Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-03 14:59:21.277 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:36468 10 6452 1 2025-12-03 15:00:21.650 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:41548 10 6452 1 2025-12-03 15:01:37.383 00:00:00.026 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 15:01:22.051 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51778 10 6452 1 2025-12-03 15:01:37.423 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 15:01:37.112 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 15:01:37.251 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 15:01:37.301 00:00:00.026 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 14:58:10.219 00:05:02.168 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 14:58:10.217 00:05:02.174 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 15:02:22.457 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56194 10 6452 1 2025-12-03 15:03:22.858 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:44974 10 6452 1 2025-12-03 15:04:23.236 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:55154 10 6452 1 2025-12-03 15:05:23.641 00:00:10.745 TCP 1.101.0.1:3000 -> 23.104.0.1:43850 10 6452 1 2025-12-03 15:06:24.413 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:40382 10 6452 1 2025-12-03 15:06:37.197 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 15:06:37.134 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 15:06:37.139 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 15:06:36.992 00:00:00.027 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 15:06:37.281 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 15:07:24.812 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56954 12 6556 1 2025-12-03 15:04:10.220 00:05:02.169 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 15:04:10.218 00:05:02.174 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 15:08:25.220 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40976 10 6452 1 2025-12-03 15:09:25.628 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:42980 10 6452 1 2025-12-03 15:10:26.028 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:45798 10 6452 1 2025-12-03 15:11:37.395 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 15:11:36.880 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 15:11:26.384 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:38672 10 6452 1 2025-12-03 15:11:37.395 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 15:11:37.390 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 15:11:37.479 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 15:12:26.797 00:00:10.603 TCP 1.101.0.1:3000 -> 23.104.0.1:46744 10 6452 1 2025-12-03 15:13:27.441 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:46716 10 6452 1 2025-12-03 15:10:10.221 00:05:02.169 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 15:10:10.218 00:05:02.175 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 15:14:27.806 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60334 10 6452 1 2025-12-03 15:15:28.210 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:51462 10 6452 1 2025-12-03 15:16:37.374 00:00:00.029 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 15:16:37.190 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 15:16:28.611 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:34448 10 6452 1 2025-12-03 15:16:37.414 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 15:16:37.387 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 15:16:37.291 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 15:17:29.003 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:43630 10 6452 1 2025-12-03 15:18:29.365 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:36448 10 6452 1 2025-12-03 15:19:29.749 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:48032 10 6452 1 2025-12-03 15:16:10.225 00:05:02.168 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 15:16:10.222 00:05:02.173 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 15:20:30.176 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:56604 10 6452 1 2025-12-03 15:21:37.721 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 15:21:37.526 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 15:21:37.680 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 15:21:37.604 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 15:21:37.687 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 15:21:30.560 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:60316 10 6452 1 2025-12-03 15:22:30.920 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35004 10 6452 1 2025-12-03 15:23:31.323 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42058 10 6452 1 2025-12-03 15:24:31.723 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:36898 10 6452 1 2025-12-03 15:25:32.140 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:38874 10 6452 1 2025-12-03 15:22:10.224 00:05:02.169 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 15:22:10.223 00:05:02.174 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 15:26:37.737 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 15:26:37.786 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 15:26:37.696 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 15:26:37.788 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 15:26:37.872 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 15:26:32.549 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:57420 10 6452 1 2025-12-03 15:27:32.914 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57994 10 6452 1 2025-12-03 15:28:33.314 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:48394 10 6452 1 2025-12-03 15:29:33.717 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:37984 10 6452 1 2025-12-03 15:30:34.101 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55592 10 6452 1 2025-12-03 15:31:37.712 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 15:31:37.622 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 15:31:37.637 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 15:31:37.758 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 15:31:37.841 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 15:31:34.501 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:35206 10 6452 1 2025-12-03 15:28:10.227 00:05:02.168 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 15:28:10.224 00:05:02.174 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 15:32:34.858 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:43260 10 6452 1 2025-12-03 15:33:35.275 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:32776 10 6452 1 2025-12-03 15:34:35.676 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:51364 10 6452 1 2025-12-03 15:35:36.095 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53750 10 6452 1 2025-12-03 15:36:37.906 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 15:36:37.794 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 15:36:37.643 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 15:36:37.562 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 15:36:37.645 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 15:36:36.497 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:53444 10 6452 1 2025-12-03 15:37:36.901 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:57722 12 6556 1 2025-12-03 15:34:10.225 00:05:02.174 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 15:34:10.228 00:05:02.169 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 15:38:37.319 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:56750 10 6452 1 2025-12-03 15:39:37.721 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:57114 10 6452 1 2025-12-03 15:40:38.111 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34518 10 6452 1 2025-12-03 15:41:37.890 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 15:41:37.656 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 15:41:37.887 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 15:41:37.820 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 15:41:37.971 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 15:41:38.517 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36774 10 6452 1 2025-12-03 15:42:38.924 00:00:10.342 TCP 1.101.0.1:3000 -> 23.104.0.1:49276 10 6452 1 2025-12-03 15:43:39.306 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:39598 10 6452 1 2025-12-03 15:40:10.228 00:05:02.172 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 15:40:10.231 00:05:02.167 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 15:44:39.679 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:38284 10 6452 1 2025-12-03 15:45:40.110 00:00:10.345 TCP 1.101.0.1:3000 -> 23.104.0.1:45008 10 6452 1 2025-12-03 15:46:38.217 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 15:46:38.215 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 15:46:38.104 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 15:46:38.053 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 15:46:38.137 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 15:46:40.494 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59412 10 6452 1 2025-12-03 15:47:40.895 00:00:10.461 TCP 1.101.0.1:3000 -> 23.104.0.1:42454 14 10479 1 2025-12-03 15:48:41.408 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:53254 10 6452 1 2025-12-03 15:49:41.826 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:52792 10 6452 1 2025-12-03 15:46:10.231 00:05:02.171 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 15:46:10.233 00:05:02.166 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 15:50:42.234 00:00:10.429 TCP 1.101.0.1:3000 -> 23.104.0.1:45766 11 6504 1 2025-12-03 15:51:38.112 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 15:51:38.091 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 15:51:38.240 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 15:51:38.157 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 15:51:38.323 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 15:51:42.703 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58094 10 6452 1 2025-12-03 15:52:43.110 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:37984 10 6452 1 2025-12-03 15:53:43.521 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:42778 10 6452 1 2025-12-03 15:54:43.886 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:34492 12 6556 1 2025-12-03 15:55:44.322 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:41508 10 6452 1 2025-12-03 15:52:10.234 00:05:02.169 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 15:52:10.232 00:05:02.173 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 15:56:38.316 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 15:56:38.333 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 15:56:38.234 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 15:56:38.148 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 15:56:38.233 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 15:56:44.733 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:53280 10 6452 1 2025-12-03 15:57:45.147 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39570 11 6492 1 Summary: total flows: 139, total bytes: 414979, total packets: 1022, avg bps: 925, avg pps: 0, avg bpp: 406 Time window: 2025-12-03 14:58:10 - 2025-12-03 15:57:55 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0032s User: 0.0008s Wall: 0.0012s flows/second: 113293.5 Runtime: 0.0012s