Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-04 07:59:28.214 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46066 10 6452 1 2025-12-04 08:00:28.614 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:59934 10 6452 1 2025-12-04 08:01:29.028 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:57380 10 6452 1 2025-12-04 08:01:57.723 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 08:01:57.643 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 08:01:57.589 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 08:01:57.459 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 08:01:57.806 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 07:58:10.563 00:05:02.170 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 07:58:10.561 00:05:02.175 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 08:02:29.434 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:44836 10 6452 1 2025-12-04 08:03:29.795 00:00:10.435 TCP 1.101.0.1:3000 -> 23.104.0.1:41064 12 10375 1 2025-12-04 08:04:30.267 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:46604 10 6452 1 2025-12-04 08:05:30.629 00:00:10.356 TCP 1.101.0.1:3000 -> 23.104.0.1:52594 10 6452 1 2025-12-04 08:06:31.027 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:44588 10 6452 1 2025-12-04 08:06:57.608 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 08:06:57.596 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 08:06:57.430 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 08:06:57.551 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 08:06:57.526 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 08:07:31.429 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:52598 10 6452 1 2025-12-04 08:04:10.563 00:05:02.176 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 08:04:10.565 00:05:02.171 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 08:08:31.840 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:34970 10 6452 1 2025-12-04 08:09:32.286 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60168 10 6452 1 2025-12-04 08:10:32.692 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:41202 10 6452 1 2025-12-04 08:11:33.112 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:51510 10 6452 1 2025-12-04 08:11:57.783 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 08:11:57.619 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 08:11:57.705 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 08:11:57.609 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 08:11:57.692 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 08:12:33.523 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56150 10 6452 1 2025-12-04 08:13:33.926 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:59088 10 6452 1 2025-12-04 08:10:10.564 00:05:02.176 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 08:10:10.566 00:05:02.172 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 08:14:34.300 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:36794 10 6452 1 2025-12-04 08:15:34.700 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57738 10 6452 1 2025-12-04 08:16:35.105 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:48058 10 6452 1 2025-12-04 08:16:57.862 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 08:16:57.792 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 08:16:57.703 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 08:16:57.914 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 08:16:57.997 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 08:17:35.513 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:45418 10 6452 1 2025-12-04 08:18:35.921 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:52118 10 6452 1 2025-12-04 08:19:36.349 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39870 10 6452 1 2025-12-04 08:16:10.567 00:05:02.171 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 08:16:10.565 00:05:02.176 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 08:20:36.752 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:32788 10 6452 1 2025-12-04 08:21:37.200 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:58470 10 6452 1 2025-12-04 08:21:57.965 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 08:21:57.876 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 08:21:57.967 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 08:21:57.537 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 08:21:57.883 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 08:22:37.571 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:52446 10 6452 1 2025-12-04 08:23:37.977 00:00:10.461 TCP 1.101.0.1:3000 -> 23.104.0.1:57278 12 10375 1 2025-12-04 08:24:38.478 00:00:10.420 TCP 1.101.0.1:3000 -> 23.104.0.1:45872 11 6504 1 2025-12-04 08:25:38.937 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:53862 10 6452 1 2025-12-04 08:22:10.566 00:05:02.176 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 08:22:10.569 00:05:02.172 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 08:26:39.371 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:42718 10 6452 1 2025-12-04 08:26:58.064 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 08:26:58.189 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 08:26:57.993 00:00:00.051 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 08:26:58.258 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 08:26:57.981 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 08:27:39.774 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:59442 10 6452 1 2025-12-04 08:28:40.189 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:49980 10 6452 1 2025-12-04 08:29:40.552 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:55308 10 6452 1 2025-12-04 08:30:40.962 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:49918 10 6452 1 2025-12-04 08:31:41.326 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:45488 10 6452 1 2025-12-04 08:31:58.308 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 08:31:57.926 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 08:31:58.142 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 08:31:58.064 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 08:31:58.225 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 08:28:10.571 00:05:02.170 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 08:28:10.568 00:05:02.176 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 08:32:41.729 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:46436 10 6452 1 2025-12-04 08:33:42.143 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:37498 10 6452 1 2025-12-04 08:34:42.541 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:43348 10 6452 1 2025-12-04 08:35:42.942 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:48740 10 6452 1 2025-12-04 08:36:43.359 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:58588 10 6452 1 2025-12-04 08:36:58.067 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 08:36:58.192 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 08:36:58.170 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 08:36:58.320 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 08:36:58.252 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 08:37:43.726 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:37678 10 6452 1 2025-12-04 08:34:10.571 00:05:02.171 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 08:34:10.569 00:05:02.176 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 08:38:44.140 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:37940 10 6452 1 2025-12-04 08:39:44.544 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:54840 10 6452 1 2025-12-04 08:40:44.917 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:58370 10 6452 1 2025-12-04 08:41:58.204 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 08:41:58.226 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 08:41:58.229 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 08:41:58.175 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 08:41:45.335 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48880 10 6452 1 2025-12-04 08:41:58.119 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 08:42:45.737 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:52954 10 6452 1 2025-12-04 08:43:46.153 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57386 10 6452 1 2025-12-04 08:40:10.572 00:05:02.174 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 08:40:10.570 00:05:02.178 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 08:44:46.553 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50930 10 6452 1 2025-12-04 08:45:46.956 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:34310 10 6452 1 2025-12-04 08:46:58.570 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 08:46:58.488 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 08:46:47.361 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45962 10 6452 1 2025-12-04 08:46:58.461 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 08:46:58.474 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 08:46:58.464 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 08:47:47.767 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:54734 10 6452 1 2025-12-04 08:48:48.183 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50486 10 6452 1 2025-12-04 08:49:48.582 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:50756 10 6452 1 2025-12-04 08:46:10.576 00:05:02.170 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 08:46:10.574 00:05:02.175 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 08:50:48.943 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:32928 10 6452 1 2025-12-04 08:51:58.847 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 08:51:49.319 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:36076 10 6452 1 2025-12-04 08:51:58.533 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 08:51:58.349 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 08:51:58.541 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 08:51:58.624 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 08:52:49.712 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:35610 10 6452 1 2025-12-04 08:53:50.122 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:47346 10 6452 1 2025-12-04 08:54:50.523 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:58326 10 6452 1 2025-12-04 08:55:50.889 00:00:10.347 TCP 1.101.0.1:3000 -> 23.104.0.1:58738 10 6452 1 2025-12-04 08:52:10.579 00:05:02.169 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 08:52:10.577 00:05:02.174 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 08:56:58.823 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 08:56:58.601 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 08:56:58.678 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 08:56:58.689 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 08:56:58.741 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 08:56:51.283 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48578 10 6452 1 2025-12-04 08:57:51.688 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:53540 10 6452 1 Summary: total flows: 139, total bytes: 418446, total packets: 1015, avg bps: 932, avg pps: 0, avg bpp: 412 Time window: 2025-12-04 07:58:10 - 2025-12-04 08:58:02 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0054s User: 0.0013s Wall: 0.0028s flows/second: 49219.8 Runtime: 0.0028s