Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-02 11:59:29.399 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:57344 10 6452 1 2025-12-02 12:00:29.760 00:00:10.345 TCP 1.101.0.1:3000 -> 23.104.0.1:44686 10 6452 1 2025-12-02 12:01:04.632 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 12:01:04.446 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 12:01:04.555 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 12:01:04.549 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 12:01:04.604 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 12:01:30.138 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:55078 10 6452 1 2025-12-02 11:57:11.809 00:05:57.893 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 11:57:11.811 00:05:57.888 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 12:02:30.537 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:51892 10 6452 1 2025-12-02 12:03:30.938 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:57870 10 6452 1 2025-12-02 12:04:31.362 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:44066 10 6452 1 2025-12-02 12:05:31.731 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:40550 10 6452 1 2025-12-02 12:06:04.966 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 12:06:04.881 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 12:06:05.111 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 12:06:05.140 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 12:06:05.194 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 12:06:32.145 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51016 10 6452 1 2025-12-02 12:07:32.549 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:42618 10 6452 1 2025-12-02 12:03:11.808 00:05:57.895 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 12:03:11.811 00:05:57.890 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 12:08:32.916 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:33486 10 6452 1 2025-12-02 12:09:33.279 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:45512 10 6452 1 2025-12-02 12:10:33.672 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:54256 10 6452 1 2025-12-02 12:11:04.958 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 12:11:04.932 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 12:11:04.789 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 12:11:04.875 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 12:11:04.684 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 12:11:34.034 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:60574 10 6452 1 2025-12-02 12:12:34.436 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:60288 10 6452 1 2025-12-02 12:13:34.853 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:36558 10 6452 1 2025-12-02 12:09:11.813 00:05:57.891 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 12:09:11.811 00:05:57.896 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 12:14:35.274 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40196 10 6452 1 2025-12-02 12:15:35.676 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:33838 10 6452 1 2025-12-02 12:16:04.669 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 12:16:04.697 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 12:16:04.845 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 12:16:04.953 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 12:16:04.928 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 12:16:36.104 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36818 10 6452 1 2025-12-02 12:17:36.507 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:34962 10 6452 1 2025-12-02 12:18:36.913 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:54122 10 6452 1 2025-12-02 12:19:37.311 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:33720 10 6452 1 2025-12-02 12:15:11.815 00:05:57.890 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 12:15:11.813 00:05:57.895 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 12:20:37.716 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:47022 10 6452 1 2025-12-02 12:21:05.262 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 12:21:05.136 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 12:21:05.163 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 12:21:04.867 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 12:21:05.246 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 12:21:38.132 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48800 10 6452 1 2025-12-02 12:22:38.536 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38598 12 6556 1 2025-12-02 12:23:38.938 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:33894 10 6452 1 2025-12-02 12:24:39.348 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:41434 10 6452 1 2025-12-02 12:25:39.712 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:53630 10 6452 1 2025-12-02 12:26:05.043 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 12:26:04.971 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 12:26:05.020 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 12:26:04.923 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 12:21:11.813 00:05:57.895 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 12:26:05.101 00:00:00.029 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 12:21:11.816 00:05:57.890 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 12:26:40.132 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36104 10 6452 1 2025-12-02 12:27:40.539 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:40636 10 6452 1 2025-12-02 12:28:40.951 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:42150 10 6452 1 2025-12-02 12:29:41.358 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:39210 10 6452 1 2025-12-02 12:30:41.759 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:37742 10 6452 1 2025-12-02 12:31:05.326 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 12:31:05.164 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 12:31:05.325 00:00:00.026 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 12:31:05.390 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 12:31:05.409 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 12:31:42.132 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:54630 10 6452 1 2025-12-02 12:27:11.816 00:05:57.892 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 12:27:11.814 00:05:57.896 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 12:32:42.534 00:00:10.751 TCP 1.101.0.1:3000 -> 23.104.0.1:43596 10 6452 1 2025-12-02 12:33:43.327 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38756 10 6452 1 2025-12-02 12:34:43.731 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43014 10 6452 1 2025-12-02 12:35:44.147 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:59616 10 6452 1 2025-12-02 12:36:05.271 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 12:36:05.181 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 12:36:05.400 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 12:36:05.405 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 12:36:05.483 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 12:36:44.564 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:53774 10 6452 1 2025-12-02 12:37:44.929 00:00:10.579 TCP 1.101.0.1:3000 -> 23.104.0.1:60278 10 6452 1 2025-12-02 12:33:11.818 00:05:57.890 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 12:33:11.816 00:05:57.896 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 12:38:45.547 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41134 10 6452 1 2025-12-02 12:39:45.949 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:33678 10 6452 1 2025-12-02 12:40:46.365 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41622 10 6452 1 2025-12-02 12:41:05.548 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 12:41:05.079 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 12:41:05.490 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 12:41:05.487 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 12:41:05.575 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 12:41:46.786 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:36872 10 6452 1 2025-12-02 12:42:47.149 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59666 10 6452 1 2025-12-02 12:43:47.555 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:45942 10 6452 1 2025-12-02 12:39:11.816 00:05:57.896 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 12:39:11.819 00:05:57.891 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 12:44:47.957 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:58114 10 6452 1 2025-12-02 12:45:48.366 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:32826 10 6452 1 2025-12-02 12:46:05.835 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 12:46:05.230 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 12:46:05.754 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 12:46:05.547 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 12:46:05.548 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 12:46:48.783 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:43934 10 6452 1 2025-12-02 12:47:49.191 00:00:10.923 TCP 1.101.0.1:3000 -> 23.104.0.1:39432 10 6452 1 2025-12-02 12:48:50.150 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:51016 10 6452 1 2025-12-02 12:49:50.550 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57722 10 6452 1 2025-12-02 12:45:11.822 00:05:57.889 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 12:45:11.820 00:05:57.894 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 12:51:05.853 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 12:51:05.769 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 12:51:05.618 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 12:51:05.770 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 12:51:05.688 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 12:50:50.955 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:35466 10 6452 1 2025-12-02 12:51:51.326 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46278 10 6452 1 2025-12-02 12:52:51.731 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:53342 10 6452 1 2025-12-02 12:53:52.146 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:43738 10 6452 1 2025-12-02 12:54:52.557 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:34308 10 6452 1 2025-12-02 12:56:05.535 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 12:56:05.363 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 12:56:05.626 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 12:56:05.533 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 12:55:52.960 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42734 10 6452 1 2025-12-02 12:56:05.708 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 12:51:11.822 00:05:57.897 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 12:51:11.826 00:05:57.892 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 12:56:53.370 00:00:10.590 TCP 1.101.0.1:3000 -> 23.104.0.1:57474 10 6452 1 2025-12-02 12:57:53.996 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:42062 10 6452 1 Summary: total flows: 139, total bytes: 410652, total packets: 1012, avg bps: 899, avg pps: 0, avg bpp: 405 Time window: 2025-12-02 11:57:11 - 2025-12-02 12:58:04 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0031s User: 0.0031s Wall: 0.0029s flows/second: 47391.3 Runtime: 0.0030s