Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-06 08:58:47.429 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:52586 10 6452 1 2025-12-06 08:59:47.842 00:00:10.394 TCP 1.101.0.1:3000 -> 23.104.0.1:38346 10 6452 1 2025-12-06 09:00:48.277 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:39854 10 6452 1 2025-12-06 09:01:48.674 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:48886 10 6452 1 2025-12-06 08:58:11.626 00:05:02.262 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-06 08:58:11.623 00:05:02.267 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-06 09:02:56.583 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-06 09:02:56.503 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-06 09:02:49.109 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:43504 10 6452 1 2025-12-06 09:02:56.434 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-06 09:02:56.172 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-06 09:02:56.499 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-06 09:03:49.467 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:43276 10 6452 1 2025-12-06 09:04:49.825 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:36510 10 6452 1 2025-12-06 09:05:50.188 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:35028 10 6452 1 2025-12-06 09:06:50.590 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:48586 10 6452 1 2025-12-06 09:07:56.647 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-06 09:07:56.644 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-06 09:07:56.556 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-06 09:07:56.606 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-06 09:07:56.691 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-06 09:07:50.994 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:55012 10 6452 1 2025-12-06 09:04:11.628 00:05:02.263 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-06 09:04:11.624 00:05:02.268 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-06 09:08:51.356 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:50912 10 6452 1 2025-12-06 09:09:51.721 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:60812 10 6452 1 2025-12-06 09:10:52.131 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:50038 10 6452 1 2025-12-06 09:11:52.539 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:46978 10 6452 1 2025-12-06 09:12:56.991 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-06 09:12:56.693 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-06 09:12:56.488 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-06 09:12:56.462 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-06 09:12:56.909 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-06 09:12:52.945 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:32930 10 6452 1 2025-12-06 09:13:53.366 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46938 10 6452 1 2025-12-06 09:10:11.628 00:05:02.267 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-06 09:10:11.630 00:05:02.261 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-06 09:14:53.767 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:39452 10 6452 1 2025-12-06 09:15:54.178 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53574 10 6452 1 2025-12-06 09:16:54.580 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45504 10 6452 1 2025-12-06 09:17:56.800 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-06 09:17:56.626 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-06 09:17:56.821 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-06 09:17:56.833 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-06 09:17:56.717 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-06 09:17:54.988 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:54080 10 6452 1 2025-12-06 09:18:55.348 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50846 10 6452 1 2025-12-06 09:19:55.754 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:51864 10 6452 1 2025-12-06 09:16:11.631 00:05:02.260 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-06 09:16:11.630 00:05:02.265 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-06 09:20:56.132 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:50604 10 6452 1 2025-12-06 09:21:56.543 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:41660 10 6452 1 2025-12-06 09:22:57.238 00:00:00.051 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-06 09:22:56.642 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-06 09:22:57.157 00:00:00.051 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-06 09:22:57.479 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-06 09:22:57.493 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-06 09:22:56.953 00:00:10.396 TCP 1.101.0.1:3000 -> 23.104.0.1:56712 10 6452 1 2025-12-06 09:23:57.389 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:45150 10 6452 1 2025-12-06 09:24:57.803 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:43494 10 6452 1 2025-12-06 09:25:58.217 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:39584 10 6452 1 2025-12-06 09:22:11.631 00:05:02.265 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-06 09:22:11.635 00:05:02.260 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-06 09:26:58.623 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:36050 10 6452 1 2025-12-06 09:27:57.301 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-06 09:27:57.131 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-06 09:27:56.951 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-06 09:27:56.732 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-06 09:27:57.220 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-06 09:27:58.983 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54960 10 6452 1 2025-12-06 09:28:59.386 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41024 10 6452 1 2025-12-06 09:29:59.790 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:59396 10 6452 1 2025-12-06 09:31:00.200 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59828 10 6452 1 2025-12-06 09:28:11.634 00:05:02.263 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-06 09:32:00.604 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:49220 10 6452 1 2025-12-06 09:28:11.632 00:05:02.268 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-06 09:32:56.953 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-06 09:32:57.241 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-06 09:32:57.052 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-06 09:32:57.041 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-06 09:32:57.323 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-06 09:33:01.008 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:43380 10 6452 1 2025-12-06 09:34:01.410 00:00:10.438 TCP 1.101.0.1:3000 -> 23.104.0.1:35398 12 10375 1 2025-12-06 09:35:01.888 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:57734 10 6452 1 2025-12-06 09:36:02.299 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:40744 10 6452 1 2025-12-06 09:37:02.698 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40874 10 6452 1 2025-12-06 09:37:57.196 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-06 09:37:57.197 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-06 09:37:57.217 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-06 09:37:57.274 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-06 09:37:57.357 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-06 09:34:11.635 00:05:02.266 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-06 09:34:11.638 00:05:02.261 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-06 09:38:03.109 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:54728 10 6452 1 2025-12-06 09:39:03.517 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:42430 10 6452 1 2025-12-06 09:40:03.915 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:60526 10 6452 1 2025-12-06 09:41:04.274 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:45824 10 6452 1 2025-12-06 09:42:04.634 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41986 10 6452 1 2025-12-06 09:42:57.807 00:00:00.026 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-06 09:42:57.237 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-06 09:42:57.237 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-06 09:42:57.769 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-06 09:42:57.726 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-06 09:43:05.040 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:40796 10 6452 1 2025-12-06 09:40:11.637 00:05:02.265 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-06 09:40:11.639 00:05:02.260 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-06 09:44:05.407 00:00:10.434 TCP 1.101.0.1:3000 -> 23.104.0.1:47238 12 10369 1 2025-12-06 09:45:05.879 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:44884 10 6452 1 2025-12-06 09:46:06.245 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:47860 10 6452 1 2025-12-06 09:47:06.652 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:59836 10 6452 1 2025-12-06 09:47:57.474 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-06 09:47:57.625 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-06 09:47:57.538 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-06 09:47:57.593 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-06 09:47:57.677 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-06 09:48:07.069 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:37686 10 6452 1 2025-12-06 09:49:07.478 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:60400 10 6452 1 2025-12-06 09:46:11.639 00:05:02.267 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-06 09:46:11.643 00:05:02.262 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-06 09:50:07.904 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40200 10 6452 1 2025-12-06 09:51:08.306 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:34880 10 6452 1 2025-12-06 09:52:08.672 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49766 10 6452 1 2025-12-06 09:52:57.523 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-06 09:52:57.521 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-06 09:52:57.403 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-06 09:52:57.350 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-06 09:52:57.433 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-06 09:53:09.099 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38354 10 6452 1 2025-12-06 09:54:09.509 00:00:10.439 TCP 1.101.0.1:3000 -> 23.104.0.1:33858 12 10369 1 2025-12-06 09:55:09.984 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:43278 10 6452 1 2025-12-06 09:52:11.639 00:05:02.272 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-06 09:52:11.642 00:05:02.266 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-06 09:56:10.390 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:47334 10 6452 1 2025-12-06 09:57:10.754 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56516 10 6452 1 2025-12-06 09:57:57.799 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-06 09:57:57.950 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-06 09:57:57.722 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-06 09:57:57.634 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-06 09:57:57.716 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-06 09:58:11.153 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54498 10 6452 1 Summary: total flows: 140, total bytes: 428757, total packets: 1026, avg bps: 950, avg pps: 0, avg bpp: 417 Time window: 2025-12-06 08:58:11 - 2025-12-06 09:58:21 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0058s User: 0.0010s Wall: 0.0024s flows/second: 58381.6 Runtime: 0.0024s