Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-04 23:59:32.360 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:54864 10 6452 1 2025-12-05 00:00:32.762 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:39030 12 6556 1 2025-12-05 00:01:33.176 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:55564 10 6452 1 2025-12-04 23:58:10.918 00:05:02.213 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 23:58:10.916 00:05:02.217 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 00:02:16.849 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 00:02:16.614 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 00:02:16.949 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 00:02:16.855 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 00:02:17.033 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 00:02:33.585 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:57480 10 6452 1 2025-12-05 00:03:33.954 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47198 10 6452 1 2025-12-05 00:04:34.357 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56056 10 6452 1 2025-12-05 00:05:34.761 00:00:10.534 TCP 1.101.0.1:3000 -> 23.104.0.1:59254 10 6452 1 2025-12-05 00:06:35.336 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42204 10 6452 1 2025-12-05 00:07:16.697 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 00:07:16.907 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 00:07:16.740 00:00:00.026 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 00:07:16.895 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 00:07:16.614 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 00:07:35.735 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:51184 10 6452 1 2025-12-05 00:04:10.919 00:05:02.217 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 00:04:10.921 00:05:02.212 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 00:08:36.141 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:40806 10 6452 1 2025-12-05 00:09:36.538 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:38004 10 6452 1 2025-12-05 00:10:36.904 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:49048 12 6556 1 2025-12-05 00:11:37.315 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:54704 10 6452 1 2025-12-05 00:12:17.108 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 00:12:17.112 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 00:12:16.895 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 00:12:16.857 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 00:12:16.940 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 00:12:37.715 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:57600 10 6452 1 2025-12-05 00:13:38.112 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37286 10 6452 1 2025-12-05 00:10:10.925 00:05:02.210 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 00:10:10.922 00:05:02.215 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 00:14:38.522 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:52708 10 6452 1 2025-12-05 00:15:38.926 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:49754 10 6452 1 2025-12-05 00:16:39.355 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:58460 10 6452 1 2025-12-05 00:17:17.020 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 00:17:17.170 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 00:17:16.866 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 00:17:16.928 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 00:17:17.012 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 00:17:39.714 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:41412 10 6452 1 2025-12-05 00:18:40.122 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44486 10 6452 1 2025-12-05 00:19:40.530 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:53588 10 6452 1 2025-12-05 00:16:10.927 00:05:02.209 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 00:16:10.924 00:05:02.214 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 00:20:40.944 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:51750 10 6452 1 2025-12-05 00:21:41.376 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:44536 10 6452 1 2025-12-05 00:22:17.436 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 00:22:17.223 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 00:22:17.038 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 00:22:17.215 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 00:22:17.354 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 00:22:41.784 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:42260 10 6452 1 2025-12-05 00:23:42.204 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48574 10 6452 1 2025-12-05 00:24:42.606 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39286 10 6452 1 2025-12-05 00:25:43.009 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:35178 10 6452 1 2025-12-05 00:22:10.931 00:05:02.208 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 00:22:10.929 00:05:02.213 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 00:26:43.389 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56346 10 6452 1 2025-12-05 00:27:17.448 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 00:27:17.181 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 00:27:17.297 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 00:27:17.188 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 00:27:17.366 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 00:27:43.794 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59876 10 6452 1 2025-12-05 00:28:44.204 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:37776 10 6452 1 2025-12-05 00:29:44.606 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:59962 10 6452 1 2025-12-05 00:30:45.007 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:53072 10 6452 1 2025-12-05 00:31:45.402 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:60102 10 6452 1 2025-12-05 00:28:10.931 00:05:02.209 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 00:28:10.928 00:05:02.214 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 00:32:17.493 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 00:32:17.215 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 00:32:17.479 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 00:32:17.442 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 00:32:17.411 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 00:32:45.765 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47596 10 6452 1 2025-12-05 00:33:46.174 00:00:10.423 TCP 1.101.0.1:3000 -> 23.104.0.1:34170 11 6504 1 2025-12-05 00:34:46.640 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:40590 10 6452 1 2025-12-05 00:35:47.043 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42784 10 6452 1 2025-12-05 00:36:47.446 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:44114 10 6452 1 2025-12-05 00:37:17.377 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 00:37:17.652 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 00:37:17.384 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 00:37:17.545 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 00:37:17.282 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 00:37:47.846 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:41990 10 6452 1 2025-12-05 00:34:10.935 00:05:02.208 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 00:34:10.932 00:05:02.213 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 00:38:48.273 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:34624 10 6452 1 2025-12-05 00:39:48.685 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:39696 10 6452 1 2025-12-05 00:40:49.057 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37244 10 6452 1 2025-12-05 00:41:49.465 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:36868 10 6452 1 2025-12-05 00:42:17.556 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 00:42:17.727 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 00:42:17.477 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 00:42:17.542 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 00:42:17.474 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 00:42:49.829 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60118 10 6452 1 2025-12-05 00:43:50.235 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43802 10 6452 1 2025-12-05 00:40:10.934 00:05:02.210 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 00:40:10.933 00:05:02.214 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 00:44:50.635 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:46224 10 6452 1 2025-12-05 00:45:51.070 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:33922 10 6452 1 2025-12-05 00:46:51.476 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:60040 10 6452 1 2025-12-05 00:47:18.029 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 00:47:17.668 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 00:47:17.753 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 00:47:17.488 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 00:47:17.944 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 00:47:51.889 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:55184 10 6452 1 2025-12-05 00:48:52.311 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:51782 10 6452 1 2025-12-05 00:49:52.754 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:33158 10 6452 1 2025-12-05 00:46:10.936 00:05:02.210 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 00:46:10.935 00:05:02.215 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 00:50:53.167 00:00:16.097 TCP 1.101.0.1:3000 -> 23.104.0.1:47322 10 6452 1 2025-12-05 00:51:59.318 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:34370 10 6452 1 2025-12-05 00:52:18.286 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 00:52:18.332 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 00:52:17.673 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 00:52:18.243 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 00:52:18.326 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 00:52:59.723 00:00:10.453 TCP 1.101.0.1:3000 -> 23.104.0.1:47270 12 10369 1 2025-12-05 00:54:00.211 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41266 10 6452 1 2025-12-05 00:55:00.614 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:46026 10 6452 1 2025-12-05 00:52:10.936 00:05:02.212 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 00:52:10.940 00:05:02.208 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 00:56:00.975 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:38058 10 6452 1 2025-12-05 00:57:01.346 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:45498 10 6452 1 2025-12-05 00:57:18.038 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 00:57:17.862 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 00:57:17.920 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 00:57:17.772 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 00:57:17.956 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 00:58:01.751 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:32802 10 6452 1 Summary: total flows: 139, total bytes: 414725, total packets: 1017, avg bps: 921, avg pps: 0, avg bpp: 407 Time window: 2025-12-04 23:58:10 - 2025-12-05 00:58:12 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0026s User: 0.0026s Wall: 0.0048s flows/second: 29116.9 Runtime: 0.0048s