Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-01 00:58:51.214 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50868 10 6452 1 2025-12-01 00:59:51.632 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49660 10 6452 1 2025-12-01 01:00:22.603 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-01 01:00:22.371 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-01 01:00:22.499 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 01:00:22.262 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 01:00:22.346 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-01 01:00:52.032 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:43880 12 6556 1 2025-12-01 01:01:52.443 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:55480 10 6452 1 2025-12-01 00:58:08.878 00:05:02.188 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-01 00:58:08.875 00:05:02.193 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-01 01:02:52.851 00:00:10.461 TCP 1.101.0.1:3000 -> 23.104.0.1:34934 12 10369 1 2025-12-01 01:03:53.353 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40846 10 6452 1 2025-12-01 01:04:53.758 00:00:10.980 TCP 1.101.0.1:3000 -> 23.104.0.1:44156 10 6452 1 2025-12-01 01:05:22.796 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 01:05:22.628 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-01 01:05:22.631 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-01 01:05:22.552 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 01:05:22.878 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-01 01:05:54.777 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45660 10 6452 1 2025-12-01 01:06:55.178 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:50994 10 6452 1 2025-12-01 01:07:55.580 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52154 10 6452 1 2025-12-01 01:04:08.876 00:05:02.191 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-01 01:04:08.879 00:05:02.186 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-01 01:08:55.991 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58644 10 6452 1 2025-12-01 01:09:56.395 00:00:10.467 TCP 1.101.0.1:3000 -> 23.104.0.1:37338 10 6452 1 2025-12-01 01:10:23.008 00:00:00.039 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-01 01:10:23.001 00:00:00.037 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 01:10:22.993 00:00:00.028 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 01:10:23.137 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-01 01:10:23.077 00:00:00.027 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-01 01:10:56.896 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53312 10 6452 1 2025-12-01 01:11:57.301 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:43182 10 6452 1 2025-12-01 01:12:57.719 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:42578 10 6452 1 2025-12-01 01:13:58.144 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45242 10 6452 1 2025-12-01 01:10:08.878 00:05:02.191 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-01 01:10:08.880 00:05:02.187 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-01 01:14:58.553 00:00:10.791 TCP 1.101.0.1:3000 -> 23.104.0.1:59418 10 6452 1 2025-12-01 01:15:22.826 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-01 01:15:22.743 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 01:15:22.535 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-01 01:15:22.741 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-01 01:15:22.764 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 01:15:59.385 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:60562 10 6452 1 2025-12-01 01:16:59.756 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:42180 10 6452 1 2025-12-01 01:18:00.170 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54716 10 6452 1 2025-12-01 01:19:00.572 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34138 10 6452 1 2025-12-01 01:16:08.878 00:05:02.193 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-01 01:16:08.880 00:05:02.188 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-01 01:20:00.979 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:55760 10 6452 1 2025-12-01 01:20:23.080 00:00:00.043 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-01 01:20:23.095 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-01 01:20:23.009 00:00:00.038 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-01 01:20:22.976 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 01:20:22.998 00:00:00.043 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 01:21:01.383 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:38920 10 6452 1 2025-12-01 01:22:01.782 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:48928 12 6556 1 2025-12-01 01:23:02.188 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41516 10 6452 1 2025-12-01 01:24:02.589 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:56510 10 6452 1 2025-12-01 01:25:03.000 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:39132 10 6452 1 2025-12-01 01:25:22.894 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-01 01:25:23.084 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-01 01:25:23.012 00:00:00.029 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-01 01:25:23.082 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 01:25:22.813 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 01:22:08.881 00:05:02.189 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-01 01:26:03.400 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53408 10 6452 1 2025-12-01 01:22:08.879 00:05:02.194 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-01 01:27:03.801 00:00:10.345 TCP 1.101.0.1:3000 -> 23.104.0.1:45930 10 6452 1 2025-12-01 01:28:04.178 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:53214 10 6452 1 2025-12-01 01:29:04.582 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:52482 