Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-30 19:58:45.813 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35464 10 6452 1 2025-11-30 19:59:46.217 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50220 10 6452 1 2025-11-30 20:00:16.553 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 20:00:16.371 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 20:00:16.466 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 20:00:16.470 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 20:00:16.460 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 20:00:46.614 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60936 10 6452 1 2025-11-30 20:01:47.017 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47120 10 6452 1 2025-11-30 19:58:08.790 00:05:02.123 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 19:58:08.788 00:05:02.129 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 20:02:47.420 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59718 10 6452 1 2025-11-30 20:03:47.821 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:33102 10 6452 1 2025-11-30 20:04:48.216 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:46812 10 6452 1 2025-11-30 20:05:16.833 00:00:00.029 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 20:05:17.023 00:00:00.031 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 20:05:16.799 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 20:05:16.751 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 20:05:17.025 00:00:00.034 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 20:05:48.580 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45728 10 6452 1 2025-11-30 20:06:48.983 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:35234 10 6452 1 2025-11-30 20:07:49.356 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:35488 10 6452 1 2025-11-30 20:04:08.795 00:05:02.121 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 20:04:08.793 00:05:02.126 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 20:08:49.760 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:43062 10 6452 1 2025-11-30 20:09:50.185 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58078 10 6452 1 2025-11-30 20:10:16.629 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 20:10:16.666 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 20:10:16.728 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 20:10:16.629 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 20:10:16.811 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 20:10:50.586 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:49024 10 6452 1 2025-11-30 20:11:50.992 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:57082 10 6452 1 2025-11-30 20:12:51.363 00:00:10.943 TCP 1.101.0.1:3000 -> 23.104.0.1:57048 12 10375 1 2025-11-30 20:13:52.351 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:60504 10 6452 1 2025-11-30 20:10:08.793 00:05:02.131 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 20:10:08.795 00:05:02.126 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 20:14:52.713 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46590 10 6452 1 2025-11-30 20:15:16.977 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 20:15:16.894 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 20:15:16.796 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 20:15:16.895 00:00:00.020 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 20:15:16.756 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 20:15:53.113 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55728 10 6452 1 2025-11-30 20:16:53.516 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:50586 10 6452 1 2025-11-30 20:17:53.915 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:49408 10 6452 1 2025-11-30 20:18:54.316 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:57334 10 6452 1 2025-11-30 20:19:54.684 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:42262 10 6452 1 2025-11-30 20:16:08.799 00:05:02.123 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 20:16:08.797 00:05:02.128 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 20:20:16.790 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 20:20:16.817 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 20:20:16.850 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 20:20:16.706 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 20:20:16.932 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 20:20:55.111 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:56092 10 6452 1 2025-11-30 20:21:55.523 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:51596 10 6452 1 2025-11-30 20:22:55.958 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:48754 10 6452 1 2025-11-30 20:23:56.358 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:38814 10 6452 1 2025-11-30 20:24:56.714 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:41932 10 6452 1 2025-11-30 20:25:16.771 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 20:25:16.600 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 20:25:16.775 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 20:25:16.978 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 20:25:16.857 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 20:25:57.113 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43228 10 6452 1 2025-11-30 20:22:08.800 00:05:02.127 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 20:22:08.799 00:05:02.133 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 20:26:57.522 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38952 10 6452 1 2025-11-30 20:27:57.921 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:52200 10 6452 1 2025-11-30 20:28:58.334 00:00:10.847 TCP 1.101.0.1:3000 -> 23.104.0.1:48998 10 6452 1 2025-11-30 20:29:59.224 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48660 10 6452 1 2025-11-30 20:30:17.125 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 20:30:17.114 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 20:30:16.924 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 20:30:17.042 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 20:30:17.189 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 20:30:59.627 00:00:10.514 TCP 1.101.0.1:3000 -> 23.104.0.1:50662 10 6452 1 2025-11-30 20:32:00.201 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:53538 10 6452 1 2025-11-30 20:28:08.805 00:05:02.125 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 20:28:08.802 00:05:02.130 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 20:33:00.564 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:43832 10 6452 1 2025-11-30 20:34:00.927 00:00:10.393 TCP 1.101.0.1:3000 -> 23.104.0.1:58688 10 6452 1 2025-11-30 20:35:01.350 00:00:10.415 TCP 1.101.0.1:3000 -> 23.104.0.1:59862 11 6504 1 2025-11-30 20:35:17.379 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 20:35:17.177 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 20:35:17.380 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 20:35:17.191 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 20:35:17.463 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 20:36:01.802 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:38192 10 6452 1 2025-11-30 20:37:02.209 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:44814 10 6452 1 2025-11-30 20:38:02.578 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47908 10 6452 1 2025-11-30 20:34:08.808 00:05:02.126 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 20:34:08.804 00:05:02.131 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 20:39:02.978 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:44544 10 6452 1 2025-11-30 20:40:03.388 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54846 10 6452 1 2025-11-30 20:40:17.442 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 20:40:17.201 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 20:40:17.283 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 20:40:17.360 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 20:40:17.316 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 20:41:03.793 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33584 10 6452 1 2025-11-30 20:42:04.197 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:41122 10 6452 1 2025-11-30 20:43:04.596 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:54946 10 6452 1 2025-11-30 20:40:08.807 00:05:02.129 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 20:40:08.809 00:05:02.124 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 20:44:04.967 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:56672 10 6452 1 2025-11-30 20:45:17.571 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 20:45:05.334 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:56482 10 6452 1 2025-11-30 20:45:17.398 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 20:45:17.236 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 20:45:17.488 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 20:45:17.336 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 20:46:05.697 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:43844 10 6452 1 2025-11-30 20:47:06.069 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:39968 10 6452 1 2025-11-30 20:48:06.484 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:51438 10 6452 1 2025-11-30 20:49:06.842 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:52730 10 6452 1 2025-11-30 20:46:08.808 00:05:02.130 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 20:46:08.810 00:05:02.124 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 20:50:17.837 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 20:50:07.274 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52022 10 6452 1 2025-11-30 20:50:17.572 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 20:50:17.365 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 20:50:17.755 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 20:50:17.569 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 20:51:07.678 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57390 10 6452 1 2025-11-30 20:52:08.107 00:00:10.690 TCP 1.101.0.1:3000 -> 23.104.0.1:38858 10 6452 1 2025-11-30 20:53:08.833 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:54238 10 6452 1 2025-11-30 20:54:09.231 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41960 10 6452 1 2025-11-30 20:55:17.776 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 20:55:17.608 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 20:55:17.736 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 20:55:17.592 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 20:55:09.634 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42982 10 6452 1 2025-11-30 20:55:17.819 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 20:52:08.811 00:05:02.127 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 20:52:08.808 00:05:02.132 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 20:56:10.067 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:41798 10 6452 1 2025-11-30 20:57:10.435 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:60240 10 6452 1 2025-11-30 20:58:10.797 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:58806 10 6452 1 Summary: total flows: 140, total bytes: 420975, total packets: 1023, avg bps: 932, avg pps: 0, avg bpp: 411 Time window: 2025-11-30 19:58:08 - 2025-11-30 20:58:21 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0056s User: 0.0000s Wall: 0.0020s flows/second: 71064.1 Runtime: 0.0020s