Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-01 19:59:23.640 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:34374 10 6452 1 2025-12-01 20:00:24.058 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:57094 10 6452 1 2025-12-01 20:00:45.181 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-01 20:00:45.279 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-01 20:00:45.098 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-01 20:00:45.239 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 20:00:45.100 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 20:01:24.472 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53514 10 6452 1 2025-12-01 19:58:09.295 00:05:02.174 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-01 19:58:09.293 00:05:02.179 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-01 20:02:24.881 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:56854 10 6452 1 2025-12-01 20:03:25.293 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48464 10 6452 1 2025-12-01 20:04:25.694 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42858 10 6452 1 2025-12-01 20:05:26.110 00:00:10.518 TCP 1.101.0.1:3000 -> 23.104.0.1:34456 10 6452 1 2025-12-01 20:05:45.583 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-01 20:05:45.831 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-01 20:05:45.842 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-01 20:05:45.741 00:00:00.059 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 20:05:45.501 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 20:06:26.666 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:46640 10 6452 1 2025-12-01 20:07:27.028 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41424 10 6452 1 2025-12-01 20:04:09.296 00:05:02.174 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-01 20:04:09.293 00:05:02.180 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-01 20:08:27.435 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56486 10 6452 1 2025-12-01 20:09:27.840 00:00:10.355 TCP 1.101.0.1:3000 -> 23.104.0.1:38314 10 6452 1 2025-12-01 20:10:28.238 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59318 10 6452 1 2025-12-01 20:10:45.559 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-01 20:10:45.606 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-01 20:10:45.540 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 20:10:45.609 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 20:10:45.693 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-01 20:11:28.640 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:33662 10 6452 1 2025-12-01 20:12:28.999 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46248 10 6452 1 2025-12-01 20:13:29.400 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:52506 10 6452 1 2025-12-01 20:10:09.296 00:05:02.177 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-01 20:10:09.299 00:05:02.172 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-01 20:14:29.815 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57310 12 6556 1 2025-12-01 20:15:45.908 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-01 20:15:30.222 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41622 10 6452 1 2025-12-01 20:15:45.914 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-01 20:15:45.566 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-01 20:15:45.689 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 20:15:45.825 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 20:16:30.630 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:60940 10 6452 1 2025-12-01 20:17:31.064 00:00:10.449 TCP 1.101.0.1:3000 -> 23.104.0.1:47866 12 10369 1 2025-12-01 20:18:31.553 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44562 10 6452 1 2025-12-01 20:19:31.956 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55510 10 6452 1 2025-12-01 20:16:09.299 00:05:02.182 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-01 20:16:09.302 00:05:02.176 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-01 20:20:32.362 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43290 10 6452 1 2025-12-01 20:20:45.714 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-01 20:20:45.708 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-01 20:20:45.799 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 20:20:45.790 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 20:20:45.872 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-01 20:21:32.762 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:46932 10 6452 1 2025-12-01 20:22:33.173 00:00:10.441 TCP 1.101.0.1:3000 -> 23.104.0.1:53706 12 10369 1 2025-12-01 20:23:33.652 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56832 10 6452 1 2025-12-01 20:24:34.091 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:60130 10 6452 1 2025-12-01 20:25:34.494 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:39898 10 6452 1 2025-12-01 20:25:45.898 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-01 20:25:45.816 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-01 20:25:45.881 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-01 20:25:45.958 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 20:25:45.815 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 20:22:09.303 00:05:02.174 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-01 20:22:09.301 00:05:02.179 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-01 20:26:34.854 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:36054 10 6452 1 2025-12-01 20:27:35.277 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:54422 10 6452 1 2025-12-01 20:28:35.639 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56298 10 6452 1 2025-12-01 20:29:36.048 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48740 10 6452 1 2025-12-01 20:30:45.922 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-01 20:30:45.847 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-01 20:30:45.829 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 20:30:45.751 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 20:30:36.453 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:36962 10 6452 1 2025-12-01 20:30:45.834 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-01 20:31:36.815 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:35928 10 6452 1 2025-12-01 20:28:09.308 00:05:02.174 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-01 20:28:09.309 00:05:02.169 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-01 20:32:37.183 00:00:10.403 TCP 1.101.0.1:3000 -> 23.104.0.1:52006 12 10369 1 2025-12-01 20:33:37.628 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:36472 10 6452 1 2025-12-01 20:34:38.031 00:00:10.411 TCP 1.101.0.1:3000 -> 23.104.0.1:50964 10 6452 1 2025-12-01 20:35:46.087 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-01 20:35:38.478 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54920 10 6452 1 2025-12-01 20:35:46.139 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-01 20:35:45.948 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 20:35:45.991 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 20:35:46.074 00:00:00.026 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-01 20:36:38.884 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:40540 12 6556 1 2025-12-01 20:37:39.315 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:59540 10 6452 1 2025-12-01 20:34:09.312 00:05:02.172 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-01 20:34:09.314 00:05:02.167 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-01 20:38:39.713 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:56050 10 6452 1 2025-12-01 20:39:40.125 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:37064 10 6452 1 2025-12-01 20:40:46.298 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-01 20:40:45.989 00:00:00.046 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-01 20:40:46.274 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 20:40:46.201 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 20:40:46.284 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-01 20:40:40.535 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:55420 10 6452 1 2025-12-01 20:41:40.898 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:60028 10 6452 1 2025-12-01 20:42:41.310 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45216 10 6452 1 2025-12-01 20:43:41.715 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:58652 10 6452 1 2025-12-01 20:40:09.316 00:05:02.168 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-01 20:40:09.313 00:05:02.173 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-01 20:44:42.134 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:49756 10 6452 1 2025-12-01 20:45:46.401 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-01 20:45:46.208 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-01 20:45:46.446 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 20:45:46.319 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 20:45:46.426 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-01 20:45:42.490 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:53474 10 6452 1 2025-12-01 20:46:42.904 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:53986 10 6452 1 2025-12-01 20:47:43.276 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:35946 10 6452 1 2025-12-01 20:48:43.685 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39414 10 6452 1 2025-12-01 20:49:44.108 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:56064 10 6452 1 2025-12-01 20:46:09.318 00:05:02.168 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-01 20:46:09.316 00:05:02.173 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-01 20:50:46.463 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-01 20:50:46.192 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-01 20:50:46.513 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-01 20:50:46.134 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 20:50:46.381 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 20:50:44.507 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:58068 10 6452 1 2025-12-01 20:51:44.913 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42296 10 6452 1 2025-12-01 20:52:45.314 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41286 10 6452 1 2025-12-01 20:53:45.717 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46962 10 6452 1 2025-12-01 20:54:46.118 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:59358 10 6452 1 2025-12-01 20:55:46.604 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-01 20:55:46.312 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-01 20:55:46.567 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-01 20:55:46.431 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 20:55:46.521 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 20:55:46.482 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47488 10 6452 1 2025-12-01 20:52:09.318 00:05:02.168 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-01 20:52:09.315 00:05:02.174 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-01 20:56:46.884 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:45616 10 6452 1 2025-12-01 20:57:47.262 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:56952 10 6452 1 Summary: total flows: 139, total bytes: 422507, total packets: 1020, avg bps: 941, avg pps: 0, avg bpp: 414 Time window: 2025-12-01 19:58:09 - 2025-12-01 20:57:57 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0063s User: 0.0000s Wall: 0.0028s flows/second: 49732.0 Runtime: 0.0028s