Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-02 09:59:31.712 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:44178 10 6452 1 2025-12-02 10:00:32.113 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:50350 10 6452 1 2025-12-02 10:01:02.057 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 10:01:02.184 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 10:01:01.874 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 10:01:01.930 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 10:01:01.974 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 10:01:32.527 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:54658 10 6452 1 2025-12-02 09:58:09.654 00:05:02.110 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 09:58:09.652 00:05:02.115 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 10:02:32.937 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:36398 10 6452 1 2025-12-02 10:03:33.356 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:38854 10 6452 1 2025-12-02 10:04:33.757 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:49306 10 6452 1 2025-12-02 10:05:34.116 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:51474 10 6452 1 2025-12-02 10:06:02.299 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 10:06:02.298 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 10:06:02.252 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 10:06:02.207 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 10:06:02.290 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 10:06:34.476 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56512 10 6452 1 2025-12-02 10:07:34.880 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35156 10 6452 1 2025-12-02 10:04:09.653 00:05:02.115 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 10:04:09.655 00:05:02.110 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 10:08:35.287 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:49648 10 6452 1 2025-12-02 10:09:35.689 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:36470 10 6452 1 2025-12-02 10:10:36.056 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:59962 10 6452 1 2025-12-02 10:11:02.336 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 10:11:02.443 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 10:11:02.166 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 10:11:02.439 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 10:11:02.520 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 10:11:36.417 00:00:15.692 TCP 1.101.0.1:3000 -> 23.104.0.1:59856 10 6452 1 2025-12-02 10:12:42.147 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:41832 10 6452 1 2025-12-02 10:13:42.548 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:55234 10 6452 1 2025-12-02 10:10:09.657 00:05:02.111 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 10:10:09.656 00:05:02.116 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 10:14:42.948 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:57102 10 6452 1 2025-12-02 10:15:43.362 00:00:13.469 TCP 1.101.0.1:3000 -> 23.104.0.1:33524 10 6452 1 2025-12-02 10:16:02.968 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 10:16:02.825 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 10:16:02.896 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 10:16:02.421 00:00:00.032 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 10:16:02.886 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 10:16:46.868 00:00:10.396 TCP 1.101.0.1:3000 -> 23.104.0.1:39628 10 6452 1 2025-12-02 10:17:47.305 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:51252 10 6452 1 2025-12-02 10:18:47.672 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:37950 10 6452 1 2025-12-02 10:19:48.036 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:57648 10 6452 1 2025-12-02 10:16:09.656 00:05:02.115 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 10:16:09.659 00:05:02.110 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 10:20:48.449 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:48724 10 6452 1 2025-12-02 10:21:02.609 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 10:21:02.532 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 10:21:02.732 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 10:21:02.355 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 10:21:02.527 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 10:21:48.848 00:00:10.393 TCP 1.101.0.1:3000 -> 23.104.0.1:50184 10 6452 1 2025-12-02 10:22:49.279 00:00:10.439 TCP 1.101.0.1:3000 -> 23.104.0.1:56032 12 10369 1 2025-12-02 10:23:49.757 00:00:10.315 TCP 1.101.0.1:3000 -> 23.104.0.1:42056 10 6452 1 2025-12-02 10:24:50.114 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47876 10 6452 1 2025-12-02 10:26:02.515 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 10:26:02.766 00:00:00.030 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 10:26:02.543 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 10:26:02.463 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 10:25:50.523 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:41232 10 6452 1 2025-12-02 10:26:02.432 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 10:22:09.661 00:05:02.110 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 10:22:09.658 00:05:02.114 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 10:26:50.895 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:44178 10 6452 1 2025-12-02 10:27:51.276 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:39714 10 6452 1 2025-12-02 10:28:51.678 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58450 10 6452 1 2025-12-02 10:29:52.102 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:40036 10 6452 1 2025-12-02 10:31:02.872 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 10:31:02.781 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 10:30:52.536 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51120 10 6452 1 2025-12-02 10:31:02.785 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 10:31:02.721 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 10:31:02.790 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 10:31:52.941 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:40758 10 6452 1 2025-12-02 10:28:09.665 00:05:02.108 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 10:28:09.663 00:05:02.113 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 10:32:53.354 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40840 10 6452 1 2025-12-02 10:33:53.772 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:49056 10 6452 1 2025-12-02 10:34:54.206 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38814 10 6452 1 2025-12-02 10:36:02.726 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 10:36:02.847 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 10:36:02.846 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 10:36:02.879 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 10:35:54.611 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34214 10 6452 1 2025-12-02 10:36:02.642 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 10:36:55.015 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:41350 10 6452 1 2025-12-02 10:37:55.378 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48358 10 6452 1 2025-12-02 10:34:09.665 00:05:02.113 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 10:34:09.667 00:05:02.108 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 10:38:55.783 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:49824 10 6452 1 2025-12-02 10:39:56.193 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59442 10 6452 1 2025-12-02 10:41:03.151 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 10:41:03.075 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 10:41:03.086 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 10:41:02.995 00:00:00.050 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 10:41:03.078 00:00:00.050 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 10:40:56.598 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:40804 10 6452 1 2025-12-02 10:41:56.997 00:00:10.356 TCP 1.101.0.1:3000 -> 23.104.0.1:43150 10 6452 1 2025-12-02 10:42:57.393 00:00:10.437 TCP 1.101.0.1:3000 -> 23.104.0.1:34702 12 10369 1 2025-12-02 10:43:57.864 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:33614 10 6452 1 2025-12-02 10:40:09.666 00:05:02.113 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 10:40:09.669 00:05:02.109 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 10:44:58.234 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:58722 10 6452 1 2025-12-02 10:46:03.199 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 10:46:02.922 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 10:46:03.010 00:00:00.036 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 10:46:02.890 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 10:46:03.117 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 10:45:58.598 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46580 10 6452 1 2025-12-02 10:46:59.006 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:37296 10 6452 1 2025-12-02 10:47:59.416 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:46010 10 6452 1 2025-12-02 10:48:59.814 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60370 10 6452 1 2025-12-02 10:46:09.670 00:05:02.112 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 10:46:09.672 00:05:02.107 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 10:50:00.224 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:42418 10 6452 1 2025-12-02 10:51:03.425 00:00:00.040 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 10:51:03.223 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 10:51:03.221 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 10:51:03.224 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 10:51:03.343 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 10:51:00.584 00:00:10.419 TCP 1.101.0.1:3000 -> 23.104.0.1:43584 11 6504 1 2025-12-02 10:52:01.048 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52234 10 6452 1 2025-12-02 10:53:01.450 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60370 10 6452 1 2025-12-02 10:54:01.853 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:43958 10 6452 1 2025-12-02 10:55:02.278 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54196 10 6452 1 2025-12-02 10:56:03.303 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 10:56:03.401 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 10:56:03.221 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 10:56:03.350 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 10:56:03.433 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 10:52:09.670 00:05:02.112 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 10:52:09.673 00:05:02.107 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 10:56:02.685 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:45050 10 6452 1 2025-12-02 10:57:03.110 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48730 10 6452 1 2025-12-02 10:58:03.518 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:51044 10 6452 1 Summary: total flows: 139, total bytes: 418434, total packets: 1015, avg bps: 928, avg pps: 0, avg bpp: 412 Time window: 2025-12-02 09:58:09 - 2025-12-02 10:58:13 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0049s User: 0.0000s Wall: 0.0022s flows/second: 62953.1 Runtime: 0.0022s