Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-04 18:59:17.944 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:35318 10 6452 1 2025-12-04 19:00:18.323 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54232 10 6452 1 2025-12-04 19:01:18.731 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:33588 10 6452 1 2025-12-04 19:02:10.674 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 18:58:10.791 00:05:02.210 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 19:02:10.894 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 18:58:10.795 00:05:02.203 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 19:02:10.792 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 19:02:10.542 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 19:02:10.592 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 19:02:19.137 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:51812 10 6452 1 2025-12-04 19:03:19.553 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43252 10 6452 1 2025-12-04 19:04:19.954 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:60922 10 6452 1 2025-12-04 19:05:20.360 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:46806 10 6452 1 2025-12-04 19:06:20.769 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:52948 10 6452 1 2025-12-04 19:07:10.678 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 19:07:10.719 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 19:07:10.900 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 19:07:10.556 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 19:07:10.596 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 19:07:21.187 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53090 10 6452 1 2025-12-04 19:04:10.794 00:05:02.234 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 19:04:10.796 00:05:02.229 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 19:08:21.592 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:38478 10 6452 1 2025-12-04 19:09:22.010 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:35604 10 6452 1 2025-12-04 19:10:22.378 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60690 10 6452 1 2025-12-04 19:11:22.780 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:34220 10 6452 1 2025-12-04 19:12:11.325 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 19:12:11.037 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 19:12:10.923 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 19:12:11.080 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 19:12:11.242 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 19:12:23.189 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47188 10 6452 1 2025-12-04 19:13:23.589 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51702 10 6452 1 2025-12-04 19:10:10.796 00:05:02.237 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 19:10:10.799 00:05:02.232 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 19:14:23.990 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56980 10 6452 1 2025-12-04 19:15:24.395 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59594 10 6452 1 2025-12-04 19:16:24.794 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59108 10 6452 1 2025-12-04 19:17:11.149 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 19:17:10.787 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 19:17:11.065 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 19:17:11.120 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 19:17:11.065 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 19:17:25.194 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:40466 10 6452 1 2025-12-04 19:18:25.598 00:00:10.438 TCP 1.101.0.1:3000 -> 23.104.0.1:39502 12 10375 1 2025-12-04 19:19:26.099 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49270 10 6452 1 2025-12-04 19:16:10.802 00:05:02.232 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 19:16:10.798 00:05:02.237 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 19:20:26.510 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:38052 10 6452 1 2025-12-04 19:21:26.917 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48732 10 6452 1 2025-12-04 19:22:11.296 00:00:00.035 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 19:22:11.205 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 19:22:11.398 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 19:22:11.103 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 19:22:11.214 00:00:00.036 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 19:22:27.318 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42040 10 6452 1 2025-12-04 19:23:27.723 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:35154 10 6452 1 2025-12-04 19:24:28.116 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:38010 10 6452 1 2025-12-04 19:25:28.517 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52464 10 6452 1 2025-12-04 19:22:10.812 00:05:02.228 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 19:22:10.815 00:05:02.223 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 19:26:28.920 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:43038 10 6452 1 2025-12-04 19:27:11.167 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 19:27:11.249 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 19:27:10.960 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 19:27:11.181 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 19:27:11.263 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 19:27:29.291 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:58972 10 6452 1 2025-12-04 19:28:29.690 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:55790 10 6452 1 2025-12-04 19:29:30.117 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:52566 10 6452 1 2025-12-04 19:30:30.543 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46974 10 6452 1 2025-12-04 19:31:30.940 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:47814 10 6452 1 2025-12-04 19:32:11.420 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 19:28:10.812 00:05:02.228 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 19:32:11.418 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 19:32:11.330 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 19:32:11.362 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 19:32:11.445 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 19:28:10.809 00:05:02.233 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 19:32:31.323 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51960 10 6452 1 2025-12-04 19:33:31.733 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:36542 10 6452 1 2025-12-04 19:34:32.109 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:33574 10 6452 1 2025-12-04 19:35:32.470 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:58562 10 6452 1 2025-12-04 19:36:32.836 00:00:10.396 TCP 1.101.0.1:3000 -> 23.104.0.1:57710 10 6452 1 2025-12-04 19:37:11.524 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 19:37:11.321 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 19:37:11.598 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 19:37:11.480 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 19:37:11.442 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 19:37:33.270 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:39930 10 6452 1 2025-12-04 19:34:10.810 00:05:02.238 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 19:34:10.813 00:05:02.232 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 19:38:33.668 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34970 10 6452 1 2025-12-04 19:39:34.098 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:38038 10 6452 1 2025-12-04 19:40:34.460 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37894 10 6452 1 2025-12-04 19:41:34.870 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34222 10 6452 1 2025-12-04 19:42:11.650 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 19:42:11.430 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 19:42:11.615 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 19:42:11.540 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 19:42:11.624 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 19:42:35.277 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:56394 10 6452 1 2025-12-04 19:43:35.647 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:53874 10 6452 1 2025-12-04 19:40:10.819 00:05:02.230 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 19:40:10.816 00:05:02.236 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 19:44:36.059 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:45824 10 6452 1 2025-12-04 19:45:36.471 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39978 10 6452 1 2025-12-04 19:46:36.871 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:43500 10 6452 1 2025-12-04 19:47:11.635 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 19:47:11.394 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 19:47:11.522 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 19:47:11.601 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 19:47:11.718 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 19:47:37.280 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:41208 10 6452 1 2025-12-04 19:48:37.638 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:58768 10 6452 1 2025-12-04 19:49:38.039 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:59060 10 6452 1 2025-12-04 19:46:10.820 00:05:02.232 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 19:46:10.817 00:05:02.238 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 19:50:38.444 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:46090 10 6452 1 2025-12-04 19:51:38.841 00:00:10.344 TCP 1.101.0.1:3000 -> 23.104.0.1:39656 10 6452 1 2025-12-04 19:52:11.704 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 19:52:11.630 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 19:52:11.797 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 19:52:11.633 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 19:52:11.623 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 19:52:39.219 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:46228 10 6452 1 2025-12-04 19:53:39.626 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59290 10 6452 1 2025-12-04 19:54:40.040 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:60952 10 6452 1 2025-12-04 19:55:40.464 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:44512 10 6452 1 2025-12-04 19:52:10.819 00:05:02.236 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 19:52:10.821 00:05:02.231 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 19:56:40.830 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:54660 10 6452 1 2025-12-04 19:57:12.193 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 19:57:11.921 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 19:57:11.925 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 19:57:12.188 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 19:57:12.110 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 19:57:41.235 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39046 10 6452 1 Summary: total flows: 139, total bytes: 414471, total packets: 1012, avg bps: 925, avg pps: 0, avg bpp: 409 Time window: 2025-12-04 18:58:10 - 2025-12-04 19:57:51 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0042s User: 0.0021s Wall: 0.0024s flows/second: 58184.5 Runtime: 0.0024s