Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-30 17:58:56.955 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:42418 10 6452 1 2025-11-30 17:59:57.360 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49378 10 6452 1 2025-11-30 18:00:14.295 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 18:00:14.075 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 18:00:13.895 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 18:00:14.212 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 18:00:14.201 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 18:00:57.765 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:49856 10 6452 1 2025-11-30 17:58:08.756 00:05:02.109 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 18:01:58.184 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:51190 10 6452 1 2025-11-30 17:58:08.759 00:05:02.104 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 18:02:58.578 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:33492 10 6452 1 2025-11-30 18:03:58.958 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36824 10 6452 1 2025-11-30 18:04:59.359 00:00:10.356 TCP 1.101.0.1:3000 -> 23.104.0.1:34024 10 6452 1 2025-11-30 18:05:14.330 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 18:05:14.012 00:00:00.041 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 18:05:14.366 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 18:05:14.402 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 18:05:14.451 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 18:05:59.755 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:57502 10 6452 1 2025-11-30 18:07:00.134 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48722 10 6452 1 2025-11-30 18:08:00.541 00:00:10.819 TCP 1.101.0.1:3000 -> 23.104.0.1:53726 10 6452 1 2025-11-30 18:04:08.760 00:05:02.104 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 18:04:08.758 00:05:02.108 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 18:09:01.401 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:53832 10 6452 1 2025-11-30 18:10:14.451 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 18:10:14.424 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 18:10:14.389 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 18:10:14.370 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 18:10:14.466 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 18:10:01.806 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39814 10 6452 1 2025-11-30 18:11:02.216 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43578 10 6452 1 2025-11-30 18:12:02.631 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:50300 10 6452 1 2025-11-30 18:13:02.997 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48868 10 6452 1 2025-11-30 18:10:08.766 00:05:02.098 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 18:14:03.401 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38882 10 6452 1 2025-11-30 18:10:08.763 00:05:02.103 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 18:15:14.437 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 18:15:14.254 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 18:15:03.821 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41988 10 6452 1 2025-11-30 18:15:14.431 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 18:15:14.326 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 18:15:14.513 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 18:16:04.225 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:43506 10 6452 1 2025-11-30 18:17:04.589 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58998 10 6452 1 2025-11-30 18:18:04.989 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:46572 10 6452 1 2025-11-30 18:19:05.406 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:42258 10 6452 1 2025-11-30 18:16:08.764 00:05:02.104 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 18:20:15.511 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 18:20:15.339 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 18:20:15.201 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 18:20:15.429 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 18:20:15.428 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 18:16:08.768 00:05:02.098 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 18:20:05.822 00:00:10.742 TCP 1.101.0.1:3000 -> 23.104.0.1:56544 10 6452 1 2025-11-30 18:21:06.615 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:46680 10 6452 1 2025-11-30 18:22:07.019 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:45608 10 6452 1 2025-11-30 18:23:07.418 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:42368 10 6452 1 2025-11-30 18:24:07.786 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56516 10 6452 1 2025-11-30 18:25:15.191 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 18:25:14.788 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 18:25:14.788 00:00:00.026 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 18:25:15.108 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 18:25:15.070 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 18:25:08.199 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40888 10 6452 1 2025-11-30 18:22:08.769 00:05:02.099 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 18:22:08.766 00:05:02.104 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 18:26:08.601 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51966 10 6452 1 2025-11-30 18:27:09.009 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:45696 10 6452 1 2025-11-30 18:28:09.372 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:49310 10 6452 1 2025-11-30 18:29:09.734 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:42542 10 6452 1 2025-11-30 18:30:14.677 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 18:30:14.493 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 18:30:14.778 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 18:30:14.773 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 18:30:14.860 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 18:30:10.115 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56674 10 6452 1 2025-11-30 18:31:10.515 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:55226 10 6452 1 2025-11-30 18:28:08.772 00:05:02.099 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 18:28:08.768 00:05:02.105 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 18:32:10.884 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:37796 10 6452 1 2025-11-30 18:33:11.253 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:59486 10 6452 1 2025-11-30 18:34:11.617 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34628 10 6452 1 2025-11-30 18:35:14.858 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 18:35:14.868 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 18:35:14.987 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 18:35:14.926 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 18:35:15.071 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 18:35:12.032 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:37002 10 6452 1 2025-11-30 18:36:12.442 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:37448 10 6452 1 2025-11-30 18:37:12.846 00:00:10.346 TCP 1.101.0.1:3000 -> 23.104.0.1:50150 10 6452 1 2025-11-30 18:34:08.772 00:05:02.105 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 18:34:08.770 00:05:02.109 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 18:38:13.232 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58142 10 6452 1 2025-11-30 18:39:13.651 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:38534 10 6452 1 2025-11-30 18:40:14.766 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 18:40:14.933 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 18:40:15.264 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 18:40:15.281 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 18:40:15.347 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 18:40:14.035 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:33170 10 6452 1 2025-11-30 18:41:14.459 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:35964 10 6452 1 2025-11-30 18:42:14.862 00:00:10.448 TCP 1.101.0.1:3000 -> 23.104.0.1:44736 12 10375 1 2025-11-30 18:43:15.357 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:33804 10 6452 1 2025-11-30 18:40:08.774 00:05:02.104 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 18:40:08.771 00:05:02.110 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 18:44:15.758 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:53004 10 6452 1 2025-11-30 18:45:15.089 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 18:45:14.819 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 18:45:15.012 00:00:00.040 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 18:45:14.928 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 18:45:15.094 00:00:00.040 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 18:45:16.186 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42966 10 6452 1 2025-11-30 18:46:16.588 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:43580 10 6452 1 2025-11-30 18:47:17.005 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:42492 10 6452 1 2025-11-30 18:48:17.376 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:33778 10 6452 1 2025-11-30 18:49:17.782 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:55296 10 6452 1 2025-11-30 18:50:15.110 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 18:50:15.013 00:00:00.035 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 18:50:15.207 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 18:50:15.006 00:00:00.048 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 18:46:08.775 00:05:02.103 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 18:46:08.772 00:05:02.109 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 18:50:15.290 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 18:50:18.190 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49868 10 6452 1 2025-11-30 18:51:18.588 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41714 10 6452 1 2025-11-30 18:52:18.993 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37736 10 6452 1 2025-11-30 18:53:19.395 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:44282 10 6452 1 2025-11-30 18:54:19.793 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:37596 10 6452 1 2025-11-30 18:55:15.134 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 18:55:14.942 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 18:55:15.194 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 18:55:15.193 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 18:55:15.277 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 18:55:20.205 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:40116 10 6452 1 2025-11-30 18:52:08.774 00:05:02.108 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 18:52:08.775 00:05:02.104 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 18:56:20.622 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41690 10 6452 1 2025-11-30 18:57:21.028 00:00:10.424 TCP 1.101.0.1:3000 -> 23.104.0.1:46372 10 6452 1 2025-11-30 18:58:21.492 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39590 10 6452 1 Summary: total flows: 140, total bytes: 420923, total packets: 1022, avg bps: 929, avg pps: 0, avg bpp: 411 Time window: 2025-11-30 17:58:08 - 2025-11-30 18:58:31 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0055s User: 0.0011s Wall: 0.0025s flows/second: 55120.9 Runtime: 0.0026s