Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-04 09:59:16.133 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36034 10 6452 1 2025-12-04 10:00:16.539 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53582 10 6452 1 2025-12-04 10:01:16.938 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:50520 10 6452 1 2025-12-04 10:01:59.804 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 10:01:59.861 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 10:01:59.958 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 10:01:59.870 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 10:01:59.952 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 09:58:10.613 00:05:02.177 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 09:58:10.616 00:05:02.171 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 10:02:17.354 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:57154 10 6452 1 2025-12-04 10:03:17.761 00:00:10.343 TCP 1.101.0.1:3000 -> 23.104.0.1:51820 10 6452 1 2025-12-04 10:04:18.169 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:33856 10 6452 1 2025-12-04 10:05:18.579 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58740 10 6452 1 2025-12-04 10:06:18.987 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:46950 10 6452 1 2025-12-04 10:07:00.049 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 10:06:59.957 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 10:06:59.966 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 10:07:00.064 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 10:07:00.118 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 10:07:19.394 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:57874 10 6452 1 2025-12-04 10:04:10.615 00:05:02.178 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 10:04:10.617 00:05:02.172 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 10:08:19.803 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:35956 10 6452 1 2025-12-04 10:09:20.207 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:56190 10 6452 1 2025-12-04 10:10:20.626 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:42672 10 6452 1 2025-12-04 10:11:21.031 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40572 10 6452 1 2025-12-04 10:12:00.598 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 10:12:00.447 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 10:12:00.355 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 10:12:00.408 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 10:12:00.515 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 10:12:21.438 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:53904 10 6452 1 2025-12-04 10:13:21.807 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:52928 10 6452 1 2025-12-04 10:10:10.616 00:05:02.177 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 10:10:10.618 00:05:02.173 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 10:14:22.217 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42816 10 6452 1 2025-12-04 10:15:22.619 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:32808 10 6452 1 2025-12-04 10:16:23.024 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:60480 10 6452 1 2025-12-04 10:16:59.918 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 10:17:00.264 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 10:17:00.196 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 10:16:59.991 00:00:00.051 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 10:17:00.346 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 10:17:23.396 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:45056 10 6452 1 2025-12-04 10:18:23.797 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44880 10 6452 1 2025-12-04 10:19:24.199 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:47002 10 6452 1 2025-12-04 10:16:10.617 00:05:02.178 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 10:16:10.619 00:05:02.172 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 10:20:24.599 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:56350 10 6452 1 2025-12-04 10:21:25.008 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50830 10 6452 1 2025-12-04 10:22:00.442 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 10:22:00.212 00:00:00.027 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 10:22:00.119 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 10:22:00.056 00:00:00.029 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 10:22:00.359 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 10:22:25.408 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50266 10 6452 1 2025-12-04 10:23:25.810 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57862 10 6452 1 2025-12-04 10:24:26.210 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52102 10 6452 1 2025-12-04 10:25:26.617 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:52538 10 6452 1 2025-12-04 10:22:10.620 00:05:02.174 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 10:22:10.619 00:05:02.178 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 10:26:27.026 00:00:10.900 TCP 1.101.0.1:3000 -> 23.104.0.1:34658 10 6452 1 2025-12-04 10:27:00.546 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 10:27:00.418 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 10:27:00.163 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 10:27:00.381 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 10:27:00.464 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 10:27:27.965 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:47868 10 6452 1 2025-12-04 10:28:28.368 00:00:11.644 TCP 1.101.0.1:3000 -> 23.104.0.1:45244 10 6452 1 2025-12-04 10:29:30.065 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45980 10 6452 1 2025-12-04 10:30:30.465 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51894 10 6452 1 2025-12-04 10:31:30.868 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:33000 10 6452 1 2025-12-04 10:32:00.498 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 10:32:00.776 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 10:32:00.801 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 10:32:00.727 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 10:32:00.810 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 10:28:10.618 00:05:02.182 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 10:28:10.621 00:05:02.177 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 10:32:31.273 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60142 10 6452 1 2025-12-04 10:33:31.671 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46090 10 6452 1 2025-12-04 10:34:32.108 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:55640 10 6452 1 2025-12-04 10:35:32.470 00:00:10.414 TCP 1.101.0.1:3000 -> 23.104.0.1:46694 11 6504 1 2025-12-04 10:36:32.922 00:00:10.407 TCP 1.101.0.1:3000 -> 23.104.0.1:37746 10 6452 1 2025-12-04 10:37:00.654 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 10:37:00.571 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 10:37:00.701 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 10:37:00.493 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 10:37:00.515 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 10:37:33.376 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47930 12 6556 1 2025-12-04 10:34:10.619 00:05:02.184 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 10:34:10.621 00:05:02.179 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 10:38:33.783 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:37762 10 6452 1 2025-12-04 10:39:34.161 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:53422 10 6452 1 2025-12-04 10:40:34.570 00:00:10.356 TCP 1.101.0.1:3000 -> 23.104.0.1:53828 10 6452 1 2025-12-04 10:41:34.966 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:38494 10 6452 1 2025-12-04 10:42:00.662 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 10:42:00.578 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 10:42:00.674 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 10:42:00.617 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 10:42:00.580 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 10:42:35.377 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33080 10 6452 1 2025-12-04 10:43:35.787 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:38960 10 6452 1 2025-12-04 10:40:10.622 00:05:02.183 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 10:40:10.625 00:05:02.178 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 10:44:36.209 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:34654 10 6452 1 2025-12-04 10:45:36.628 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:57694 10 6452 1 2025-12-04 10:46:36.984 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:43096 10 6452 1 2025-12-04 10:47:00.713 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 10:47:00.794 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 10:47:00.718 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 10:47:00.791 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 10:47:00.875 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 10:47:37.355 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43642 10 6452 1 2025-12-04 10:48:37.759 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:47414 10 6452 1 2025-12-04 10:49:38.181 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47018 10 6452 1 2025-12-04 10:46:10.623 00:05:02.182 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 10:46:10.626 00:05:02.177 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 10:50:38.583 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:40072 10 6452 1 2025-12-04 10:51:38.986 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59898 10 6452 1 2025-12-04 10:52:01.181 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 10:52:01.018 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 10:52:00.904 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 10:52:00.965 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 10:52:01.099 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 10:52:39.388 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:56440 10 6452 1 2025-12-04 10:53:39.746 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56160 10 6452 1 2025-12-04 10:54:40.149 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38286 10 6452 1 2025-12-04 10:55:40.550 00:00:10.411 TCP 1.101.0.1:3000 -> 23.104.0.1:52730 11 6504 1 2025-12-04 10:52:10.627 00:05:02.177 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 10:52:10.626 00:05:02.181 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 10:56:41.006 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:40014 10 6452 1 2025-12-04 10:57:01.470 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 10:57:01.287 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 10:57:01.281 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 10:57:01.260 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 10:57:01.387 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 10:57:41.407 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:48640 10 6452 1 Summary: total flows: 139, total bytes: 410756, total packets: 1014, avg bps: 917, avg pps: 0, avg bpp: 405 Time window: 2025-12-04 09:58:10 - 2025-12-04 10:57:51 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0051s User: 0.0020s Wall: 0.0024s flows/second: 57798.0 Runtime: 0.0024s