Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-03 12:59:31.964 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:49890 10 6452 1 2025-12-03 13:00:32.374 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34090 10 6452 1 2025-12-03 13:01:34.812 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 13:01:34.728 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 13:01:34.689 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 13:01:34.726 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 13:01:34.809 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 13:01:32.779 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:53640 10 6452 1 2025-12-03 12:58:10.189 00:05:02.167 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 12:58:10.190 00:05:02.163 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 13:02:33.191 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:35952 10 6452 1 2025-12-03 13:03:33.547 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:48332 10 6452 1 2025-12-03 13:04:33.947 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:39716 10 6452 1 2025-12-03 13:05:34.357 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44846 10 6452 1 2025-12-03 13:06:34.624 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 13:06:34.615 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 13:06:34.848 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 13:06:34.844 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 13:06:34.927 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 13:06:34.758 00:00:10.536 TCP 1.101.0.1:3000 -> 23.104.0.1:34260 10 6452 1 2025-12-03 13:07:35.330 00:00:10.443 TCP 1.101.0.1:3000 -> 23.104.0.1:41004 12 10375 1 2025-12-03 13:04:10.191 00:05:02.163 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 13:04:10.187 00:05:02.169 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 13:08:35.809 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48598 10 6452 1 2025-12-03 13:09:36.218 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:56640 10 6452 1 2025-12-03 13:10:36.585 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41706 10 6452 1 2025-12-03 13:11:34.908 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 13:11:34.751 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 13:11:34.743 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 13:11:34.555 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 13:11:34.827 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 13:11:36.990 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:60246 10 6452 1 2025-12-03 13:12:37.397 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41888 10 6452 1 2025-12-03 13:13:37.801 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48092 10 6452 1 2025-12-03 13:10:10.190 00:05:02.167 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 13:10:10.192 00:05:02.163 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 13:14:38.205 00:00:10.945 TCP 1.101.0.1:3000 -> 23.104.0.1:44412 10 6452 1 2025-12-03 13:15:39.192 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52608 10 6452 1 2025-12-03 13:16:34.750 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 13:16:34.981 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 13:16:34.979 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 13:16:34.982 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 13:16:35.062 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 13:16:39.595 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56028 10 6452 1 2025-12-03 13:17:39.999 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:48850 10 6452 1 2025-12-03 13:18:40.363 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:37858 10 6452 1 2025-12-03 13:19:40.762 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:35230 10 6452 1 2025-12-03 13:16:10.193 00:05:02.163 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 13:16:10.192 00:05:02.167 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 13:20:41.134 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55702 10 6452 1 2025-12-03 13:21:34.854 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 13:21:34.954 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 13:21:35.092 00:00:00.032 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 13:21:35.093 00:00:00.031 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 13:21:35.176 00:00:00.032 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 13:21:41.535 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:55140 10 6452 1 2025-12-03 13:22:41.947 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:50864 10 6452 1 2025-12-03 13:23:42.363 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58608 10 6452 1 2025-12-03 13:24:42.765 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:51464 10 6452 1 2025-12-03 13:25:43.178 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:58646 10 6452 1 2025-12-03 13:22:10.195 00:05:02.162 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 13:22:10.194 00:05:02.166 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 13:26:35.186 00:00:00.060 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 13:26:35.208 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 13:26:35.208 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 13:26:35.012 00:00:00.041 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 13:26:35.103 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 13:26:43.594 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:48520 10 6452 1 2025-12-03 13:27:43.971 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:51558 10 6452 1 2025-12-03 13:28:44.387 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44050 10 6452 1 2025-12-03 13:29:44.793 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:36006 10 6452 1 2025-12-03 13:30:45.155 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:37904 10 6452 1 2025-12-03 13:31:35.294 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 13:31:34.997 00:00:00.045 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 13:31:35.295 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 13:31:35.210 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 13:31:35.377 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 13:31:45.520 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60762 10 6452 1 2025-12-03 13:28:10.195 00:05:02.170 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 13:28:10.198 00:05:02.164 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 13:32:45.920 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:33658 10 6452 1 2025-12-03 13:33:46.282 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60260 10 6452 1 2025-12-03 13:34:46.691 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:57958 10 6452 1 2025-12-03 13:35:47.063 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:36498 10 6452 1 2025-12-03 13:36:35.349 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 13:36:35.486 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 13:36:35.134 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 13:36:35.342 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 13:36:35.424 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 13:36:47.426 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:40118 10 6452 1 2025-12-03 13:37:47.831 00:00:10.416 TCP 1.101.0.1:3000 -> 23.104.0.1:48820 10 6452 1 2025-12-03 13:34:10.199 00:05:02.163 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 13:34:10.197 00:05:02.168 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 13:38:48.289 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:55412 10 6452 1 2025-12-03 13:39:48.694 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:34834 10 6452 1 2025-12-03 13:40:49.111 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:49046 10 6452 1 2025-12-03 13:41:35.879 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 13:41:35.705 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 13:41:35.793 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 13:41:35.472 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 13:41:35.797 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 13:41:49.521 00:00:10.830 TCP 1.101.0.1:3000 -> 23.104.0.1:46512 10 6452 1 2025-12-03 13:42:50.389 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:33334 10 6452 1 2025-12-03 13:43:50.787 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:43562 10 6452 1 2025-12-03 13:40:10.198 00:05:02.169 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 13:40:10.201 00:05:02.163 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 13:44:51.192 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47342 10 6452 1 2025-12-03 13:45:51.592 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:46116 10 6452 1 2025-12-03 13:46:35.745 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 13:46:35.661 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 13:46:35.662 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 13:46:35.572 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 13:46:35.662 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 13:46:51.964 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:54206 10 6452 1 2025-12-03 13:47:52.330 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:33634 10 6452 1 2025-12-03 13:48:52.699 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:58548 10 6452 1 2025-12-03 13:49:53.110 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39866 10 6452 1 2025-12-03 13:46:10.202 00:05:02.162 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 13:46:10.201 00:05:02.167 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 13:50:53.516 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:35766 10 6452 1 2025-12-03 13:51:35.719 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 13:51:35.593 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 13:51:35.663 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 13:51:35.592 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 13:51:35.674 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 13:51:53.884 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60114 10 6452 1 2025-12-03 13:52:54.285 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:33716 10 6452 1 2025-12-03 13:53:54.684 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:56422 10 6452 1 2025-12-03 13:54:55.063 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45636 10 6452 1 2025-12-03 13:55:55.470 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41788 10 6452 1 2025-12-03 13:52:10.202 00:05:02.164 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 13:52:10.199 00:05:02.169 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 13:56:35.907 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 13:56:35.662 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 13:56:35.890 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 13:56:35.584 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 13:56:35.824 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 13:56:55.887 00:00:10.350 TCP 1.101.0.1:3000 -> 23.104.0.1:53344 10 6452 1 2025-12-03 13:57:56.276 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:41998 10 6452 1 Summary: total flows: 139, total bytes: 414471, total packets: 1012, avg bps: 921, avg pps: 0, avg bpp: 409 Time window: 2025-12-03 12:58:10 - 2025-12-03 13:58:06 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0051s User: 0.0000s Wall: 0.0023s flows/second: 59478.5 Runtime: 0.0024s