Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-05 07:59:17.521 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:40528 10 6452 1 2025-12-05 08:00:17.932 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:33618 10 6452 1 2025-12-05 08:01:18.346 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:43344 10 6452 1 2025-12-05 07:58:11.111 00:05:02.212 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 07:58:11.113 00:05:02.207 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 08:02:26.406 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 08:02:26.422 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 08:02:26.412 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 08:02:18.718 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:36198 10 6452 1 2025-12-05 08:02:26.244 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 08:02:26.323 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 08:03:19.141 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:33566 10 6452 1 2025-12-05 08:04:19.548 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56486 10 6452 1 2025-12-05 08:05:19.971 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:48556 10 6452 1 2025-12-05 08:06:20.381 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:46030 10 6452 1 2025-12-05 08:07:26.964 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 08:07:26.639 00:00:00.026 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 08:07:26.930 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 08:07:26.802 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 08:07:26.885 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 08:07:20.777 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:34086 10 6452 1 2025-12-05 08:04:11.114 00:05:02.204 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 08:04:11.112 00:05:02.210 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 08:08:21.203 00:00:10.587 TCP 1.101.0.1:3000 -> 23.104.0.1:36698 11 6492 1 2025-12-05 08:09:21.809 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:40724 10 6452 1 2025-12-05 08:10:22.212 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:37870 10 6452 1 2025-12-05 08:11:22.615 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56074 10 6452 1 2025-12-05 08:12:26.663 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 08:12:26.554 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 08:12:26.345 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 08:12:26.620 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 08:12:26.703 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 08:12:23.017 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:60334 10 6452 1 2025-12-05 08:13:23.418 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:51406 10 6452 1 2025-12-05 08:10:11.117 00:05:02.204 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 08:10:11.113 00:05:02.209 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 08:14:23.822 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:44558 10 6452 1 2025-12-05 08:15:24.187 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54662 10 6452 1 2025-12-05 08:16:24.589 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56914 10 6452 1 2025-12-05 08:17:26.740 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 08:17:26.570 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 08:17:26.808 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 08:17:26.664 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 08:17:26.745 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 08:17:24.991 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:36556 10 6452 1 2025-12-05 08:18:25.395 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:47562 10 6452 1 2025-12-05 08:19:25.796 00:00:10.574 TCP 1.101.0.1:3000 -> 23.104.0.1:47224 10 6452 1 2025-12-05 08:16:11.118 00:05:02.210 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 08:16:11.115 00:05:02.216 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 08:20:26.411 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:35220 10 6452 1 2025-12-05 08:21:26.772 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:47114 10 6452 1 2025-12-05 08:22:26.899 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 08:22:26.887 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 08:22:26.746 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 08:22:26.768 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 08:22:26.816 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 08:22:27.182 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:56338 10 6452 1 2025-12-05 08:23:27.545 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:45228 10 6452 1 2025-12-05 08:24:27.915 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50502 10 6452 1 2025-12-05 08:25:28.321 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:43528 10 6452 1 2025-12-05 08:22:11.120 00:05:02.212 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 08:22:11.116 00:05:02.217 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 08:26:28.723 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:56572 10 6452 1 2025-12-05 08:27:26.986 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 08:27:26.909 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 08:27:26.980 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 08:27:26.992 00:00:00.041 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 08:27:27.074 00:00:00.042 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 08:27:29.112 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:40466 10 6452 1 2025-12-05 08:28:29.478 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:42778 10 6452 1 2025-12-05 08:29:29.885 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:46012 10 6452 1 2025-12-05 08:30:30.293 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:54658 10 6452 1 2025-12-05 08:31:30.707 00:00:10.507 TCP 1.101.0.1:3000 -> 23.104.0.1:42560 10 6452 1 2025-12-05 08:28:11.120 00:05:02.214 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 08:28:11.118 00:05:02.219 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 08:32:27.036 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 08:32:27.130 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 08:32:27.125 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 08:32:26.897 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 08:32:26.953 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 08:32:31.259 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:40810 10 6452 1 2025-12-05 08:33:31.628 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38532 10 6452 1 2025-12-05 08:34:32.034 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:42148 10 6452 1 2025-12-05 08:35:32.401 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:42196 10 6452 1 2025-12-05 08:36:32.801 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55686 10 6452 1 2025-12-05 08:37:27.138 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 08:37:27.068 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 08:37:27.231 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 08:37:27.135 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 08:37:27.217 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 08:37:33.216 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50364 10 6452 1 2025-12-05 08:34:11.122 00:05:02.214 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 08:34:11.119 00:05:02.219 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 08:38:33.624 00:00:10.441 TCP 1.101.0.1:3000 -> 23.104.0.1:35530 12 10375 1 2025-12-05 08:39:34.109 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:34552 10 6452 1 2025-12-05 08:40:34.520 00:00:11.343 TCP 1.101.0.1:3000 -> 23.104.0.1:45138 10 6452 1 2025-12-05 08:41:35.908 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:52052 10 6452 1 2025-12-05 08:42:27.340 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 08:42:27.009 00:00:00.038 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 08:42:27.248 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 08:42:26.877 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 08:42:27.258 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 08:42:36.314 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:35636 10 6452 1 2025-12-05 08:43:36.674 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:32780 10 6452 1 2025-12-05 08:40:11.126 00:05:02.214 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 08:40:11.129 00:05:02.209 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 08:44:37.103 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47644 10 6452 1 2025-12-05 08:45:37.511 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:50530 10 6452 1 2025-12-05 08:46:37.923 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:60930 10 6452 1 2025-12-05 08:47:27.215 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 08:47:27.312 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 08:47:27.417 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 08:47:27.130 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 08:47:27.133 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 08:47:38.301 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:49508 10 6452 1 2025-12-05 08:48:38.666 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39442 10 6452 1 2025-12-05 08:49:39.103 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:40588 10 6452 1 2025-12-05 08:46:11.127 00:05:02.216 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 08:46:11.130 00:05:02.212 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 08:50:39.554 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:43712 10 6452 1 2025-12-05 08:51:39.953 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:47306 10 6452 1 2025-12-05 08:52:27.417 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 08:52:27.520 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 08:52:27.312 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 08:52:27.144 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 08:52:27.228 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 08:52:40.365 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53792 10 6452 1 2025-12-05 08:53:40.772 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:50870 10 6452 1 2025-12-05 08:54:41.184 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54062 10 6452 1 2025-12-05 08:55:41.584 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59744 10 6452 1 2025-12-05 08:52:11.132 00:05:02.211 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 08:52:11.130 00:05:02.216 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 08:56:41.993 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:51798 10 6452 1 2025-12-05 08:57:27.705 00:00:00.016 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 08:57:27.469 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 08:57:27.475 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 08:57:27.335 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 08:57:27.617 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 08:57:42.352 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:53606 10 6452 1 Summary: total flows: 139, total bytes: 414511, total packets: 1013, avg bps: 925, avg pps: 0, avg bpp: 409 Time window: 2025-12-05 07:58:11 - 2025-12-05 08:57:52 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0034s User: 0.0017s Wall: 0.0045s flows/second: 30604.1 Runtime: 0.0046s