Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-05 10:59:33.219 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:52180 10 6452 1 2025-12-05 11:00:33.621 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:33478 10 6452 1 2025-12-05 11:01:33.984 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45672 10 6452 1 2025-12-05 10:58:11.171 00:05:02.226 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 10:58:11.168 00:05:02.230 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 11:02:29.879 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 11:02:29.901 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 11:02:29.798 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 11:02:30.071 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 11:02:29.991 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 11:02:34.389 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:41168 10 6452 1 2025-12-05 11:03:34.753 00:00:10.441 TCP 1.101.0.1:3000 -> 23.104.0.1:42228 12 10375 1 2025-12-05 11:04:35.233 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43344 10 6452 1 2025-12-05 11:05:35.635 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49280 10 6452 1 2025-12-05 11:06:36.040 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39628 10 6452 1 2025-12-05 11:07:30.249 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 11:07:30.364 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 11:07:30.090 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 11:07:30.250 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 11:07:30.333 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 11:07:36.443 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:47232 10 6452 1 2025-12-05 11:04:11.169 00:05:02.232 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 11:04:11.172 00:05:02.226 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 11:08:36.842 00:00:11.168 TCP 1.101.0.1:3000 -> 23.104.0.1:55618 10 6452 1 2025-12-05 11:09:38.052 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53068 10 6452 1 2025-12-05 11:10:38.456 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:41802 10 6452 1 2025-12-05 11:11:38.858 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:58752 10 6452 1 2025-12-05 11:12:30.382 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 11:12:30.309 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 11:12:30.006 00:00:00.051 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 11:12:30.350 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 11:12:30.431 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 11:12:39.294 00:00:10.348 TCP 1.101.0.1:3000 -> 23.104.0.1:59206 10 6452 1 2025-12-05 11:13:39.693 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:41120 10 6452 1 2025-12-05 11:10:11.173 00:05:02.226 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 11:10:11.170 00:05:02.232 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 11:14:40.066 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:59406 10 6452 1 2025-12-05 11:15:40.435 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:46920 10 6452 1 2025-12-05 11:16:40.843 00:00:10.399 TCP 1.101.0.1:3000 -> 23.104.0.1:36804 10 6452 1 2025-12-05 11:17:30.416 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 11:17:30.334 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 11:17:30.336 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 11:17:30.351 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 11:17:30.334 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 11:17:41.282 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:39758 10 6452 1 2025-12-05 11:18:41.688 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:33536 10 6452 1 2025-12-05 11:19:42.053 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:35856 10 6452 1 2025-12-05 11:16:11.171 00:05:02.232 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 11:16:11.174 00:05:02.227 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 11:20:42.454 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:54136 10 6452 1 2025-12-05 11:21:42.860 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:46748 10 6452 1 2025-12-05 11:22:30.352 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 11:22:30.532 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 11:22:30.464 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 11:22:30.257 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 11:22:30.340 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 11:22:43.274 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51786 10 6452 1 2025-12-05 11:23:43.679 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33426 10 6452 1 2025-12-05 11:24:44.104 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51634 10 6452 1 2025-12-05 11:25:44.506 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:60652 10 6452 1 2025-12-05 11:22:11.173 00:05:02.232 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 11:22:11.177 00:05:02.226 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 11:26:44.918 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:45636 10 6452 1 2025-12-05 11:27:30.718 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 11:27:30.376 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 11:27:30.566 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 11:27:30.280 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 11:27:30.636 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 11:27:45.319 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39932 10 6452 1 2025-12-05 11:28:45.723 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:60130 10 6452 1 2025-12-05 11:29:46.133 00:00:10.409 TCP 1.101.0.1:3000 -> 23.104.0.1:38890 10 6452 1 2025-12-05 11:30:46.582 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:43960 10 6452 1 2025-12-05 11:31:46.940 00:00:10.696 TCP 1.101.0.1:3000 -> 23.104.0.1:49566 10 6452 1 2025-12-05 11:28:11.176 00:05:02.229 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 11:28:11.174 00:05:02.234 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 11:32:30.521 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 11:32:30.823 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 11:32:30.821 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 11:32:30.457 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 11:32:30.438 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 11:32:47.674 00:00:17.679 TCP 1.101.0.1:3000 -> 23.104.0.1:49174 10 6452 1 2025-12-05 11:33:55.396 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:33192 10 6452 1 2025-12-05 11:34:55.797 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:34028 10 6452 1 2025-12-05 11:35:56.205 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:54500 10 6452 1 2025-12-05 11:36:56.606 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:57360 10 6452 1 2025-12-05 11:37:30.725 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 11:37:30.784 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 11:37:30.722 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 11:37:30.558 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 11:37:30.641 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 11:34:11.176 00:05:02.236 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 11:37:57.011 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57582 10 6452 1 2025-12-05 11:34:11.180 00:05:02.231 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 11:38:57.408 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35778 10 6452 1 2025-12-05 11:39:57.811 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35708 10 6452 1 2025-12-05 11:40:58.215 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:39308 10 6452 1 2025-12-05 11:41:58.578 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:55758 10 6452 1 2025-12-05 11:42:30.769 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 11:42:30.847 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 11:42:30.575 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 11:42:30.648 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 11:42:30.732 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 11:42:58.983 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:58402 10 6452 1 2025-12-05 11:43:59.407 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:37138 10 6452 1 2025-12-05 11:40:11.178 00:05:02.242 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 11:40:11.182 00:05:02.237 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 11:44:59.764 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:41268 10 6452 1 2025-12-05 11:46:00.135 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:42712 10 6452 1 2025-12-05 11:47:00.553 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42436 10 6452 1 2025-12-05 11:47:30.878 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 11:47:30.966 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 11:47:30.791 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 11:47:30.949 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 11:47:30.795 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 11:48:00.958 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:52654 10 6452 1 2025-12-05 11:49:01.367 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:57792 10 6452 1 2025-12-05 11:46:11.190 00:05:02.234 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 11:50:01.773 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:51222 10 6452 1 2025-12-05 11:46:11.187 00:05:02.239 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 11:51:02.184 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51576 10 6452 1 2025-12-05 11:52:02.584 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44118 10 6452 1 2025-12-05 11:52:31.014 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 11:52:31.068 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 11:52:30.934 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 11:52:30.868 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 11:52:30.931 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 11:53:02.989 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:49726 10 6452 1 2025-12-05 11:54:03.392 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:46110 10 6452 1 2025-12-05 11:55:03.798 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:46062 10 6452 1 2025-12-05 11:52:11.191 00:05:02.233 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 11:56:04.205 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:40546 10 6452 1 2025-12-05 11:52:11.189 00:05:02.238 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 11:57:04.610 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:32820 10 6452 1 2025-12-05 11:57:31.253 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 11:57:31.341 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 11:57:31.167 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 11:57:31.152 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 11:57:31.171 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 11:58:05.010 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:53702 10 6452 1 Summary: total flows: 139, total bytes: 414471, total packets: 1012, avg bps: 919, avg pps: 0, avg bpp: 409 Time window: 2025-12-05 10:58:11 - 2025-12-05 11:58:15 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0040s User: 0.0030s Wall: 0.0021s flows/second: 67571.7 Runtime: 0.0021s