Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-05 11:59:05.403 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:41016 10 6452 1 2025-12-05 12:00:05.805 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39744 10 6452 1 2025-12-05 12:01:06.215 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48696 10 6452 1 2025-12-05 11:58:11.192 00:05:02.233 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 11:58:11.190 00:05:02.238 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 12:02:06.620 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:39028 10 6452 1 2025-12-05 12:02:31.300 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 12:02:31.235 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 12:02:31.330 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 12:02:30.977 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 12:02:31.217 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 12:03:07.047 00:00:10.441 TCP 1.101.0.1:3000 -> 23.104.0.1:52092 12 10369 1 2025-12-05 12:04:07.532 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44258 10 6452 1 2025-12-05 12:05:07.939 00:00:10.783 TCP 1.101.0.1:3000 -> 23.104.0.1:33186 10 6452 1 2025-12-05 12:06:08.763 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:60100 10 6452 1 2025-12-05 12:07:09.174 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58238 10 6452 1 2025-12-05 12:07:31.163 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 12:07:31.527 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 12:07:31.363 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 12:07:31.162 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 12:07:31.246 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 12:04:11.190 00:05:02.238 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 12:04:11.193 00:05:02.233 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 12:08:09.578 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:51282 10 6452 1 2025-12-05 12:09:09.981 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47908 10 6452 1 2025-12-05 12:10:10.381 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38738 10 6452 1 2025-12-05 12:11:10.784 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:50986 10 6452 1 2025-12-05 12:12:11.210 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35496 10 6452 1 2025-12-05 12:12:31.517 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 12:12:31.261 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 12:12:31.385 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 12:12:31.436 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 12:12:31.520 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 12:13:11.614 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:54602 10 6452 1 2025-12-05 12:10:11.196 00:05:02.232 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 12:10:11.194 00:05:02.238 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 12:14:12.017 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:50728 10 6452 1 2025-12-05 12:15:12.383 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51014 10 6452 1 2025-12-05 12:16:12.788 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:52900 10 6452 1 2025-12-05 12:17:13.151 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43448 10 6452 1 2025-12-05 12:17:32.173 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 12:17:32.268 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 12:17:32.210 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 12:17:32.255 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 12:17:32.339 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 12:18:13.559 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35692 10 6452 1 2025-12-05 12:19:13.962 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:45820 10 6452 1 2025-12-05 12:16:11.204 00:05:02.230 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 12:16:11.201 00:05:02.235 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 12:20:14.367 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53702 10 6452 1 2025-12-05 12:21:14.781 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:53286 10 6452 1 2025-12-05 12:22:15.183 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:53826 10 6452 1 2025-12-05 12:22:31.573 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 12:22:31.571 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 12:22:31.529 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 12:22:31.474 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 12:22:31.559 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 12:23:15.585 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59194 10 6452 1 2025-12-05 12:24:15.986 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:35906 10 6452 1 2025-12-05 12:25:16.408 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:44938 10 6452 1 2025-12-05 12:22:11.202 00:05:02.236 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 12:22:11.204 00:05:02.231 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 12:26:16.776 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:51496 10 6452 1 2025-12-05 12:27:17.181 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40372 10 6452 1 2025-12-05 12:27:32.243 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 12:27:31.768 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 12:27:31.955 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 12:27:32.203 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 12:27:32.037 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 12:28:17.587 00:00:10.445 TCP 1.101.0.1:3000 -> 23.104.0.1:34164 12 10375 1 2025-12-05 12:29:18.087 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:55152 10 6452 1 2025-12-05 12:30:18.500 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41098 10 6452 1 2025-12-05 12:31:18.904 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:59654 10 6452 1 2025-12-05 12:28:11.208 00:05:02.229 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 12:28:11.205 00:05:02.234 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 12:32:19.316 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49630 10 6452 1 2025-12-05 12:32:32.044 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 12:32:31.960 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 12:32:31.832 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 12:32:32.036 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 12:32:32.118 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 12:33:19.721 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:52946 10 6452 1 2025-12-05 12:34:20.117 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:60064 10 6452 1 2025-12-05 12:35:20.515 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54870 10 6452 1 2025-12-05 12:36:20.914 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:42078 10 6452 1 2025-12-05 12:37:32.019 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 12:37:31.825 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 12:37:21.331 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:51238 10 6452 1 2025-12-05 12:37:32.072 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 12:37:31.950 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 12:37:31.935 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 12:34:11.207 00:05:02.231 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 12:34:11.205 00:05:02.236 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 12:38:21.693 00:00:10.447 TCP 1.101.0.1:3000 -> 23.104.0.1:60446 12 10375 1 2025-12-05 12:39:22.169 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:35588 10 6452 1 2025-12-05 12:40:22.567 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:54210 10 6452 1 2025-12-05 12:41:22.936 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:47026 10 6452 1 2025-12-05 12:42:32.202 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 12:42:32.197 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 12:42:32.065 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 12:42:31.809 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 12:42:23.356 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:43654 10 6452 1 2025-12-05 12:42:32.119 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 12:43:23.765 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:59412 10 6452 1 2025-12-05 12:40:11.210 00:05:02.230 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 12:40:11.206 00:05:02.236 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 12:44:24.139 00:00:10.612 TCP 1.101.0.1:3000 -> 23.104.0.1:54316 11 6504 1 2025-12-05 12:45:24.790 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:40660 10 6452 1 2025-12-05 12:46:25.189 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40026 10 6452 1 2025-12-05 12:47:32.364 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 12:47:32.275 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 12:47:32.330 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 12:47:32.061 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 12:47:32.281 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 12:47:25.590 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50620 10 6452 1 2025-12-05 12:48:26.006 00:00:10.861 TCP 1.101.0.1:3000 -> 23.104.0.1:52846 10 6452 1 2025-12-05 12:49:26.905 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:50742 10 6452 1 2025-12-05 12:46:11.209 00:05:02.233 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 12:46:11.211 00:05:02.229 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 12:50:27.313 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41222 10 6452 1 2025-12-05 12:51:27.713 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:58384 10 6452 1 2025-12-05 12:52:32.305 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 12:52:32.303 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 12:52:32.298 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 12:52:32.181 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 12:52:32.223 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 12:52:28.121 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:59104 10 6452 1 2025-12-05 12:53:28.477 00:00:10.416 TCP 1.101.0.1:3000 -> 23.104.0.1:44586 11 6504 1 2025-12-05 12:54:28.932 00:00:10.440 TCP 1.101.0.1:3000 -> 23.104.0.1:60478 11 6504 1 2025-12-05 12:55:29.411 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46950 10 6452 1 2025-12-05 12:52:11.213 00:05:02.234 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 12:52:11.211 00:05:02.238 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 12:56:29.814 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54236 10 6452 1 2025-12-05 12:57:32.171 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 12:57:32.428 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 12:57:32.317 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 12:57:32.285 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 12:57:32.367 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 12:57:30.217 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:60488 10 6452 1 2025-12-05 12:58:30.618 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:55448 10 6452 1 Summary: total flows: 140, total bytes: 428919, total packets: 1029, avg bps: 945, avg pps: 0, avg bpp: 416 Time window: 2025-12-05 11:58:11 - 2025-12-05 12:58:40 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0044s User: 0.0009s Wall: 0.0020s flows/second: 71618.8 Runtime: 0.0020s