Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-30 15:59:07.337 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38810 10 6452 1 2025-11-30 16:00:11.728 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 16:00:11.532 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 16:00:11.819 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 16:00:11.728 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 16:00:11.901 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 16:00:07.745 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:40242 10 6452 1 2025-11-30 16:01:08.115 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:46752 10 6452 1 2025-11-30 15:58:08.727 00:05:02.090 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 15:58:08.724 00:05:02.095 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 16:02:08.478 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49366 10 6452 1 2025-11-30 16:03:08.881 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:40262 10 6452 1 2025-11-30 16:04:09.244 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:38796 10 6452 1 2025-11-30 16:05:11.631 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 16:05:11.677 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 16:05:11.635 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 16:05:11.734 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 16:05:11.717 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 16:05:09.654 00:00:10.766 TCP 1.101.0.1:3000 -> 23.104.0.1:51004 10 6452 1 2025-11-30 16:06:10.461 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40652 10 6452 1 2025-11-30 16:07:10.863 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:51780 10 6452 1 2025-11-30 16:04:08.729 00:05:02.089 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 16:04:08.726 00:05:02.095 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 16:08:11.276 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37054 12 6556 1 2025-11-30 16:09:11.687 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:37222 10 6452 1 2025-11-30 16:10:12.022 00:00:00.030 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 16:10:11.789 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 16:10:12.057 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 16:10:12.144 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 16:10:12.140 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 16:10:12.111 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:44022 10 6452 1 2025-11-30 16:11:12.516 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45178 10 6452 1 2025-11-30 16:12:12.918 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56272 10 6452 1 2025-11-30 16:13:13.316 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:53354 10 6452 1 2025-11-30 16:10:08.730 00:05:02.091 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 16:10:08.727 00:05:02.096 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 16:14:13.730 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:41396 10 6452 1 2025-11-30 16:15:12.145 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 16:15:11.817 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 16:15:12.078 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 16:15:12.150 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 16:15:12.162 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 16:15:14.134 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:34902 10 6452 1 2025-11-30 16:16:14.543 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:49266 10 6452 1 2025-11-30 16:17:14.937 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:42392 10 6452 1 2025-11-30 16:18:15.364 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:52650 10 6452 1 2025-11-30 16:19:15.766 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:49900 10 6452 1 2025-11-30 16:20:12.517 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 16:20:12.106 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 16:20:12.514 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 16:20:12.434 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 16:16:08.731 00:05:02.092 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 16:16:08.729 00:05:02.097 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 16:20:12.598 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 16:20:16.185 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:37564 10 6452 1 2025-11-30 16:21:16.599 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:42452 10 6452 1 2025-11-30 16:22:17.008 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:49478 10 6452 1 2025-11-30 16:23:17.416 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:50664 10 6452 1 2025-11-30 16:24:17.823 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:53628 10 6452 1 2025-11-30 16:25:11.969 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 16:25:12.054 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 16:25:12.232 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 16:25:12.234 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 16:25:12.137 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 16:25:18.184 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:43916 10 6452 1 2025-11-30 16:22:08.731 00:05:02.097 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 16:22:08.734 00:05:02.091 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 16:26:18.598 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38220 10 6452 1 2025-11-30 16:27:19.003 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40472 10 6452 1 2025-11-30 16:28:19.406 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50212 10 6452 1 2025-11-30 16:29:19.810 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:57486 10 6452 1 2025-11-30 16:30:12.626 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 16:30:12.119 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 16:30:12.536 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 16:30:12.477 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 16:30:12.618 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 16:30:20.210 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:40910 10 6452 1 2025-11-30 16:31:20.574 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:43972 10 6452 1 2025-11-30 16:28:08.735 00:05:02.098 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 16:28:08.731 00:05:02.103 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 16:32:20.981 00:00:10.445 TCP 1.101.0.1:3000 -> 23.104.0.1:60818 12 10369 1 2025-11-30 16:33:21.464 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43366 10 6452 1 2025-11-30 16:34:21.864 00:00:10.418 TCP 1.101.0.1:3000 -> 23.104.0.1:55608 11 6504 1 2025-11-30 16:35:12.625 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 16:35:12.450 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 16:35:12.088 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 16:35:12.542 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 16:35:12.385 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 16:35:22.321 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:52804 10 6452 1 2025-11-30 16:36:22.726 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:54960 10 6452 1 2025-11-30 16:37:23.146 00:00:10.879 TCP 1.101.0.1:3000 -> 23.104.0.1:37772 10 6452 1 2025-11-30 16:34:08.732 00:05:02.103 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 16:34:08.736 00:05:02.098 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 16:38:24.088 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50722 10 6452 1 2025-11-30 16:39:24.490 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:36852 10 6452 1 2025-11-30 16:40:12.444 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 16:40:12.564 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 16:40:12.291 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 16:40:12.362 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 16:40:12.560 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 16:40:24.888 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:59754 12 6556 1 2025-11-30 16:41:25.309 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:34990 10 6452 1 2025-11-30 16:42:25.720 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:40298 10 6452 1 2025-11-30 16:43:26.133 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:49966 10 6452 1 2025-11-30 16:40:08.736 00:05:02.101 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 16:40:08.733 00:05:02.106 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 16:44:26.541 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:46756 10 6452 1 2025-11-30 16:45:12.822 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 16:45:12.480 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 16:45:12.890 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 16:45:12.894 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 16:45:12.974 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 16:45:26.909 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:33372 10 6452 1 2025-11-30 16:46:27.273 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:44728 10 6452 1 2025-11-30 16:47:27.675 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:59352 10 6452 1 2025-11-30 16:48:28.041 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48616 10 6452 1 2025-11-30 16:49:28.439 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39200 10 6452 1 2025-11-30 16:46:08.737 00:05:02.106 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 16:50:12.758 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 16:50:12.737 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 16:50:12.698 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 16:50:12.675 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 16:50:12.738 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 16:46:08.739 00:05:02.101 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 16:50:28.843 00:00:10.468 TCP 1.101.0.1:3000 -> 23.104.0.1:33640 10 6452 1 2025-11-30 16:51:29.359 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52082 10 6452 1 2025-11-30 16:52:29.765 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:39880 10 6452 1 2025-11-30 16:53:30.133 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:43152 10 6452 1 2025-11-30 16:54:30.534 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56896 10 6452 1 2025-11-30 16:55:13.119 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 16:55:13.113 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 16:55:13.164 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 16:55:13.173 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 16:55:13.246 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 16:55:30.936 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:56818 10 6452 1 2025-11-30 16:52:08.739 00:05:02.103 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 16:52:08.737 00:05:02.108 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 16:56:31.352 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:34812 10 6452 1 2025-11-30 16:57:31.755 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:58330 10 6452 1 2025-11-30 16:58:32.170 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:55202 10 6452 1 Summary: total flows: 140, total bytes: 421177, total packets: 1027, avg bps: 927, avg pps: 0, avg bpp: 410 Time window: 2025-11-30 15:58:08 - 2025-11-30 16:58:42 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0037s User: 0.0019s Wall: 0.0020s flows/second: 69648.0 Runtime: 0.0020s