Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-03 15:58:45.550 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:37674 10 6452 1 2025-12-03 15:59:45.956 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:57644 10 6452 1 2025-12-03 16:00:46.324 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:49660 10 6452 1 2025-12-03 16:01:38.162 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 16:01:38.483 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 16:01:38.214 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 16:01:38.163 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 16:01:38.245 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 16:01:46.725 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:40618 10 6452 1 2025-12-03 15:58:10.234 00:05:02.169 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 15:58:10.233 00:05:02.174 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 16:02:47.113 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:43556 10 6452 1 2025-12-03 16:03:47.516 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:55770 10 6452 1 2025-12-03 16:04:47.936 00:00:10.397 TCP 1.101.0.1:3000 -> 23.104.0.1:59048 10 6452 1 2025-12-03 16:05:48.371 00:00:10.871 TCP 1.101.0.1:3000 -> 23.104.0.1:42890 10 6452 1 2025-12-03 16:06:38.563 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 16:06:38.235 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 16:06:38.222 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 16:06:38.473 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 16:06:38.306 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 16:06:49.281 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52768 10 6452 1 2025-12-03 16:07:49.684 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:47954 10 6452 1 2025-12-03 16:04:10.234 00:05:02.172 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 16:04:10.237 00:05:02.168 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 16:08:50.066 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:33942 12 6556 1 2025-12-03 16:09:50.472 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:52590 10 6452 1 2025-12-03 16:10:50.883 00:00:10.351 TCP 1.101.0.1:3000 -> 23.104.0.1:60108 10 6452 1 2025-12-03 16:11:38.480 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 16:11:38.454 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 16:11:38.397 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 16:11:38.197 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 16:11:38.398 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 16:11:51.268 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56926 10 6452 1 2025-12-03 16:12:51.671 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:40758 10 6452 1 2025-12-03 16:13:52.096 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:36108 10 6452 1 2025-12-03 16:10:10.240 00:05:02.167 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 16:10:10.238 00:05:02.172 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 16:14:52.496 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49736 10 6452 1 2025-12-03 16:15:52.907 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:58390 10 6452 1 2025-12-03 16:16:38.522 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 16:16:38.520 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 16:16:38.554 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 16:16:38.692 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 16:16:38.775 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 16:16:53.272 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57208 10 6452 1 2025-12-03 16:17:53.676 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36154 10 6452 1 2025-12-03 16:18:54.108 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:48160 10 6452 1 2025-12-03 16:19:54.510 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:38864 10 6452 1 2025-12-03 16:16:10.238 00:05:02.172 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 16:16:10.240 00:05:02.167 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 16:20:54.911 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57302 12 6556 1 2025-12-03 16:21:39.083 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 16:21:38.892 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 16:21:38.529 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 16:21:38.897 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 16:21:38.982 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 16:21:55.310 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55066 10 6452 1 2025-12-03 16:22:55.709 00:00:10.451 TCP 1.101.0.1:3000 -> 23.104.0.1:35120 12 10375 1 2025-12-03 16:23:56.203 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57680 10 6452 1 2025-12-03 16:24:56.606 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60070 10 6452 1 2025-12-03 16:25:57.007 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47744 10 6452 1 2025-12-03 16:22:10.239 00:05:02.172 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 16:22:10.241 00:05:02.167 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 16:26:38.953 00:00:00.031 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 16:26:38.835 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 16:26:38.794 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 16:26:38.735 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 16:26:38.871 00:00:00.031 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 16:26:57.405 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:54856 10 6452 1 2025-12-03 16:27:57.773 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:60120 10 6452 1 2025-12-03 16:28:58.195 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39526 10 6452 1 2025-12-03 16:29:58.600 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:43650 10 6452 1 2025-12-03 16:30:59.005 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:43816 10 6452 1 2025-12-03 16:31:38.945 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 16:31:38.876 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 16:31:38.913 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 16:31:38.946 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 16:31:39.029 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 16:31:59.410 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38088 12 6556 1 2025-12-03 16:28:10.242 00:05:02.167 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 16:28:10.241 00:05:02.172 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 16:32:59.814 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:51850 10 6452 1 2025-12-03 16:34:00.219 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:60208 10 6452 1 2025-12-03 16:35:00.636 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:42066 10 6452 1 2025-12-03 16:36:01.042 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50548 10 6452 1 2025-12-03 16:36:38.870 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 16:36:38.993 00:00:00.050 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 16:36:38.988 00:00:00.034 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 16:36:38.926 00:00:00.027 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 16:36:38.787 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 16:37:01.453 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:47024 10 6452 1 2025-12-03 16:34:10.243 00:05:02.170 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 16:38:01.863 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:57524 10 6452 1 2025-12-03 16:34:10.246 00:05:02.165 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 16:39:02.235 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52140 10 6452 1 2025-12-03 16:40:02.639 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:36678 10 6452 1 2025-12-03 16:41:03.055 00:00:11.279 TCP 1.101.0.1:3000 -> 23.104.0.1:33772 11 6504 1 2025-12-03 16:41:39.419 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 16:41:39.492 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 16:41:39.369 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 16:41:39.486 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 16:41:39.568 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 16:42:04.375 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:43156 10 6452 1 2025-12-03 16:43:04.780 00:00:10.447 TCP 1.101.0.1:3000 -> 23.104.0.1:53396 12 10375 1 2025-12-03 16:40:10.244 00:05:02.171 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 16:40:10.246 00:05:02.166 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 16:44:05.264 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39810 10 6452 1 2025-12-03 16:45:05.669 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45028 10 6452 1 2025-12-03 16:46:06.099 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:43740 10 6452 1 2025-12-03 16:46:39.219 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 16:46:39.100 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 16:46:38.986 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 16:46:39.094 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 16:46:39.176 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 16:47:06.459 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38476 10 6452 1 2025-12-03 16:48:06.859 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:48606 10 6452 1 2025-12-03 16:49:07.275 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:36280 10 6452 1 2025-12-03 16:46:10.248 00:05:02.166 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 16:46:10.246 00:05:02.171 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 16:50:07.643 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38010 10 6452 1 2025-12-03 16:51:08.065 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51144 10 6452 1 2025-12-03 16:51:39.274 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 16:51:39.306 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 16:51:39.319 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 16:51:39.124 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 16:51:39.190 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 16:52:08.470 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55444 10 6452 1 2025-12-03 16:53:08.870 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58822 10 6452 1 2025-12-03 16:54:09.278 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44204 10 6452 1 2025-12-03 16:55:09.685 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:47010 10 6452 1 2025-12-03 16:52:10.249 00:05:02.167 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 16:52:10.246 00:05:02.173 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 16:56:10.118 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33328 10 6452 1 2025-12-03 16:56:39.204 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 16:56:39.259 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 16:56:39.489 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 16:56:39.082 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 16:56:39.572 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 16:57:10.518 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:46488 12 6556 1 2025-12-03 16:58:10.933 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:54092 10 6452 1 Summary: total flows: 140, total bytes: 425314, total packets: 1033, avg bps: 942, avg pps: 0, avg bpp: 411 Time window: 2025-12-03 15:58:10 - 2025-12-03 16:58:21 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0045s User: 0.0015s Wall: 0.0025s flows/second: 55643.2 Runtime: 0.0025s