Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-02 08:59:03.952 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:39574 10 6452 1 2025-12-02 09:00:04.355 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:42200 10 6452 1 2025-12-02 09:01:01.579 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 09:01:01.587 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 09:01:01.582 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 09:01:01.497 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 09:01:01.738 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 09:01:04.762 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:58596 10 6452 1 2025-12-02 08:57:11.744 00:05:57.855 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 08:57:11.742 00:05:57.860 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 09:02:05.175 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56936 10 6452 1 2025-12-02 09:03:05.580 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:54428 10 6452 1 2025-12-02 09:04:06.003 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:38738 10 6452 1 2025-12-02 09:05:06.469 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:48590 10 6452 1 2025-12-02 09:06:00.910 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 09:06:01.002 00:00:00.050 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 09:06:01.193 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 09:06:01.236 00:00:00.020 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 09:06:01.084 00:00:00.051 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 09:06:06.882 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:44118 10 6452 1 2025-12-02 09:07:07.306 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49214 10 6452 1 2025-12-02 09:03:11.745 00:05:57.869 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 09:03:11.743 00:05:57.875 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 09:08:07.712 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:52002 10 6452 1 2025-12-02 09:09:08.106 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:35490 10 6452 1 2025-12-02 09:10:08.511 00:00:11.189 TCP 1.101.0.1:3000 -> 23.104.0.1:40180 10 6452 1 2025-12-02 09:11:00.952 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 09:11:00.928 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 09:11:01.013 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 09:11:01.056 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 09:11:01.215 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 09:11:09.738 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:60962 10 6452 1 2025-12-02 09:12:10.145 00:00:10.403 TCP 1.101.0.1:3000 -> 23.104.0.1:50904 10 6452 1 2025-12-02 09:13:10.583 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34466 10 6452 1 2025-12-02 09:09:11.745 00:05:57.871 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 09:09:11.742 00:05:57.876 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 09:14:10.987 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:54792 10 6452 1 2025-12-02 09:15:11.398 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:42576 10 6452 1 2025-12-02 09:16:01.576 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 09:16:01.494 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 09:16:01.394 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 09:16:01.494 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 09:16:01.498 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 09:16:11.807 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:60868 10 6452 1 2025-12-02 09:17:12.214 00:00:12.346 TCP 1.101.0.1:3000 -> 23.104.0.1:34880 10 6452 1 2025-12-02 09:18:14.597 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:38002 10 6452 1 2025-12-02 09:19:15.003 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:46980 10 6452 1 2025-12-02 09:15:11.751 00:05:57.885 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 09:15:11.747 00:05:57.890 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 09:20:15.368 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:49458 10 6452 1 2025-12-02 09:21:01.162 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 09:21:01.342 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 09:21:01.441 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 09:21:01.441 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 09:21:01.524 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 09:21:15.771 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:47406 10 6452 1 2025-12-02 09:22:16.179 00:00:11.115 TCP 1.101.0.1:3000 -> 23.104.0.1:53062 10 6452 1 2025-12-02 09:23:17.330 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:57226 10 6452 1 2025-12-02 09:24:17.690 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:58746 10 6452 1 2025-12-02 09:25:18.061 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59946 10 6452 1 2025-12-02 09:26:01.552 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 09:26:01.472 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 09:26:01.399 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 09:26:01.469 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 09:26:01.460 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 09:21:11.748 00:05:57.890 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 09:21:11.752 00:05:57.885 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 09:26:18.484 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60804 10 6452 1 2025-12-02 09:27:18.884 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:33630 12 6556 1 2025-12-02 09:28:19.294 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56714 10 6452 1 2025-12-02 09:29:19.700 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45060 10 6452 1 2025-12-02 09:30:20.111 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46880 10 6452 1 2025-12-02 09:31:01.941 00:00:00.031 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 09:31:01.683 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 09:31:01.547 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 09:31:01.859 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 09:31:01.691 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 09:31:20.513 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:43378 10 6452 1 2025-12-02 09:27:11.751 00:05:57.895 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 09:27:11.753 00:05:57.891 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 09:32:20.891 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:53770 12 6556 1 2025-12-02 09:33:21.338 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:58548 10 6452 1 2025-12-02 09:34:21.700 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36000 10 6452 1 2025-12-02 09:35:22.115 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:45866 10 6452 1 2025-12-02 09:36:01.722 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 09:36:01.570 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 09:36:01.644 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 09:36:01.536 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 09:36:01.727 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 09:36:22.480 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39302 10 6452 1 2025-12-02 09:37:22.882 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:60022 10 6452 1 2025-12-02 09:33:11.756 00:05:57.890 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 09:33:11.754 00:05:57.895 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 09:38:23.281 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51642 10 6452 1 2025-12-02 09:39:23.687 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:40030 10 6452 1 2025-12-02 09:40:24.122 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37934 10 6452 1 2025-12-02 09:41:01.816 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 09:41:01.546 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 09:41:01.957 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 09:41:01.878 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 09:41:02.038 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 09:41:24.533 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41544 10 6452 1 2025-12-02 09:42:24.941 00:00:10.346 TCP 1.101.0.1:3000 -> 23.104.0.1:34910 10 6452 1 2025-12-02 09:43:25.325 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:60586 10 6452 1 2025-12-02 09:39:11.757 00:05:57.890 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 09:39:11.755 00:05:57.895 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 09:44:25.691 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49520 10 6452 1 2025-12-02 09:45:26.111 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50676 10 6452 1 2025-12-02 09:46:01.952 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 09:46:01.838 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 09:46:01.814 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 09:46:01.949 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 09:46:01.896 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 09:46:26.514 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43756 10 6452 1 2025-12-02 09:47:26.915 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50142 10 6452 1 2025-12-02 09:48:27.314 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37338 10 6452 1 2025-12-02 09:49:27.724 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:57958 10 6452 1 2025-12-02 09:45:11.759 00:05:57.893 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 09:45:11.763 00:05:57.888 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 09:50:28.132 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44190 10 6452 1 2025-12-02 09:51:02.070 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 09:51:02.076 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 09:51:01.987 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 09:51:01.988 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 09:51:02.081 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 09:51:28.536 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53132 10 6452 1 2025-12-02 09:52:28.941 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:37566 10 6452 1 2025-12-02 09:53:29.360 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:34168 10 6452 1 2025-12-02 09:54:29.719 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:52432 10 6452 1 2025-12-02 09:55:30.118 00:00:10.350 TCP 1.101.0.1:3000 -> 23.104.0.1:44468 10 6452 1 2025-12-02 09:56:02.322 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 09:56:02.134 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 09:56:02.326 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 09:56:02.422 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 09:56:02.408 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 09:51:11.763 00:05:57.888 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 09:51:11.762 00:05:57.893 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 09:56:30.505 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:51824 10 6452 1 2025-12-02 09:57:30.933 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:34988 10 6452 1 2025-12-02 09:58:31.306 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:53282 10 6452 1 Summary: total flows: 140, total bytes: 417208, total packets: 1024, avg bps: 904, avg pps: 0, avg bpp: 407 Time window: 2025-12-02 08:57:11 - 2025-12-02 09:58:41 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0045s User: 0.0011s Wall: 0.0025s flows/second: 56180.9 Runtime: 0.0025s