Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-02 11:59:29.401 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:57344 10 6452 1 2025-12-02 12:00:29.762 00:00:10.345 TCP 1.101.0.1:3000 -> 23.104.0.1:44686 10 6452 1 2025-12-02 12:01:04.633 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 12:01:04.549 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 12:01:04.445 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 12:01:04.604 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 12:01:04.555 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 12:01:30.138 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55078 10 6452 1 2025-12-02 11:58:09.702 00:05:02.108 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 11:58:09.698 00:05:02.113 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 12:02:30.537 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:51892 10 6452 1 2025-12-02 12:03:30.939 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:57870 10 6452 1 2025-12-02 12:04:31.364 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:44066 10 6452 1 2025-12-02 12:05:31.731 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:40550 10 6452 1 2025-12-02 12:06:05.194 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 12:06:04.967 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 12:06:04.881 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 12:06:05.141 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 12:06:05.112 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 12:06:32.145 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51016 10 6452 1 2025-12-02 12:07:32.547 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:42618 10 6452 1 2025-12-02 12:04:09.700 00:05:02.113 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 12:04:09.703 00:05:02.108 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 12:08:32.916 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:33486 10 6452 1 2025-12-02 12:09:33.278 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:45512 10 6452 1 2025-12-02 12:10:33.672 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:54256 10 6452 1 2025-12-02 12:11:04.958 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 12:11:04.686 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 12:11:04.790 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 12:11:04.876 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 12:11:04.933 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 12:11:34.035 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:60574 10 6452 1 2025-12-02 12:12:34.437 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:60288 10 6452 1 2025-12-02 12:13:34.853 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:36558 10 6452 1 2025-12-02 12:10:09.704 00:05:02.108 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 12:10:09.703 00:05:02.113 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 12:14:35.274 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:40196 10 6452 1 2025-12-02 12:15:35.676 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:33838 10 6452 1 2025-12-02 12:16:04.928 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 12:16:04.669 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 12:16:04.953 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 12:16:04.697 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 12:16:04.845 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 12:16:36.104 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36818 10 6452 1 2025-12-02 12:17:36.507 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:34962 10 6452 1 2025-12-02 12:18:36.913 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:54122 10 6452 1 2025-12-02 12:19:37.310 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:33720 10 6452 1 2025-12-02 12:16:09.705 00:05:02.112 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 12:16:09.706 00:05:02.107 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 12:20:37.717 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:47022 10 6452 1 2025-12-02 12:21:05.246 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 12:21:04.868 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 12:21:05.263 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 12:21:05.136 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 12:21:05.164 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 12:21:38.132 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48800 10 6452 1 2025-12-02 12:22:38.536 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38598 12 6556 1 2025-12-02 12:23:38.936 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:33894 10 6452 1 2025-12-02 12:24:39.349 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:41434 10 6452 1 2025-12-02 12:25:39.712 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:53630 10 6452 1 2025-12-02 12:26:05.101 00:00:00.029 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 12:22:09.705 00:05:02.112 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 12:26:04.922 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 12:26:04.971 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 12:26:05.042 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 12:26:05.019 00:00:00.026 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 12:22:09.707 00:05:02.107 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 12:26:40.133 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36104 10 6452 1 2025-12-02 12:27:40.539 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:40636 10 6452 1 2025-12-02 12:28:40.950 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:42150 10 6452 1 2025-12-02 12:29:41.358 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:39210 10 6452 1 2025-12-02 12:30:41.758 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:37742 10 6452 1 2025-12-02 12:31:05.327 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 12:31:05.391 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 12:31:05.165 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 12:31:05.326 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 12:31:05.410 00:00:00.026 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 12:31:42.131 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:54630 10 6452 1 2025-12-02 12:28:09.706 00:05:02.112 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 12:28:09.708 00:05:02.108 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 12:32:42.535 00:00:10.750 TCP 1.101.0.1:3000 -> 23.104.0.1:43596 10 6452 1 2025-12-02 12:33:43.326 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38756 10 6452 1 2025-12-02 12:34:43.732 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43014 10 6452 1 2025-12-02 12:35:44.148 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:59616 10 6452 1 2025-12-02 12:36:05.483 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 12:36:05.272 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 12:36:05.406 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 12:36:05.182 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 12:36:05.401 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 12:36:44.563 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:53774 10 6452 1 2025-12-02 12:37:44.929 00:00:10.579 TCP 1.101.0.1:3000 -> 23.104.0.1:60278 10 6452 1 2025-12-02 12:34:09.708 00:05:02.111 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 12:34:09.710 00:05:02.106 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 12:38:45.546 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41134 10 6452 1 2025-12-02 12:39:45.950 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:33678 10 6452 1 2025-12-02 12:40:46.366 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:41622 10 6452 1 2025-12-02 12:41:05.549 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 12:41:05.488 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 12:41:05.080 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 12:41:05.491 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 12:41:05.574 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 12:41:46.787 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:36872 10 6452 1 2025-12-02 12:42:47.150 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59666 10 6452 1 2025-12-02 12:43:47.554 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:45942 10 6452 1 2025-12-02 12:40:09.711 00:05:02.108 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 12:40:09.708 00:05:02.114 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 12:44:47.958 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:58114 10 6452 1 2025-12-02 12:45:48.366 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:32826 10 6452 1 2025-12-02 12:46:05.547 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 12:46:05.546 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 12:46:05.229 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 12:46:05.752 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 12:46:05.835 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 12:46:48.784 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:43934 10 6452 1 2025-12-02 12:47:49.190 00:00:10.923 TCP 1.101.0.1:3000 -> 23.104.0.1:39432 10 6452 1 2025-12-02 12:48:50.149 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:51016 10 6452 1 2025-12-02 12:49:50.549 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57722 10 6452 1 2025-12-02 12:46:09.713 00:05:02.109 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 12:46:09.711 00:05:02.115 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 12:51:05.852 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 12:50:50.955 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:35466 10 6452 1 2025-12-02 12:51:05.768 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 12:51:05.688 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 12:51:05.618 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 12:51:05.769 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 12:51:51.327 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46278 10 6452 1 2025-12-02 12:52:51.730 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:53342 10 6452 1 2025-12-02 12:53:52.144 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:43738 10 6452 1 2025-12-02 12:54:52.559 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:34308 10 6452 1 2025-12-02 12:55:52.958 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42734 10 6452 1 2025-12-02 12:56:05.707 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 12:56:05.533 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 12:56:05.532 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 12:56:05.362 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 12:56:05.625 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 12:52:09.711 00:05:02.113 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 12:52:09.714 00:05:02.108 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 12:56:53.370 00:00:10.590 TCP 1.101.0.1:3000 -> 23.104.0.1:57474 10 6452 1 2025-12-02 12:57:53.996 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:42062 10 6452 1 Summary: total flows: 139, total bytes: 410652, total packets: 1012, avg bps: 913, avg pps: 0, avg bpp: 405 Time window: 2025-12-02 11:58:09 - 2025-12-02 12:58:04 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0037s User: 0.0012s Wall: 0.0020s flows/second: 68068.7 Runtime: 0.0021s