Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-02 08:59:03.953 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39574 10 6452 1 2025-12-02 09:00:04.355 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:42200 10 6452 1 2025-12-02 09:01:01.586 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 09:01:01.737 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 09:01:01.581 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 09:01:01.496 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 09:01:01.579 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 09:01:04.762 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:58596 10 6452 1 2025-12-02 08:58:09.596 00:05:02.148 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 08:58:09.599 00:05:02.143 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 09:02:05.174 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56936 10 6452 1 2025-12-02 09:03:05.580 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:54428 10 6452 1 2025-12-02 09:04:06.002 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:38738 10 6452 1 2025-12-02 09:05:06.468 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48590 10 6452 1 2025-12-02 09:06:01.237 00:00:00.019 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 09:06:01.194 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 09:06:00.911 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 09:06:01.003 00:00:00.049 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 09:06:01.083 00:00:00.051 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 09:06:06.883 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:44118 10 6452 1 2025-12-02 09:07:07.306 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49214 10 6452 1 2025-12-02 09:04:09.599 00:05:02.147 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 09:04:09.601 00:05:02.141 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 09:08:07.712 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:52002 10 6452 1 2025-12-02 09:09:08.106 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:35490 10 6452 1 2025-12-02 09:10:08.512 00:00:11.189 TCP 1.101.0.1:3000 -> 23.104.0.1:40180 10 6452 1 2025-12-02 09:11:01.012 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 09:11:01.057 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 09:11:01.216 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 09:11:00.952 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 09:11:00.929 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 09:11:09.738 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:60962 10 6452 1 2025-12-02 09:12:10.147 00:00:10.402 TCP 1.101.0.1:3000 -> 23.104.0.1:50904 10 6452 1 2025-12-02 09:13:10.583 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34466 10 6452 1 2025-12-02 09:10:09.617 00:05:02.130 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 09:10:09.614 00:05:02.135 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 09:14:10.986 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:54792 10 6452 1 2025-12-02 09:15:11.399 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42576 10 6452 1 2025-12-02 09:16:01.577 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 09:16:01.494 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 09:16:01.494 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 09:16:01.498 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 09:16:01.394 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 09:16:11.808 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60868 10 6452 1 2025-12-02 09:17:12.213 00:00:12.347 TCP 1.101.0.1:3000 -> 23.104.0.1:34880 10 6452 1 2025-12-02 09:18:14.597 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:38002 10 6452 1 2025-12-02 09:19:15.003 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:46980 10 6452 1 2025-12-02 09:16:09.616 00:05:02.134 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 09:16:09.619 00:05:02.129 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 09:20:15.367 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:49458 10 6452 1 2025-12-02 09:21:01.523 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 09:21:01.162 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 09:21:01.440 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 09:21:01.342 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 09:21:01.440 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 09:21:15.771 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:47406 10 6452 1 2025-12-02 09:22:16.179 00:00:11.115 TCP 1.101.0.1:3000 -> 23.104.0.1:53062 10 6452 1 2025-12-02 09:23:17.330 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:57226 10 6452 1 2025-12-02 09:24:17.690 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:58746 10 6452 1 2025-12-02 09:25:18.059 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59946 10 6452 1 2025-12-02 09:26:01.552 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 09:26:01.474 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 09:26:01.461 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 09:26:01.401 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 09:26:01.471 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 09:22:09.637 00:05:02.114 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 09:22:09.635 00:05:02.119 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 09:26:18.485 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60804 10 6452 1 2025-12-02 09:27:18.884 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:33630 12 6556 1 2025-12-02 09:28:19.294 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56714 10 6452 1 2025-12-02 09:29:19.699 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45060 10 6452 1 2025-12-02 09:30:20.111 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46880 10 6452 1 2025-12-02 09:31:01.942 00:00:00.031 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 09:31:01.859 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 09:31:01.683 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 09:31:01.691 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 09:31:01.547 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 09:31:20.513 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:43378 10 6452 1 2025-12-02 09:28:09.636 00:05:02.120 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 09:28:09.639 00:05:02.114 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 09:32:20.892 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:53770 12 6556 1 2025-12-02 09:33:21.338 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:58548 10 6452 1 2025-12-02 09:34:21.698 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36000 10 6452 1 2025-12-02 09:35:22.115 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:45866 10 6452 1 2025-12-02 09:36:01.727 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 09:36:01.723 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 09:36:01.536 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 09:36:01.570 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 09:36:01.644 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 09:36:22.480 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39302 10 6452 1 2025-12-02 09:37:22.882 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:60022 10 6452 1 2025-12-02 09:34:09.645 00:05:02.113 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 09:34:09.648 00:05:02.107 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 09:38:23.283 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51642 10 6452 1 2025-12-02 09:39:23.686 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:40030 10 6452 1 2025-12-02 09:40:24.123 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37934 10 6452 1 2025-12-02 09:41:01.816 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 09:41:01.878 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 09:41:01.545 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 09:41:01.956 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 09:41:02.038 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 09:41:24.532 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41544 10 6452 1 2025-12-02 09:42:24.941 00:00:10.346 TCP 1.101.0.1:3000 -> 23.104.0.1:34910 10 6452 1 2025-12-02 09:43:25.325 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:60586 10 6452 1 2025-12-02 09:40:09.649 00:05:02.110 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 09:40:09.647 00:05:02.115 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 09:44:25.691 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49520 10 6452 1 2025-12-02 09:45:26.110 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50676 10 6452 1 2025-12-02 09:46:01.952 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 09:46:01.949 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 09:46:01.838 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 09:46:01.814 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 09:46:01.897 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 09:46:26.513 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43756 10 6452 1 2025-12-02 09:47:26.915 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50142 10 6452 1 2025-12-02 09:48:27.315 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37338 10 6452 1 2025-12-02 09:49:27.724 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:57958 10 6452 1 2025-12-02 09:46:09.651 00:05:02.110 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 09:46:09.648 00:05:02.115 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 09:50:28.132 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44190 10 6452 1 2025-12-02 09:51:02.070 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 09:51:02.082 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 09:51:01.988 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 09:51:01.989 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 09:51:02.077 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 09:51:28.538 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53132 10 6452 1 2025-12-02 09:52:28.942 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:37566 10 6452 1 2025-12-02 09:53:29.360 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:34168 10 6452 1 2025-12-02 09:54:29.720 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:52432 10 6452 1 2025-12-02 09:55:30.118 00:00:10.350 TCP 1.101.0.1:3000 -> 23.104.0.1:44468 10 6452 1 2025-12-02 09:56:02.322 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 09:56:02.421 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 09:56:02.134 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 09:56:02.326 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 09:56:02.410 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 09:52:09.651 00:05:02.114 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 09:52:09.654 00:05:02.110 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 09:56:30.506 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:51824 10 6452 1 2025-12-02 09:57:30.933 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:34988 10 6452 1 2025-12-02 09:58:31.307 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:53282 10 6452 1 Summary: total flows: 140, total bytes: 417208, total packets: 1024, avg bps: 918, avg pps: 0, avg bpp: 407 Time window: 2025-12-02 08:58:09 - 2025-12-02 09:58:41 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0037s User: 0.0012s Wall: 0.0026s flows/second: 54330.4 Runtime: 0.0026s