Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-05 12:59:30.972 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57040 10 6452 1 2025-12-05 13:00:31.377 00:00:10.418 TCP 1.101.0.1:3000 -> 23.104.0.1:60332 12 6556 1 2025-12-05 13:01:31.871 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:46640 10 6452 1 2025-12-05 12:58:11.212 00:05:02.237 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 12:58:11.214 00:05:02.232 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 13:02:32.475 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 13:02:32.390 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 13:02:32.550 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 13:02:32.332 00:00:00.038 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 13:02:32.393 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 13:02:32.281 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34894 10 6452 1 2025-12-05 13:03:32.680 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39906 10 6452 1 2025-12-05 13:04:33.106 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:41586 10 6452 1 2025-12-05 13:05:33.471 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46102 10 6452 1 2025-12-05 13:06:33.879 00:00:10.528 TCP 1.101.0.1:3000 -> 23.104.0.1:47968 10 6452 1 2025-12-05 13:07:32.661 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 13:07:32.630 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 13:07:32.437 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 13:07:32.440 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 13:07:32.578 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 13:07:34.446 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:55356 10 6452 1 2025-12-05 13:04:11.213 00:05:02.237 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 13:04:11.217 00:05:02.232 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 13:08:34.846 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:57900 10 6452 1 2025-12-05 13:09:35.272 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:47112 10 6452 1 2025-12-05 13:10:35.636 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:38024 10 6452 1 2025-12-05 13:11:36.008 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51634 10 6452 1 2025-12-05 13:12:32.505 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 13:12:32.743 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 13:12:32.520 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 13:12:32.353 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 13:12:32.422 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 13:12:36.414 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:58946 10 6452 1 2025-12-05 13:13:36.802 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:46908 10 6452 1 2025-12-05 13:10:11.217 00:05:02.234 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 13:10:11.220 00:05:02.229 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 13:14:37.208 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:37806 10 6452 1 2025-12-05 13:15:37.610 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:35060 10 6452 1 2025-12-05 13:16:37.972 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59716 10 6452 1 2025-12-05 13:17:32.882 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 13:17:32.787 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 13:17:32.896 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 13:17:32.767 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 13:17:32.801 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 13:17:38.379 00:00:11.063 TCP 1.101.0.1:3000 -> 23.104.0.1:54828 10 6452 1 2025-12-05 13:18:39.483 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:40878 10 6452 1 2025-12-05 13:19:39.847 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:57322 10 6452 1 2025-12-05 13:16:11.220 00:05:02.234 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 13:16:11.223 00:05:02.228 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 13:20:40.274 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37946 10 6452 1 2025-12-05 13:21:40.675 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:50960 10 6452 1 2025-12-05 13:22:33.039 00:00:00.029 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 13:22:32.956 00:00:00.030 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 13:22:32.693 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 13:22:32.703 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 13:22:32.956 00:00:00.029 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 13:22:41.115 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:47858 10 6452 1 2025-12-05 13:23:41.525 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:58480 10 6452 1 2025-12-05 13:24:41.896 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:34968 10 6452 1 2025-12-05 13:25:42.317 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:55608 10 6452 1 2025-12-05 13:22:11.225 00:05:02.244 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 13:22:11.226 00:05:02.240 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 13:26:42.682 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:44046 10 6452 1 2025-12-05 13:27:33.212 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 13:27:33.213 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 13:27:33.140 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 13:27:33.217 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 13:27:33.300 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 13:27:43.058 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:45308 10 6452 1 2025-12-05 13:28:43.469 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59582 10 6452 1 2025-12-05 13:29:43.875 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44868 10 6452 1 2025-12-05 13:30:44.276 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54452 10 6452 1 2025-12-05 13:31:44.683 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:34362 10 6452 1 2025-12-05 13:28:11.227 00:05:02.241 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 13:28:11.224 00:05:02.246 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 13:32:33.035 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 13:32:32.743 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 13:32:33.154 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 13:32:32.895 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 13:32:32.952 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 13:32:45.108 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:46572 10 6452 1 2025-12-05 13:33:45.471 00:00:10.441 TCP 1.101.0.1:3000 -> 23.104.0.1:51162 12 10369 1 2025-12-05 13:34:45.949 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:56194 10 6452 1 2025-12-05 13:35:46.376 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:38416 10 6452 1 2025-12-05 13:36:46.737 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:46172 10 6452 1 2025-12-05 13:37:33.038 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 13:37:33.218 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 13:37:33.163 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 13:37:33.344 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 13:37:33.428 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 13:37:47.142 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:45050 10 6452 1 2025-12-05 13:34:11.228 00:05:02.241 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 13:34:11.227 00:05:02.246 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 13:38:47.508 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:49034 10 6452 1 2025-12-05 13:39:47.934 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:44316 10 6452 1 2025-12-05 13:40:48.350 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:36842 10 6452 1 2025-12-05 13:41:48.748 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:43332 12 6556 1 2025-12-05 13:42:33.665 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 13:42:33.739 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 13:42:33.679 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 13:42:33.442 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 13:42:33.525 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 13:42:49.148 00:00:10.653 TCP 1.101.0.1:3000 -> 23.104.0.1:56662 10 6452 1 2025-12-05 13:43:49.842 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:48032 10 6452 1 2025-12-05 13:40:11.231 00:05:02.240 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 13:40:11.228 00:05:02.245 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 13:44:50.267 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49812 11 6492 1 2025-12-05 13:45:50.669 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:35480 10 6452 1 2025-12-05 13:46:51.109 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43536 10 6452 1 2025-12-05 13:47:33.387 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 13:47:33.461 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 13:47:33.245 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 13:47:33.386 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 13:47:33.468 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 13:47:51.515 00:00:11.361 TCP 1.101.0.1:3000 -> 23.104.0.1:42334 10 6452 1 2025-12-05 13:48:52.912 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42002 10 6452 1 2025-12-05 13:49:53.319 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58118 10 6452 1 2025-12-05 13:46:11.233 00:05:02.240 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 13:46:11.231 00:05:02.244 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 13:50:53.719 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:58414 10 6452 1 2025-12-05 13:51:54.115 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53528 10 6452 1 2025-12-05 13:52:33.827 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 13:52:33.784 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 13:52:33.620 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 13:52:33.701 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 13:52:33.744 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 13:52:54.518 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50394 10 6452 1 2025-12-05 13:53:54.921 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:60362 10 6452 1 2025-12-05 13:54:55.328 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:55528 10 6452 1 2025-12-05 13:52:11.233 00:05:02.245 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 13:55:55.735 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:33890 10 6452 1 2025-12-05 13:52:11.236 00:05:02.239 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 13:56:56.146 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:53408 10 6452 1 2025-12-05 13:57:33.703 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 13:57:33.628 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 13:57:33.549 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 13:57:33.260 00:00:00.026 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 13:57:33.622 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 13:57:56.553 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:49868 10 6452 1 Summary: total flows: 139, total bytes: 414713, total packets: 1017, avg bps: 922, avg pps: 0, avg bpp: 407 Time window: 2025-12-05 12:58:11 - 2025-12-05 13:58:06 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0032s User: 0.0022s Wall: 0.0021s flows/second: 66318.8 Runtime: 0.0021s