-11-30 11:36:56.679 00:00:12.434 TCP 1.101.0.1:3000 -> 23.104.0.1:35456 10 6452 1 2025-11-30 11:37:59.152 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:49180 10 6452 1 2025-11-30 11:34:08.641 00:05:02.086 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 11:34:08.639 00:05:02.092 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 11:38:59.554 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:46704 10 6452 1 2025-11-30 11:40:06.530 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 11:40:06.483 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 11:39:59.954 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:51398 10 6452 1 2025-11-30 11:40:06.529 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 11:40:06.527 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 11:40:06.612 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 11:41:00.318 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:55094 10 6452 1 2025-11-30 11:42:00.724 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:58106 10 6452 1 2025-11-30 11:43:01.142 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:33748 10 6452 1 2025-11-30 11:44:01.543 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:43710 10 6452 1 2025-11-30 11:40:08.644 00:05:02.086 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 11:40:08.641 00:05:02.091 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 11:45:06.611 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 11:45:06.684 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 11:45:06.626 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 11:45:06.694 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 11:45:06.709 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 11:45:01.910 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36672 12 6556 1 2025-11-30 11:46:02.313 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:34576 10 6452 1 2025-11-30 11:47:02.719 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43958 12 6556 1 2025-11-30 11:48:03.134 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:42476 10 6452 1 2025-11-30 11:49:03.507 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58374 10 6452 1 2025-11-30 11:50:06.715 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 11:50:06.670 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 11:50:06.716 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 11:50:06.778 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 11:46:08.641 00:05:02.091 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 11:50:06.798 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 11:50:03.910 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:46146 10 6452 1 2025-11-30 11:46:08.644 00:05:02.086 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 11:51:04.317 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42508 10 6452 1 2025-11-30 11:52:04.722 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:35338 10 6452 1 2025-11-30 11:53:05.138 00:00:10.347 TCP 1.101.0.1:3000 -> 23.104.0.1:59972 10 6452 1 2025-11-30 11:54:05.540 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50388 10 6452 1 2025-11-30 11:55:07.101 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 11:55:06.816 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 11:55:06.953 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 11:55:07.102 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 11:55:07.035 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 11:55:05.944 00:00:10.397 TCP 1.101.0.1:3000 -> 23.104.0.1:47456 10 6452 1 2025-11-30 11:52:08.644 00:05:02.086 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 11:52:08.643 00:05:02.091 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 11:56:06.387 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:50730 10 6452 1 2025-11-30 11:57:06.790 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:58034 10 6452 1 2025-11-30 11:58:07.155 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38800 10 6452 1 Summary: total flows: 140, total bytes: 421287, total packets: 1029, avg bps: 933, avg pps: 0, avg bpp: 409 Time window: 2025-11-30 10:58:08 - 2025-11-30 11:58:17 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0019s User: 0.0028s Wall: 0.0018s flows/second: 77909.3 Runtime: 0.0018s