Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-30 14:58:42.775 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:57530 10 6452 1 2025-11-30 14:59:43.192 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:40194 10 6452 1 2025-11-30 15:00:10.687 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 15:00:10.601 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 15:00:10.372 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 15:00:10.602 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 15:00:10.448 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 15:00:43.595 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:32844 10 6452 1 2025-11-30 15:01:43.961 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:57304 10 6452 1 2025-11-30 14:58:08.706 00:05:02.092 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 14:58:08.710 00:05:02.087 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 15:02:44.370 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:48314 10 6452 1 2025-11-30 15:03:44.790 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:48638 10 6452 1 2025-11-30 15:04:45.155 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:37926 12 6556 1 2025-11-30 15:05:10.703 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 15:05:10.437 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 15:05:10.705 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 15:05:10.843 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 15:05:10.788 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 15:05:45.565 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:50986 10 6452 1 2025-11-30 15:06:45.968 00:00:10.573 TCP 1.101.0.1:3000 -> 23.104.0.1:49370 10 6452 1 2025-11-30 15:07:46.583 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41286 10 6452 1 2025-11-30 15:04:08.709 00:05:02.092 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 15:04:08.712 00:05:02.086 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 15:08:46.986 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:40616 10 6452 1 2025-11-30 15:09:47.396 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39538 10 6452 1 2025-11-30 15:10:10.534 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 15:10:10.673 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 15:10:10.689 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 15:10:10.452 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 15:10:10.723 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 15:10:47.803 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:34852 10 6452 1 2025-11-30 15:11:48.204 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:58098 10 6452 1 2025-11-30 15:12:48.611 00:00:10.454 TCP 1.101.0.1:3000 -> 23.104.0.1:51496 12 10375 1 2025-11-30 15:13:49.112 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:44858 10 6452 1 2025-11-30 15:10:08.714 00:05:02.085 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 15:10:08.711 00:05:02.090 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 15:14:49.511 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46482 10 6452 1 2025-11-30 15:15:10.605 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 15:15:10.734 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 15:15:10.755 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 15:15:10.521 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 15:15:10.926 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 15:15:49.914 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:36646 10 6452 1 2025-11-30 15:16:50.314 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:39064 10 6452 1 2025-11-30 15:17:50.670 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50328 10 6452 1 2025-11-30 15:18:51.098 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:46248 10 6452 1 2025-11-30 15:19:51.503 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:40118 10 6452 1 2025-11-30 15:20:10.771 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 15:20:10.725 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 15:20:10.874 00:00:00.034 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 15:20:10.941 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 15:16:08.726 00:05:02.074 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 15:20:10.962 00:00:00.029 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 15:16:08.723 00:05:02.080 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 15:20:51.915 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46846 10 6452 1 2025-11-30 15:21:52.317 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:37326 10 6452 1 2025-11-30 15:22:52.725 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:32850 10 6452 1 2025-11-30 15:23:53.147 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:55708 10 6452 1 2025-11-30 15:24:53.564 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36704 10 6452 1 2025-11-30 15:25:10.904 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 15:25:10.906 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 15:25:10.886 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 15:25:11.181 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 15:25:10.987 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 15:25:53.965 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:57128 10 6452 1 2025-11-30 15:22:08.719 00:05:02.086 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 15:22:08.715 00:05:02.092 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 15:26:54.329 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48864 10 6452 1 2025-11-30 15:27:54.736 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43590 10 6452 1 2025-11-30 15:28:55.141 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:36710 10 6452 1 2025-11-30 15:29:55.559 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33312 10 6452 1 2025-11-30 15:30:10.674 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 15:30:11.182 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 15:30:11.071 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 15:30:11.178 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 15:30:11.154 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 15:30:55.965 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:40532 10 6452 1 2025-11-30 15:31:56.372 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48988 10 6452 1 2025-11-30 15:28:08.720 00:05:02.087 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 15:28:08.717 00:05:02.093 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 15:32:56.777 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:35756 10 6452 1 2025-11-30 15:33:57.201 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:54218 10 6452 1 2025-11-30 15:34:57.607 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:54036 10 6452 1 2025-11-30 15:35:11.371 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 15:35:11.401 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 15:35:11.435 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 15:35:11.376 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 15:35:11.517 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 15:35:57.974 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:33142 10 6452 1 2025-11-30 15:36:58.385 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:38658 10 6452 1 2025-11-30 15:37:58.804 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53358 10 6452 1 2025-11-30 15:34:08.721 00:05:02.089 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 15:34:08.718 00:05:02.094 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 15:38:59.209 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47566 10 6452 1 2025-11-30 15:39:59.614 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:32912 10 6452 1 2025-11-30 15:40:11.302 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 15:40:11.192 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 15:40:11.362 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 15:40:11.367 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 15:40:11.445 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 15:41:00.019 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:45714 10 6452 1 2025-11-30 15:42:00.418 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40248 10 6452 1 2025-11-30 15:43:00.825 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:40560 10 6452 1 2025-11-30 15:40:08.719 00:05:02.095 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 15:44:01.236 00:00:10.420 TCP 1.101.0.1:3000 -> 23.104.0.1:44564 11 6504 1 2025-11-30 15:40:08.722 00:05:02.090 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 15:45:11.755 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 15:45:11.674 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 15:45:11.331 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 15:45:11.672 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 15:45:11.517 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 15:45:01.698 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:54342 10 6452 1 2025-11-30 15:46:02.106 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48574 10 6452 1 2025-11-30 15:47:02.505 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39432 10 6452 1 2025-11-30 15:48:02.905 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:44820 10 6452 1 2025-11-30 15:49:03.272 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58116 10 6452 1 2025-11-30 15:50:11.677 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 15:50:11.625 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 15:50:11.680 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 15:50:11.786 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 15:50:03.673 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:55386 10 6452 1 2025-11-30 15:46:08.724 00:05:02.088 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 15:46:08.721 00:05:02.094 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 15:50:11.762 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 15:51:04.105 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36746 10 6452 1 2025-11-30 15:52:04.502 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:59454 10 6452 1 2025-11-30 15:53:04.910 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:52178 10 6452 1 2025-11-30 15:54:05.321 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39780 10 6452 1 2025-11-30 15:55:11.589 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 15:55:11.558 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 15:55:11.437 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 15:55:11.531 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 15:55:11.519 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 15:55:05.728 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:37920 10 6452 1 2025-11-30 15:52:08.723 00:05:02.093 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 15:52:08.726 00:05:02.088 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 15:56:06.120 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:59154 10 6452 1 2025-11-30 15:57:06.478 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:45512 10 6452 1 2025-11-30 15:58:06.875 00:00:10.420 TCP 1.101.0.1:3000 -> 23.104.0.1:33334 10 6452 1 Summary: total flows: 140, total bytes: 421079, total packets: 1025, avg bps: 933, avg pps: 0, avg bpp: 410 Time window: 2025-11-30 14:58:08 - 2025-11-30 15:58:17 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0042s User: 0.0008s Wall: 0.0020s flows/second: 68928.6 Runtime: 0.0020s