Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-03 08:58:43.441 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:33022 10 6452 1 2025-12-03 08:59:43.852 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:49622 10 6452 1 2025-12-03 09:00:44.260 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:44338 10 6452 1 2025-12-03 08:57:10.105 00:05:02.167 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 08:57:10.101 00:05:02.173 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 09:01:29.926 00:00:00.033 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 09:01:29.750 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 09:01:29.605 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 09:01:29.843 00:00:00.033 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 09:01:29.769 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 09:01:44.672 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:46778 10 6452 1 2025-12-03 09:02:45.035 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36588 10 6452 1 2025-12-03 09:03:45.443 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:38314 10 6452 1 2025-12-03 09:04:45.809 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:50762 10 6452 1 2025-12-03 09:05:46.223 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:60942 10 6452 1 2025-12-03 09:06:29.864 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 09:06:29.833 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 09:06:29.864 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 09:06:29.927 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 09:06:29.946 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 09:06:46.630 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:34748 10 6452 1 2025-12-03 09:03:10.103 00:05:02.173 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 09:03:10.106 00:05:02.169 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 09:07:47.040 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:47520 12 6556 1 2025-12-03 09:08:47.440 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:47890 10 6452 1 2025-12-03 09:09:47.807 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:42916 10 6452 1 2025-12-03 09:10:48.218 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:52826 10 6452 1 2025-12-03 09:11:30.044 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 09:11:29.967 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 09:11:29.889 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 09:11:29.961 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 09:11:30.062 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 09:11:48.577 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33758 10 6452 1 2025-12-03 09:12:48.980 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:58312 10 6452 1 2025-12-03 09:09:10.104 00:05:02.176 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 09:09:10.106 00:05:02.171 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 09:13:49.350 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48676 10 6452 1 2025-12-03 09:14:49.758 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:58544 10 6452 1 2025-12-03 09:15:50.132 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42354 10 6452 1 2025-12-03 09:16:30.350 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 09:16:30.011 00:00:00.040 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 09:16:30.165 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 09:16:30.267 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 09:16:30.146 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 09:16:50.538 00:00:10.415 TCP 1.101.0.1:3000 -> 23.104.0.1:45968 10 6452 1 2025-12-03 09:17:50.990 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:44368 10 6452 1 2025-12-03 09:18:51.401 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:57618 10 6452 1 2025-12-03 09:15:10.107 00:05:02.175 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 09:15:10.110 00:05:02.171 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 09:19:51.781 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:33126 10 6452 1 2025-12-03 09:20:52.192 00:00:10.799 TCP 1.101.0.1:3000 -> 23.104.0.1:50958 10 6452 1 2025-12-03 09:21:30.342 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 09:21:30.096 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 09:21:29.917 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 09:21:30.260 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 09:21:30.187 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 09:21:53.038 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:49356 10 6452 1 2025-12-03 09:22:53.436 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:58902 10 6452 1 2025-12-03 09:23:53.880 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:44790 10 6452 1 2025-12-03 09:24:54.238 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:53010 10 6452 1 2025-12-03 09:21:10.112 00:05:02.170 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 09:21:10.109 00:05:02.176 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 09:25:54.652 00:00:10.493 TCP 1.101.0.1:3000 -> 23.104.0.1:52344 10 6452 1 2025-12-03 09:26:30.795 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 09:26:30.711 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 09:26:30.712 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 09:26:30.712 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 09:26:30.654 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 09:26:55.192 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:44934 10 6452 1 2025-12-03 09:27:55.591 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:60582 10 6452 1 2025-12-03 09:28:55.956 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:42226 10 6452 1 2025-12-03 09:29:56.368 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36818 10 6452 1 2025-12-03 09:27:10.112 00:05:02.175 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 09:30:56.773 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:60470 10 6452 1 2025-12-03 09:27:10.115 00:05:02.170 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 09:31:30.557 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 09:31:30.476 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 09:31:30.426 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 09:31:30.473 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 09:31:30.537 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 09:31:57.183 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:54476 10 6452 1 2025-12-03 09:32:57.543 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47152 10 6452 1 2025-12-03 09:33:57.948 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:50926 10 6452 1 2025-12-03 09:34:58.320 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57664 10 6452 1 2025-12-03 09:35:58.721 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:52670 10 6452 1 2025-12-03 09:36:30.647 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 09:36:30.554 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 09:36:30.605 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 09:36:30.605 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 09:36:30.688 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 09:33:10.114 00:05:02.176 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 09:36:59.129 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:39292 10 6452 1 2025-12-03 09:33:10.116 00:05:02.171 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 09:37:59.494 00:00:10.453 TCP 1.101.0.1:3000 -> 23.104.0.1:42288 12 10375 1 2025-12-03 09:38:59.978 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:50764 10 6452 1 2025-12-03 09:40:00.342 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44640 10 6452 1 2025-12-03 09:41:00.747 00:00:10.864 TCP 1.101.0.1:3000 -> 23.104.0.1:38484 10 6452 1 2025-12-03 09:41:30.840 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 09:41:30.608 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 09:41:30.454 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 09:41:30.757 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 09:41:30.702 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 09:42:01.654 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:41516 10 6452 1 2025-12-03 09:39:10.115 00:05:02.179 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 09:43:02.107 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40922 10 6452 1 2025-12-03 09:39:10.118 00:05:02.175 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 09:44:02.501 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53330 10 6452 1 2025-12-03 09:45:02.906 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:52650 10 6452 1 2025-12-03 09:46:03.320 00:00:11.252 TCP 1.101.0.1:3000 -> 23.104.0.1:58806 10 6452 1 2025-12-03 09:46:30.844 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 09:46:30.583 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 09:46:30.785 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 09:46:30.842 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 09:46:30.868 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 09:47:04.614 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:49108 10 6452 1 2025-12-03 09:48:04.976 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:59898 10 6452 1 2025-12-03 09:45:10.116 00:05:02.180 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 09:49:05.390 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51302 10 6452 1 2025-12-03 09:45:10.120 00:05:02.175 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 09:50:05.793 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:41132 10 6452 1 2025-12-03 09:51:06.204 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49830 10 6452 1 2025-12-03 09:51:30.964 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 09:51:30.882 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 09:51:30.962 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 09:51:31.137 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 09:51:31.045 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 09:52:06.608 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:46680 10 6452 1 2025-12-03 09:53:07.012 00:00:10.417 TCP 1.101.0.1:3000 -> 23.104.0.1:50706 11 6504 1 2025-12-03 09:54:07.475 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60314 10 6452 1 2025-12-03 09:51:10.118 00:05:02.181 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 09:51:10.121 00:05:02.176 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 09:55:07.882 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:39516 10 6452 1 2025-12-03 09:56:08.243 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:46926 10 6452 1 2025-12-03 09:56:30.941 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 09:56:30.897 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 09:56:30.979 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 09:56:31.049 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 09:56:31.131 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 09:57:08.611 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57746 10 6452 1 2025-12-03 09:58:09.017 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:51244 10 6452 1 Summary: total flows: 140, total bytes: 421079, total packets: 1025, avg bps: 918, avg pps: 0, avg bpp: 410 Time window: 2025-12-03 08:57:10 - 2025-12-03 09:58:19 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0036s User: 0.0018s Wall: 0.0023s flows/second: 61217.9 Runtime: 0.0023s