Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-05 18:59:02.612 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:33152 10 6452 1 2025-12-05 19:00:03.001 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:59780 10 6452 1 2025-12-05 19:01:03.369 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:60400 10 6452 1 2025-12-05 18:58:11.349 00:05:02.216 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 19:02:03.734 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59956 10 6452 1 2025-12-05 18:58:11.346 00:05:02.222 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 19:02:39.774 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 19:02:39.627 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 19:02:39.695 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 19:02:39.811 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 19:02:39.693 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 19:03:04.141 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36396 10 6452 1 2025-12-05 19:04:04.546 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47838 10 6452 1 2025-12-05 19:05:04.948 00:00:10.492 TCP 1.101.0.1:3000 -> 23.104.0.1:36466 10 6452 1 2025-12-05 19:06:05.485 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55188 10 6452 1 2025-12-05 19:07:05.891 00:00:10.345 TCP 1.101.0.1:3000 -> 23.104.0.1:52848 10 6452 1 2025-12-05 19:07:39.869 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 19:07:39.950 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 19:07:40.274 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 19:07:40.011 00:00:00.030 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 19:07:40.190 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 19:04:11.353 00:05:02.217 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 19:04:11.350 00:05:02.222 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 19:08:06.274 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54128 10 6452 1 2025-12-05 19:09:06.679 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56118 10 6452 1 2025-12-05 19:10:07.102 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:34228 10 6452 1 2025-12-05 19:11:07.501 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:46766 10 6452 1 2025-12-05 19:12:07.862 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:59316 10 6452 1 2025-12-05 19:12:39.866 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 19:12:39.679 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 19:12:39.913 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 19:12:39.778 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 19:12:39.861 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 19:13:08.232 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:36498 10 6452 1 2025-12-05 19:10:11.351 00:05:02.224 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 19:10:11.354 00:05:02.219 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 19:14:08.592 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:55532 10 6452 1 2025-12-05 19:15:08.994 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:33096 10 6452 1 2025-12-05 19:16:09.396 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:37220 10 6452 1 2025-12-05 19:17:09.799 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50958 10 6452 1 2025-12-05 19:17:39.974 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 19:17:39.924 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 19:17:39.820 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 19:17:40.143 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 19:17:40.060 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 19:18:10.202 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:42638 10 6452 1 2025-12-05 19:19:10.616 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:46432 10 6452 1 2025-12-05 19:16:11.356 00:05:02.219 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 19:16:11.353 00:05:02.224 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 19:20:11.015 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:57250 10 6452 1 2025-12-05 19:21:11.417 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51974 10 6452 1 2025-12-05 19:22:11.821 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:58910 10 6452 1 2025-12-05 19:22:40.255 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 19:22:40.124 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 19:22:40.099 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 19:22:40.074 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 19:22:40.173 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 19:23:12.223 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:56438 10 6452 1 2025-12-05 19:24:12.630 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:57640 10 6452 1 2025-12-05 19:25:13.037 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50186 10 6452 1 2025-12-05 19:22:11.358 00:05:02.219 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 19:22:11.353 00:05:02.225 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 19:26:13.473 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:36118 10 6452 1 2025-12-05 19:27:13.837 00:00:10.343 TCP 1.101.0.1:3000 -> 23.104.0.1:41360 10 6452 1 2025-12-05 19:27:40.338 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 19:27:40.140 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 19:27:40.200 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 19:27:40.189 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 19:27:40.257 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 19:28:14.217 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:55108 10 6452 1 2025-12-05 19:29:14.582 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:58928 10 6452 1 2025-12-05 19:30:14.987 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:57476 10 6452 1 2025-12-05 19:31:15.407 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47958 10 6452 1 2025-12-05 19:28:11.356 00:05:02.219 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 19:28:11.354 00:05:02.224 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 19:32:15.811 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:39188 10 6452 1 2025-12-05 19:32:40.394 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 19:32:40.234 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 19:32:40.358 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 19:32:40.464 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 19:32:40.547 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 19:33:16.223 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:55064 10 6452 1 2025-12-05 19:34:16.648 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:36910 10 6452 1 2025-12-05 19:35:17.060 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:38998 10 6452 1 2025-12-05 19:36:17.478 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:58648 10 6452 1 2025-12-05 19:37:17.838 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:45854 10 6452 1 2025-12-05 19:37:40.504 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 19:37:40.348 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 19:37:40.340 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 19:37:40.152 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 19:37:40.421 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 19:34:11.356 00:05:02.226 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 19:34:11.358 00:05:02.220 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 19:38:18.261 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:46808 10 6452 1 2025-12-05 19:39:18.625 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:50360 10 6452 1 2025-12-05 19:40:18.992 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:44778 10 6452 1 2025-12-05 19:41:19.403 00:00:10.524 TCP 1.101.0.1:3000 -> 23.104.0.1:34032 10 6452 1 2025-12-05 19:42:19.961 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:41938 10 6452 1 2025-12-05 19:42:40.671 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 19:42:40.580 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 19:42:40.583 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 19:42:40.618 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 19:42:40.589 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 19:43:20.321 00:00:10.443 TCP 1.101.0.1:3000 -> 23.104.0.1:54608 12 10375 1 2025-12-05 19:40:11.362 00:05:02.217 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 19:40:11.360 00:05:02.222 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 19:44:20.804 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57878 10 6452 1 2025-12-05 19:45:21.210 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59246 10 6452 1 2025-12-05 19:46:21.616 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:55448 10 6452 1 2025-12-05 19:47:22.034 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57984 10 6452 1 2025-12-05 19:47:40.439 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 19:47:40.521 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 19:47:40.528 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 19:47:40.654 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 19:47:40.736 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 19:48:22.435 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:35340 10 6452 1 2025-12-05 19:49:22.837 00:00:10.441 TCP 1.101.0.1:3000 -> 23.104.0.1:57950 11 6504 1 2025-12-05 19:46:11.362 00:05:02.222 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 19:46:11.365 00:05:02.217 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 19:50:23.315 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:46832 10 6452 1 2025-12-05 19:51:23.695 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:32976 10 6452 1 2025-12-05 19:52:24.111 00:00:10.356 TCP 1.101.0.1:3000 -> 23.104.0.1:41948 10 6452 1 2025-12-05 19:52:40.766 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 19:52:40.546 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 19:52:40.681 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 19:52:40.721 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 19:52:40.804 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 19:53:24.504 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35956 10 6452 1 2025-12-05 19:54:24.913 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49470 10 6452 1 2025-12-05 19:55:25.318 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:39344 10 6452 1 2025-12-05 19:52:11.365 00:05:02.217 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 19:52:11.362 00:05:02.223 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 19:56:25.721 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:49332 10 6452 1 2025-12-05 19:57:26.135 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46518 10 6452 1 2025-12-05 19:57:40.923 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 19:57:40.715 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 19:57:40.784 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 19:57:40.655 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 19:57:40.840 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 19:58:26.536 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:46910 10 6452 1 Summary: total flows: 140, total bytes: 420975, total packets: 1023, avg bps: 928, avg pps: 0, avg bpp: 411 Time window: 2025-12-05 18:58:11 - 2025-12-05 19:58:36 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0042s User: 0.0021s Wall: 0.0026s flows/second: 54730.4 Runtime: 0.0026s