Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-05 09:59:08.114 00:00:10.805 TCP 1.101.0.1:3000 -> 23.104.0.1:59450 10 6452 1 2025-12-05 10:00:08.957 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35302 12 6556 1 2025-12-05 10:01:09.364 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:49636 10 6452 1 2025-12-05 09:58:11.149 00:05:02.229 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 09:58:11.152 00:05:02.223 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 10:02:28.961 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 10:02:09.765 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:52174 10 6452 1 2025-12-05 10:02:28.654 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 10:02:28.640 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 10:02:28.566 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 10:02:28.877 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 10:03:10.188 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:48298 10 6452 1 2025-12-05 10:04:10.598 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:57682 10 6452 1 2025-12-05 10:05:11.005 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:54598 10 6452 1 2025-12-05 10:06:11.412 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60250 10 6452 1 2025-12-05 10:07:11.816 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:54596 10 6452 1 2025-12-05 10:07:29.018 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 10:07:28.933 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 10:07:28.879 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 10:07:28.766 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 10:07:28.998 00:00:00.029 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 10:04:11.152 00:05:02.224 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 10:04:11.150 00:05:02.230 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 10:08:12.222 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:40062 10 6452 1 2025-12-05 10:09:12.581 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39644 10 6452 1 2025-12-05 10:10:12.985 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:39372 10 6452 1 2025-12-05 10:11:13.421 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57756 10 6452 1 2025-12-05 10:12:13.841 00:00:10.348 TCP 1.101.0.1:3000 -> 23.104.0.1:51746 10 6452 1 2025-12-05 10:12:29.111 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 10:12:29.176 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 10:12:29.068 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 10:12:29.113 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 10:12:29.195 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 10:13:14.231 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55012 10 6452 1 2025-12-05 10:10:11.152 00:05:02.230 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 10:10:11.154 00:05:02.224 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 10:14:14.638 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:57676 10 6452 1 2025-12-05 10:15:15.043 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36628 10 6452 1 2025-12-05 10:16:15.446 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:39744 10 6452 1 2025-12-05 10:17:29.233 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 10:17:15.845 00:00:10.350 TCP 1.101.0.1:3000 -> 23.104.0.1:44718 10 6452 1 2025-12-05 10:17:29.104 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 10:17:29.110 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 10:17:29.193 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 10:17:29.280 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 10:18:16.238 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:47012 10 6452 1 2025-12-05 10:19:16.639 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:40174 10 6452 1 2025-12-05 10:16:11.155 00:05:02.225 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 10:16:11.153 00:05:02.230 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 10:20:17.040 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:37430 10 6452 1 2025-12-05 10:21:17.405 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:44914 10 6452 1 2025-12-05 10:22:29.617 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 10:22:29.735 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 10:22:29.739 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 10:22:29.332 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 10:22:29.533 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 10:22:17.809 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:37094 10 6452 1 2025-12-05 10:23:18.218 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:52836 10 6452 1 2025-12-05 10:24:18.582 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:44724 10 6452 1 2025-12-05 10:25:18.980 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:44950 10 6452 1 2025-12-05 10:22:11.154 00:05:02.231 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 10:22:11.156 00:05:02.226 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 10:26:19.341 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53614 10 6452 1 2025-12-05 10:27:29.466 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 10:27:29.398 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 10:27:29.303 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 10:27:29.345 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 10:27:29.427 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 10:27:19.745 00:00:10.502 TCP 1.101.0.1:3000 -> 23.104.0.1:52712 10 6452 1 2025-12-05 10:28:20.293 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58134 10 6452 1 2025-12-05 10:29:20.699 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:40964 10 6452 1 2025-12-05 10:30:21.068 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:44440 10 6452 1 2025-12-05 10:31:21.433 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60748 10 6452 1 2025-12-05 10:28:11.159 00:05:02.230 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 10:28:11.156 00:05:02.236 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 10:32:29.502 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 10:32:29.356 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 10:32:29.422 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 10:32:29.391 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 10:32:29.419 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 10:32:21.836 00:00:10.345 TCP 1.101.0.1:3000 -> 23.104.0.1:50984 10 6452 1 2025-12-05 10:33:22.223 00:00:10.441 TCP 1.101.0.1:3000 -> 23.104.0.1:60042 12 10369 1 2025-12-05 10:34:22.705 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:49888 10 6452 1 2025-12-05 10:35:23.092 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49450 10 6452 1 2025-12-05 10:36:23.493 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:46568 10 6452 1 2025-12-05 10:37:29.341 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 10:37:29.454 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 10:37:29.464 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 10:37:29.403 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 10:37:29.257 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 10:37:23.899 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:43202 10 6452 1 2025-12-05 10:34:11.166 00:05:02.226 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 10:34:11.163 00:05:02.231 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 10:38:24.306 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:35546 10 6452 1 2025-12-05 10:39:24.710 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54416 10 6452 1 2025-12-05 10:40:25.117 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:52914 10 6452 1 2025-12-05 10:41:25.529 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:38576 10 6452 1 2025-12-05 10:42:29.769 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 10:42:29.693 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 10:42:29.749 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 10:42:29.430 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 10:42:29.686 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 10:42:25.894 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:57238 12 6556 1 2025-12-05 10:43:26.327 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:35638 10 6452 1 2025-12-05 10:40:11.165 00:05:02.230 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 10:40:11.167 00:05:02.225 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 10:44:26.699 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40534 10 6452 1 2025-12-05 10:45:27.107 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41872 10 6452 1 2025-12-05 10:46:27.519 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:51504 10 6452 1 2025-12-05 10:47:29.928 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 10:47:29.610 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 10:47:29.800 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 10:47:29.745 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 10:47:30.010 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 10:47:27.926 00:00:10.646 TCP 1.101.0.1:3000 -> 23.104.0.1:51934 10 6452 1 2025-12-05 10:48:28.609 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58704 10 6452 1 2025-12-05 10:49:29.018 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36310 10 6452 1 2025-12-05 10:46:11.169 00:05:02.226 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 10:46:11.168 00:05:02.230 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 10:50:29.424 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57784 10 6452 1 2025-12-05 10:51:29.828 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:56360 10 6452 1 2025-12-05 10:52:29.658 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 10:52:29.664 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 10:52:29.755 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 10:52:29.666 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 10:52:29.749 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 10:52:30.191 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:44740 10 6452 1 2025-12-05 10:53:30.592 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:47336 10 6452 1 2025-12-05 10:54:30.998 00:00:10.520 TCP 1.101.0.1:3000 -> 23.104.0.1:33372 10 6452 1 2025-12-05 10:55:31.554 00:00:10.417 TCP 1.101.0.1:3000 -> 23.104.0.1:59784 10 6452 1 2025-12-05 10:52:11.166 00:05:02.231 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 10:52:11.170 00:05:02.226 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 10:56:32.011 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48738 10 6452 1 2025-12-05 10:57:29.852 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 10:57:29.759 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 10:57:29.601 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 10:57:29.770 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 10:57:29.977 00:00:00.057 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 10:57:32.413 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:43416 10 6452 1 2025-12-05 10:58:32.820 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:52976 10 6452 1 Summary: total flows: 140, total bytes: 421125, total packets: 1026, avg bps: 927, avg pps: 0, avg bpp: 410 Time window: 2025-12-05 09:58:11 - 2025-12-05 10:58:43 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0045s User: 0.0009s Wall: 0.0020s flows/second: 70071.9 Runtime: 0.0020s