Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-02 18:59:34.839 00:00:10.394 TCP 1.101.0.1:3000 -> 23.104.0.1:48656 10 6452 1 2025-12-02 19:00:35.268 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34628 10 6452 1 2025-12-02 19:01:12.989 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 19:01:12.911 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 19:01:12.851 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 19:01:12.906 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 19:01:13.070 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 19:01:35.674 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:33286 10 6452 1 2025-12-02 18:57:11.968 00:05:57.862 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 18:57:11.970 00:05:57.857 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 19:02:36.104 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:57598 10 6452 1 2025-12-02 19:03:36.503 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59992 10 6452 1 2025-12-02 19:04:36.904 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:50504 10 6452 1 2025-12-02 19:05:37.313 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56420 10 6452 1 2025-12-02 19:06:13.151 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 19:06:13.182 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 19:06:12.785 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 19:06:13.069 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 19:06:13.143 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 19:06:37.715 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59620 10 6452 1 2025-12-02 19:07:38.123 00:00:10.440 TCP 1.101.0.1:3000 -> 23.104.0.1:41054 12 10369 1 2025-12-02 19:03:11.975 00:05:57.853 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 19:03:11.973 00:05:57.858 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 19:08:38.600 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:46182 10 6452 1 2025-12-02 19:09:39.005 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57550 10 6452 1 2025-12-02 19:10:39.407 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:49394 10 6452 1 2025-12-02 19:11:13.401 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 19:11:13.163 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 19:11:13.248 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 19:11:13.317 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 19:11:13.048 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 19:11:39.821 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:43744 10 6452 1 2025-12-02 19:12:40.220 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44614 10 6452 1 2025-12-02 19:13:40.624 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:34954 10 6452 1 2025-12-02 19:09:11.976 00:05:57.856 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 19:09:11.979 00:05:57.850 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 19:14:41.026 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:44192 10 6452 1 2025-12-02 19:15:41.387 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:36866 10 6452 1 2025-12-02 19:16:13.335 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 19:16:13.226 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 19:16:13.336 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 19:16:13.475 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 19:16:13.420 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 19:16:41.752 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:56620 10 6452 1 2025-12-02 19:17:42.166 00:00:11.733 TCP 1.101.0.1:3000 -> 23.104.0.1:44340 12 10375 1 2025-12-02 19:18:43.941 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:59158 10 6452 1 2025-12-02 19:19:44.364 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:42706 10 6452 1 2025-12-02 19:15:11.981 00:05:57.853 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 19:15:11.982 00:05:57.848 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 19:20:44.764 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:44382 10 6452 1 2025-12-02 19:21:13.543 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 19:21:13.349 00:00:00.032 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 19:21:13.499 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 19:21:13.573 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 19:21:13.581 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 19:21:45.180 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51284 10 6452 1 2025-12-02 19:22:45.585 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36960 10 6452 1 2025-12-02 19:23:45.984 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:33662 10 6452 1 2025-12-02 19:24:46.386 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:41670 10 6452 1 2025-12-02 19:25:46.784 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:45504 10 6452 1 2025-12-02 19:21:11.983 00:05:57.850 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 19:21:11.980 00:05:57.854 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 19:26:13.664 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 19:26:13.346 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 19:26:13.658 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 19:26:13.422 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 19:26:13.740 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 19:26:47.147 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:50656 10 6452 1 2025-12-02 19:27:47.560 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:50450 10 6452 1 2025-12-02 19:28:47.931 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:36344 13 6608 1 2025-12-02 19:29:48.340 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:49308 10 6452 1 2025-12-02 19:30:48.709 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:36232 10 6452 1 2025-12-02 19:31:13.443 00:00:00.026 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 19:31:13.492 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 19:31:13.579 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 19:31:13.569 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 19:31:13.662 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 19:31:49.139 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60754 10 6452 1 2025-12-02 19:27:11.983 00:05:57.853 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 19:27:11.984 00:05:57.849 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 19:32:49.538 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57938 10 6452 1 2025-12-02 19:33:49.934 00:00:10.393 TCP 1.101.0.1:3000 -> 23.104.0.1:33570 10 6452 1 2025-12-02 19:34:50.363 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:35386 10 6452 1 2025-12-02 19:35:50.767 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:41318 10 6452 1 2025-12-02 19:36:13.951 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 19:36:13.868 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 19:36:13.567 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 19:36:13.869 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 19:36:13.674 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 19:36:51.182 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:57944 10 6452 1 2025-12-02 19:37:51.590 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:33586 10 6452 1 2025-12-02 19:33:11.984 00:05:57.853 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 19:33:11.987 00:05:57.847 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 19:38:51.951 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:39680 10 6452 1 2025-12-02 19:39:52.324 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37548 10 6452 1 2025-12-02 19:40:52.729 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:48014 10 6452 1 2025-12-02 19:41:13.850 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 19:41:13.865 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 19:41:13.674 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 19:41:13.771 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 19:41:13.757 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 19:41:53.140 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:60510 10 6452 1 2025-12-02 19:42:53.543 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47390 10 6452 1 2025-12-02 19:43:53.948 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:43926 10 6452 1 2025-12-02 19:39:11.988 00:05:57.848 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 19:39:11.987 00:05:57.854 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 19:44:54.362 00:00:10.421 TCP 1.101.0.1:3000 -> 23.104.0.1:53416 11 6504 1 2025-12-02 19:45:54.819 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:38900 10 6452 1 2025-12-02 19:46:14.212 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 19:46:13.881 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 19:46:14.164 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 19:46:14.251 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 19:46:14.247 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 19:46:55.225 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:43464 10 6452 1 2025-12-02 19:47:55.584 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:53880 10 6452 1 2025-12-02 19:48:55.986 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:54456 10 6452 1 2025-12-02 19:45:11.994 00:05:00.008 TCP 179.21.23.23:179 -> 179.21.23.21:38570 11 667 1 2025-12-02 19:49:56.385 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39050 10 6452 1 2025-12-02 19:45:11.991 00:05:57.850 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 19:50:56.792 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55418 10 6452 1 2025-12-02 19:51:13.843 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 19:51:13.889 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 19:51:13.941 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 19:51:14.087 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 19:51:14.024 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 19:51:57.194 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:47910 10 6452 1 2025-12-02 19:52:57.604 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:38910 10 6452 1 2025-12-02 19:53:57.983 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52798 10 6452 1 2025-12-02 19:54:58.397 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:45856 10 6452 1 2025-12-02 19:51:11.999 00:05:00.002 TCP 179.21.23.21:38570 -> 179.21.23.23:179 11 686 1 2025-12-02 19:51:09.839 00:05:02.165 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 19:55:58.759 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:47398 10 6452 1 2025-12-02 19:56:14.078 00:00:00.038 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 19:56:14.100 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 19:56:13.971 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 19:56:13.997 00:00:00.038 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 19:56:14.267 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 19:56:59.180 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39442 10 6452 1 2025-12-02 19:57:59.580 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:33464 11 6504 1 Summary: total flows: 139, total bytes: 418525, total packets: 1017, avg bps: 915, avg pps: 0, avg bpp: 411 Time window: 2025-12-02 18:57:11 - 2025-12-02 19:58:09 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0051s User: 0.0010s Wall: 0.0045s flows/second: 30759.1 Runtime: 0.0045s