Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-02 19:59:00.000 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:35856 10 6452 1 2025-12-02 20:00:00.405 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47534 10 6452 1 2025-12-02 19:57:09.840 00:05:02.165 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 20:01:14.298 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 20:01:14.278 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 20:01:13.950 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 20:01:00.818 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:52882 10 6452 1 2025-12-02 20:01:14.216 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 20:01:14.223 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 19:57:09.843 00:05:02.160 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 20:02:01.217 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47894 10 6452 1 2025-12-02 20:03:01.620 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58854 10 6452 1 2025-12-02 20:04:02.026 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60066 10 6452 1 2025-12-02 20:05:02.434 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:49016 10 6452 1 2025-12-02 20:06:14.515 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 20:06:02.798 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:59622 10 6452 1 2025-12-02 20:06:14.263 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 20:06:14.440 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 20:06:14.434 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 20:06:14.435 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 20:07:03.174 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38970 11 6492 1 2025-12-02 20:03:09.847 00:05:02.185 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 20:03:09.845 00:05:02.189 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 20:08:03.577 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48444 10 6452 1 2025-12-02 20:09:03.978 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57502 10 6452 1 2025-12-02 20:10:04.382 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:60666 10 6452 1 2025-12-02 20:11:14.582 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 20:11:04.742 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43540 10 6452 1 2025-12-02 20:11:14.508 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 20:11:14.213 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 20:11:14.500 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 20:11:14.382 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 20:12:05.146 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:38480 10 6452 1 2025-12-02 20:09:09.846 00:05:02.189 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 20:13:05.553 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:36002 10 6452 1 2025-12-02 20:09:09.848 00:05:02.184 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 20:14:05.951 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:48078 10 6452 1 2025-12-02 20:15:06.367 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48996 10 6452 1 2025-12-02 20:16:14.708 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 20:16:14.519 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 20:16:14.472 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 20:16:14.624 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 20:16:14.531 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 20:16:06.767 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:58486 10 6452 1 2025-12-02 20:17:07.176 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40528 10 6452 1 2025-12-02 20:18:07.580 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36064 10 6452 1 2025-12-02 20:15:09.848 00:05:02.189 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 20:15:09.850 00:05:02.184 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 20:19:07.981 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:47450 10 6452 1 2025-12-02 20:20:08.349 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:53832 10 6452 1 2025-12-02 20:21:14.777 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 20:21:14.694 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 20:21:14.652 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 20:21:14.694 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 20:21:14.692 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 20:21:08.714 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:60676 10 6452 1 2025-12-02 20:22:09.107 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:33222 10 6452 1 2025-12-02 20:23:09.511 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:44638 10 6452 1 2025-12-02 20:24:09.873 00:00:10.861 TCP 1.101.0.1:3000 -> 23.104.0.1:34942 10 6452 1 2025-12-02 20:21:09.848 00:05:02.190 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 20:21:09.851 00:05:02.184 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 20:25:10.782 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46104 10 6452 1 2025-12-02 20:26:14.637 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 20:26:14.720 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 20:26:14.629 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 20:26:14.538 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 20:26:14.711 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 20:26:11.188 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:42938 10 6452 1 2025-12-02 20:27:11.597 00:00:10.352 TCP 1.101.0.1:3000 -> 23.104.0.1:52524 10 6452 1 2025-12-02 20:28:11.955 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47774 10 6452 1 2025-12-02 20:29:12.359 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:56816 10 6452 1 2025-12-02 20:30:12.755 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:40568 10 6452 1 2025-12-02 20:31:15.165 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 20:31:15.178 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 20:31:14.713 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 20:31:14.980 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 20:27:09.852 00:05:02.184 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 20:27:09.849 00:05:02.190 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 20:31:14.796 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 20:31:13.175 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56946 10 6452 1 2025-12-02 20:32:13.578 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:43866 10 6452 1 2025-12-02 20:33:13.989 00:00:10.506 TCP 1.101.0.1:3000 -> 23.104.0.1:53240 10 6452 1 2025-12-02 20:34:14.534 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:58000 10 6452 1 2025-12-02 20:35:14.902 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:39002 10 6452 1 2025-12-02 20:36:15.072 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 20:36:14.969 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 20:36:14.962 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 20:36:14.714 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 20:36:15.155 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 20:36:15.313 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:49234 10 6452 1 2025-12-02 20:33:09.851 00:05:02.188 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 20:33:09.854 00:05:02.184 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 20:37:15.707 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:54860 10 6452 1 2025-12-02 20:38:16.137 00:00:10.788 TCP 1.101.0.1:3000 -> 23.104.0.1:35466 10 6452 1 2025-12-02 20:39:16.962 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37538 10 6452 1 2025-12-02 20:40:17.362 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42380 10 6452 1 2025-12-02 20:41:15.064 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 20:41:14.934 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 20:41:14.902 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 20:41:14.902 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 20:41:14.985 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 20:41:17.768 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:44910 10 6452 1 2025-12-02 20:42:18.171 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60244 10 6452 1 2025-12-02 20:39:09.855 00:05:02.185 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 20:39:09.852 00:05:02.190 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 20:43:18.573 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:38022 10 6452 1 2025-12-02 20:44:18.987 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:56010 10 6452 1 2025-12-02 20:45:19.392 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:52128 10 6452 1 2025-12-02 20:46:15.141 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 20:46:15.196 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 20:46:14.989 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 20:46:15.058 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 20:46:15.285 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 20:46:19.807 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45380 10 6452 1 2025-12-02 20:47:20.219 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48760 10 6452 1 2025-12-02 20:48:20.622 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:47218 10 6452 1 2025-12-02 20:45:09.855 00:05:02.185 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 20:45:09.853 00:05:02.190 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 20:49:21.036 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:55124 10 6452 1 2025-12-02 20:50:21.397 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:55654 10 6452 1 2025-12-02 20:51:15.298 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 20:51:15.119 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 20:51:15.337 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 20:51:15.216 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 20:51:15.510 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 20:51:21.756 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:51204 10 6452 1 2025-12-02 20:52:22.118 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46526 10 6452 1 2025-12-02 20:53:22.521 00:00:10.794 TCP 1.101.0.1:3000 -> 23.104.0.1:39914 10 6452 1 2025-12-02 20:54:23.350 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35912 10 6452 1 2025-12-02 20:51:09.854 00:05:02.190 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 20:51:09.856 00:05:02.185 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 20:55:23.762 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:35586 10 6452 1 2025-12-02 20:56:15.366 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 20:56:15.274 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 20:56:15.233 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 20:56:15.319 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 20:56:15.315 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 20:56:24.127 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:50186 10 6452 1 2025-12-02 20:57:24.528 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:33196 10 6452 1 2025-12-02 20:58:24.929 00:00:10.402 TCP 1.101.0.1:3000 -> 23.104.0.1:50286 10 6452 1 Summary: total flows: 140, total bytes: 417040, total packets: 1021, avg bps: 905, avg pps: 0, avg bpp: 408 Time window: 2025-12-02 19:57:09 - 2025-12-02 20:58:35 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0024s User: 0.0036s Wall: 0.0021s flows/second: 66887.2 Runtime: 0.0021s