Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-03 07:59:16.841 00:00:10.705 TCP 1.101.0.1:3000 -> 23.104.0.1:56182 10 6452 1 2025-12-03 08:00:17.579 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:49910 10 6452 1 2025-12-03 07:57:10.090 00:05:02.163 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 07:57:10.087 00:05:02.168 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 08:01:28.615 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 08:01:28.548 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 08:01:28.610 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 08:01:28.784 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 08:01:17.987 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34864 10 6452 1 2025-12-03 08:01:28.691 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 08:02:18.383 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42832 10 6452 1 2025-12-03 08:03:18.787 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:41132 10 6452 1 2025-12-03 08:04:19.191 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39604 10 6452 1 2025-12-03 08:05:19.588 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:42062 10 6452 1 2025-12-03 08:06:28.809 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 08:06:28.652 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 08:06:28.743 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 08:06:28.726 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 08:06:28.730 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 08:06:20.000 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43462 10 6452 1 2025-12-03 08:03:10.092 00:05:02.162 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 08:03:10.089 00:05:02.167 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 08:07:20.404 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:40158 10 6452 1 2025-12-03 08:08:20.766 00:00:10.446 TCP 1.101.0.1:3000 -> 23.104.0.1:50302 12 10375 1 2025-12-03 08:09:21.251 00:00:10.693 TCP 1.101.0.1:3000 -> 23.104.0.1:33116 10 6452 1 2025-12-03 08:10:21.980 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:45658 10 6452 1 2025-12-03 08:11:29.504 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 08:11:29.421 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 08:11:29.190 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 08:11:29.127 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 08:11:28.925 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 08:11:22.395 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52502 10 6452 1 2025-12-03 08:12:22.798 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39762 10 6452 1 2025-12-03 08:09:10.092 00:05:02.162 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 08:09:10.091 00:05:02.168 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 08:13:23.204 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:41386 10 6452 1 2025-12-03 08:14:23.567 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44254 10 6452 1 2025-12-03 08:15:23.970 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:40386 10 6452 1 2025-12-03 08:16:29.044 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 08:16:28.888 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 08:16:28.782 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 08:16:28.962 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 08:16:28.960 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 08:16:24.399 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:52428 10 6452 1 2025-12-03 08:17:24.815 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:55606 10 6452 1 2025-12-03 08:18:25.189 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58604 10 6452 1 2025-12-03 08:15:10.095 00:05:02.161 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 08:15:10.093 00:05:02.166 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 08:19:25.587 00:00:10.859 TCP 1.101.0.1:3000 -> 23.104.0.1:45018 10 6452 1 2025-12-03 08:20:26.495 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45342 10 6452 1 2025-12-03 08:21:29.212 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 08:21:28.934 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 08:21:29.258 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 08:21:29.039 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 08:21:29.342 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 08:21:26.898 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:54936 12 6556 1 2025-12-03 08:22:27.306 00:00:10.354 TCP 1.101.0.1:3000 -> 23.104.0.1:58678 10 6452 1 2025-12-03 08:23:27.704 00:00:10.459 TCP 1.101.0.1:3000 -> 23.104.0.1:43292 12 10375 1 2025-12-03 08:24:28.205 00:00:10.940 TCP 1.101.0.1:3000 -> 23.104.0.1:44408 10 6452 1 2025-12-03 08:21:10.093 00:05:02.167 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 08:21:10.095 00:05:02.162 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 08:25:29.186 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53800 10 6452 1 2025-12-03 08:26:29.327 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 08:26:29.207 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 08:26:29.279 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 08:26:29.236 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 08:26:29.363 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 08:26:29.587 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59046 10 6452 1 2025-12-03 08:27:29.992 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:55256 10 6452 1 2025-12-03 08:28:30.402 00:00:10.452 TCP 1.101.0.1:3000 -> 23.104.0.1:60760 12 10369 1 2025-12-03 08:29:30.896 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:59460 12 6556 1 2025-12-03 08:30:31.314 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:52614 10 6452 1 2025-12-03 08:27:10.096 00:05:02.165 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 08:27:10.094 00:05:02.169 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 08:31:29.318 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 08:31:29.062 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 08:31:29.088 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 08:31:29.199 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 08:31:29.172 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 08:31:31.721 00:00:10.573 TCP 1.101.0.1:3000 -> 23.104.0.1:52650 10 6452 1 2025-12-03 08:32:32.344 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60072 10 6452 1 2025-12-03 08:33:32.755 00:00:10.930 TCP 1.101.0.1:3000 -> 23.104.0.1:59228 10 6452 1 2025-12-03 08:34:33.724 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:44192 10 6452 1 2025-12-03 08:35:34.140 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41834 10 6452 1 2025-12-03 08:36:29.123 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 08:36:29.361 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 08:36:29.259 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 08:36:29.257 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 08:36:29.342 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 08:36:34.543 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:57470 10 6452 1 2025-12-03 08:33:10.098 00:05:02.164 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 08:33:10.096 00:05:02.169 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 08:37:34.954 00:00:10.404 TCP 1.101.0.1:3000 -> 23.104.0.1:57940 12 10369 1 2025-12-03 08:38:35.397 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53410 10 6452 1 2025-12-03 08:39:35.797 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:37014 10 6452 1 2025-12-03 08:40:36.162 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58564 10 6452 1 2025-12-03 08:41:29.553 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 08:41:29.483 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 08:41:29.392 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 08:41:29.476 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 08:41:29.474 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 08:41:36.571 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45604 10 6452 1 2025-12-03 08:42:36.971 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:39028 10 6452 1 2025-12-03 08:39:10.098 00:05:02.167 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 08:39:10.097 00:05:02.172 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 08:43:37.380 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59694 10 6452 1 2025-12-03 08:44:37.785 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46410 10 6452 1 2025-12-03 08:45:38.190 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49754 10 6452 1 2025-12-03 08:46:29.856 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 08:46:29.785 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 08:46:29.860 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 08:46:29.853 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 08:46:29.943 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 08:46:38.596 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39716 10 6452 1 2025-12-03 08:47:39.002 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41658 10 6452 1 2025-12-03 08:48:39.410 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:38950 10 6452 1 2025-12-03 08:45:10.101 00:05:02.165 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 08:45:10.098 00:05:02.171 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 08:49:39.777 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:50474 10 6452 1 2025-12-03 08:50:40.189 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48514 10 6452 1 2025-12-03 08:51:29.668 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 08:51:29.252 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 08:51:29.599 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 08:51:29.589 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 08:51:29.681 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 08:51:40.593 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35726 10 6452 1 2025-12-03 08:52:41.000 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33120 10 6452 1 2025-12-03 08:53:41.404 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:33064 10 6452 1 2025-12-03 08:54:41.813 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:54248 10 6452 1 2025-12-03 08:51:10.104 00:05:02.165 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 08:51:10.102 00:05:02.170 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 08:55:42.197 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:48820 10 6452 1 2025-12-03 08:56:29.777 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 08:56:29.754 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 08:56:29.667 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 08:56:29.823 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 08:56:29.749 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 08:56:42.630 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48910 10 6452 1 2025-12-03 08:57:43.040 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:41378 12 6556 1 Summary: total flows: 139, total bytes: 426540, total packets: 1024, avg bps: 936, avg pps: 0, avg bpp: 416 Time window: 2025-12-03 07:57:10 - 2025-12-03 08:57:53 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0035s User: 0.0017s Wall: 0.0022s flows/second: 63793.4 Runtime: 0.0022s