Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-02 17:59:08.549 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:45322 10 6452 1 2025-12-02 18:00:08.908 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52486 10 6452 1 2025-12-02 18:01:11.918 00:00:00.027 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 18:01:11.920 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 18:01:11.973 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 18:01:11.835 00:00:00.027 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 18:01:11.964 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 18:01:09.328 00:00:10.628 TCP 1.101.0.1:3000 -> 23.104.0.1:35210 10 6452 1 2025-12-02 17:57:11.953 00:05:57.854 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 17:57:11.952 00:05:57.859 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 18:02:09.996 00:00:10.850 TCP 1.101.0.1:3000 -> 23.104.0.1:42604 10 6452 1 2025-12-02 18:03:10.882 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:56740 10 6452 1 2025-12-02 18:04:11.250 00:00:10.535 TCP 1.101.0.1:3000 -> 23.104.0.1:40402 11 6504 1 2025-12-02 18:05:11.828 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:51612 10 6452 1 2025-12-02 18:06:12.304 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 18:06:12.222 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 18:06:12.239 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 18:06:11.862 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 18:06:12.092 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 18:06:12.233 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:40152 10 6452 1 2025-12-02 18:07:12.598 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43248 10 6452 1 2025-12-02 18:03:11.951 00:05:57.860 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 18:03:11.954 00:05:57.855 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 18:08:13.005 00:00:10.978 TCP 1.101.0.1:3000 -> 23.104.0.1:55180 10 6452 1 2025-12-02 18:09:14.021 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:35152 10 6452 1 2025-12-02 18:10:14.425 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42106 10 6452 1 2025-12-02 18:11:11.890 00:00:00.028 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 18:11:11.937 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 18:11:12.063 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 18:11:11.877 00:00:00.026 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 18:11:12.146 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 18:11:14.831 00:00:10.353 TCP 1.101.0.1:3000 -> 23.104.0.1:43996 10 6452 1 2025-12-02 18:12:15.218 00:00:10.416 TCP 1.101.0.1:3000 -> 23.104.0.1:35450 11 6504 1 2025-12-02 18:13:15.669 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58022 10 6452 1 2025-12-02 18:09:11.953 00:05:57.860 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 18:09:11.956 00:05:57.854 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 18:14:16.101 00:00:10.703 TCP 1.101.0.1:3000 -> 23.104.0.1:55196 11 6492 1 2025-12-02 18:15:16.846 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:49870 10 6452 1 2025-12-02 18:16:12.010 00:00:00.028 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 18:16:12.070 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 18:16:12.318 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 18:16:12.120 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 18:16:12.402 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 18:16:17.277 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:55330 10 6452 1 2025-12-02 18:17:17.675 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:46004 10 6452 1 2025-12-02 18:18:18.104 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:33990 10 6452 1 2025-12-02 18:19:18.517 00:00:10.592 TCP 1.101.0.1:3000 -> 23.104.0.1:54342 10 6452 1 2025-12-02 18:15:11.956 00:05:57.855 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 18:15:11.953 00:05:57.861 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 18:20:19.141 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:48712 10 6452 1 2025-12-02 18:21:12.476 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 18:21:12.534 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 18:21:12.543 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 18:21:12.475 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 18:21:12.627 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 18:21:19.510 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:45662 10 6452 1 2025-12-02 18:22:19.907 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47680 12 6556 1 2025-12-02 18:23:20.314 00:00:10.396 TCP 1.101.0.1:3000 -> 23.104.0.1:40072 12 10375 1 2025-12-02 18:24:20.746 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:55112 10 6452 1 2025-12-02 18:25:21.115 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45190 10 6452 1 2025-12-02 18:21:11.959 00:05:57.853 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 18:26:12.413 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 18:21:11.957 00:05:57.858 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 18:26:12.259 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 18:26:12.202 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 18:26:12.331 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 18:26:12.180 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 18:26:21.520 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:45736 10 6452 1 2025-12-02 18:27:21.924 00:00:10.397 TCP 1.101.0.1:3000 -> 23.104.0.1:46438 10 6452 1 2025-12-02 18:28:22.358 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40438 10 6452 1 2025-12-02 18:29:22.763 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:46836 10 6452 1 2025-12-02 18:30:23.190 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:33724 10 6452 1 2025-12-02 18:31:12.443 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 18:31:12.261 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 18:31:12.360 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 18:31:12.361 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 18:31:12.263 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 18:31:23.566 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48908 10 6452 1 2025-12-02 18:27:11.961 00:05:57.859 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 18:27:11.962 00:05:57.854 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 18:32:23.967 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:55712 10 6452 1 2025-12-02 18:33:24.379 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:51244 10 6452 1 2025-12-02 18:34:24.785 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:49844 12 6556 1 2025-12-02 18:35:25.202 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:38842 10 6452 1 2025-12-02 18:36:12.619 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 18:36:12.580 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 18:36:12.563 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 18:36:12.536 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 18:36:12.580 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 18:36:25.623 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:41996 10 6452 1 2025-12-02 18:37:25.998 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:42672 10 6452 1 2025-12-02 18:33:11.962 00:05:57.856 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 18:33:11.965 00:05:57.852 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 18:38:26.425 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54634 10 6452 1 2025-12-02 18:39:26.836 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:37314 10 6452 1 2025-12-02 18:40:27.261 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:33092 10 6452 1 2025-12-02 18:41:12.778 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 18:41:12.702 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 18:41:12.590 00:00:00.027 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 18:41:12.696 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 18:41:12.701 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 18:41:27.667 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:33400 10 6452 1 2025-12-02 18:42:28.104 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:36084 10 6452 1 2025-12-02 18:43:28.506 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:52066 10 6452 1 2025-12-02 18:39:11.965 00:05:57.853 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 18:39:11.964 00:05:57.858 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 18:44:28.924 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:51056 10 6452 1 2025-12-02 18:45:29.329 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48392 10 6452 1 2025-12-02 18:46:12.796 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 18:46:12.787 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 18:46:12.570 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 18:46:12.747 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 18:46:12.653 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 18:46:29.733 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54552 10 6452 1 2025-12-02 18:47:30.143 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59316 10 6452 1 2025-12-02 18:48:30.552 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:56880 10 6452 1 2025-12-02 18:49:30.912 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:37696 10 6452 1 2025-12-02 18:45:11.969 00:05:57.852 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 18:45:11.966 00:05:57.858 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 18:50:31.276 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41022 10 6452 1 2025-12-02 18:51:12.834 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 18:51:12.657 00:00:00.029 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 18:51:12.985 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 18:51:12.851 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 18:51:13.069 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 18:51:31.679 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:57560 10 6452 1 2025-12-02 18:52:32.049 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:60700 10 6452 1 2025-12-02 18:53:32.416 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55680 10 6452 1 2025-12-02 18:54:32.816 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:39714 10 6452 1 2025-12-02 18:55:33.235 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:55884 10 6452 1 2025-12-02 18:51:11.969 00:05:57.853 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 18:51:11.967 00:05:57.858 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 18:56:13.129 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 18:56:12.983 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 18:56:12.782 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 18:56:13.048 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 18:56:12.979 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 18:56:33.640 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:50526 10 6452 1 2025-12-02 18:57:34.057 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:59902 10 6452 1 2025-12-02 18:58:34.480 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:37270 10 6452 1 Summary: total flows: 140, total bytes: 421275, total packets: 1029, avg bps: 912, avg pps: 0, avg bpp: 409 Time window: 2025-12-02 17:57:11 - 2025-12-02 18:58:44 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0060s User: 0.0000s Wall: 0.0018s flows/second: 77040.5 Runtime: 0.0018s