Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-06 17:58:55.634 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59034 10 6452 1 2025-12-06 17:59:56.033 00:00:10.393 TCP 1.101.0.1:3000 -> 23.104.0.1:45180 10 6452 1 2025-12-06 18:00:56.472 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:41960 10 6452 1 2025-12-06 18:01:56.840 00:00:10.531 TCP 1.101.0.1:3000 -> 23.104.0.1:57388 10 6452 1 2025-12-06 17:58:11.816 00:05:02.303 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-06 17:58:11.818 00:05:02.298 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-06 18:03:07.551 00:00:00.034 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-06 18:03:07.351 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-06 18:03:07.466 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-06 18:03:07.429 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-06 18:02:57.405 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:44348 10 6452 1 2025-12-06 18:03:07.468 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-06 18:03:57.808 00:00:10.837 TCP 1.101.0.1:3000 -> 23.104.0.1:55552 10 6452 1 2025-12-06 18:04:58.684 00:00:10.604 TCP 1.101.0.1:3000 -> 23.104.0.1:33696 10 6452 1 2025-12-06 18:05:59.328 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:49572 10 6452 1 2025-12-06 18:06:59.689 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41102 10 6452 1 2025-12-06 18:08:07.684 00:00:00.059 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-06 18:04:11.817 00:05:02.310 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-06 18:08:07.989 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-06 18:08:07.610 00:00:00.030 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-06 18:08:07.197 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-06 18:08:07.603 00:00:00.059 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-06 18:04:11.820 00:05:02.299 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-06 18:08:00.120 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46198 10 6452 1 2025-12-06 18:09:00.521 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:35578 10 6452 1 2025-12-06 18:10:00.925 00:00:10.679 TCP 1.101.0.1:3000 -> 23.104.0.1:40614 10 6452 1 2025-12-06 18:11:01.641 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56670 10 6452 1 2025-12-06 18:12:02.067 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:34420 10 6452 1 2025-12-06 18:13:07.709 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-06 18:13:07.577 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-06 18:13:07.453 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-06 18:13:07.490 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-06 18:13:07.626 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-06 18:13:02.475 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:60888 10 6452 1 2025-12-06 18:10:11.820 00:05:02.300 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-06 18:14:02.839 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:53264 10 6452 1 2025-12-06 18:10:11.818 00:05:02.305 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-06 18:15:03.266 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:49884 10 6452 1 2025-12-06 18:16:03.665 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:45050 10 6452 1 2025-12-06 18:17:04.091 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:46722 10 6452 1 2025-12-06 18:18:07.769 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-06 18:18:07.468 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-06 18:18:07.467 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-06 18:18:07.636 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-06 18:18:07.686 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-06 18:18:04.452 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:43668 10 6452 1 2025-12-06 18:19:04.854 00:00:10.460 TCP 1.101.0.1:3000 -> 23.104.0.1:46554 12 10375 1 2025-12-06 18:16:11.821 00:05:02.302 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-06 18:16:11.820 00:05:02.306 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-06 18:20:05.344 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35580 10 6452 1 2025-12-06 18:21:05.748 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34818 10 6452 1 2025-12-06 18:22:06.151 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:59810 10 6452 1 2025-12-06 18:23:07.761 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-06 18:23:07.594 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-06 18:23:07.488 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-06 18:23:07.753 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-06 18:23:07.679 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-06 18:23:06.558 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40936 10 6452 1 2025-12-06 18:24:06.956 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:46534 10 6452 1 2025-12-06 18:25:07.362 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:57158 10 6452 1 2025-12-06 18:22:11.820 00:05:02.306 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-06 18:22:11.824 00:05:02.301 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-06 18:26:07.734 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:35302 10 6452 1 2025-12-06 18:27:08.143 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:43416 10 6452 1 2025-12-06 18:28:08.041 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-06 18:28:08.211 00:00:00.030 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-06 18:28:08.099 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-06 18:28:08.117 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-06 18:28:07.958 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-06 18:28:08.551 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49964 10 6452 1 2025-12-06 18:29:08.966 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:60122 10 6452 1 2025-12-06 18:30:09.335 