Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-03 12:59:31.963 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:49890 10 6452 1 2025-12-03 13:00:32.374 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34090 10 6452 1 2025-12-03 12:57:10.186 00:05:02.168 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 12:57:10.191 00:05:02.163 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 13:01:34.808 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 13:01:34.812 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 13:01:34.688 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 13:01:34.725 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 13:01:34.727 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 13:01:32.780 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:53640 10 6452 1 2025-12-03 13:02:33.190 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:35952 10 6452 1 2025-12-03 13:03:33.547 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:48332 10 6452 1 2025-12-03 13:04:33.948 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:39716 10 6452 1 2025-12-03 13:05:34.358 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44846 10 6452 1 2025-12-03 13:06:34.927 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 13:06:34.624 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 13:06:34.848 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 13:06:34.844 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 13:06:34.616 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 13:06:34.758 00:00:10.535 TCP 1.101.0.1:3000 -> 23.104.0.1:34260 10 6452 1 2025-12-03 13:03:10.188 00:05:02.168 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 13:03:10.191 00:05:02.163 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 13:07:35.331 00:00:10.444 TCP 1.101.0.1:3000 -> 23.104.0.1:41004 12 10375 1 2025-12-03 13:08:35.810 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48598 10 6452 1 2025-12-03 13:09:36.218 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:56640 10 6452 1 2025-12-03 13:10:36.585 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:41706 10 6452 1 2025-12-03 13:11:34.910 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 13:11:34.751 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 13:11:34.555 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 13:11:34.827 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 13:11:34.743 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 13:11:36.991 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:60246 10 6452 1 2025-12-03 13:12:37.398 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41888 10 6452 1 2025-12-03 13:09:10.190 00:05:02.168 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 13:09:10.191 00:05:02.163 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 13:13:37.801 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48092 10 6452 1 2025-12-03 13:14:38.204 00:00:10.945 TCP 1.101.0.1:3000 -> 23.104.0.1:44412 10 6452 1 2025-12-03 13:15:39.194 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52608 10 6452 1 2025-12-03 13:16:34.981 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 13:16:34.981 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 13:16:34.978 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 13:16:34.749 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 13:16:35.061 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 13:16:39.594 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56028 10 6452 1 2025-12-03 13:17:39.999 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:48850 10 6452 1 2025-12-03 13:18:40.363 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:37858 10 6452 1 2025-12-03 13:15:10.194 00:05:02.163 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 13:15:10.191 00:05:02.168 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 13:19:40.762 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:35230 10 6452 1 2025-12-03 13:20:41.133 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55702 10 6452 1 2025-12-03 13:21:35.176 00:00:00.031 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 13:21:34.954 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 13:21:34.854 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 13:21:35.093 00:00:00.032 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 13:21:35.092 00:00:00.033 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 13:21:41.535 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:55140 10 6452 1 2025-12-03 13:22:41.949 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:50864 10 6452 1 2025-12-03 13:23:42.363 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58608 10 6452 1 2025-12-03 13:24:42.765 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:51464 10 6452 1 2025-12-03 13:21:10.195 00:05:02.162 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 13:21:10.193 00:05:02.166 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 13:25:43.177 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:58646 10 6452 1 2025-12-03 13:26:35.187 00:00:00.059 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 13:26:35.105 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 13:26:35.209 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 13:26:35.210 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 13:26:35.013 00:00:00.041 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 13:26:43.596 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:48520 10 6452 1 2025-12-03 13:27:43.971 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:51558 10 6452 1 2025-12-03 13:28:44.386 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44050 10 6452 1 2025-12-03 13:29:44.792 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:36006 10 6452 1 2025-12-03 13:30:45.155 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:37904 10 6452 1 2025-12-03 13:27:10.197 00:05:02.164 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 13:27:10.195 00:05:02.169 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 13:31:35.210 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 13:31:34.997 00:00:00.045 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 13:31:35.295 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 13:31:35.294 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 13:31:35.378 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 13:31:45.519 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60762 10 6452 1 2025-12-03 13:32:45.921 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:33658 10 6452 1 2025-12-03 13:33:46.282 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60260 10 6452 1 2025-12-03 13:34:46.690 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:57958 10 6452 1 2025-12-03 13:35:47.063 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:36498 10 6452 1 2025-12-03 13:36:35.425 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 13:36:35.350 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 13:36:35.135 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 13:36:35.343 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 13:36:35.486 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 13:36:47.426 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:40118 10 6452 1 2025-12-03 13:33:10.196 00:05:02.169 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 13:33:10.199 00:05:02.164 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 13:37:47.830 00:00:10.416 TCP 1.101.0.1:3000 -> 23.104.0.1:48820 10 6452 1 2025-12-03 13:38:48.288 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:55412 10 6452 1 2025-12-03 13:39:48.694 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:34834 10 6452 1 2025-12-03 13:40:49.111 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:49046 10 6452 1 2025-12-03 13:41:35.879 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 13:41:35.706 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 13:41:35.473 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 13:41:35.798 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 13:41:35.794 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 13:41:49.520 00:00:10.831 TCP 1.101.0.1:3000 -> 23.104.0.1:46512 10 6452 1 2025-12-03 13:42:50.389 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:33334 10 6452 1 2025-12-03 13:39:10.201 00:05:02.164 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 13:39:10.198 00:05:02.169 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 13:43:50.788 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:43562 10 6452 1 2025-12-03 13:44:51.192 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:47342 10 6452 1 2025-12-03 13:45:51.591 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:46116 10 6452 1 2025-12-03 13:46:35.746 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 13:46:35.662 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 13:46:35.573 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 13:46:35.663 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 13:46:35.663 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 13:46:51.964 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:54206 10 6452 1 2025-12-03 13:47:52.330 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:33634 10 6452 1 2025-12-03 13:48:52.699 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:58548 10 6452 1 2025-12-03 13:45:10.199 00:05:02.169 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 13:45:10.203 00:05:02.163 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 13:49:53.109 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39866 10 6452 1 2025-12-03 13:50:53.515 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:35766 10 6452 1 2025-12-03 13:51:35.719 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 13:51:35.663 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 13:51:35.591 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 13:51:35.592 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 13:51:35.675 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 13:51:53.884 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60114 10 6452 1 2025-12-03 13:52:54.285 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:33716 10 6452 1 2025-12-03 13:53:54.685 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:56422 10 6452 1 2025-12-03 13:54:55.064 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45636 10 6452 1 2025-12-03 13:51:10.199 00:05:02.169 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 13:51:10.201 00:05:02.164 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 13:55:55.470 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41788 10 6452 1 2025-12-03 13:56:35.907 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 13:56:35.662 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 13:56:35.584 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 13:56:35.824 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 13:56:35.890 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 13:56:55.887 00:00:10.351 TCP 1.101.0.1:3000 -> 23.104.0.1:53344 10 6452 1 2025-12-03 13:57:56.277 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:41998 10 6452 1 Summary: total flows: 139, total bytes: 414471, total packets: 1012, avg bps: 906, avg pps: 0, avg bpp: 409 Time window: 2025-12-03 12:57:10 - 2025-12-03 13:58:06 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0047s User: 0.0009s Wall: 0.0026s flows/second: 54022.3 Runtime: 0.0026s