Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-01 09:58:51.945 00:00:10.428 TCP 1.101.0.1:3000 -> 23.104.0.1:57062 11 6504 1 2025-12-01 09:59:52.417 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:42700 10 6452 1 2025-12-01 10:00:33.684 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-01 10:00:33.613 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-01 10:00:33.578 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-01 10:00:33.081 00:00:00.027 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 10:00:33.603 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 10:00:52.828 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33998 10 6452 1 2025-12-01 10:01:53.227 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44194 10 6452 1 2025-12-01 09:58:09.082 00:05:02.174 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-01 09:58:09.083 00:05:02.170 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-01 10:02:53.631 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:44738 10 6452 1 2025-12-01 10:03:54.051 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37160 10 6452 1 2025-12-01 10:04:54.453 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:55446 10 6452 1 2025-12-01 10:05:33.621 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-01 10:05:33.534 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-01 10:05:33.578 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-01 10:05:33.306 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 10:05:33.537 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 10:05:54.808 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:50922 10 6452 1 2025-12-01 10:06:55.212 00:00:10.497 TCP 1.101.0.1:3000 -> 23.104.0.1:34418 10 6452 1 2025-12-01 10:07:55.756 00:00:11.098 TCP 1.101.0.1:3000 -> 23.104.0.1:55854 10 6452 1 2025-12-01 10:04:09.085 00:05:02.168 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-01 10:04:09.082 00:05:02.174 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-01 10:08:56.917 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53154 10 6452 1 2025-12-01 10:09:57.321 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41518 10 6452 1 2025-12-01 10:10:33.477 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-01 10:10:33.387 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-01 10:10:33.279 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 10:10:33.550 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 10:10:33.632 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-01 10:10:57.752 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:34620 10 6452 1 2025-12-01 10:11:58.150 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49028 10 6452 1 2025-12-01 10:12:58.554 00:00:10.438 TCP 1.101.0.1:3000 -> 23.104.0.1:46482 12 10375 1 2025-12-01 10:13:59.032 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:46514 10 6452 1 2025-12-01 10:10:09.088 00:05:02.167 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-01 10:10:09.087 00:05:02.172 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-01 10:14:59.435 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55258 10 6452 1 2025-12-01 10:15:33.745 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-01 10:15:33.666 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-01 10:15:33.698 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 10:15:33.743 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 10:15:33.826 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-01 10:15:59.840 00:00:10.394 TCP 1.101.0.1:3000 -> 23.104.0.1:45168 10 6452 1 2025-12-01 10:17:00.272 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37528 10 6452 1 2025-12-01 10:18:00.677 00:00:10.455 TCP 1.101.0.1:3000 -> 23.104.0.1:50206 12 10375 1 2025-12-01 10:19:01.166 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:37304 10 6452 1 2025-12-01 10:16:09.088 00:05:02.169 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-01 10:20:01.529 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:46780 10 6452 1 2025-12-01 10:16:09.085 00:05:02.174 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-01 10:20:33.966 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-01 10:20:33.873 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-01 10:20:33.878 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-01 10:20:33.749 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 10:20:33.883 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 10:21:01.909 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:46678 10 6452 1 2025-12-01 10:22:02.322 00:00:10.596 TCP 1.101.0.1:3000 -> 23.104.0.1:48586 10 6452 1 2025-12-01 10:23:02.957 00:00:10.393 TCP 1.101.0.1:3000 -> 23.104.0.1:51292 10 6452 1 2025-12-01 10:24:03.386 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42202 10 6452 1 2025-12-01 10:25:03.805 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:43786 10 6452 1 2025-12-01 10:25:33.760 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-01 10:25:33.919 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-01 10:25:33.795 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 10:25:33.876 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 10:25:33.958 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-01 10:22:09.087 00:05:02.173 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-01 10:22:09.090 00:05:02.168 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-01 10:26:04.215 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:48972 10 6452 1 2025-12-01 10:27:04.617 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:42024 10 6452 1 2025-12-01 10:28:05.028 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:43412 10 6452 1 2025-12-01 10:29:05.443 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:37146 10 6452 1 2025-12-01 10:30:05.803 