Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-04 17:58:52.767 00:00:10.709 TCP 1.101.0.1:3000 -> 23.104.0.1:42448 10 6452 1 2025-12-04 17:59:53.519 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55604 10 6452 1 2025-12-04 18:00:53.923 00:00:10.569 TCP 1.101.0.1:3000 -> 23.104.0.1:54172 10 6452 1 2025-12-04 18:02:09.749 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 17:58:10.768 00:05:02.201 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 18:01:54.534 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35552 10 6452 1 2025-12-04 18:02:09.609 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 18:02:09.611 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 18:02:09.476 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 18:02:09.666 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 17:58:10.771 00:05:02.195 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 18:02:54.940 00:00:10.443 TCP 1.101.0.1:3000 -> 23.104.0.1:41948 12 10369 1 2025-12-04 18:03:55.428 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:41174 10 6452 1 2025-12-04 18:04:55.802 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45508 10 6452 1 2025-12-04 18:05:56.206 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60630 10 6452 1 2025-12-04 18:07:09.715 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 18:07:09.675 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 18:07:09.554 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 18:07:09.491 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 18:07:09.633 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 18:06:56.606 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:46506 10 6452 1 2025-12-04 18:04:10.769 00:05:02.202 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 18:07:56.981 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:49302 10 6452 1 2025-12-04 18:04:10.771 00:05:02.197 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 18:08:57.389 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:59262 10 6452 1 2025-12-04 18:09:57.789 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49026 10 6452 1 2025-12-04 18:10:58.202 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:44448 10 6452 1 2025-12-04 18:12:09.930 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 18:12:09.614 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 18:12:09.802 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 18:12:09.652 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 18:11:58.609 00:00:10.774 TCP 1.101.0.1:3000 -> 23.104.0.1:35282 10 6452 1 2025-12-04 18:12:09.848 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 18:12:59.427 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:53784 10 6452 1 2025-12-04 18:10:10.770 00:05:02.204 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 18:10:10.774 00:05:02.199 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 18:13:59.829 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:49398 10 6452 1 2025-12-04 18:15:00.251 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54590 10 6452 1 2025-12-04 18:16:00.657 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59316 10 6452 1 2025-12-04 18:17:09.864 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 18:17:09.861 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 18:17:09.865 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 18:17:09.637 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 18:17:09.782 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 18:17:01.067 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40122 10 6452 1 2025-12-04 18:18:01.469 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:49844 10 6452 1 2025-12-04 18:19:01.828 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36316 10 6452 1 2025-12-04 18:16:10.777 00:05:02.200 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 18:16:10.780 00:05:02.194 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 18:20:02.239 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:55650 10 6452 1 2025-12-04 18:21:02.602 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46562 10 6452 1 2025-12-04 18:22:09.932 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 18:22:09.702 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 18:22:09.775 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 18:22:09.858 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 18:22:10.006 00:00:00.033 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 18:22:03.008 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:40316 10 6452 1 2025-12-04 18:23:03.405 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:57016 10 6452 1 2025-12-04 18:24:03.807 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:60364 10 6452 1 2025-12-04 18:25:04.214 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:57018 10 6452 1 2025-12-04 18:22:10.784 00:05:02.194 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 18:22:10.786 00:05:02.190 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 18:26:04.583 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56148 10 6452 1 2025-12-04 18:27:09.965 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 18:27:09.967 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 18:27:09.912 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 18:27:09.961 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 18:27:10.043 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 18:27:04.983 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:47078 10 6452 1 2025-12-04 18:28:05.397 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:58250 10 6452 1 2025-12-04 18:29:05.837 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:51130 10 6452 1 2025-12-04 18:30:06.238 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35144 10 6452 1 2025-12-04 18:31:06.645 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:33354 10 6452 1 2025-12-04 18:32:10.267 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 18:28:10.786 00:05:02.193 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 18:32:10.261 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 18:28:10.789 00:05:02.188 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 18:32:10.072 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 18:32:10.122 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 18:32:10.185 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 18:32:07.057 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:39622 10 6452 1 2025-12-04 18:33:07.421 00:00:10.441 TCP 1.101.0.1:3000 -> 23.104.0.1:42346 12 10369 1 2025-12-04 18:34:07.901 00:00:10.407 TCP 1.101.0.1:3000 -> 23.104.0.1:43310 10 6452 1 2025-12-04 18:35:08.350 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34126 10 6452 1 2025-12-04 18:36:08.752 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:42840 10 6452 1 2025-12-04 18:37:10.335 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 18:37:10.205 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 18:37:10.350 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 18:37:10.323 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 18:37:10.405 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 18:37:09.116 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:49096 10 6452 1 2025-12-04 18:34:10.785 00:05:02.205 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 18:34:10.788 00:05:02.200 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 18:38:09.480 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:46560 10 6452 1 2025-12-04 18:39:09.838 00:00:10.397 TCP 1.101.0.1:3000 -> 23.104.0.1:60956 10 6452 1 2025-12-04 18:40:10.271 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52200 10 6452 1 2025-12-04 18:41:10.673 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37904 10 6452 1 2025-12-04 18:42:10.532 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 18:42:10.396 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 18:42:10.387 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 18:42:10.324 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 18:42:10.449 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 18:42:11.102 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:51002 10 6452 1 2025-12-04 18:43:11.470 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57022 10 6452 1 2025-12-04 18:40:10.788 00:05:02.205 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 18:40:10.790 00:05:02.200 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 18:44:11.874 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:36628 10 6452 1 2025-12-04 18:45:12.284 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41942 10 6452 1 2025-12-04 18:46:12.685 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:37316 10 6452 1 2025-12-04 18:47:10.461 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 18:47:10.478 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 18:47:10.336 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 18:47:10.471 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 18:47:10.554 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 18:47:13.112 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:50090 10 6452 1 2025-12-04 18:48:13.517 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48432 10 6452 1 2025-12-04 18:49:13.916 00:00:10.395 TCP 1.101.0.1:3000 -> 23.104.0.1:40534 10 6452 1 2025-12-04 18:46:10.792 00:05:02.199 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 18:46:10.790 00:05:02.203 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 18:50:14.358 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47186 10 6452 1 2025-12-04 18:51:14.767 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:56898 10 6452 1 2025-12-04 18:52:10.758 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 18:52:10.757 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 18:52:10.695 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 18:52:10.759 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 18:52:10.841 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 18:52:15.137 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48950 10 6452 1 2025-12-04 18:53:15.554 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45786 10 6452 1 2025-12-04 18:54:15.959 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:49008 10 6452 1 2025-12-04 18:55:16.400 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54574 10 6452 1 2025-12-04 18:52:10.792 00:05:02.201 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 18:52:10.791 00:05:02.205 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 18:56:16.807 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:32940 10 6452 1 2025-12-04 18:57:10.716 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 18:57:10.779 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 18:57:10.781 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 18:57:10.785 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 18:57:10.866 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 18:57:17.178 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43950 10 6452 1 2025-12-04 18:58:17.579 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:39608 10 6452 1 Summary: total flows: 140, total bytes: 424834, total packets: 1024, avg bps: 939, avg pps: 0, avg bpp: 414 Time window: 2025-12-04 17:58:10 - 2025-12-04 18:58:27 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0041s User: 0.0008s Wall: 0.0016s flows/second: 86150.6 Runtime: 0.0016s