Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-04 12:59:32.215 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45118 10 6452 1 2025-12-04 13:00:32.621 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51204 10 6452 1 2025-12-04 13:01:33.026 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42328 10 6452 1 2025-12-04 13:02:03.625 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 13:02:03.541 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 13:02:03.608 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 13:02:03.619 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 13:02:03.542 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 12:58:10.655 00:05:02.214 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 12:58:10.659 00:05:02.208 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 13:02:33.428 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51838 10 6452 1 2025-12-04 13:03:33.833 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:39190 10 6452 1 2025-12-04 13:04:34.265 00:00:12.000 TCP 1.101.0.1:3000 -> 23.104.0.1:41500 10 6452 1 2025-12-04 13:05:36.305 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:34640 10 6452 1 2025-12-04 13:06:36.670 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:51592 10 6452 1 2025-12-04 13:07:03.536 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 13:07:03.741 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 13:07:03.679 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 13:07:03.673 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 13:07:03.824 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 13:07:37.035 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51564 10 6452 1 2025-12-04 13:04:10.660 00:05:02.211 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 13:04:10.656 00:05:02.216 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 13:08:37.435 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53908 10 6452 1 2025-12-04 13:09:37.839 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:49502 10 6452 1 2025-12-04 13:10:38.261 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:54332 10 6452 1 2025-12-04 13:11:38.632 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34940 10 6452 1 2025-12-04 13:12:03.705 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 13:12:03.624 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 13:12:03.693 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 13:12:03.751 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 13:12:03.554 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 13:12:39.032 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:42770 10 6452 1 2025-12-04 13:13:39.444 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:45798 10 6452 1 2025-12-04 13:10:10.663 00:05:02.209 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 13:10:10.660 00:05:02.214 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 13:14:39.851 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:57524 10 6452 1 2025-12-04 13:15:40.273 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45736 10 6452 1 2025-12-04 13:16:40.675 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:52878 10 6452 1 2025-12-04 13:17:03.872 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 13:17:03.878 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 13:17:03.840 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 13:17:03.872 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 13:17:03.955 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 13:17:41.065 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:59334 10 6452 1 2025-12-04 13:18:41.427 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:36940 10 6452 1 2025-12-04 13:19:41.831 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:46892 10 6452 1 2025-12-04 13:16:10.669 00:05:02.207 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 13:16:10.671 00:05:02.201 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 13:20:42.195 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40476 12 6556 1 2025-12-04 13:21:42.601 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:49414 10 6452 1 2025-12-04 13:22:03.920 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 13:22:03.953 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 13:22:03.794 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 13:22:03.965 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 13:22:04.048 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 13:22:42.963 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48678 10 6452 1 2025-12-04 13:23:43.367 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44244 10 6452 1 2025-12-04 13:24:43.773 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:50892 10 6452 1 2025-12-04 13:25:44.175 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:33590 10 6452 1 2025-12-04 13:22:10.670 00:05:02.207 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 13:22:10.672 00:05:02.202 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 13:26:44.584 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45750 10 6452 1 2025-12-04 13:27:04.205 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 13:27:04.004 00:00:00.048 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 13:27:04.325 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 13:27:04.136 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 13:27:04.219 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 13:27:44.985 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:47472 10 6452 1 2025-12-04 13:28:45.392 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:40118 10 6452 1 2025-12-04 13:29:45.756 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:41498 10 6452 1 2025-12-04 13:30:46.130 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:60840 10 6452 1 2025-12-04 13:31:46.495 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:50010 10 6452 1 2025-12-04 13:32:04.339 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 13:32:04.450 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 13:32:04.339 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 13:32:04.329 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 13:32:04.411 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 13:28:10.670 00:05:02.207 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 13:28:10.673 00:05:02.202 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 13:32:46.897 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33326 10 6452 1 2025-12-04 13:33:47.303 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60862 10 6452 1 2025-12-04 13:34:47.708 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42624 10 6452 1 2025-12-04 13:35:48.114 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49596 10 6452 1 2025-12-04 13:36:48.518 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:32814 10 6452 1 2025-12-04 13:37:04.216 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 13:37:04.282 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 13:37:04.353 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 13:37:04.433 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 13:37:04.515 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 13:37:48.919 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52712 10 6452 1 2025-12-04 13:34:10.671 00:05:02.207 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 13:34:10.674 00:05:02.202 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 13:38:49.322 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:55554 10 6452 1 2025-12-04 13:39:49.738 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:33078 10 6452 1 2025-12-04 13:40:50.141 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:57268 10 6452 1 2025-12-04 13:42:04.161 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 13:42:04.412 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 13:42:04.459 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 13:42:04.304 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 13:41:50.513 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46616 10 6452 1 2025-12-04 13:42:04.079 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 13:42:50.915 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:49878 10 6452 1 2025-12-04 13:43:51.316 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:37524 10 6452 1 2025-12-04 13:40:10.679 00:05:02.199 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 13:40:10.677 00:05:02.204 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 13:44:51.735 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:58574 10 6452 1 2025-12-04 13:45:52.110 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:43536 10 6452 1 2025-12-04 13:47:04.579 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 13:46:52.539 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:47470 10 6452 1 2025-12-04 13:47:04.498 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 13:47:04.495 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 13:47:04.493 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 13:47:04.516 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 13:47:52.902 00:00:10.400 TCP 1.101.0.1:3000 -> 23.104.0.1:55146 12 10375 1 2025-12-04 13:48:53.341 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:40914 10 6452 1 2025-12-04 13:49:53.756 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:38098 10 6452 1 2025-12-04 13:46:10.677 00:05:02.205 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 13:46:10.680 00:05:02.200 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 13:50:54.167 00:00:10.984 TCP 1.101.0.1:3000 -> 23.104.0.1:53850 10 6452 1 2025-12-04 13:52:04.507 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 13:52:04.536 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 13:52:04.532 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 13:52:04.446 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 13:52:04.424 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 13:51:55.182 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:46200 10 6452 1 2025-12-04 13:52:55.587 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:57540 10 6452 1 2025-12-04 13:53:55.996 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42768 10 6452 1 2025-12-04 13:54:56.403 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:48606 10 6452 1 2025-12-04 13:55:56.809 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59098 10 6452 1 2025-12-04 13:52:10.679 00:05:02.205 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 13:52:10.681 00:05:02.200 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 13:57:04.851 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 13:57:04.543 00:00:00.028 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 13:57:04.731 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 13:57:04.543 00:00:00.029 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 13:57:04.625 00:00:00.029 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 13:56:57.214 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49730 10 6452 1 2025-12-04 13:57:57.616 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49738 10 6452 1 Summary: total flows: 139, total bytes: 414575, total packets: 1014, avg bps: 921, avg pps: 0, avg bpp: 408 Time window: 2025-12-04 12:58:10 - 2025-12-04 13:58:07 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0010s User: 0.0041s Wall: 0.0033s flows/second: 42755.1 Runtime: 0.0033s