Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-01 10:59:19.224 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60638 10 6452 1 2025-12-01 11:00:34.865 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-01 11:00:34.867 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-01 11:00:34.778 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 11:00:34.931 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 11:00:19.630 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:43722 10 6452 1 2025-12-01 11:00:35.014 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-01 11:01:20.042 00:00:12.447 TCP 1.101.0.1:3000 -> 23.104.0.1:60462 10 6452 1 2025-12-01 10:58:09.097 00:05:02.175 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-01 10:58:09.100 00:05:02.170 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-01 11:02:22.537 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:46202 10 6452 1 2025-12-01 11:03:22.898 00:00:11.211 TCP 1.101.0.1:3000 -> 23.104.0.1:56220 10 6452 1 2025-12-01 11:04:24.146 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45540 10 6452 1 2025-12-01 11:05:34.821 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-01 11:05:34.637 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-01 11:05:24.555 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:59900 10 6452 1 2025-12-01 11:05:34.817 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-01 11:05:34.787 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 11:05:34.739 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 11:06:24.918 00:00:11.085 TCP 1.101.0.1:3000 -> 23.104.0.1:56722 10 6452 1 2025-12-01 11:07:26.060 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:57416 10 6452 1 2025-12-01 11:04:09.098 00:05:02.175 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-01 11:04:09.100 00:05:02.170 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-01 11:08:26.458 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:41082 10 6452 1 2025-12-01 11:09:26.863 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:52740 10 6452 1 2025-12-01 11:10:34.757 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-01 11:10:34.671 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-01 11:10:34.670 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-01 11:10:34.800 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 11:10:34.674 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 11:10:27.282 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:49228 10 6452 1 2025-12-01 11:11:27.656 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58986 10 6452 1 2025-12-01 11:12:28.066 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51552 10 6452 1 2025-12-01 11:13:28.469 00:00:10.741 TCP 1.101.0.1:3000 -> 23.104.0.1:34984 10 6452 1 2025-12-01 11:10:09.099 00:05:02.180 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-01 11:10:09.101 00:05:02.175 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-01 11:14:29.250 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:42116 10 6452 1 2025-12-01 11:15:34.854 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-01 11:15:34.824 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-01 11:15:34.639 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-01 11:15:34.680 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 11:15:34.771 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 11:15:29.653 00:00:10.407 TCP 1.101.0.1:3000 -> 23.104.0.1:46232 10 6452 1 2025-12-01 11:16:30.107 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45290 10 6452 1 2025-12-01 11:17:30.525 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:48854 10 6452 1 2025-12-01 11:18:30.901 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:55306 12 6556 1 2025-12-01 11:19:31.321 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49142 10 6452 1 2025-12-01 11:16:09.101 00:05:02.179 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-01 11:16:09.104 00:05:02.174 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-01 11:20:34.891 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-01 11:20:34.719 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-01 11:20:34.906 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 11:20:34.628 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 11:20:34.711 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-01 11:20:31.728 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:49354 10 6452 1 2025-12-01 11:21:32.140 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58892 10 6452 1 2025-12-01 11:22:32.544 00:00:10.440 TCP 1.101.0.1:3000 -> 23.104.0.1:54366 12 10375 1 2025-12-01 11:23:33.022 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:44612 10 6452 1 2025-12-01 11:24:33.466 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:51578 10 6452 1 2025-12-01 11:25:34.958 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-01 11:25:34.939 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-01 11:25:34.966 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 11:25:34.956 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 11:25:35.039 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-01 11:25:33.824 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:34132 10 6452 1 2025-12-01 11:22:09.102 00:05:02.179 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-01 11:22:09.105 00:05:02.174 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-01 11:26:34.223 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:51950 10 6452 1 2025-12-01 11:27:34.594 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:54708 10 6452 1 2025-12-01 11:28:35.024 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:33116 10 6452 1 2025-12-01 11:29:35.421 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:32994 