Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-05 17:59:38.699 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:46352 10 6452 1 2025-12-05 18:00:39.108 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:60834 10 6452 1 2025-12-05 18:01:39.521 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45806 10 6452 1 2025-12-05 17:58:11.325 00:05:02.226 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 17:58:11.328 00:05:02.220 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 18:02:38.666 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 18:02:38.583 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 18:02:38.667 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 18:02:38.448 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 18:02:38.583 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 18:02:39.937 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:36394 10 6452 1 2025-12-05 18:03:40.360 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:47160 10 6452 1 2025-12-05 18:04:40.758 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:33894 10 6452 1 2025-12-05 18:05:41.155 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:33706 10 6452 1 2025-12-05 18:06:41.560 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37552 10 6452 1 2025-12-05 18:07:38.817 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 18:07:38.725 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 18:07:38.831 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 18:07:38.762 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 18:07:38.734 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 18:07:41.966 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:40170 10 6452 1 2025-12-05 18:04:11.330 00:05:02.219 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 18:04:11.328 00:05:02.223 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 18:08:42.383 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54662 10 6452 1 2025-12-05 18:09:42.795 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:39990 10 6452 1 2025-12-05 18:10:43.153 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:37938 10 6452 1 2025-12-05 18:11:43.520 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49266 10 6452 1 2025-12-05 18:12:38.805 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 18:12:38.720 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 18:12:38.704 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 18:12:38.601 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 18:12:38.723 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 18:12:43.923 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:44628 10 6452 1 2025-12-05 18:13:44.351 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49412 10 6452 1 2025-12-05 18:10:11.330 00:05:02.223 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 18:10:11.332 00:05:02.218 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 18:14:44.756 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52346 10 6452 1 2025-12-05 18:15:45.159 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41842 10 6452 1 2025-12-05 18:16:45.564 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:51596 10 6452 1 2025-12-05 18:17:38.987 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 18:17:38.994 00:00:00.028 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 18:17:38.512 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 18:17:38.833 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 18:17:38.915 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 18:17:45.961 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:41266 10 6452 1 2025-12-05 18:18:46.364 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:46234 10 6452 1 2025-12-05 18:19:46.764 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:40796 10 6452 1 2025-12-05 18:16:11.334 00:05:02.218 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 18:16:11.331 00:05:02.223 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 18:20:47.172 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:41520 10 6452 1 2025-12-05 18:21:47.540 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:58710 10 6452 1 2025-12-05 18:22:38.938 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 18:22:38.899 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 18:22:38.719 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 18:22:38.606 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 18:22:38.856 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 18:22:47.932 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:41542 10 6452 1 2025-12-05 18:23:48.361 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:35296 10 6452 1 2025-12-05 18:24:48.762 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:54574 10 6452 1 2025-12-05 18:25:49.177 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:49184 10 6452 1 2025-12-05 18:22:11.336 00:05:02.220 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 18:22:11.334 00:05:02.225 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 18:26:49.596 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:43614 10 6452 1 2025-12-05 18:27:39.035 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 18:27:38.950 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 18:27:38.878 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 18:27:38.704 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 18:27:38.952 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 18:27:49.997 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:48312 10 6452 1 2025-12-05 18:28:50.419 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:35714 10 6452 1 2025-12-05 18:29:50.827 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46626 10 6452 1 2025-12-05 18:30:51.226 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:43132 10 6452 1 2025-12-05 18:31:51.640 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34744 10 6452 1 2025-12-05 18:28:11.336 00:05:02.224 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 18:28:11.337 00:05:02.219 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 18:32:38.944 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 18:32:39.144 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 18:32:39.116 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 18:32:38.944 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 18:32:39.027 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 18:32:52.052 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:53606 10 6452 1 2025-12-05 18:33:52.461 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:44430 10 6452 1 2025-12-05 18:34:52.860 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:55446 10 6452 1 2025-12-05 18:35:53.232 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:45466 10 6452 1 2025-12-05 18:36:53.641 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:53004 10 6452 1 2025-12-05 18:37:39.572 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 18:37:39.449 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 18:37:39.369 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 18:37:39.571 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 18:37:39.654 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 18:37:54.057 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:38694 10 6452 1 2025-12-05 18:34:11.335 00:05:02.227 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 18:34:11.338 00:05:02.221 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 18:38:54.417 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41512 10 6452 1 2025-12-05 18:39:54.822 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:33434 10 6452 1 2025-12-05 18:40:55.196 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:37368 10 6452 1 2025-12-05 18:41:55.590 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:43586 10 6452 1 2025-12-05 18:42:39.215 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 18:42:39.419 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 18:42:39.422 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 18:42:39.137 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 18:42:39.132 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 18:42:55.997 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33694 10 6452 1 2025-12-05 18:40:11.338 00:05:02.224 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 18:43:56.400 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:46378 10 6452 1 2025-12-05 18:40:11.340 00:05:02.218 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 18:44:56.813 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:36576 10 6452 1 2025-12-05 18:45:57.179 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45812 10 6452 1 2025-12-05 18:46:57.579 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:54068 10 6452 1 2025-12-05 18:47:39.384 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 18:47:39.228 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 18:47:39.480 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 18:47:39.405 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 18:47:39.301 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 18:47:57.938 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:43834 10 6452 1 2025-12-05 18:48:58.353 00:00:10.401 TCP 1.101.0.1:3000 -> 23.104.0.1:51674 12 10375 1 2025-12-05 18:49:58.791 00:00:10.549 TCP 1.101.0.1:3000 -> 23.104.0.1:52088 10 6452 1 2025-12-05 18:46:11.341 00:05:02.219 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 18:46:11.340 00:05:02.225 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 18:50:59.377 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:49852 10 6452 1 2025-12-05 18:51:59.775 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:51982 10 6452 1 2025-12-05 18:52:39.559 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 18:52:39.427 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 18:52:39.428 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 18:52:39.378 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 18:52:39.475 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 18:53:00.141 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:44934 10 6452 1 2025-12-05 18:54:00.553 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42556 10 6452 1 2025-12-05 18:55:00.959 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:58080 10 6452 1 2025-12-05 18:52:11.342 00:05:02.222 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 18:56:01.393 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35250 10 6452 1 2025-12-05 18:52:11.341 00:05:02.227 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 18:57:01.793 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:46644 10 6452 1 2025-12-05 18:57:39.601 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 18:57:39.541 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 18:57:39.550 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 18:57:39.533 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 18:57:39.615 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 18:58:02.206 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:53520 10 6452 1 Summary: total flows: 139, total bytes: 414471, total packets: 1012, avg bps: 920, avg pps: 0, avg bpp: 409 Time window: 2025-12-05 17:58:11 - 2025-12-05 18:58:12 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0032s User: 0.0021s Wall: 0.0023s flows/second: 60856.8 Runtime: 0.0023s