Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-02 22:59:17.181 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36228 10 6452 1 2025-12-02 23:00:17.593 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50198 10 6452 1 2025-12-02 22:57:09.890 00:05:02.197 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 22:57:09.892 00:05:02.192 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 23:01:17.706 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 23:01:17.918 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 23:01:17.669 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 23:01:17.623 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 23:01:17.907 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 23:01:17.995 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:52200 10 6452 1 2025-12-02 23:02:18.399 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:48698 10 6452 1 2025-12-02 23:03:18.763 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:54106 10 6452 1 2025-12-02 23:04:19.183 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:49932 10 6452 1 2025-12-02 23:05:19.584 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:34388 10 6452 1 2025-12-02 23:06:18.235 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 23:06:18.078 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 23:06:18.006 00:00:00.032 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 23:06:18.154 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 23:06:17.877 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 23:06:19.953 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:34838 10 6452 1 2025-12-02 23:03:09.893 00:05:02.194 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 23:03:09.891 00:05:02.199 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 23:07:20.371 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38848 10 6452 1 2025-12-02 23:08:20.770 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:48024 10 6452 1 2025-12-02 23:09:21.184 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:38412 10 6452 1 2025-12-02 23:10:21.550 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:59368 12 6556 1 2025-12-02 23:11:18.217 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 23:11:17.988 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 23:11:18.182 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 23:11:18.134 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 23:11:18.129 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 23:11:21.947 00:00:10.346 TCP 1.101.0.1:3000 -> 23.104.0.1:46372 10 6452 1 2025-12-02 23:12:22.327 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55144 10 6452 1 2025-12-02 23:09:09.894 00:05:02.195 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 23:09:09.891 00:05:02.201 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 23:13:22.733 00:00:10.408 TCP 1.101.0.1:3000 -> 23.104.0.1:48434 12 10375 1 2025-12-02 23:14:23.180 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:48986 10 6452 1 2025-12-02 23:15:23.540 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:48108 10 6452 1 2025-12-02 23:16:18.336 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 23:16:18.205 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 23:16:18.257 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 23:16:18.255 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 23:16:18.118 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 23:16:23.949 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:44100 10 6452 1 2025-12-02 23:17:24.366 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55062 10 6452 1 2025-12-02 23:18:24.766 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58370 10 6452 1 2025-12-02 23:15:09.893 00:05:02.200 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 23:15:09.897 00:05:02.194 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 23:19:25.172 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:37566 10 6452 1 2025-12-02 23:20:25.533 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:38912 10 6452 1 2025-12-02 23:21:18.492 00:00:00.034 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 23:21:18.296 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 23:21:18.315 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 23:21:18.408 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 23:21:18.298 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 23:21:25.890 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:45524 12 6556 1 2025-12-02 23:22:26.302 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59862 10 6452 1 2025-12-02 23:23:26.712 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:42588 10 6452 1 2025-12-02 23:24:27.116 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:60822 10 6452 1 2025-12-02 23:21:09.899 00:05:02.192 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 23:21:09.897 00:05:02.197 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 23:25:27.489 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:44926 10 6452 1 2025-12-02 23:26:18.437 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 23:26:18.339 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 23:26:18.316 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 23:26:18.433 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 23:26:18.400 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 23:26:27.853 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:39362 10 6452 1 2025-12-02 23:27:28.285 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55742 10 6452 1 2025-12-02 23:28:28.684 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:44716 10 6452 1 2025-12-02 23:29:29.109 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:36760 10 6452 1 2025-12-02 23:30:29.509 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:34268 10 6452 1 2025-12-02 23:27:09.896 00:05:02.199 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 23:31:18.927 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 23:27:09.900 00:05:02.193 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 23:31:18.760 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 23:31:19.067 00:00:00.018 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 23:31:18.845 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 23:31:18.994 00:00:00.026 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 23:31:29.907 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47606 10 6452 1 2025-12-02 23:32:30.311 00:00:11.103 TCP 1.101.0.1:3000 -> 23.104.0.1:44532 12 10375 1 2025-12-02 23:33:31.439 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:53686 10 6452 1 2025-12-02 23:34:31.837 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:34916 10 6452 1 2025-12-02 23:35:32.260 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:49744 10 6452 1 2025-12-02 23:36:18.735 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 23:36:18.655 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 23:36:18.467 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 23:36:18.653 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 23:36:18.580 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 23:36:32.624 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:50260 10 6452 1 2025-12-02 23:33:09.897 00:05:02.199 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 23:33:09.899 00:05:02.194 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 23:37:33.033 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57132 10 6452 1 2025-12-02 23:38:33.435 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44474 10 6452 1 2025-12-02 23:39:33.835 00:00:10.345 TCP 1.101.0.1:3000 -> 23.104.0.1:53452 10 6452 1 2025-12-02 23:40:34.222 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:43770 10 6452 1 2025-12-02 23:41:18.698 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 23:41:18.724 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 23:41:18.494 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 23:41:18.615 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 23:41:18.726 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 23:41:34.630 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:57634 10 6452 1 2025-12-02 23:42:34.997 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:54760 10 6452 1 2025-12-02 23:39:09.898 00:05:02.199 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 23:39:09.900 00:05:02.194 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 23:43:35.364 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59970 10 6452 1 2025-12-02 23:44:35.771 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:38760 10 6452 1 2025-12-02 23:45:36.137 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:59248 10 6452 1 2025-12-02 23:46:18.834 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 23:46:18.844 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 23:46:18.688 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 23:46:18.751 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 23:46:18.750 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 23:46:36.550 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:47874 10 6452 1 2025-12-02 23:47:36.952 00:00:10.445 TCP 1.101.0.1:3000 -> 23.104.0.1:56648 12 10375 1 2025-12-02 23:48:37.439 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:49610 10 6452 1 2025-12-02 23:45:09.899 00:05:02.199 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 23:45:09.902 00:05:02.193 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 23:49:37.844 00:00:10.394 TCP 1.101.0.1:3000 -> 23.104.0.1:56390 10 6452 1 2025-12-02 23:50:38.282 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:46648 10 6452 1 2025-12-02 23:51:18.749 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 23:51:18.866 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 23:51:18.892 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 23:51:18.665 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 23:51:18.972 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 23:51:38.690 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:41524 10 6452 1 2025-12-02 23:52:39.119 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:40210 10 6452 1 2025-12-02 23:53:39.524 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51038 10 6452 1 2025-12-02 23:54:39.942 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:37790 10 6452 1 2025-12-02 23:51:09.904 00:05:02.195 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 23:51:09.906 00:05:02.191 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 23:55:40.356 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:44418 10 6452 1 2025-12-02 23:56:18.996 00:00:00.030 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 23:56:18.756 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 23:56:18.989 00:00:00.036 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 23:56:19.071 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 23:56:19.072 00:00:00.034 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 23:56:40.712 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33938 10 6452 1 2025-12-02 23:57:41.118 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:58230 10 6452 1 Summary: total flows: 139, total bytes: 422525, total packets: 1020, avg bps: 928, avg pps: 0, avg bpp: 414 Time window: 2025-12-02 22:57:09 - 2025-12-02 23:57:51 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0030s User: 0.0020s Wall: 0.0021s flows/second: 65913.9 Runtime: 0.0021s