Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-01 14:59:07.294 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:38962 10 6452 1 2025-12-01 15:00:07.691 00:00:18.426 TCP 1.101.0.1:3000 -> 23.104.0.1:45282 10 6452 1 2025-12-01 15:00:40.231 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-01 15:00:40.244 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-01 15:00:40.085 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 15:00:40.315 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 15:00:40.399 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-01 15:01:16.168 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:36250 10 6452 1 2025-12-01 14:58:09.183 00:05:02.161 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-01 14:58:09.181 00:05:02.165 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-01 15:02:16.570 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45294 10 6452 1 2025-12-01 15:03:16.984 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:52024 10 6452 1 2025-12-01 15:04:17.350 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51384 10 6452 1 2025-12-01 15:05:17.750 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56348 12 6556 1 2025-12-01 15:05:39.423 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-01 15:05:39.418 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-01 15:05:39.370 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 15:05:39.419 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 15:05:39.503 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-01 15:06:18.150 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60728 10 6452 1 2025-12-01 15:07:18.552 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:52904 10 6452 1 2025-12-01 15:04:09.185 00:05:02.163 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-01 15:04:09.189 00:05:02.158 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-01 15:08:18.911 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59168 12 6556 1 2025-12-01 15:09:19.320 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40182 10 6452 1 2025-12-01 15:10:19.729 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:52878 10 6452 1 2025-12-01 15:10:39.529 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-01 15:10:39.530 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-01 15:10:39.264 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 15:10:39.459 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 15:10:39.543 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-01 15:11:20.139 00:00:13.489 TCP 1.101.0.1:3000 -> 23.104.0.1:43980 10 6452 1 2025-12-01 15:12:23.669 00:00:10.439 TCP 1.101.0.1:3000 -> 23.104.0.1:55288 12 10369 1 2025-12-01 15:13:24.146 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54586 10 6452 1 2025-12-01 15:10:09.189 00:05:02.158 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-01 15:10:09.186 00:05:02.164 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-01 15:14:24.551 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55596 10 6452 1 2025-12-01 15:15:39.726 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-01 15:15:39.643 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 15:15:39.702 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-01 15:15:24.959 00:00:10.562 TCP 1.101.0.1:3000 -> 23.104.0.1:60710 10 6452 1 2025-12-01 15:15:39.693 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-01 15:15:39.600 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 15:16:25.562 00:00:10.415 TCP 1.101.0.1:3000 -> 23.104.0.1:35966 11 6504 1 2025-12-01 15:17:26.017 00:00:10.440 TCP 1.101.0.1:3000 -> 23.104.0.1:37548 12 10369 1 2025-12-01 15:18:26.494 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47962 10 6452 1 2025-12-01 15:19:26.896 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:41402 10 6452 1 2025-12-01 15:16:09.187 00:05:02.165 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-01 15:16:09.189 00:05:02.160 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-01 15:20:27.303 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54828 10 6452 1 2025-12-01 15:20:40.226 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-01 15:20:40.154 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-01 15:20:40.178 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 15:20:40.227 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 15:20:40.310 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-01 15:21:27.705 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55754 10 6452 1 2025-12-01 15:22:28.138 00:00:10.412 TCP 1.101.0.1:3000 -> 23.104.0.1:54644 12 10375 1 2025-12-01 15:23:28.600 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:60484 10 6452 1 2025-12-01 15:24:29.015 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44226 10 6452 1 2025-12-01 15:25:39.897 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-01 15:25:39.802 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-01 15:25:29.421 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:46852 10 6452 1 2025-12-01 15:25:39.878 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-01 15:25:39.956 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 15:25:39.814 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 15:22:09.190 00:05:02.166 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-01 15:22:09.188 00:05:02.171 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-01 15:26:29.836 00:00:10.395 TCP 1.101.0.1:3000 -> 23.104.0.1:43848 10 6452 1 2025-12-01 15:27:30.267 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:58016 10 6452 1 2025-12-01 15:28:30.679 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38040 10 6452 1 2025-12-01 15:29:31.111 00:00:10.451 TCP 1.101.0.1:3000 -> 23.104.0.1:48194 10 6452 1 2025-12-01 15:30:39.773 00:00:00.028 