Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-02 07:59:36.995 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51474 10 6452 1 2025-12-02 08:00:37.400 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:33854 10 6452 1 2025-12-02 08:00:59.904 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 08:00:59.889 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 08:00:59.726 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 08:00:59.899 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 08:00:59.982 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 08:01:37.760 00:00:10.396 TCP 1.101.0.1:3000 -> 23.104.0.1:51570 11 6504 1 2025-12-02 07:58:09.578 00:05:02.135 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 07:58:09.574 00:05:02.141 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 08:02:38.196 00:00:10.402 TCP 1.101.0.1:3000 -> 23.104.0.1:52236 12 10375 1 2025-12-02 08:03:38.642 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37086 10 6452 1 2025-12-02 08:04:39.057 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:34906 10 6452 1 2025-12-02 08:05:39.421 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:34224 10 6452 1 2025-12-02 08:06:00.129 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 08:05:59.764 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 08:06:00.072 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 08:06:00.074 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 08:06:00.046 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 08:06:39.779 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:53836 10 6452 1 2025-12-02 08:07:40.145 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39530 10 6452 1 2025-12-02 08:04:09.581 00:05:02.136 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 08:04:09.578 00:05:02.141 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 08:08:40.546 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:46494 10 6452 1 2025-12-02 08:09:40.960 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:59910 10 6452 1 2025-12-02 08:10:41.323 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:36008 10 6452 1 2025-12-02 08:10:59.966 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 08:10:59.964 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 08:10:59.752 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 08:11:00.011 00:00:00.034 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 08:11:00.094 00:00:00.035 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 08:11:41.725 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:44858 10 6452 1 2025-12-02 08:12:42.134 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45932 10 6452 1 2025-12-02 08:13:42.542 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:33726 10 6452 1 2025-12-02 08:10:09.580 00:05:02.141 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 08:10:09.583 00:05:02.136 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 08:14:42.948 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:60368 10 6452 1 2025-12-02 08:15:43.363 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:56222 10 6452 1 2025-12-02 08:15:59.855 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 08:15:59.875 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 08:16:00.226 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 08:16:00.078 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 08:16:00.143 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 08:16:43.726 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45868 10 6452 1 2025-12-02 08:17:44.142 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:54840 10 6452 1 2025-12-02 08:18:44.548 00:00:10.553 TCP 1.101.0.1:3000 -> 23.104.0.1:47324 10 6452 1 2025-12-02 08:19:45.146 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:41814 10 6452 1 2025-12-02 08:16:09.585 00:05:02.136 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 08:16:09.582 00:05:02.141 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 08:20:45.547 00:00:10.694 TCP 1.101.0.1:3000 -> 23.104.0.1:37202 10 6452 1 2025-12-02 08:21:00.439 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 08:21:00.298 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 08:21:00.351 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 08:21:00.053 00:00:00.030 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 08:21:00.356 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 08:21:46.284 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57094 10 6452 1 2025-12-02 08:22:46.687 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:42244 10 6452 1 2025-12-02 08:23:47.115 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49580 10 6452 1 2025-12-02 08:24:47.519 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55438 10 6452 1 2025-12-02 08:25:47.922 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:47370 10 6452 1 2025-12-02 08:26:00.333 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 08:26:00.381 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 08:26:00.380 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 08:25:59.991 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 08:26:00.250 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 08:22:09.587 00:05:02.136 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 08:22:09.585 00:05:02.141 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 08:26:48.307 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:45384 10 6452 1 2025-12-02 08:27:48.713 00:00:10.436 TCP 1.101.0.1:3000 -> 23.104.0.1:38176 12 10369 1 2025-12-02 08:28:49.191 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:52202 10 6452 1 2025-12-02 08:29:49.593 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49952 10 6452 1 2025-12-02 08:31:00.484 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 08:31:00.401 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 08:31:00.450 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 08:31:00.264 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 08:30:49.998 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:49506 10 6452 1 2025-12-02 08:31:00.402 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 08:31:50.406 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54820 10 6452 1 2025-12-02 08:28:09.584 00:05:02.145 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 08:28:09.588 00:05:02.139 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 08:32:50.811 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41682 10 6452 1 2025-12-02 08:33:51.218 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:38778 10 6452 1 2025-12-02 08:34:51.573 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:38462 10 6452 1 2025-12-02 08:36:00.383 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 08:36:00.568 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 08:36:00.479 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 08:36:00.457 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 08:35:51.937 00:00:11.849 TCP 1.101.0.1:3000 -> 23.104.0.1:39858 10 6452 1 2025-12-02 08:36:00.540 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 08:36:53.830 00:00:10.344 TCP 1.101.0.1:3000 -> 23.104.0.1:58232 10 6452 1 2025-12-02 08:37:54.216 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:38494 10 6452 1 2025-12-02 08:34:09.590 00:05:02.140 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 08:34:09.586 00:05:02.146 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 08:38:54.586 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:59736 10 6452 1 2025-12-02 08:39:54.993 00:00:10.634 TCP 1.101.0.1:3000 -> 23.104.0.1:37994 10 6452 1 2025-12-02 08:41:00.638 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 08:41:00.638 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 08:41:00.707 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 08:41:00.736 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 08:41:00.555 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 08:40:55.681 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:36900 10 6452 1 2025-12-02 08:41:56.047 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:54254 10 6452 1 2025-12-02 08:42:56.446 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55952 10 6452 1 2025-12-02 08:43:56.855 00:00:10.346 TCP 1.101.0.1:3000 -> 23.104.0.1:38130 10 6452 1 2025-12-02 08:40:09.590 00:05:02.150 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 08:40:09.592 00:05:02.145 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 08:44:57.237 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36834 10 6452 1 2025-12-02 08:46:00.865 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 08:46:00.720 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 08:46:00.670 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 08:46:00.740 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 08:46:00.782 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 08:45:57.642 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:57396 11 6504 1 2025-12-02 08:46:58.067 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:58390 10 6452 1 2025-12-02 08:47:58.434 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:37028 10 6452 1 2025-12-02 08:48:58.845 00:00:10.393 TCP 1.101.0.1:3000 -> 23.104.0.1:41436 10 6452 1 2025-12-02 08:49:59.273 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:44656 10 6452 1 2025-12-02 08:46:09.595 00:05:02.144 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 08:46:09.591 00:05:02.150 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 08:51:00.902 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 08:51:00.820 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 08:51:00.909 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 08:51:00.845 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 08:51:00.820 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 08:50:59.631 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:39466 10 6452 1 2025-12-02 08:52:00.037 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:45204 10 6452 1 2025-12-02 08:53:00.442 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49448 10 6452 1 2025-12-02 08:54:00.837 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:59322 10 6452 1 2025-12-02 08:55:01.240 00:00:11.537 TCP 1.101.0.1:3000 -> 23.104.0.1:59616 10 6452 1 2025-12-02 08:56:00.943 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 08:56:00.940 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 08:56:00.699 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 08:56:01.104 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 08:56:01.187 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 08:52:09.596 00:05:02.148 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 08:52:09.598 00:05:02.142 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 08:56:02.816 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:60460 10 6452 1 2025-12-02 08:57:03.182 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:53432 10 6452 1 2025-12-02 08:58:03.544 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47008 10 6452 1 Summary: total flows: 139, total bytes: 418492, total packets: 1016, avg bps: 928, avg pps: 0, avg bpp: 411 Time window: 2025-12-02 07:58:09 - 2025-12-02 08:58:13 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0055s User: 0.0009s Wall: 0.0021s flows/second: 66288.6 Runtime: 0.0021s