Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-02 18:59:34.838 00:00:10.394 TCP 1.101.0.1:3000 -> 23.104.0.1:48656 10 6452 1 2025-12-02 19:00:35.268 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34628 10 6452 1 2025-12-02 19:01:12.911 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 19:01:13.070 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 19:01:12.852 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 19:01:12.906 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 19:01:12.989 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 19:01:35.673 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:33286 10 6452 1 2025-12-02 18:58:09.821 00:05:02.154 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 18:58:09.825 00:05:02.148 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 19:02:36.104 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:57598 10 6452 1 2025-12-02 19:03:36.503 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59992 10 6452 1 2025-12-02 19:04:36.905 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:50504 10 6452 1 2025-12-02 19:05:37.312 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56420 10 6452 1 2025-12-02 19:06:13.182 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 19:06:13.143 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 19:06:12.785 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 19:06:13.069 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 19:06:13.152 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 19:06:37.714 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59620 10 6452 1 2025-12-02 19:07:38.122 00:00:10.441 TCP 1.101.0.1:3000 -> 23.104.0.1:41054 12 10369 1 2025-12-02 19:04:09.830 00:05:02.146 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 19:04:09.828 00:05:02.151 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 19:08:38.600 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:46182 10 6452 1 2025-12-02 19:09:39.005 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57550 10 6452 1 2025-12-02 19:10:39.407 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:49394 10 6452 1 2025-12-02 19:11:13.163 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 19:11:13.047 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 19:11:13.247 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 19:11:13.317 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 19:11:13.400 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 19:11:39.820 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:43744 10 6452 1 2025-12-02 19:12:40.220 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44614 10 6452 1 2025-12-02 19:13:40.624 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:34954 10 6452 1 2025-12-02 19:10:09.828 00:05:02.154 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 19:10:09.830 00:05:02.149 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 19:14:41.027 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:44192 10 6452 1 2025-12-02 19:15:41.389 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:36866 10 6452 1 2025-12-02 19:16:13.420 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 19:16:13.336 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 19:16:13.476 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 19:16:13.227 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 19:16:13.337 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 19:16:41.752 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:56620 10 6452 1 2025-12-02 19:17:42.166 00:00:11.733 TCP 1.101.0.1:3000 -> 23.104.0.1:44340 12 10375 1 2025-12-02 19:18:43.940 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:59158 10 6452 1 2025-12-02 19:19:44.364 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:42706 10 6452 1 2025-12-02 19:16:09.830 00:05:02.153 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 19:16:09.833 00:05:02.148 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 19:20:44.766 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:44382 10 6452 1 2025-12-02 19:21:13.582 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 19:21:13.542 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 19:21:13.573 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 19:21:13.349 00:00:00.032 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 19:21:13.498 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 19:21:45.180 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51284 10 6452 1 2025-12-02 19:22:45.587 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36960 10 6452 1 2025-12-02 19:23:45.983 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:33662 10 6452 1 2025-12-02 19:24:46.387 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:41670 10 6452 1 2025-12-02 19:25:46.786 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:45504 10 6452 1 2025-12-02 19:26:13.664 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 19:22:09.833 00:05:02.149 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 19:26:13.422 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 19:26:13.346 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 19:26:13.658 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 19:26:13.741 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 19:22:09.831 00:05:02.154 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 19:26:47.146 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:50656 10 6452 1 2025-12-02 19:27:47.560 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:50450 10 6452 1 2025-12-02 19:28:47.931 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:36344 13 6608 1 2025-12-02 19:29:48.340 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:49308 10 6452 1 2025-12-02 19:30:48.708 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:36232 10 6452 1 2025-12-02 19:31:13.443 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 19:31:13.569 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 19:31:13.492 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 19:31:13.579 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 19:31:13.662 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 19:31:49.138 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60754 10 6452 1 2025-12-02 19:28:09.832 00:05:02.154 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 19:28:09.835 00:05:02.149 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 19:32:49.538 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57938 10 6452 1 2025-12-02 19:33:49.934 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:33570 10 6452 1 2025-12-02 19:34:50.364 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35386 10 6452 1 2025-12-02 19:35:50.768 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:41318 10 6452 1 2025-12-02 19:36:13.949 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 19:36:13.867 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 19:36:13.673 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 19:36:13.566 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 19:36:13.867 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 19:36:51.181 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:57944 10 6452 1 2025-12-02 19:37:51.591 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:33586 10 6452 1 2025-12-02 19:34:09.834 00:05:02.156 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 19:34:09.836 00:05:02.150 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 19:38:51.951 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:39680 10 6452 1 2025-12-02 19:39:52.326 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37548 10 6452 1 2025-12-02 19:40:52.729 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:48014 10 6452 1 2025-12-02 19:41:13.756 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 19:41:13.850 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 19:41:13.770 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 19:41:13.865 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 19:41:13.674 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 19:41:53.139 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:60510 10 6452 1 2025-12-02 19:42:53.542 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47390 10 6452 1 2025-12-02 19:43:53.950 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:43926 10 6452 1 2025-12-02 19:40:09.839 00:05:02.152 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 19:40:09.837 00:05:02.157 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 19:44:54.362 00:00:10.420 TCP 1.101.0.1:3000 -> 23.104.0.1:53416 11 6504 1 2025-12-02 19:45:54.819 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:38900 10 6452 1 2025-12-02 19:46:14.247 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 19:46:14.213 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 19:46:14.253 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 19:46:13.882 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 19:46:14.165 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 19:46:55.224 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:43464 10 6452 1 2025-12-02 19:47:55.584 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:53880 10 6452 1 2025-12-02 19:48:55.986 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:54456 10 6452 1 2025-12-02 19:46:09.837 00:05:02.165 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 19:49:56.385 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39050 10 6452 1 2025-12-02 19:46:09.840 00:05:02.158 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 19:50:56.791 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55418 10 6452 1 2025-12-02 19:51:13.842 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 19:51:14.086 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 19:51:13.888 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 19:51:13.940 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 19:51:14.025 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 19:51:57.194 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:47910 10 6452 1 2025-12-02 19:52:57.604 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:38910 10 6452 1 2025-12-02 19:53:57.983 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52798 10 6452 1 2025-12-02 19:54:58.396 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:45856 10 6452 1 2025-12-02 19:55:58.759 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:47398 10 6452 1 2025-12-02 19:56:14.077 00:00:00.039 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 19:52:09.838 00:05:02.164 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 19:56:14.100 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 19:52:09.842 00:05:02.159 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 19:56:14.266 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 19:56:13.970 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 19:56:13.996 00:00:00.039 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 19:56:59.180 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39442 10 6452 1 2025-12-02 19:57:59.579 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:33464 11 6504 1 Summary: total flows: 139, total bytes: 418648, total packets: 1019, avg bps: 930, avg pps: 0, avg bpp: 410 Time window: 2025-12-02 18:58:09 - 2025-12-02 19:58:09 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0040s User: 0.0010s Wall: 0.0017s flows/second: 80861.1 Runtime: 0.0017s