Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-02 13:59:21.311 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:46476 10 6452 1 2025-12-02 14:00:21.675 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:34064 10 6452 1 2025-12-02 14:01:06.902 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 14:01:06.614 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 14:01:06.907 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 14:01:06.896 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 14:01:06.990 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 14:01:22.101 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39910 10 6452 1 2025-12-02 13:57:11.843 00:05:57.900 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 13:57:11.845 00:05:57.895 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 14:02:22.501 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:55082 10 6452 1 2025-12-02 14:03:22.907 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:60690 10 6452 1 2025-12-02 14:04:23.342 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33568 10 6452 1 2025-12-02 14:05:23.749 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:43806 10 6452 1 2025-12-02 14:06:07.273 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 14:06:07.119 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 14:06:07.258 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 14:06:07.557 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 14:06:07.341 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 14:06:24.116 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:51330 10 6452 1 2025-12-02 14:07:24.511 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:52392 10 6452 1 2025-12-02 14:03:11.848 00:05:57.895 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 14:03:11.845 00:05:57.900 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 14:08:24.873 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45544 10 6452 1 2025-12-02 14:09:25.275 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:49074 10 6452 1 2025-12-02 14:10:25.677 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:39312 10 6452 1 2025-12-02 14:11:07.137 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 14:11:07.058 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 14:11:07.212 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 14:11:07.345 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 14:11:07.294 00:00:00.026 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 14:11:26.103 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:54054 10 6452 1 2025-12-02 14:12:26.467 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51944 10 6452 1 2025-12-02 14:13:26.866 00:00:11.102 TCP 1.101.0.1:3000 -> 23.104.0.1:55230 10 6452 1 2025-12-02 14:09:11.851 00:05:57.892 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 14:09:11.848 00:05:57.898 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 14:14:28.006 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:36128 10 6452 1 2025-12-02 14:15:28.414 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:57468 10 6452 1 2025-12-02 14:16:07.227 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 14:16:07.352 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 14:16:07.230 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 14:16:07.290 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 14:16:07.313 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 14:16:28.811 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57082 10 6452 1 2025-12-02 14:17:29.211 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:60676 10 6452 1 2025-12-02 14:18:29.610 00:00:10.582 TCP 1.101.0.1:3000 -> 23.104.0.1:45520 10 6452 1 2025-12-02 14:19:30.232 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:57868 10 6452 1 2025-12-02 14:15:11.852 00:05:57.893 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 14:15:11.849 00:05:57.898 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 14:20:30.594 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:49674 10 6452 1 2025-12-02 14:21:07.485 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 14:21:07.335 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 14:21:07.281 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 14:21:07.403 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 14:21:07.398 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 14:21:30.995 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47738 10 6452 1 2025-12-02 14:22:31.400 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:37676 10 6452 1 2025-12-02 14:23:31.810 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:35270 10 6452 1 2025-12-02 14:24:32.217 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:56964 10 6452 1 2025-12-02 14:25:32.587 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:60138 10 6452 1 2025-12-02 14:21:11.852 00:05:57.892 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 14:26:07.611 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 14:26:07.534 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 14:26:07.432 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 14:26:07.528 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 14:26:07.531 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 14:21:11.850 00:05:57.897 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 14:26:32.998 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:59650 10 6452 1 2025-12-02 14:27:33.410 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:47604 10 6452 1 2025-12-02 14:28:33.818 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:42810 10 6452 1 2025-12-02 14:29:34.228 00:00:10.875 TCP 1.101.0.1:3000 -> 23.104.0.1:55604 10 6452 1 2025-12-02 14:30:35.142 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:45130 10 6452 1 2025-12-02 14:31:07.691 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 14:31:07.609 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 14:31:07.639 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 14:31:07.629 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 14:31:07.374 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 14:31:35.558 00:00:10.595 TCP 1.101.0.1:3000 -> 23.104.0.1:38918 10 6452 1 2025-12-02 14:27:11.851 00:05:57.902 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 14:27:11.853 00:05:57.898 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 14:32:36.195 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:51028 10 6452 1 2025-12-02 14:33:36.603 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:58168 10 6452 1 2025-12-02 14:34:36.968 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54888 10 6452 1 2025-12-02 14:35:37.377 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38606 10 6452 1 2025-12-02 14:36:07.628 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 14:36:07.597 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 14:36:07.714 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 14:36:07.631 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 14:36:07.797 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 14:36:37.781 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:60716 10 6452 1 2025-12-02 14:37:38.187 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:49852 10 6452 1 2025-12-02 14:33:11.853 00:05:57.902 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 14:33:11.855 00:05:57.897 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 14:38:38.550 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:38012 10 6452 1 2025-12-02 14:39:38.915 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:56204 10 6452 1 2025-12-02 14:40:39.282 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:56622 10 6452 1 2025-12-02 14:41:07.874 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 14:41:07.722 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 14:41:07.864 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 14:41:07.793 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 14:41:07.794 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 14:41:39.681 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:35382 10 6452 1 2025-12-02 14:42:40.107 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43994 10 6452 1 2025-12-02 14:43:40.509 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:41626 10 6452 1 2025-12-02 14:39:11.856 00:05:57.899 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 14:39:11.854 00:05:57.904 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 14:44:40.910 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55922 10 6452 1 2025-12-02 14:45:41.318 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:51076 10 6452 1 2025-12-02 14:46:07.744 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 14:46:07.526 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 14:46:07.741 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 14:46:07.737 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 14:46:07.822 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 14:46:41.677 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:46010 10 6452 1 2025-12-02 14:47:42.051 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:35010 10 6452 1 2025-12-02 14:48:42.412 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:50652 10 6452 1 2025-12-02 14:49:42.778 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:33134 10 6452 1 2025-12-02 14:45:11.857 00:05:57.903 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 14:45:11.858 00:05:57.899 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 14:50:43.148 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:51992 10 6452 1 2025-12-02 14:51:07.784 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 14:51:07.810 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 14:51:07.910 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 14:51:07.783 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 14:51:07.992 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 14:51:43.557 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:49136 10 6452 1 2025-12-02 14:52:43.958 00:00:10.438 TCP 1.101.0.1:3000 -> 23.104.0.1:36940 12 10369 1 2025-12-02 14:53:44.436 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:39690 10 6452 1 2025-12-02 14:54:44.797 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35010 10 6452 1 2025-12-02 14:55:45.201 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49174 10 6452 1 2025-12-02 14:51:11.859 00:05:57.898 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 14:56:08.240 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 14:56:08.151 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 14:56:08.042 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 14:56:08.159 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 14:56:07.983 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 14:51:11.858 00:05:57.903 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 14:56:45.604 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:34226 10 6452 1 2025-12-02 14:57:45.965 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:56468 10 6452 1 Summary: total flows: 139, total bytes: 414465, total packets: 1012, avg bps: 909, avg pps: 0, avg bpp: 409 Time window: 2025-12-02 13:57:11 - 2025-12-02 14:57:56 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0044s User: 0.0009s Wall: 0.0020s flows/second: 70522.3 Runtime: 0.0020s