Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-30 13:59:15.266 00:00:12.585 TCP 1.101.0.1:3000 -> 23.104.0.1:54284 10 6452 1 2025-11-30 14:00:09.485 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 14:00:09.402 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 14:00:09.287 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 14:00:09.403 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 14:00:09.325 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 14:00:17.888 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:42192 10 6452 1 2025-11-30 14:01:18.251 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:38814 10 6452 1 2025-11-30 13:58:08.688 00:05:02.089 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 13:58:08.686 00:05:02.095 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 14:02:18.655 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:44118 10 6452 1 2025-11-30 14:03:19.060 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:38476 10 6452 1 2025-11-30 14:04:19.426 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:50728 10 6452 1 2025-11-30 14:05:09.455 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 14:05:09.435 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 14:05:09.496 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 14:05:09.533 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 14:05:09.579 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 14:05:19.794 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:40412 10 6452 1 2025-11-30 14:06:20.202 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38898 10 6452 1 2025-11-30 14:07:20.603 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:51874 10 6452 1 2025-11-30 14:04:08.687 00:05:02.095 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 14:04:08.690 00:05:02.089 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 14:08:21.016 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:56980 10 6452 1 2025-11-30 14:09:21.376 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:58054 10 6452 1 2025-11-30 14:10:09.876 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 14:10:09.614 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 14:10:09.860 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 14:10:09.836 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 14:10:09.944 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 14:10:21.778 00:00:10.420 TCP 1.101.0.1:3000 -> 23.104.0.1:52288 11 6504 1 2025-11-30 14:11:22.235 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:36348 10 6452 1 2025-11-30 14:12:22.649 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51166 10 6452 1 2025-11-30 14:13:23.069 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:36412 10 6452 1 2025-11-30 14:10:08.694 00:05:02.088 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 14:10:08.693 00:05:02.093 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 14:14:23.473 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46158 10 6452 1 2025-11-30 14:15:09.750 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 14:15:09.614 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 14:15:09.716 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 14:15:09.407 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 14:15:09.670 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 14:15:23.876 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56844 10 6452 1 2025-11-30 14:16:24.280 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35454 10 6452 1 2025-11-30 14:17:24.686 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:41158 10 6452 1 2025-11-30 14:18:25.063 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:37454 10 6452 1 2025-11-30 14:19:25.468 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:35428 10 6452 1 2025-11-30 14:20:09.696 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 14:20:09.570 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 14:20:09.786 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 14:20:09.638 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 14:20:09.870 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 14:16:08.693 00:05:02.094 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 14:16:08.694 00:05:02.088 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 14:20:25.864 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:34234 10 6452 1 2025-11-30 14:21:26.280 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:42140 10 6452 1 2025-11-30 14:22:26.695 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38124 10 6452 1 2025-11-30 14:23:27.113 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34728 10 6452 1 2025-11-30 14:24:27.512 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:59018 10 6452 1 2025-11-30 14:25:09.937 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 14:25:09.949 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 14:25:09.716 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 14:25:09.854 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 14:25:09.853 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 14:25:27.938 00:00:10.805 TCP 1.101.0.1:3000 -> 23.104.0.1:47110 10 6452 1 2025-11-30 14:22:08.696 00:05:02.088 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 14:22:08.693 00:05:02.094 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 14:26:28.780 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:40932 10 6452 1 2025-11-30 14:27:29.145 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35626 10 6452 1 2025-11-30 14:28:29.545 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:57050 10 6452 1 2025-11-30 14:29:29.953 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44054 10 6452 1 2025-11-30 14:30:10.054 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 14:30:09.835 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 14:30:09.884 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 14:30:09.971 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 14:30:09.851 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 14:30:30.363 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49380 10 6452 1 2025-11-30 14:31:30.768 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:44076 10 6452 1 2025-11-30 14:28:08.698 00:05:02.089 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 14:28:08.695 00:05:02.094 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 14:32:31.182 00:00:10.824 TCP 1.101.0.1:3000 -> 23.104.0.1:35010 10 6452 1 2025-11-30 14:33:32.041 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:34542 10 6452 1 2025-11-30 14:34:32.439 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:45570 10 6452 1 2025-11-30 14:35:09.934 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 14:35:10.162 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 14:35:09.929 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 14:35:10.012 00:00:00.039 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 14:35:10.014 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 14:35:32.844 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:45800 10 6452 1 2025-11-30 14:36:33.269 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:38200 10 6452 1 2025-11-30 14:37:33.640 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:57080 10 6452 1 2025-11-30 14:34:08.697 00:05:02.089 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 14:34:08.696 00:05:02.094 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 14:38:34.039 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52784 10 6452 1 2025-11-30 14:39:34.440 00:00:10.748 TCP 1.101.0.1:3000 -> 23.104.0.1:44432 10 6452 1 2025-11-30 14:40:10.203 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 14:40:10.139 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 14:40:10.362 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 14:40:10.282 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 14:40:10.445 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 14:40:35.227 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:58402 10 6452 1 2025-11-30 14:41:35.639 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:37352 10 6452 1 2025-11-30 14:42:36.011 00:00:10.440 TCP 1.101.0.1:3000 -> 23.104.0.1:57440 12 10375 1 2025-11-30 14:43:36.489 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:43150 10 6452 1 2025-11-30 14:40:08.698 00:05:02.094 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 14:40:08.701 00:05:02.088 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 14:44:36.890 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:58862 10 6452 1 2025-11-30 14:45:10.208 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 14:45:10.126 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 14:45:10.360 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 14:45:10.312 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 14:45:10.189 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 14:45:37.298 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52146 10 6452 1 2025-11-30 14:46:37.700 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:44888 10 6452 1 2025-11-30 14:47:38.111 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:50300 10 6452 1 2025-11-30 14:48:38.471 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58098 10 6452 1 2025-11-30 14:49:38.878 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:37970 10 6452 1 2025-11-30 14:50:10.309 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 14:50:10.333 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 14:50:10.393 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 14:50:10.209 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 14:46:08.700 00:05:02.095 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 14:50:10.477 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 14:46:08.704 00:05:02.089 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 14:50:39.241 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:57964 10 6452 1 2025-11-30 14:51:39.599 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:47050 10 6452 1 2025-11-30 14:52:40.008 00:00:10.779 TCP 1.101.0.1:3000 -> 23.104.0.1:41348 10 6452 1 2025-11-30 14:53:40.827 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57120 10 6452 1 2025-11-30 14:54:41.234 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:37342 10 6452 1 2025-11-30 14:55:10.574 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 14:55:10.409 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 14:55:10.439 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 14:55:10.490 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 14:55:10.491 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 14:55:41.606 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:36398 10 6452 1 2025-11-30 14:52:08.703 00:05:02.093 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 14:52:08.705 00:05:02.088 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 14:56:41.974 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:36668 10 6452 1 2025-11-30 14:57:42.380 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:34136 10 6452 1 Summary: total flows: 139, total bytes: 414523, total packets: 1013, avg bps: 925, avg pps: 0, avg bpp: 409 Time window: 2025-11-30 13:58:08 - 2025-11-30 14:57:52 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0020s User: 0.0030s Wall: 0.0031s flows/second: 44767.6 Runtime: 0.0031s