Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-03 11:59:05.422 00:00:10.731 TCP 1.101.0.1:3000 -> 23.104.0.1:37928 10 6452 1 2025-12-03 12:00:06.191 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:42002 10 6452 1 2025-12-03 12:01:06.593 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54008 10 6452 1 2025-12-03 12:01:33.496 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 12:01:33.543 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 12:01:33.546 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 12:01:33.435 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 12:01:33.414 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 11:58:10.159 00:05:02.180 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 11:58:10.162 00:05:02.175 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 12:02:06.996 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:48400 10 6452 1 2025-12-03 12:03:07.400 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:60656 10 6452 1 2025-12-03 12:04:07.812 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:41452 10 6452 1 2025-12-03 12:05:08.221 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:50116 10 6452 1 2025-12-03 12:06:08.631 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44830 10 6452 1 2025-12-03 12:06:33.738 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 12:06:33.697 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 12:06:33.520 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 12:06:33.655 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 12:06:33.820 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 12:07:09.038 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:51854 10 6452 1 2025-12-03 12:04:10.164 00:05:02.173 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 12:04:10.162 00:05:02.178 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 12:08:09.453 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49240 10 6452 1 2025-12-03 12:09:09.854 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:37532 10 6452 1 2025-12-03 12:10:10.237 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:53910 10 6452 1 2025-12-03 12:11:10.657 00:00:10.561 TCP 1.101.0.1:3000 -> 23.104.0.1:48202 10 6452 1 2025-12-03 12:11:33.796 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 12:11:33.725 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 12:11:33.701 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 12:11:33.625 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 12:11:33.707 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 12:12:11.252 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:32824 10 6452 1 2025-12-03 12:13:11.649 00:00:11.032 TCP 1.101.0.1:3000 -> 23.104.0.1:51798 10 6452 1 2025-12-03 12:10:10.167 00:05:02.172 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 12:10:10.163 00:05:02.177 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 12:14:12.722 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:55806 10 6452 1 2025-12-03 12:15:13.138 00:00:11.546 TCP 1.101.0.1:3000 -> 23.104.0.1:52664 10 6452 1 2025-12-03 12:16:14.723 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:45678 10 6452 1 2025-12-03 12:16:33.889 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 12:16:33.816 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 12:16:33.893 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 12:16:33.773 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 12:16:33.972 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 12:17:15.112 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:49322 10 6452 1 2025-12-03 12:18:15.523 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51168 12 6556 1 2025-12-03 12:19:15.923 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:51226 10 6452 1 2025-12-03 12:16:10.165 00:05:02.178 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 12:16:10.168 00:05:02.172 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 12:20:16.342 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:56060 10 6452 1 2025-12-03 12:21:16.751 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:44016 10 6452 1 2025-12-03 12:21:34.081 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 12:21:33.983 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 12:21:34.096 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 12:21:34.096 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 12:21:34.179 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 12:22:17.116 00:00:10.351 TCP 1.101.0.1:3000 -> 23.104.0.1:60904 10 6452 1 2025-12-03 12:23:17.506 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43410 10 6452 1 2025-12-03 12:24:17.921 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:54566 10 6452 1 2025-12-03 12:25:18.307 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42202 10 6452 1 2025-12-03 12:22:10.169 00:05:02.174 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 12:22:10.172 00:05:02.169 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 12:26:18.715 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:36810 10 6452 1 2025-12-03 12:26:33.897 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 12:26:33.968 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 12:26:33.915 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 12:26:33.845 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 12:26:33.815 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 12:27:19.134 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:42136 10 6452 1 2025-12-03 12:28:19.520 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37218 10 6452 1 2025-12-03 12:29:19.926 00:00:10.348 TCP 1.101.0.1:3000 -> 23.104.0.1:53132 10 6452 1 2025-12-03 12:30:20.311 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:41736 10 6452 1 2025-12-03 12:31:34.239 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 12:31:33.946 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 12:31:34.053 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 12:31:33.976 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 12:31:20.722 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:52018 10 6452 1 2025-12-03 12:31:34.156 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 12:28:10.173 00:05:02.171 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 12:28:10.177 00:05:02.165 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 12:32:21.137 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51170 10 6452 1 2025-12-03 12:33:21.542 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:32916 10 6452 1 2025-12-03 12:34:21.944 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:57266 10 6452 1 2025-12-03 12:35:22.356 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:60672 10 6452 1 2025-12-03 12:36:34.325 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 12:36:34.176 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 12:36:34.176 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 12:36:34.042 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 12:36:22.767 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:60440 10 6452 1 2025-12-03 12:36:34.231 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 12:37:23.181 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39868 10 6452 1 2025-12-03 12:34:10.177 00:05:02.168 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 12:34:10.181 00:05:02.163 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 12:38:23.586 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:47244 10 6452 1 2025-12-03 12:39:23.993 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:50294 10 6452 1 2025-12-03 12:40:24.404 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:39220 10 6452 1 2025-12-03 12:41:34.314 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 12:41:34.387 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 12:41:34.169 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 12:41:34.430 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 12:41:34.513 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 12:41:24.766 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:58246 10 6452 1 2025-12-03 12:42:25.131 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:48824 10 6452 1 2025-12-03 12:43:25.494 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59274 10 6452 1 2025-12-03 12:40:10.179 00:05:02.168 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 12:40:10.183 00:05:02.163 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 12:44:25.893 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:40028 10 6452 1 2025-12-03 12:45:26.311 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:59878 10 6452 1 2025-12-03 12:46:34.459 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 12:46:34.292 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 12:46:34.079 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 12:46:34.325 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 12:46:34.376 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 12:46:26.719 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:43422 10 6452 1 2025-12-03 12:47:27.129 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:35728 10 6452 1 2025-12-03 12:48:27.529 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60866 10 6452 1 2025-12-03 12:49:27.933 00:00:10.350 TCP 1.101.0.1:3000 -> 23.104.0.1:39594 10 6452 1 2025-12-03 12:46:10.180 00:05:02.170 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 12:46:10.182 00:05:02.165 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 12:50:28.324 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:39032 10 6452 1 2025-12-03 12:51:34.520 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 12:51:34.464 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 12:51:34.318 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 12:51:34.384 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 12:51:34.467 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 12:51:28.737 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:45692 10 6452 1 2025-12-03 12:52:29.148 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:40752 10 6452 1 2025-12-03 12:53:29.560 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:60714 10 6452 1 2025-12-03 12:54:29.917 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:54160 10 6452 1 2025-12-03 12:55:30.330 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:45924 10 6452 1 2025-12-03 12:52:10.187 00:05:02.163 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 12:52:10.184 00:05:02.168 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 12:56:34.742 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 12:56:34.573 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 12:56:34.560 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 12:56:34.316 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 12:56:34.660 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 12:56:30.739 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:59942 10 6452 1 2025-12-03 12:57:31.154 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:53878 10 6452 1 2025-12-03 12:58:31.567 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:59378 10 6452 1 Summary: total flows: 140, total bytes: 417104, total packets: 1022, avg bps: 918, avg pps: 0, avg bpp: 408 Time window: 2025-12-03 11:58:10 - 2025-12-03 12:58:41 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0046s User: 0.0018s Wall: 0.0019s flows/second: 73418.7 Runtime: 0.0019s