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:43292 10 6452 1 2025-12-01 10:30:33.941 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-01 10:30:33.642 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-01 10:30:34.000 00:00:00.031 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-01 10:30:33.930 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 10:30:33.857 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 10:31:06.205 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33878 10 6452 1 2025-12-01 10:28:09.088 00:05:02.175 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-01 10:28:09.091 00:05:02.169 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-01 10:32:06.607 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33798 10 6452 1 2025-12-01 10:33:07.014 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43430 10 6452 1 2025-12-01 10:34:07.412 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33098 10 6452 1 2025-12-01 10:35:07.818 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40146 10 6452 1 2025-12-01 10:35:33.868 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-01 10:35:34.215 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-01 10:35:33.845 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 10:35:33.866 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 10:35:33.948 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-01 10:36:08.222 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:34082 10 6452 1 2025-12-01 10:37:08.623 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:38112 10 6452 1 2025-12-01 10:34:09.090 00:05:02.174 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-01 10:34:09.092 00:05:02.169 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-01 10:38:09.022 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45060 10 6452 1 2025-12-01 10:39:09.449 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51246 10 6452 1 2025-12-01 10:40:09.852 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:35096 10 6452 1 2025-12-01 10:40:34.953 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 10:40:35.084 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-01 10:40:35.086 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-01 10:40:35.091 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 10:40:35.173 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-01 10:41:10.262 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:43938 10 6452 1 2025-12-01 10:42:10.669 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:51104 10 6452 1 2025-12-01 10:43:11.091 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54374 10 6452 1 2025-12-01 10:40:09.093 00:05:02.169 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-01 10:40:09.090 00:05:02.174 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-01 10:44:11.493 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37730 10 6452 1 2025-12-01 10:45:11.893 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:34702 12 6556 1 2025-12-01 10:45:34.823 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-01 10:45:34.259 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-01 10:45:34.559 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-01 10:45:34.127 00:00:00.030 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 10:45:34.740 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 10:46:12.323 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47092 10 6452 1 2025-12-01 10:47:12.727 00:00:11.134 TCP 1.101.0.1:3000 -> 23.104.0.1:38088 10 6452 1 2025-12-01 10:48:13.909 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59774 10 6452 1 2025-12-01 10:49:14.309 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:48790 10 6452 1 2025-12-01 10:46:09.094 00:05:02.170 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-01 10:46:09.092 00:05:02.174 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-01 10:50:14.692 00:00:11.312 TCP 1.101.0.1:3000 -> 23.104.0.1:44752 10 6452 1 2025-12-01 10:50:34.427 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-01 10:50:34.280 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-01 10:50:34.294 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-01 10:50:34.356 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 10:50:34.344 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 10:51:16.040 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:57708 10 6452 1 2025-12-01 10:52:16.406 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:34722 10 6452 1 2025-12-01 10:53:16.822 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:42776 10 6452 1 2025-12-01 10:54:17.183 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56022 10 6452 1 2025-12-01 10:55:17.584 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:48806 10 6452 1 2025-12-01 10:55:34.528 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-01 10:55:34.482 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-01 10:55:34.367 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 10:55:34.483 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 10:55:34.566 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-01 10:52:09.092 00:05:02.178 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-01 10:52:09.094 00:05:02.173 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-01 10:56:18.010 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:49848 10 6452 1 2025-12-01 10:57:18.419 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38092 10 6452 1 2025-12-01 10:58:18.823 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57036 10 6452 1 Summary: total flows: 140, total bytes: 425002, total packets: 1027, avg bps: 939, avg pps: 0, avg bpp: 413 Time window: 2025-12-01 09:58:09 - 2025-12-01 10:58:29 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0030s User: 0.0020s Wall: 0.0020s flows/second: 69615.0 Runtime: 0.0020s