Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-30 22:59:01.691 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53816 10 6452 1 2025-11-30 23:00:02.106 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:48020 10 6452 1 2025-11-30 23:00:20.296 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 23:00:20.074 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 23:00:20.296 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 23:00:20.219 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 23:00:20.378 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 23:01:02.467 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:57342 10 6452 1 2025-11-30 23:02:02.864 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:57318 10 6452 1 2025-11-30 22:58:08.850 00:05:02.135 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 22:58:08.848 00:05:02.145 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 23:03:03.271 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57784 12 6556 1 2025-11-30 23:04:03.670 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42632 10 6452 1 2025-11-30 23:05:04.103 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:51992 10 6452 1 2025-11-30 23:05:20.225 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 23:05:20.333 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 23:05:20.224 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 23:05:20.225 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 23:05:20.306 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 23:06:04.505 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52004 10 6452 1 2025-11-30 23:07:04.910 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:41718 10 6452 1 2025-11-30 23:04:08.849 00:05:02.139 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 23:08:05.319 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:50914 10 6452 1 2025-11-30 23:04:08.851 00:05:02.134 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 23:09:05.681 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:46834 11 6504 1 2025-11-30 23:10:20.350 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 23:10:20.407 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 23:10:20.210 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 23:10:06.114 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:55948 10 6452 1 2025-11-30 23:10:20.268 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 23:10:20.265 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 23:11:06.521 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:51678 10 6452 1 2025-11-30 23:12:06.882 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54220 10 6452 1 2025-11-30 23:13:07.286 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43638 10 6452 1 2025-11-30 23:10:08.850 00:05:02.140 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 23:10:08.852 00:05:02.135 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 23:14:07.684 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:36856 10 6452 1 2025-11-30 23:15:20.803 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 23:15:20.715 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 23:15:20.518 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 23:15:08.101 00:00:10.347 TCP 1.101.0.1:3000 -> 23.104.0.1:57090 10 6452 1 2025-11-30 23:15:20.719 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 23:15:20.676 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 23:16:08.486 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:39252 10 6452 1 2025-11-30 23:17:08.851 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:44440 10 6452 1 2025-11-30 23:18:09.267 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:37416 10 6452 1 2025-11-30 23:19:09.631 00:00:11.234 TCP 1.101.0.1:3000 -> 23.104.0.1:57186 12 6556 1 2025-11-30 23:16:08.852 00:05:02.140 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 23:20:20.687 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 23:16:08.855 00:05:02.136 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 23:20:20.612 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 23:20:20.403 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 23:20:20.604 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 23:20:20.417 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 23:20:10.905 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:50850 12 6556 1 2025-11-30 23:21:11.315 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:37574 10 6452 1 2025-11-30 23:22:11.678 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:52938 10 6452 1 2025-11-30 23:23:12.111 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:42272 10 6452 1 2025-11-30 23:24:12.516 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:38552 10 6452 1 2025-11-30 23:25:20.602 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 23:25:20.708 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 23:25:20.602 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 23:25:20.605 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 23:25:20.685 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 23:25:12.895 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:37012 10 6452 1 2025-11-30 23:22:08.855 00:05:02.140 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 23:22:08.854 00:05:02.144 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 23:26:13.265 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:57512 10 6452 1 2025-11-30 23:27:13.670 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53090 10 6452 1 2025-11-30 23:28:14.101 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:59526 10 6452 1 2025-11-30 23:29:14.498 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:38890 10 6452 1 2025-11-30 23:30:20.963 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 23:30:20.880 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 23:30:20.884 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 23:30:20.594 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 23:30:20.616 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 23:30:14.904 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36908 10 6452 1 2025-11-30 23:31:15.306 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:48920 10 6452 1 2025-11-30 23:28:08.859 00:05:02.137 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 23:28:08.856 00:05:02.142 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 23:32:15.711 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:57826 10 6452 1 2025-11-30 23:33:16.118 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:53696 10 6452 1 2025-11-30 23:34:16.493 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53716 10 6452 1 2025-11-30 23:35:20.800 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 23:35:20.727 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 23:35:20.758 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 23:35:20.718 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 23:35:20.921 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 23:35:16.905 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:41872 10 6452 1 2025-11-30 23:36:17.272 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:42914 10 6452 1 2025-11-30 23:37:17.682 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:33056 10 6452 1 2025-11-30 23:34:08.857 00:05:02.179 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 23:34:08.860 00:05:02.172 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 23:38:18.042 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:45180 10 6452 1 2025-11-30 23:39:18.407 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:40316 10 6452 1 2025-11-30 23:40:20.923 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 23:40:20.782 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 23:40:20.922 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 23:40:20.843 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 23:40:21.005 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 23:40:18.809 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:45036 10 6452 1 2025-11-30 23:41:19.229 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51478 10 6452 1 2025-11-30 23:42:19.628 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:50720 10 6452 1 2025-11-30 23:43:19.990 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:48024 10 6452 1 2025-11-30 23:40:08.858 00:05:02.187 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 23:40:08.861 00:05:02.182 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 23:44:20.351 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52148 10 6452 1 2025-11-30 23:45:20.771 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 23:45:20.894 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 23:45:20.687 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 23:45:20.904 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 23:45:21.040 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 23:45:20.758 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:34800 10 6452 1 2025-11-30 23:46:21.181 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56938 10 6452 1 2025-11-30 23:47:21.583 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33466 10 6452 1 2025-11-30 23:48:21.987 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:47878 10 6452 1 2025-11-30 23:49:22.382 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:33244 10 6452 1 2025-11-30 23:46:08.862 00:05:02.180 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 23:46:08.865 00:05:02.175 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 23:50:20.946 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 23:50:21.217 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 23:50:21.153 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 23:50:21.071 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 23:50:21.030 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 23:50:22.788 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36336 10 6452 1 2025-11-30 23:51:23.195 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:40044 10 6452 1 2025-11-30 23:52:23.556 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:34744 10 6452 1 2025-11-30 23:53:23.956 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:36694 10 6452 1 2025-11-30 23:54:24.320 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53388 10 6452 1 2025-11-30 23:55:21.122 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 23:55:21.015 00:00:00.031 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 23:55:21.247 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 23:55:21.132 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 23:55:21.330 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 23:55:24.724 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:42744 10 6452 1 2025-11-30 23:52:08.862 00:05:02.182 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 23:52:08.864 00:05:02.177 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 23:56:25.136 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:60810 10 6452 1 2025-11-30 23:57:25.535 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:45198 10 6452 1 2025-11-30 23:58:25.947 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:47098 10 6452 1 Summary: total flows: 140, total bytes: 417364, total packets: 1027, avg bps: 920, avg pps: 0, avg bpp: 406 Time window: 2025-11-30 22:58:08 - 2025-11-30 23:58:36 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0071s User: 0.0000s Wall: 0.0023s flows/second: 62111.5 Runtime: 0.0023s