Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-30 11:59:07.560 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34764 10 6452 1 2025-11-30 12:00:06.886 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 12:00:06.870 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 12:00:06.807 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 12:00:06.804 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 12:00:06.910 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 12:00:07.966 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:43192 10 6452 1 2025-11-30 12:01:08.327 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:43152 10 6452 1 2025-11-30 11:58:08.643 00:05:02.093 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 11:58:08.646 00:05:02.088 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 12:02:08.739 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:42132 10 6452 1 2025-11-30 12:03:09.149 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60908 10 6452 1 2025-11-30 12:04:09.556 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:53226 10 6452 1 2025-11-30 12:05:07.037 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 12:05:06.952 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 12:05:06.804 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 12:05:06.955 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 12:05:06.959 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 12:05:09.972 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:49574 10 6452 1 2025-11-30 12:06:10.384 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38830 10 6452 1 2025-11-30 12:07:10.785 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:56474 10 6452 1 2025-11-30 12:04:08.649 00:05:02.090 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 12:04:08.646 00:05:02.095 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 12:08:11.149 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:51890 10 6452 1 2025-11-30 12:09:11.549 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:49968 10 6452 1 2025-11-30 12:10:07.299 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 12:10:06.787 00:00:00.030 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 12:10:07.367 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 12:10:07.297 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 12:10:07.450 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 12:10:11.958 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:54758 10 6452 1 2025-11-30 12:11:12.372 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41890 10 6452 1 2025-11-30 12:12:12.778 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:54522 10 6452 1 2025-11-30 12:13:13.185 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:48140 10 6452 1 2025-11-30 12:10:08.646 00:05:02.095 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 12:10:08.665 00:05:02.073 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 12:14:13.550 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:45042 10 6452 1 2025-11-30 12:15:07.384 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 12:15:07.006 00:00:00.041 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 12:15:07.118 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 12:15:07.118 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 12:15:07.202 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 12:15:13.957 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:37766 10 6452 1 2025-11-30 12:16:14.371 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:37650 10 6452 1 2025-11-30 12:17:14.745 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:38562 10 6452 1 2025-11-30 12:18:15.149 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46518 10 6452 1 2025-11-30 12:19:15.559 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33242 10 6452 1 2025-11-30 12:20:07.429 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 12:20:06.980 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 12:20:07.265 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 12:20:07.346 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 12:20:07.298 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 12:16:08.650 00:05:02.091 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 12:16:08.648 00:05:02.096 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 12:20:15.962 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58992 10 6452 1 2025-11-30 12:21:16.371 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47520 10 6452 1 2025-11-30 12:22:16.807 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53496 10 6452 1 2025-11-30 12:23:17.215 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:46954 10 6452 1 2025-11-30 12:24:17.618 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:40170 10 6452 1 2025-11-30 12:25:07.505 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 12:25:07.338 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 12:25:07.503 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 12:25:07.619 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 12:25:07.585 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 12:25:17.980 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:53822 10 6452 1 2025-11-30 12:22:08.649 00:05:02.095 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 12:22:08.653 00:05:02.090 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 12:26:18.342 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:35052 10 6452 1 2025-11-30 12:27:18.708 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:52702 10 6452 1 2025-11-30 12:28:19.101 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:55260 10 6452 1 2025-11-30 12:29:19.466 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:44274 10 6452 1 2025-11-30 12:30:07.701 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 12:30:07.337 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 12:30:07.163 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 12:30:07.619 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 12:30:07.592 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 12:30:19.829 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:41826 10 6452 1 2025-11-30 12:31:20.243 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:53674 10 6452 1 2025-11-30 12:28:08.649 00:05:02.097 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 12:28:08.651 00:05:02.092 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 12:32:20.601 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:57048 10 6452 1 2025-11-30 12:33:20.967 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46814 10 6452 1 2025-11-30 12:34:21.369 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:42456 10 6452 1 2025-11-30 12:35:07.535 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 12:35:07.436 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 12:35:07.380 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 12:35:07.470 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 12:35:07.463 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 12:35:21.775 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:51476 10 6452 1 2025-11-30 12:36:22.183 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:56298 10 6452 1 2025-11-30 12:37:22.599 00:00:10.441 TCP 1.101.0.1:3000 -> 23.104.0.1:55370 12 10375 1 2025-11-30 12:34:08.654 00:05:02.094 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 12:34:08.651 00:05:02.098 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 12:38:23.107 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:44212 10 6452 1 2025-11-30 12:39:23.464 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:50492 10 6452 1 2025-11-30 12:40:07.909 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 12:40:07.720 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 12:40:07.530 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 12:40:07.827 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 12:40:07.607 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 12:40:23.826 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:40456 10 6452 1 2025-11-30 12:41:24.231 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:43068 10 6452 1 2025-11-30 12:42:24.633 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56322 10 6452 1 2025-11-30 12:43:25.036 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:36276 10 6452 1 2025-11-30 12:40:08.655 00:05:02.094 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 12:40:08.658 00:05:02.089 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 12:44:25.437 00:00:11.314 TCP 1.101.0.1:3000 -> 23.104.0.1:48904 10 6452 1 2025-11-30 12:45:07.684 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 12:45:07.691 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 12:45:07.901 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 12:45:07.843 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 12:45:07.765 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 12:45:26.788 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:47200 10 6452 1 2025-11-30 12:46:27.192 00:00:10.396 TCP 1.101.0.1:3000 -> 23.104.0.1:50526 10 6452 1 2025-11-30 12:47:27.630 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:47656 10 6452 1 2025-11-30 12:48:28.033 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:58850 10 6452 1 2025-11-30 12:49:28.393 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59136 10 6452 1 2025-11-30 12:50:08.078 00:00:00.028 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 12:46:08.663 00:05:02.089 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 12:50:07.799 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 12:50:07.846 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 12:50:07.994 00:00:00.029 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 12:50:07.941 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 12:46:08.664 00:05:02.085 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 12:50:28.796 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:38378 10 6452 1 2025-11-30 12:51:29.205 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:59076 10 6452 1 2025-11-30 12:52:29.603 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:53028 10 6452 1 2025-11-30 12:53:29.975 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56780 10 6452 1 2025-11-30 12:54:30.378 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54396 10 6452 1 2025-11-30 12:55:07.794 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 12:55:07.711 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 12:55:07.849 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 12:55:07.711 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 12:55:08.053 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 12:55:30.786 00:00:18.317 TCP 1.101.0.1:3000 -> 23.104.0.1:58108 10 6452 1 2025-11-30 12:52:08.666 00:05:02.085 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 12:52:08.663 00:05:02.090 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 12:56:39.147 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:43304 10 6452 1 2025-11-30 12:57:39.544 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:41456 10 6452 1 2025-11-30 12:58:39.947 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:38894 10 6452 1 Summary: total flows: 140, total bytes: 420923, total packets: 1022, avg bps: 924, avg pps: 0, avg bpp: 411 Time window: 2025-11-30 11:58:08 - 2025-11-30 12:58:50 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0058s User: 0.0008s Wall: 0.0023s flows/second: 59675.1 Runtime: 0.0024s