10 6452 1 2025-12-01 11:30:34.884 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 11:30:35.334 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-01 11:30:35.224 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-01 11:30:35.168 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 11:30:35.251 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-01 11:30:35.834 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:43918 10 6452 1 2025-12-01 11:31:36.267 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:42106 10 6452 1 2025-12-01 11:28:09.105 00:05:02.179 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-01 11:28:09.102 00:05:02.185 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-01 11:32:36.672 00:00:10.443 TCP 1.101.0.1:3000 -> 23.104.0.1:53922 12 10375 1 2025-12-01 11:33:37.151 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:52954 10 6452 1 2025-12-01 11:34:37.517 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49428 10 6452 1 2025-12-01 11:35:35.235 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-01 11:35:35.171 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-01 11:35:35.400 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-01 11:35:35.096 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 11:35:35.154 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 11:35:37.920 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47684 10 6452 1 2025-12-01 11:36:38.323 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:60920 10 6452 1 2025-12-01 11:37:38.722 00:00:10.342 TCP 1.101.0.1:3000 -> 23.104.0.1:41112 10 6452 1 2025-12-01 11:34:09.104 00:05:02.184 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-01 11:34:09.106 00:05:02.179 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-01 11:38:39.113 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41618 10 6452 1 2025-12-01 11:39:39.516 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59184 10 6452 1 2025-12-01 11:40:35.355 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-01 11:40:35.191 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-01 11:40:35.505 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-01 11:40:35.229 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 11:40:35.273 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 11:40:39.926 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:33644 10 6452 1 2025-12-01 11:41:40.335 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57672 10 6452 1 2025-12-01 11:42:40.741 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:54642 10 6452 1 2025-12-01 11:43:41.141 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:36478 10 6452 1 2025-12-01 11:40:09.108 00:05:02.179 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-01 11:40:09.104 00:05:02.185 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-01 11:44:41.543 00:00:10.417 TCP 1.101.0.1:3000 -> 23.104.0.1:50268 11 6504 1 2025-12-01 11:45:35.636 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-01 11:45:35.272 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-01 11:45:35.362 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-01 11:45:35.188 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 11:45:35.553 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 11:45:42.003 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:33236 10 6452 1 2025-12-01 11:46:42.418 00:00:10.819 TCP 1.101.0.1:3000 -> 23.104.0.1:51706 10 6452 1 2025-12-01 11:47:43.284 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:45752 10 6452 1 2025-12-01 11:48:43.696 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:49846 10 6452 1 2025-12-01 11:49:44.116 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35816 10 6452 1 2025-12-01 11:46:09.106 00:05:02.186 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-01 11:46:09.108 00:05:02.181 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-01 11:50:35.688 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-01 11:50:35.605 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 11:50:35.474 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-01 11:50:35.551 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-01 11:50:35.498 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 11:50:44.527 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:42142 10 6452 1 2025-12-01 11:51:44.937 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:43694 10 6452 1 2025-12-01 11:52:45.355 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54926 10 6452 1 2025-12-01 11:53:45.763 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:47446 10 6452 1 2025-12-01 11:54:46.172 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47438 10 6452 1 2025-12-01 11:55:36.199 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-01 11:55:36.116 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-01 11:55:35.976 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 11:55:35.826 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 11:55:35.907 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-01 11:55:46.574 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37922 10 6452 1 2025-12-01 11:52:09.111 00:05:02.179 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-01 11:52:09.107 00:05:02.185 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-01 11:56:46.978 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:44692 10 6452 1 2025-12-01 11:57:47.395 00:00:10.941 TCP 1.101.0.1:3000 -> 23.104.0.1:36806 12 10375 1 Summary: total flows: 139, total bytes: 422473, total packets: 1019, avg bps: 941, avg pps: 0, avg bpp: 414 Time window: 2025-12-01 10:58:09 - 2025-12-01 11:57:58 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0055s User: 0.0008s Wall: 0.0018s flows/second: 75617.2 Runtime: 0.0019s