10 6452 1 2025-12-01 01:30:04.993 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:46330 10 6452 1 2025-12-01 01:30:23.054 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-01 01:30:22.861 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-01 01:30:22.716 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 01:30:22.971 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 01:30:23.178 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-01 01:31:05.404 00:00:10.356 TCP 1.101.0.1:3000 -> 23.104.0.1:35758 10 6452 1 2025-12-01 01:28:08.882 00:05:02.193 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-01 01:28:08.886 00:05:02.188 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-01 01:32:05.802 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60816 10 6452 1 2025-12-01 01:33:06.205 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:33472 10 6452 1 2025-12-01 01:34:06.610 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:59504 10 6452 1 2025-12-01 01:35:06.970 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:32788 10 6452 1 2025-12-01 01:35:23.386 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-01 01:35:23.177 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-01 01:35:23.305 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-01 01:35:22.965 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 01:35:23.304 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 01:36:07.375 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59424 10 6452 1 2025-12-01 01:37:07.778 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:57598 10 6452 1 2025-12-01 01:34:08.885 00:05:02.191 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-01 01:34:08.887 00:05:02.186 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-01 01:38:08.144 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:55710 10 6452 1 2025-12-01 01:39:08.505 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:51640 10 6452 1 2025-12-01 01:40:08.874 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37268 10 6452 1 2025-12-01 01:40:23.414 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-01 01:40:23.283 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-01 01:40:23.234 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 01:40:23.194 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 01:40:23.278 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-01 01:41:09.278 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:38340 10 6452 1 2025-12-01 01:42:09.684 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40084 10 6452 1 2025-12-01 01:43:10.108 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:40302 10 6452 1 2025-12-01 01:40:08.888 00:05:02.186 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-01 01:40:08.887 00:05:02.191 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-01 01:44:10.506 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:44558 10 6452 1 2025-12-01 01:45:23.426 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-01 01:45:23.412 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-01 01:45:23.401 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-01 01:45:23.366 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 01:45:23.342 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 01:45:10.867 00:00:10.950 TCP 1.101.0.1:3000 -> 23.104.0.1:40470 10 6452 1 2025-12-01 01:46:11.857 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:48246 10 6452 1 2025-12-01 01:47:12.277 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37100 10 6452 1 2025-12-01 01:48:12.679 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:40384 10 6452 1 2025-12-01 01:49:13.112 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:50416 10 6452 1 2025-12-01 01:46:08.890 00:05:02.187 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-01 01:46:08.894 00:05:02.182 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-01 01:50:23.806 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-01 01:50:23.388 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-01 01:50:23.502 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-01 01:50:23.345 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 01:50:23.722 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 01:50:13.513 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:54450 10 6452 1 2025-12-01 01:51:13.913 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47316 10 6452 1 2025-12-01 01:52:14.319 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:42458 10 6452 1 2025-12-01 01:53:14.733 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:37710 10 6452 1 2025-12-01 01:54:15.147 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:42886 10 6452 1 2025-12-01 01:55:23.632 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-01 01:55:23.672 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-01 01:55:23.624 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-01 01:55:23.581 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 01:55:23.549 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 01:55:15.516 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57444 10 6452 1 2025-12-01 01:52:08.891 00:05:02.188 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-01 01:52:08.896 00:05:02.182 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-01 01:56:15.924 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47524 10 6452 1 2025-12-01 01:57:16.334 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45716 10 6452 1 2025-12-01 01:58:16.739 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38404 10 6452 1 Summary: total flows: 140, total bytes: 421125, total packets: 1026, avg bps: 931, avg pps: 0, avg bpp: 410 Time window: 2025-12-01 00:58:08 - 2025-12-01 01:58:27 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0025s User: 0.0025s Wall: 0.0018s flows/second: 76092.1 Runtime: 0.0019s