Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-01 14:59:07.295 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:38962 10 6452 1 2025-12-01 15:00:07.690 00:00:18.426 TCP 1.101.0.1:3000 -> 23.104.0.1:45282 10 6452 1 2025-12-01 15:00:40.399 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-01 15:00:40.233 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-01 15:00:40.086 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 15:00:40.317 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 15:00:40.246 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-01 15:01:16.169 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:36250 10 6452 1 2025-12-01 14:57:11.345 00:05:57.839 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-01 14:57:11.343 00:05:57.844 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-01 15:02:16.571 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45294 10 6452 1 2025-12-01 15:03:16.985 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:52024 10 6452 1 2025-12-01 15:04:17.350 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51384 10 6452 1 2025-12-01 15:05:17.751 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56348 12 6556 1 2025-12-01 15:05:39.423 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-01 15:05:39.370 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 15:05:39.419 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 15:05:39.418 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-01 15:05:39.501 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-01 15:06:18.151 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60728 10 6452 1 2025-12-01 15:07:18.552 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:52904 10 6452 1 2025-12-01 15:03:11.343 00:05:57.845 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-01 15:03:11.347 00:05:57.839 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-01 15:08:18.910 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59168 12 6556 1 2025-12-01 15:09:19.319 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40182 10 6452 1 2025-12-01 15:10:19.730 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:52878 10 6452 1 2025-12-01 15:10:39.542 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-01 15:10:39.528 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-01 15:10:39.263 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 15:10:39.458 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 15:10:39.529 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-01 15:11:20.140 00:00:13.488 TCP 1.101.0.1:3000 -> 23.104.0.1:43980 10 6452 1 2025-12-01 15:12:23.668 00:00:10.439 TCP 1.101.0.1:3000 -> 23.104.0.1:55288 12 10369 1 2025-12-01 15:13:24.145 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54586 10 6452 1 2025-12-01 15:09:11.349 00:05:57.838 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-01 15:09:11.346 00:05:57.844 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-01 15:14:24.551 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55596 10 6452 1 2025-12-01 15:15:24.959 00:00:10.563 TCP 1.101.0.1:3000 -> 23.104.0.1:60710 10 6452 1 2025-12-01 15:15:39.702 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-01 15:15:39.600 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 15:15:39.643 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 15:15:39.693 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-01 15:15:39.726 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-01 15:16:25.562 00:00:10.415 TCP 1.101.0.1:3000 -> 23.104.0.1:35966 11 6504 1 2025-12-01 15:17:26.017 00:00:10.440 TCP 1.101.0.1:3000 -> 23.104.0.1:37548 12 10369 1 2025-12-01 15:18:26.493 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47962 10 6452 1 2025-12-01 15:19:26.894 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:41402 10 6452 1 2025-12-01 15:15:11.349 00:05:57.838 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-01 15:15:11.348 00:05:57.843 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-01 15:20:27.304 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54828 10 6452 1 2025-12-01 15:20:40.226 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-01 15:20:40.178 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 15:20:40.227 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 15:20:40.154 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-01 15:20:40.311 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-01 15:21:27.705 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55754 10 6452 1 2025-12-01 15:22:28.138 00:00:10.412 TCP 1.101.0.1:3000 -> 23.104.0.1:54644 12 10375 1 2025-12-01 15:23:28.601 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:60484 10 6452 1 2025-12-01 15:24:29.015 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44226 10 6452 1 2025-12-01 15:25:39.803 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-01 15:25:39.957 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 15:25:29.422 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:46852 10 6452 1 2025-12-01 15:25:39.815 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 15:25:39.879 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-01 15:25:39.897 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-01 15:21:11.352 00:05:57.838 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-01 15:21:11.349 00:05:57.842 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-01 15:26:29.837 00:00:10.394 TCP 1.101.0.1:3000 -> 23.104.0.1:43848 10 6452 1 2025-12-01 15:27:30.268 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:58016 10 6452 1 2025-12-01 15:28:30.679 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38040 10 6452 1 2025-12-01 15:29:31.111 00:00:10.451 TCP 1.101.0.1:3000 -> 23.104.0.1:48194 10 6452 1 2025-12-01 15:30:40.371 00:00:00.028 