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 15:30:40.796 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-01 15:30:40.713 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 15:30:40.369 00:00:00.028 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-01 15:30:31.598 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:60248 10 6452 1 2025-12-01 15:30:40.291 00:00:00.027 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-01 15:31:32.003 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60534 10 6452 1 2025-12-01 15:28:09.192 00:05:02.170 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-01 15:28:09.189 00:05:02.175 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-01 15:32:32.403 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:43610 10 6452 1 2025-12-01 15:33:32.806 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:40600 10 6452 1 2025-12-01 15:34:33.224 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:60968 10 6452 1 2025-12-01 15:35:39.974 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-01 15:35:39.896 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 15:35:39.892 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 15:35:40.073 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-01 15:35:40.115 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-01 15:35:33.635 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50016 10 6452 1 2025-12-01 15:36:34.040 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39110 10 6452 1 2025-12-01 15:37:34.445 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:52320 10 6452 1 2025-12-01 15:34:09.191 00:05:02.178 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-01 15:34:09.194 00:05:02.172 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-01 15:38:34.808 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:35490 10 6452 1 2025-12-01 15:39:35.209 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49788 10 6452 1 2025-12-01 15:40:40.027 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-01 15:40:39.943 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 15:40:40.267 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-01 15:40:40.227 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-01 15:40:40.007 00:00:00.050 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 15:40:35.612 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36716 10 6452 1 2025-12-01 15:41:36.017 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:35492 10 6452 1 2025-12-01 15:42:36.419 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53402 10 6452 1 2025-12-01 15:43:36.818 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:33084 10 6452 1 2025-12-01 15:40:09.192 00:05:02.180 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-01 15:40:09.194 00:05:02.175 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-01 15:44:37.220 00:00:10.345 TCP 1.101.0.1:3000 -> 23.104.0.1:46128 10 6452 1 2025-12-01 15:45:39.980 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-01 15:45:40.267 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-01 15:45:39.993 00:00:00.041 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 15:45:40.271 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 15:45:40.354 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-01 15:45:37.584 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41276 10 6452 1 2025-12-01 15:46:37.987 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41096 10 6452 1 2025-12-01 15:47:38.391 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44474 10 6452 1 2025-12-01 15:48:38.794 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41028 10 6452 1 2025-12-01 15:49:39.196 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:47312 10 6452 1 2025-12-01 15:46:09.197 00:05:02.175 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-01 15:46:09.194 00:05:02.180 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-01 15:50:40.806 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-01 15:50:40.538 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-01 15:50:40.409 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-01 15:50:40.597 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 15:50:40.722 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 15:50:39.626 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:53498 10 6452 1 2025-12-01 15:51:40.011 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:33648 10 6452 1 2025-12-01 15:52:40.412 00:00:10.611 TCP 1.101.0.1:3000 -> 23.104.0.1:60296 10 6452 1 2025-12-01 15:53:41.068 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:33152 10 6452 1 2025-12-01 15:54:41.433 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37686 10 6452 1 2025-12-01 15:55:40.507 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-01 15:55:40.564 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-01 15:55:40.314 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-01 15:55:40.368 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 15:55:40.424 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 15:55:41.841 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:45032 10 6452 1 2025-12-01 15:52:09.197 00:05:02.180 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-01 15:52:09.200 00:05:02.175 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-01 15:56:42.219 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:39596 10 6452 1 2025-12-01 15:57:42.624 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55736 10 6452 1 Summary: total flows: 139, total bytes: 422565, total packets: 1021, avg bps: 943, avg pps: 0, avg bpp: 413 Time window: 2025-12-01 14:58:09 - 2025-12-01 15:57:52 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0037s User: 0.0012s Wall: 0.0018s flows/second: 77404.2 Runtime: 0.0018s