Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-04 10:58:41.816 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:38076 10 6452 1 2025-12-04 10:59:42.187 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:53182 10 6452 1 2025-12-04 11:00:42.592 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57652 12 6556 1 2025-12-04 11:01:43.001 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:47972 10 6452 1 2025-12-04 11:02:01.219 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 11:02:01.263 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 11:02:01.135 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 11:02:01.086 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 11:02:01.302 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 10:58:10.628 00:05:02.177 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 10:58:10.627 00:05:02.182 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 11:02:43.359 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46998 10 6452 1 2025-12-04 11:03:43.762 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:42980 10 6452 1 2025-12-04 11:04:44.170 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:44574 10 6452 1 2025-12-04 11:05:44.572 00:00:12.432 TCP 1.101.0.1:3000 -> 23.104.0.1:41320 10 6452 1 2025-12-04 11:06:47.118 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:45428 10 6452 1 2025-12-04 11:07:01.391 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 11:07:01.161 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 11:07:01.265 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 11:07:00.878 00:00:00.030 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 11:07:01.309 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 11:07:47.484 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:49470 10 6452 1 2025-12-04 11:04:10.628 00:05:02.182 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 11:04:10.630 00:05:02.177 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 11:08:47.895 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:58356 10 6452 1 2025-12-04 11:09:48.310 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39114 10 6452 1 2025-12-04 11:10:48.711 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:35254 10 6452 1 2025-12-04 11:11:49.114 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60060 10 6452 1 2025-12-04 11:12:01.640 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 11:12:01.737 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 11:12:01.558 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 11:12:01.581 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 11:12:01.557 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 11:12:49.520 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:50374 10 6452 1 2025-12-04 11:13:49.883 00:00:10.451 TCP 1.101.0.1:3000 -> 23.104.0.1:49012 12 10369 1 2025-12-04 11:10:10.632 00:05:02.179 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 11:10:10.629 00:05:02.184 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 11:14:50.370 00:00:10.346 TCP 1.101.0.1:3000 -> 23.104.0.1:47720 10 6452 1 2025-12-04 11:15:50.732 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:42752 10 6452 1 2025-12-04 11:17:01.555 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 11:16:51.111 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:48234 11 6504 1 2025-12-04 11:17:01.515 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 11:17:01.254 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 11:17:01.448 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 11:17:01.531 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 11:17:51.533 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:57072 10 6452 1 2025-12-04 11:18:51.898 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:48130 10 6452 1 2025-12-04 11:19:52.310 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:50748 10 6452 1 2025-12-04 11:16:10.631 00:05:02.183 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 11:16:10.634 00:05:02.178 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 11:20:52.672 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37358 10 6452 1 2025-12-04 11:22:01.651 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 11:22:01.492 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 11:22:01.558 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 11:21:53.091 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58008 10 6452 1 2025-12-04 11:22:01.145 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 11:22:01.569 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 11:22:53.495 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57738 10 6452 1 2025-12-04 11:23:53.901 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:38680 12 6556 1 2025-12-04 11:24:54.311 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37408 10 6452 1 2025-12-04 11:25:54.713 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39856 10 6452 1 2025-12-04 11:22:10.634 00:05:02.178 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 11:22:10.633 00:05:02.182 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 11:27:01.728 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 11:27:01.728 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 11:27:01.576 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 11:27:01.725 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 11:27:01.807 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 11:26:55.118 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:37558 10 6452 1 2025-12-04 11:27:55.527 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:58790 10 6452 1 2025-12-04 11:28:55.893 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:59220 10 6452 1 2025-12-04 11:29:56.276 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:35156 10 6452 1 2025-12-04 11:30:56.652 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:46814 10 6452 1 2025-12-04 11:32:02.107 00:00:00.027 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 11:28:10.633 00:05:02.183 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 11:32:02.271 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 11:32:02.340 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 11:32:02.055 00:00:00.027 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 11:32:02.025 00:00:00.028 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 11:31:57.065 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:37078 10 6452 1 2025-12-04 11:28:10.637 00:05:02.178 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 11:32:57.486 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:41952 10 6452 1 2025-12-04 11:33:57.913 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:58748 10 6452 1 2025-12-04 11:34:58.278 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:49506 10 6452 1 2025-12-04 11:35:58.639 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38152 10 6452 1 2025-12-04 11:37:01.811 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 11:37:01.811 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 11:37:01.593 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 11:37:01.993 00:00:00.032 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 11:37:02.076 00:00:00.033 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 11:36:59.051 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:36752 10 6452 1 2025-12-04 11:34:10.636 00:05:02.188 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 11:37:59.452 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:45730 10 6452 1 2025-12-04 11:34:10.639 00:05:02.183 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 11:38:59.811 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:49368 10 6452 1 2025-12-04 11:40:00.219 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43326 10 6452 1 2025-12-04 11:41:00.624 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:42152 10 6452 1 2025-12-04 11:42:01.964 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 11:42:01.887 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 11:42:02.077 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 11:42:02.073 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 11:42:02.160 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 11:42:00.988 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54184 10 6452 1 2025-12-04 11:43:01.394 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60786 10 6452 1 2025-12-04 11:44:01.798 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:35974 10 6452 1 2025-12-04 11:40:10.641 00:05:02.183 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 11:40:10.639 00:05:02.188 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 11:45:02.211 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46688 10 6452 1 2025-12-04 11:46:02.610 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57868 10 6452 1 2025-12-04 11:47:02.025 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 11:47:02.075 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 11:47:02.067 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 11:47:01.695 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 11:47:01.942 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 11:47:03.013 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:45900 10 6452 1 2025-12-04 11:48:03.412 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:45652 11 6504 1 2025-12-04 11:49:03.831 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51898 10 6452 1 2025-12-04 11:46:10.645 00:05:02.179 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 11:50:04.233 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55272 10 6452 1 2025-12-04 11:46:10.643 00:05:02.185 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 11:51:04.640 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:37076 10 6452 1 2025-12-04 11:52:02.211 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 11:52:02.129 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 11:52:02.130 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 11:52:02.129 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 11:52:01.719 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 11:52:05.042 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:52868 10 6452 1 2025-12-04 11:53:05.441 00:00:10.639 TCP 1.101.0.1:3000 -> 23.104.0.1:54224 14 14298 1 2025-12-04 11:54:06.121 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55868 10 6452 1 2025-12-04 11:55:06.523 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:57214 10 6452 1 2025-12-04 11:52:10.646 00:05:02.183 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 11:52:10.643 00:05:02.188 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 11:56:06.934 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:39458 10 6452 1 2025-12-04 11:57:02.568 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 11:57:02.562 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 11:57:02.694 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 11:57:01.866 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 11:57:02.484 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 11:57:07.362 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:38524 10 6452 1 2025-12-04 11:58:07.729 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57064 10 6452 1 Summary: total flows: 140, total bytes: 429075, total packets: 1032, avg bps: 951, avg pps: 0, avg bpp: 415 Time window: 2025-12-04 10:58:10 - 2025-12-04 11:58:18 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0029s User: 0.0029s Wall: 0.0019s flows/second: 73071.5 Runtime: 0.0019s