Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-02 13:59:21.310 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:46476 10 6452 1 2025-12-02 14:00:21.674 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:34064 10 6452 1 2025-12-02 14:01:06.990 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 14:01:06.902 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 14:01:06.896 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 14:01:06.614 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 14:01:06.908 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 14:01:22.100 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:39910 10 6452 1 2025-12-02 13:58:09.742 00:05:02.103 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 13:58:09.739 00:05:02.108 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 14:02:22.501 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:55082 10 6452 1 2025-12-02 14:03:22.908 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:60690 10 6452 1 2025-12-02 14:04:23.343 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:33568 10 6452 1 2025-12-02 14:05:23.750 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:43806 10 6452 1 2025-12-02 14:06:07.273 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 14:06:07.557 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 14:06:07.119 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 14:06:07.258 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 14:06:07.342 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 14:06:24.116 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:51330 10 6452 1 2025-12-02 14:07:24.510 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:52392 10 6452 1 2025-12-02 14:04:09.744 00:05:02.105 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 14:04:09.742 00:05:02.110 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 14:08:24.872 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:45544 10 6452 1 2025-12-02 14:09:25.275 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:49074 10 6452 1 2025-12-02 14:10:25.677 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:39312 10 6452 1 2025-12-02 14:11:07.138 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 14:11:07.346 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 14:11:07.058 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 14:11:07.213 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 14:11:07.295 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 14:11:26.103 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:54054 10 6452 1 2025-12-02 14:12:26.468 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51944 10 6452 1 2025-12-02 14:13:26.867 00:00:11.102 TCP 1.101.0.1:3000 -> 23.104.0.1:55230 10 6452 1 2025-12-02 14:10:09.745 00:05:02.104 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 14:10:09.743 00:05:02.109 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 14:14:28.006 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:36128 10 6452 1 2025-12-02 14:15:28.413 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:57468 10 6452 1 2025-12-02 14:16:07.228 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 14:16:07.290 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 14:16:07.353 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 14:16:07.231 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 14:16:07.314 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 14:16:28.812 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57082 10 6452 1 2025-12-02 14:17:29.210 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:60676 10 6452 1 2025-12-02 14:18:29.610 00:00:10.582 TCP 1.101.0.1:3000 -> 23.104.0.1:45520 10 6452 1 2025-12-02 14:19:30.231 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:57868 10 6452 1 2025-12-02 14:16:09.742 00:05:02.110 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 14:16:09.745 00:05:02.105 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 14:20:30.593 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49674 10 6452 1 2025-12-02 14:21:07.486 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 14:21:07.335 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 14:21:07.397 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 14:21:07.280 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 14:21:07.403 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 14:21:30.995 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47738 10 6452 1 2025-12-02 14:22:31.400 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37676 10 6452 1 2025-12-02 14:23:31.810 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:35270 10 6452 1 2025-12-02 14:24:32.217 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:56964 10 6452 1 2025-12-02 14:25:32.586 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:60138 10 6452 1 2025-12-02 14:26:07.611 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 14:22:09.744 00:05:02.109 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 14:26:07.535 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 14:26:07.532 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 14:26:07.433 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 14:26:07.529 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 14:22:09.748 00:05:02.104 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 14:26:32.998 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:59650 10 6452 1 2025-12-02 14:27:33.407 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47604 10 6452 1 2025-12-02 14:28:33.819 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:42810 10 6452 1 2025-12-02 14:29:34.228 00:00:10.875 TCP 1.101.0.1:3000 -> 23.104.0.1:55604 10 6452 1 2025-12-02 14:30:35.143 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:45130 10 6452 1 2025-12-02 14:31:07.690 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 14:31:07.630 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 14:31:07.639 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 14:31:07.374 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 14:31:07.609 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 14:31:35.559 00:00:10.595 TCP 1.101.0.1:3000 -> 23.104.0.1:38918 10 6452 1 2025-12-02 14:28:09.745 00:05:02.109 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 14:28:09.748 00:05:02.104 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 14:32:36.194 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:51028 10 6452 1 2025-12-02 14:33:36.603 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:58168 10 6452 1 2025-12-02 14:34:36.968 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54888 10 6452 1 2025-12-02 14:35:37.377 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38606 10 6452 1 2025-12-02 14:36:07.628 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 14:36:07.631 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 14:36:07.598 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 14:36:07.715 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 14:36:07.798 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 14:36:37.782 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:60716 10 6452 1 2025-12-02 14:37:38.186 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:49852 10 6452 1 2025-12-02 14:34:09.754 00:05:02.099 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 14:34:09.751 00:05:02.105 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 14:38:38.550 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:38012 10 6452 1 2025-12-02 14:39:38.916 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:56204 10 6452 1 2025-12-02 14:40:39.281 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:56622 10 6452 1 2025-12-02 14:41:07.874 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 14:41:07.720 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 14:41:07.793 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 14:41:07.863 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 14:41:07.791 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 14:41:39.681 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:35382 10 6452 1 2025-12-02 14:42:40.106 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43994 10 6452 1 2025-12-02 14:43:40.509 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:41626 10 6452 1 2025-12-02 14:40:09.752 00:05:02.106 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 14:40:09.756 00:05:02.101 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 14:44:40.909 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55922 10 6452 1 2025-12-02 14:45:41.317 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:51076 10 6452 1 2025-12-02 14:46:07.744 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 14:46:07.737 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 14:46:07.526 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 14:46:07.741 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 14:46:07.822 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 14:46:41.677 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:46010 10 6452 1 2025-12-02 14:47:42.050 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:35010 10 6452 1 2025-12-02 14:48:42.412 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:50652 10 6452 1 2025-12-02 14:49:42.779 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:33134 10 6452 1 2025-12-02 14:46:09.757 00:05:02.098 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 14:46:09.755 00:05:02.103 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 14:50:43.146 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:51992 10 6452 1 2025-12-02 14:51:07.992 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 14:51:07.783 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 14:51:07.782 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 14:51:07.809 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 14:51:07.909 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 14:51:43.557 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:49136 10 6452 1 2025-12-02 14:52:43.957 00:00:10.438 TCP 1.101.0.1:3000 -> 23.104.0.1:36940 12 10369 1 2025-12-02 14:53:44.435 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:39690 10 6452 1 2025-12-02 14:54:44.796 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:35010 10 6452 1 2025-12-02 14:55:45.201 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49174 10 6452 1 2025-12-02 14:56:08.240 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 14:52:09.758 00:05:02.112 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 14:56:08.150 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 14:56:07.982 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 14:56:08.041 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 14:56:08.158 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 14:52:09.760 00:05:02.107 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 14:56:45.603 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:34226 10 6452 1 2025-12-02 14:57:45.965 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:56468 10 6452 1 Summary: total flows: 139, total bytes: 414465, total packets: 1012, avg bps: 924, avg pps: 0, avg bpp: 409 Time window: 2025-12-02 13:58:09 - 2025-12-02 14:57:56 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0031s User: 0.0020s Wall: 0.0021s flows/second: 66063.3 Runtime: 0.0021s