Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-02 21:58:50.515 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36044 10 6452 1 2025-12-02 21:59:50.918 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45008 10 6452 1 2025-12-02 22:00:51.320 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42188 10 6452 1 2025-12-02 22:01:16.690 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 22:01:16.619 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 22:01:16.649 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 22:01:16.612 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 22:01:16.695 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 22:01:51.726 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:37406 10 6452 1 2025-12-02 21:58:09.876 00:05:02.191 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 21:58:09.873 00:05:02.196 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 22:02:52.133 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:47034 10 6452 1 2025-12-02 22:03:52.524 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35016 10 6452 1 2025-12-02 22:04:52.924 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:47484 10 6452 1 2025-12-02 22:05:53.351 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:59930 10 6452 1 2025-12-02 22:06:16.757 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 22:06:16.699 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 22:06:16.635 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 22:06:16.707 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 22:06:16.790 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 22:06:53.754 00:00:10.916 TCP 1.101.0.1:3000 -> 23.104.0.1:44932 10 6452 1 2025-12-02 22:07:54.715 00:00:10.455 TCP 1.101.0.1:3000 -> 23.104.0.1:50428 12 10375 1 2025-12-02 22:04:09.877 00:05:02.190 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 22:04:09.875 00:05:02.196 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 22:08:55.212 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:58802 10 6452 1 2025-12-02 22:09:55.573 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:35404 10 6452 1 2025-12-02 22:10:55.935 00:00:10.612 TCP 1.101.0.1:3000 -> 23.104.0.1:50296 10 6452 1 2025-12-02 22:11:16.633 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 22:11:16.739 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 22:11:16.695 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 22:11:16.628 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 22:11:16.710 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 22:11:56.588 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46592 10 6452 1 2025-12-02 22:12:56.991 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:35122 10 6452 1 2025-12-02 22:13:57.403 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34886 10 6452 1 2025-12-02 22:10:09.877 00:05:02.191 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 22:10:09.875 00:05:02.196 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 22:14:57.807 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:36360 10 6452 1 2025-12-02 22:15:58.214 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:32820 10 6452 1 2025-12-02 22:16:16.883 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 22:16:17.049 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 22:16:16.840 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 22:16:16.803 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 22:16:16.884 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 22:16:58.613 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52864 10 6452 1 2025-12-02 22:17:59.022 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:44666 12 6556 1 2025-12-02 22:18:59.419 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:52828 10 6452 1 2025-12-02 22:16:09.878 00:05:02.200 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 22:19:59.796 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:51020 10 6452 1 2025-12-02 22:16:09.880 00:05:02.195 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 22:21:00.195 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40558 10 6452 1 2025-12-02 22:21:17.053 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 22:21:16.968 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 22:21:16.974 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 22:21:16.923 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 22:21:16.970 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 22:22:00.607 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:50840 10 6452 1 2025-12-02 22:23:01.016 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:44726 10 6452 1 2025-12-02 22:24:01.413 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:48914 10 6452 1 2025-12-02 22:25:01.779 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:52882 10 6452 1 2025-12-02 22:22:09.879 00:05:02.200 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 22:26:02.187 00:00:10.954 TCP 1.101.0.1:3000 -> 23.104.0.1:53332 10 6452 1 2025-12-02 22:22:09.883 00:05:02.195 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 22:26:17.140 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 22:26:17.241 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 22:26:16.899 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 22:26:17.038 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 22:26:17.121 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 22:27:03.176 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:47870 10 6452 1 2025-12-02 22:28:03.611 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:46156 10 6452 1 2025-12-02 22:29:04.014 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:33196 10 6452 1 2025-12-02 22:30:04.419 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55726 10 6452 1 2025-12-02 22:31:17.179 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 22:31:17.109 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 22:31:17.294 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 22:31:04.824 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:42758 10 6452 1 2025-12-02 22:31:17.290 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 22:31:17.378 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 22:28:09.880 00:05:02.201 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 22:28:09.883 00:05:02.196 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 22:32:05.186 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48324 10 6452 1 2025-12-02 22:33:05.588 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60012 10 6452 1 2025-12-02 22:34:05.992 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44526 10 6452 1 2025-12-02 22:35:06.398 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:49008 10 6452 1 2025-12-02 22:36:17.506 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 22:36:06.807 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:45658 10 6452 1 2025-12-02 22:36:17.231 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 22:36:17.321 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 22:36:17.511 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 22:36:17.592 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 22:37:07.211 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36186 10 6452 1 2025-12-02 22:34:09.885 00:05:02.197 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 22:34:09.888 00:05:02.191 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 22:38:07.614 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57824 10 6452 1 2025-12-02 22:39:08.021 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:38024 10 6452 1 2025-12-02 22:40:08.438 00:00:10.845 TCP 1.101.0.1:3000 -> 23.104.0.1:48760 10 6452 1 2025-12-02 22:41:17.282 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 22:41:17.304 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 22:41:17.303 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 22:41:17.270 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 22:41:09.325 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58690 10 6452 1 2025-12-02 22:41:17.199 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 22:42:09.731 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:47726 10 6452 1 2025-12-02 22:43:10.107 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54070 10 6452 1 2025-12-02 22:40:09.886 00:05:02.197 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 22:40:09.889 00:05:02.192 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 22:44:10.513 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:55278 10 6452 1 2025-12-02 22:45:10.881 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:54902 10 6452 1 2025-12-02 22:46:17.744 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 22:46:17.593 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 22:46:17.586 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 22:46:17.450 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 22:46:17.662 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 22:46:11.285 00:00:11.027 TCP 1.101.0.1:3000 -> 23.104.0.1:33302 10 6452 1 2025-12-02 22:47:12.354 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56768 10 6452 1 2025-12-02 22:48:12.756 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:43804 10 6452 1 2025-12-02 22:49:13.171 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:43198 10 6452 1 2025-12-02 22:46:09.889 00:05:02.193 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 22:46:09.888 00:05:02.197 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 22:50:13.536 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34504 10 6452 1 2025-12-02 22:51:17.765 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 22:51:17.489 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 22:51:17.682 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 22:51:17.596 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 22:51:17.683 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 22:51:13.944 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:36820 10 6452 1 2025-12-02 22:52:14.358 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45970 10 6452 1 2025-12-02 22:53:14.760 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:54482 10 6452 1 2025-12-02 22:54:15.183 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51478 10 6452 1 2025-12-02 22:55:15.585 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:47450 10 6452 1 2025-12-02 22:52:09.889 00:05:02.198 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 22:52:09.890 00:05:02.193 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 22:56:18.091 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 22:56:17.698 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 22:56:18.348 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 22:56:18.228 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 22:56:18.429 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 22:56:16.005 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:40918 10 6452 1 2025-12-02 22:57:16.419 00:00:10.350 TCP 1.101.0.1:3000 -> 23.104.0.1:46776 10 6452 1 2025-12-02 22:58:16.808 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:57144 10 6452 1 Summary: total flows: 140, total bytes: 421027, total packets: 1024, avg bps: 931, avg pps: 0, avg bpp: 411 Time window: 2025-12-02 21:58:09 - 2025-12-02 22:58:27 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0048s User: 0.0019s Wall: 0.0023s flows/second: 61429.3 Runtime: 0.0023s