Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-03 13:58:56.689 00:00:10.418 TCP 1.101.0.1:3000 -> 23.104.0.1:53300 11 6504 1 2025-12-03 13:59:57.146 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:46142 10 6452 1 2025-12-03 13:57:10.199 00:05:02.169 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 14:00:57.503 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39740 10 6452 1 2025-12-03 13:57:10.203 00:05:02.164 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 14:01:36.327 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 14:01:36.194 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 14:01:36.100 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 14:01:36.246 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 14:01:36.166 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 14:01:57.906 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:42330 12 6556 1 2025-12-03 14:02:58.317 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:41012 10 6452 1 2025-12-03 14:03:58.689 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:47188 10 6452 1 2025-12-03 14:04:59.109 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:56674 10 6452 1 2025-12-03 14:05:59.507 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52584 10 6452 1 2025-12-03 14:06:35.865 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 14:06:35.960 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 14:06:35.627 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 14:06:35.783 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 14:06:35.956 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 14:06:59.910 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:57412 10 6452 1 2025-12-03 14:03:10.204 00:05:02.169 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 14:03:10.201 00:05:02.175 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 14:08:00.318 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:41336 10 6452 1 2025-12-03 14:09:00.722 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:58126 10 6452 1 2025-12-03 14:10:01.139 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54906 10 6452 1 2025-12-03 14:11:01.540 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:39820 10 6452 1 2025-12-03 14:11:35.967 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 14:11:36.187 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 14:11:36.273 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 14:11:36.103 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 14:11:36.202 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 14:12:01.936 00:00:10.343 TCP 1.101.0.1:3000 -> 23.104.0.1:40756 10 6452 1 2025-12-03 14:09:10.202 00:05:02.176 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 14:13:02.314 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:58618 10 6452 1 2025-12-03 14:09:10.205 00:05:02.171 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 14:14:02.680 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37028 10 6452 1 2025-12-03 14:15:03.105 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:38112 10 6452 1 2025-12-03 14:16:03.507 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:58352 10 6452 1 2025-12-03 14:16:36.378 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 14:16:36.176 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 14:16:36.158 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 14:16:36.322 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 14:16:36.240 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 14:17:03.868 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:45358 10 6452 1 2025-12-03 14:18:04.294 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:49766 10 6452 1 2025-12-03 14:15:10.204 00:05:02.176 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 14:19:04.697 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:55802 10 6452 1 2025-12-03 14:15:10.206 00:05:02.171 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 14:20:05.065 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:56174 10 6452 1 2025-12-03 14:21:05.469 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54140 10 6452 1 2025-12-03 14:21:36.387 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 14:21:36.212 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 14:21:36.074 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 14:21:36.306 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 14:21:36.312 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 14:22:05.870 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:50358 10 6452 1 2025-12-03 14:23:06.278 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:60826 10 6452 1 2025-12-03 14:24:06.675 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:50224 10 6452 1 2025-12-03 14:21:10.208 00:05:02.169 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 14:21:10.205 00:05:02.175 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 14:25:07.097 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:47676 10 6452 1 2025-12-03 14:26:07.499 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:33740 10 6452 1 2025-12-03 14:26:36.495 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 14:26:36.335 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 14:26:36.422 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 14:26:36.412 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 14:26:36.515 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 14:27:07.863 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:55860 10 6452 1 2025-12-03 14:28:08.288 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:44838 10 6452 1 2025-12-03 14:29:08.682 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:43856 10 6452 1 2025-12-03 14:30:09.107 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:38552 10 6452 1 2025-12-03 14:27:10.206 00:05:02.176 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 14:27:10.209 00:05:02.170 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 14:31:09.517 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45518 10 6452 1 2025-12-03 14:31:36.492 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 14:31:36.537 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 14:31:36.107 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 14:31:36.410 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 14:31:36.401 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 14:32:09.924 00:00:10.347 TCP 1.101.0.1:3000 -> 23.104.0.1:54102 10 6452 1 2025-12-03 14:33:10.313 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:44710 10 6452 1 2025-12-03 14:34:10.718 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:53794 10 6452 1 2025-12-03 14:35:11.134 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48582 10 6452 1 2025-12-03 14:36:11.537 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40028 10 6452 1 2025-12-03 14:36:36.686 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 14:36:36.605 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 14:36:36.422 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 14:36:36.596 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 14:36:36.464 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 14:33:10.211 00:05:02.170 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 14:33:10.208 00:05:02.175 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 14:37:11.946 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:47466 10 6452 1 2025-12-03 14:38:12.359 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56392 10 6452 1 2025-12-03 14:39:12.758 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:40120 10 6452 1 2025-12-03 14:40:13.177 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:49418 10 6452 1 2025-12-03 14:41:13.587 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:35298 10 6452 1 2025-12-03 14:41:36.720 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 14:41:36.615 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 14:41:36.663 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 14:41:36.580 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 14:41:36.746 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 14:42:13.951 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:60318 10 6452 1 2025-12-03 14:39:10.210 00:05:02.174 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 14:39:10.214 00:05:02.168 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 14:43:14.319 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:35936 10 6452 1 2025-12-03 14:44:14.727 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40132 10 6452 1 2025-12-03 14:45:15.130 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:36046 10 6452 1 2025-12-03 14:46:15.531 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34806 12 6556 1 2025-12-03 14:46:37.128 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 14:46:36.702 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 14:46:36.533 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 14:46:37.045 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 14:46:36.878 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 14:47:15.938 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:43498 10 6452 1 2025-12-03 14:48:16.351 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46430 10 6452 1 2025-12-03 14:45:10.213 00:05:02.175 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 14:45:10.217 00:05:02.169 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 14:49:16.748 00:00:10.858 TCP 1.101.0.1:3000 -> 23.104.0.1:34624 10 6452 1 2025-12-03 14:50:17.641 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:33704 10 6452 1 2025-12-03 14:51:18.040 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:36798 10 6452 1 2025-12-03 14:51:36.815 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 14:51:36.763 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 14:51:36.606 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 14:51:36.991 00:00:00.040 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 14:51:36.688 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 14:52:18.444 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49506 10 6452 1 2025-12-03 14:53:18.851 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:58480 10 6452 1 2025-12-03 14:54:19.283 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47436 10 6452 1 2025-12-03 14:51:10.215 00:05:02.174 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 14:51:10.217 00:05:02.169 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 14:55:19.689 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:46744 10 6452 1 2025-12-03 14:56:20.111 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:40446 10 6452 1 2025-12-03 14:56:36.964 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 14:56:36.881 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 14:56:36.980 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 14:56:36.881 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 14:56:37.003 00:00:00.033 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 14:57:20.511 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:40236 10 6452 1 2025-12-03 14:58:20.915 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:44014 10 6452 1 Summary: total flows: 140, total bytes: 417260, total packets: 1025, avg bps: 906, avg pps: 0, avg bpp: 407 Time window: 2025-12-03 13:57:10 - 2025-12-03 14:58:31 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0030s User: 0.0020s Wall: 0.0019s flows/second: 73565.8 Runtime: 0.0019s