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:56226 10 6452 1 2025-12-06 18:31:09.726 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:49750 10 6452 1 2025-12-06 18:28:11.824 00:05:02.304 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-06 18:28:11.822 00:05:02.309 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-06 18:32:10.143 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33062 10 6452 1 2025-12-06 18:33:07.855 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-06 18:33:08.063 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-06 18:33:07.745 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-06 18:33:07.745 00:00:00.028 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-06 18:33:07.774 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-06 18:33:10.547 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:33684 10 6452 1 2025-12-06 18:34:10.912 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47642 10 6452 1 2025-12-06 18:35:11.315 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48940 10 6452 1 2025-12-06 18:36:11.725 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:42878 10 6452 1 2025-12-06 18:37:12.140 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:34628 10 6452 1 2025-12-06 18:38:07.897 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-06 18:38:08.063 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-06 18:38:07.963 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-06 18:38:08.109 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-06 18:38:08.147 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-06 18:34:11.823 00:05:02.309 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-06 18:34:11.824 00:05:02.305 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-06 18:38:12.538 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50338 10 6452 1 2025-12-06 18:39:12.948 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:46210 10 6452 1 2025-12-06 18:40:13.331 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:53416 10 6452 1 2025-12-06 18:41:13.697 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45070 10 6452 1 2025-12-06 18:42:14.115 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:59432 10 6452 1 2025-12-06 18:43:08.141 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-06 18:43:08.224 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-06 18:43:08.134 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-06 18:43:08.187 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-06 18:43:08.270 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-06 18:43:14.471 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:39996 10 6452 1 2025-12-06 18:40:11.824 00:05:02.312 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-06 18:40:11.827 00:05:02.306 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-06 18:44:14.872 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47740 10 6452 1 2025-12-06 18:45:15.278 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39056 10 6452 1 2025-12-06 18:46:15.676 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:40424 10 6452 1 2025-12-06 18:47:16.105 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:34462 10 6452 1 2025-12-06 18:48:08.653 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-06 18:48:08.607 00:00:00.027 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-06 18:48:08.731 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-06 18:48:08.305 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-06 18:48:08.387 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-06 18:48:16.513 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:34302 10 6452 1 2025-12-06 18:49:16.915 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52306 10 6452 1 2025-12-06 18:46:11.828 00:05:02.306 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-06 18:46:11.826 00:05:02.311 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-06 18:50:17.318 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:45044 10 6452 1 2025-12-06 18:51:17.723 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:40794 10 6452 1 2025-12-06 18:52:18.136 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:37678 10 6452 1 2025-12-06 18:53:08.367 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-06 18:53:08.425 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-06 18:53:08.285 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-06 18:53:08.214 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-06 18:53:08.284 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-06 18:53:18.498 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47272 10 6452 1 2025-12-06 18:54:18.900 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:44442 12 6556 1 2025-12-06 18:55:19.319 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:49134 10 6452 1 2025-12-06 18:52:11.828 00:05:02.310 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-06 18:52:11.830 00:05:02.305 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-06 18:56:19.686 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:51448 10 6452 1 2025-12-06 18:57:20.119 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:54166 10 6452 1 2025-12-06 18:58:08.557 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-06 18:58:08.592 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-06 18:58:08.570 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-06 18:58:08.432 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-06 18:58:08.515 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-06 18:58:20.528 00:00:10.400 TCP 1.101.0.1:3000 -> 23.104.0.1:35464 12 10375 1 Summary: total flows: 140, total bytes: 424950, total packets: 1026, avg bps: 939, avg pps: 0, avg bpp: 414 Time window: 2025-12-06 17:58:11 - 2025-12-06 18:58:30 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0032s User: 0.0021s Wall: 0.0018s flows/second: 76339.4 Runtime: 0.0019s