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-01 15:30:39.775 00:00:00.027 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 15:30:40.714 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 15:30:40.293 00:00:00.027 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-01 15:30:40.797 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-01 15:30:31.600 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:60248 10 6452 1 2025-12-01 15:31:32.002 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60534 10 6452 1 2025-12-01 15:27:11.356 00:05:57.837 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-01 15:27:11.359 00:05:57.831 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-01 15:32:32.405 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43610 10 6452 1 2025-12-01 15:33:32.806 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:40600 10 6452 1 2025-12-01 15:34:33.222 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:60968 10 6452 1 2025-12-01 15:35:39.975 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-01 15:35:40.074 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-01 15:35:39.896 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 15:35:39.892 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 15:35:40.116 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-01 15:35:33.636 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50016 10 6452 1 2025-12-01 15:36:34.041 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39110 10 6452 1 2025-12-01 15:37:34.445 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:52320 10 6452 1 2025-12-01 15:33:11.364 00:05:57.828 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-01 15:33:11.362 00:05:57.833 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-01 15:38:34.808 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:35490 10 6452 1 2025-12-01 15:39:35.210 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49788 10 6452 1 2025-12-01 15:40:40.027 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-01 15:40:40.267 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-01 15:40:40.008 00:00:00.049 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 15:40:39.943 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 15:40:40.227 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-01 15:40:35.611 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36716 10 6452 1 2025-12-01 15:41:36.018 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:35492 10 6452 1 2025-12-01 15:42:36.419 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53402 10 6452 1 2025-12-01 15:43:36.817 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:33084 10 6452 1 2025-12-01 15:39:11.367 00:05:57.829 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-01 15:39:11.370 00:05:57.824 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-01 15:44:37.220 00:00:10.345 TCP 1.101.0.1:3000 -> 23.104.0.1:46128 10 6452 1 2025-12-01 15:45:40.354 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-01 15:45:39.981 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-01 15:45:39.995 00:00:00.040 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 15:45:40.273 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 15:45:40.269 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-01 15:45:37.584 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41276 10 6452 1 2025-12-01 15:46:37.986 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41096 10 6452 1 2025-12-01 15:47:38.391 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44474 10 6452 1 2025-12-01 15:48:38.794 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41028 10 6452 1 2025-12-01 15:49:39.196 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:47312 10 6452 1 2025-12-01 15:45:11.372 00:05:57.824 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-01 15:45:11.372 00:05:57.828 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-01 15:50:40.806 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-01 15:50:40.539 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-01 15:50:40.598 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 15:50:40.723 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 15:50:40.410 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-01 15:50:39.626 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:53498 10 6452 1 2025-12-01 15:51:40.011 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:33648 10 6452 1 2025-12-01 15:52:40.413 00:00:10.609 TCP 1.101.0.1:3000 -> 23.104.0.1:60296 10 6452 1 2025-12-01 15:53:41.066 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:33152 10 6452 1 2025-12-01 15:54:41.434 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37686 10 6452 1 2025-12-01 15:55:40.507 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-01 15:55:40.563 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-01 15:55:40.367 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 15:55:40.423 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-01 15:55:40.313 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-01 15:55:41.841 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:45032 10 6452 1 2025-12-01 15:51:11.374 00:05:57.823 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-01 15:51:11.373 00:05:57.828 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-01 15:56:42.219 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:39596 10 6452 1 2025-12-01 15:57:42.624 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55736 10 6452 1 Summary: total flows: 139, total bytes: 422565, total packets: 1021, avg bps: 928, avg pps: 0, avg bpp: 413 Time window: 2025-12-01 14:57:11 - 2025-12-01 15:57:52 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0050s User: 0.0000s Wall: 0.0015s flows/second: 92058.8 Runtime: 0.0015s