Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-02 16:58:42.572 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44788 10 6452 1 2025-12-02 16:59:42.976 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54658 10 6452 1 2025-12-02 17:00:43.380 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:35988 10 6452 1 2025-12-02 17:01:10.576 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 17:01:10.398 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 17:01:10.494 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 17:01:10.703 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 17:01:10.493 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 17:01:43.808 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45484 10 6452 1 2025-12-02 16:58:09.793 00:05:02.131 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 16:58:09.792 00:05:02.137 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 17:02:44.212 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:55470 10 6452 1 2025-12-02 17:03:44.628 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57120 10 6452 1 2025-12-02 17:04:45.029 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:33260 10 6452 1 2025-12-02 17:05:45.429 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:60376 10 6452 1 2025-12-02 17:06:10.779 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 17:06:10.505 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 17:06:10.360 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 17:06:10.846 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 17:06:10.930 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 17:06:45.795 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:53784 12 6556 1 2025-12-02 17:07:46.224 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:45508 10 6452 1 2025-12-02 17:04:09.794 00:05:02.136 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 17:04:09.792 00:05:02.141 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 17:08:46.621 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:57096 10 6452 1 2025-12-02 17:09:46.984 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39960 10 6452 1 2025-12-02 17:10:47.389 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:48380 10 6452 1 2025-12-02 17:11:10.826 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 17:11:10.640 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 17:11:10.816 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 17:11:10.671 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 17:11:10.743 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 17:11:47.789 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:57916 10 6452 1 2025-12-02 17:12:48.200 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:40634 10 6452 1 2025-12-02 17:13:48.610 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51952 10 6452 1 2025-12-02 17:10:09.794 00:05:02.140 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 17:10:09.797 00:05:02.134 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 17:14:49.021 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:37738 10 6452 1 2025-12-02 17:15:49.420 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:44602 10 6452 1 2025-12-02 17:16:11.660 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 17:16:11.456 00:00:00.026 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 17:16:11.239 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 17:16:11.536 00:00:00.026 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 17:16:11.619 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 17:16:49.836 00:00:10.393 TCP 1.101.0.1:3000 -> 23.104.0.1:41888 10 6452 1 2025-12-02 17:17:50.267 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:40032 10 6452 1 2025-12-02 17:18:50.674 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46388 10 6452 1 2025-12-02 17:19:51.097 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:36288 10 6452 1 2025-12-02 17:16:09.801 00:05:02.139 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 17:16:09.799 00:05:02.144 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 17:20:51.496 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:51570 10 6452 1 2025-12-02 17:21:11.421 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 17:21:11.418 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 17:21:11.206 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 17:21:11.150 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 17:21:11.504 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 17:21:51.907 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52674 10 6452 1 2025-12-02 17:22:52.307 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:42178 10 6452 1 2025-12-02 17:23:52.716 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:54482 10 6452 1 2025-12-02 17:24:53.141 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:51690 10 6452 1 2025-12-02 17:25:53.508 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38396 10 6452 1 2025-12-02 17:26:10.929 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 17:22:09.798 00:05:02.143 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 17:26:11.167 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 17:26:10.978 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 17:26:11.099 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 17:26:11.183 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 17:22:09.798 00:05:02.147 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 17:26:53.913 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:34312 10 6452 1 2025-12-02 17:27:54.340 00:00:10.434 TCP 1.101.0.1:3000 -> 23.104.0.1:44426 12 10369 1 2025-12-02 17:28:54.817 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:54974 10 6452 1 2025-12-02 17:29:55.224 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37272 10 6452 1 2025-12-02 17:30:55.629 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35196 10 6452 1 2025-12-02 17:31:11.343 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 17:31:11.198 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 17:31:11.212 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 17:31:11.281 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 17:31:11.260 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 17:31:56.031 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35622 10 6452 1 2025-12-02 17:28:09.800 00:05:02.143 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 17:28:09.798 00:05:02.148 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 17:32:56.436 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:40876 10 6452 1 2025-12-02 17:33:56.853 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:49138 10 6452 1 2025-12-02 17:34:57.277 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:34904 10 6452 1 2025-12-02 17:35:57.678 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:46222 10 6452 1 2025-12-02 17:36:11.479 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 17:36:11.317 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 17:36:11.224 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 17:36:11.488 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 17:36:11.571 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 17:36:58.110 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35466 10 6452 1 2025-12-02 17:37:58.513 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59836 10 6452 1 2025-12-02 17:34:09.804 00:05:02.141 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 17:34:09.801 00:05:02.146 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 17:38:58.917 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:52046 10 6452 1 2025-12-02 17:39:59.279 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34944 10 6452 1 2025-12-02 17:41:11.600 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 17:41:11.311 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 17:41:11.203 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 17:40:59.686 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:44062 12 6556 1 2025-12-02 17:41:11.499 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 17:41:11.581 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 17:42:00.109 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52494 10 6452 1 2025-12-02 17:43:00.511 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39880 10 6452 1 2025-12-02 17:44:00.920 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:35118 10 6452 1 2025-12-02 17:40:09.805 00:05:02.143 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 17:40:09.803 00:05:02.148 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 17:45:01.321 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:35300 10 6452 1 2025-12-02 17:46:11.628 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 17:46:11.493 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 17:46:11.424 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 17:46:11.570 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 17:46:01.724 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:49152 10 6452 1 2025-12-02 17:46:11.653 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 17:47:02.148 00:00:11.889 TCP 1.101.0.1:3000 -> 23.104.0.1:53032 10 6452 1 2025-12-02 17:48:04.104 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38434 10 6452 1 2025-12-02 17:49:04.503 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:60554 10 6452 1 2025-12-02 17:46:09.803 00:05:02.148 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 17:46:09.806 00:05:02.143 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 17:50:04.864 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:37362 10 6452 1 2025-12-02 17:51:11.612 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 17:51:11.594 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 17:51:11.587 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 17:51:11.239 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 17:51:11.530 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 17:51:05.274 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44024 10 6452 1 2025-12-02 17:52:05.673 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47520 10 6452 1 2025-12-02 17:53:06.104 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:57454 10 6452 1 2025-12-02 17:54:06.512 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:36656 10 6452 1 2025-12-02 17:55:06.906 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:37524 10 6452 1 2025-12-02 17:56:11.789 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 17:52:09.805 00:05:02.148 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 17:56:11.725 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 17:52:09.808 00:05:02.143 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 17:56:11.840 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 17:56:11.750 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 17:56:11.707 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 17:56:07.321 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57152 10 6452 1 2025-12-02 17:57:07.726 00:00:10.403 TCP 1.101.0.1:3000 -> 23.104.0.1:35162 10 6452 1 2025-12-02 17:58:08.140 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59326 10 6452 1 Summary: total flows: 140, total bytes: 421125, total packets: 1026, avg bps: 933, avg pps: 0, avg bpp: 410 Time window: 2025-12-02 16:58:09 - 2025-12-02 17:58:18 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0028s User: 0.0019s Wall: 0.0025s flows/second: 56679.8 Runtime: 0.0025s