Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-03 15:58:45.550 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:37674 10 6452 1 2025-12-03 15:59:45.956 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:57644 10 6452 1 2025-12-03 16:00:46.323 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:49660 10 6452 1 2025-12-03 15:57:10.231 00:05:02.175 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 15:57:10.236 00:05:02.169 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 16:01:38.246 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 16:01:38.163 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 16:01:38.214 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 16:01:38.163 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 16:01:38.484 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 16:01:46.725 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:40618 10 6452 1 2025-12-03 16:02:47.113 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:43556 10 6452 1 2025-12-03 16:03:47.516 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:55770 10 6452 1 2025-12-03 16:04:47.935 00:00:10.397 TCP 1.101.0.1:3000 -> 23.104.0.1:59048 10 6452 1 2025-12-03 16:05:48.371 00:00:10.871 TCP 1.101.0.1:3000 -> 23.104.0.1:42890 10 6452 1 2025-12-03 16:06:38.304 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 16:06:38.473 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 16:06:38.235 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 16:06:38.222 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 16:06:38.563 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 16:06:49.280 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52768 10 6452 1 2025-12-03 16:03:10.236 00:05:02.168 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 16:03:10.234 00:05:02.173 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 16:07:49.684 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:47954 10 6452 1 2025-12-03 16:08:50.066 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:33942 12 6556 1 2025-12-03 16:09:50.471 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:52590 10 6452 1 2025-12-03 16:10:50.882 00:00:10.351 TCP 1.101.0.1:3000 -> 23.104.0.1:60108 10 6452 1 2025-12-03 16:11:38.481 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 16:11:38.454 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 16:11:38.197 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 16:11:38.397 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 16:11:38.397 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 16:11:51.268 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56926 10 6452 1 2025-12-03 16:12:51.670 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:40758 10 6452 1 2025-12-03 16:09:10.237 00:05:02.172 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 16:09:10.239 00:05:02.168 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 16:13:52.097 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:36108 10 6452 1 2025-12-03 16:14:52.497 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49736 10 6452 1 2025-12-03 16:15:52.907 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:58390 10 6452 1 2025-12-03 16:16:38.774 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 16:16:38.522 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 16:16:38.554 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 16:16:38.692 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 16:16:38.520 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 16:16:53.272 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57208 10 6452 1 2025-12-03 16:17:53.676 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36154 10 6452 1 2025-12-03 16:18:54.110 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:48160 10 6452 1 2025-12-03 16:15:10.238 00:05:02.172 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 16:15:10.240 00:05:02.167 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 16:19:54.511 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:38864 10 6452 1 2025-12-03 16:20:54.910 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57302 12 6556 1 2025-12-03 16:21:38.980 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 16:21:39.083 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 16:21:38.529 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 16:21:38.897 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 16:21:38.892 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 16:21:55.309 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55066 10 6452 1 2025-12-03 16:22:55.711 00:00:10.450 TCP 1.101.0.1:3000 -> 23.104.0.1:35120 12 10375 1 2025-12-03 16:23:56.203 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57680 10 6452 1 2025-12-03 16:24:56.604 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60070 10 6452 1 2025-12-03 16:21:10.242 00:05:02.167 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 16:21:10.239 00:05:02.172 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 16:25:57.006 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47744 10 6452 1 2025-12-03 16:26:38.834 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 16:26:38.734 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 16:26:38.870 00:00:00.031 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 16:26:38.793 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 16:26:38.954 00:00:00.031 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 16:26:57.406 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:54856 10 6452 1 2025-12-03 16:27:57.774 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:60120 10 6452 1 2025-12-03 16:28:58.195 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39526 10 6452 1 2025-12-03 16:29:58.601 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:43650 10 6452 1 2025-12-03 16:30:59.006 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:43816 10 6452 1 2025-12-03 16:27:10.240 00:05:02.172 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 16:27:10.244 00:05:02.167 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 16:31:39.029 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 16:31:38.946 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 16:31:38.914 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 16:31:38.947 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 16:31:38.877 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 16:31:59.410 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:38088 12 6556 1 2025-12-03 16:32:59.815 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:51850 10 6452 1 2025-12-03 16:34:00.219 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:60208 10 6452 1 2025-12-03 16:35:00.636 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:42066 10 6452 1 2025-12-03 16:36:01.042 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50548 10 6452 1 2025-12-03 16:36:38.870 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 16:36:38.995 00:00:00.050 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 16:36:38.928 00:00:00.026 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 16:36:38.788 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 16:36:38.990 00:00:00.034 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 16:37:01.453 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:47024 10 6452 1 2025-12-03 16:33:10.246 00:05:02.164 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 16:33:10.244 00:05:02.169 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 16:38:01.862 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:57524 10 6452 1 2025-12-03 16:39:02.235 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52140 10 6452 1 2025-12-03 16:40:02.639 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:36678 10 6452 1 2025-12-03 16:41:03.054 00:00:11.279 TCP 1.101.0.1:3000 -> 23.104.0.1:33772 11 6504 1 2025-12-03 16:41:39.568 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 16:41:39.419 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 16:41:39.369 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 16:41:39.485 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 16:41:39.492 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 16:42:04.375 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:43156 10 6452 1 2025-12-03 16:43:04.780 00:00:10.448 TCP 1.101.0.1:3000 -> 23.104.0.1:53396 12 10375 1 2025-12-03 16:39:10.247 00:05:02.167 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 16:39:10.244 00:05:02.173 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 16:44:05.264 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39810 10 6452 1 2025-12-03 16:45:05.670 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45028 10 6452 1 2025-12-03 16:46:06.099 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:43740 10 6452 1 2025-12-03 16:46:39.177 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 16:46:39.219 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 16:46:38.986 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 16:46:39.093 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 16:46:39.100 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 16:47:06.459 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38476 10 6452 1 2025-12-03 16:48:06.859 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:48606 10 6452 1 2025-12-03 16:45:10.248 00:05:02.165 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 16:45:10.246 00:05:02.169 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 16:49:07.275 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:36280 10 6452 1 2025-12-03 16:50:07.644 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38010 10 6452 1 2025-12-03 16:51:08.066 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51144 10 6452 1 2025-12-03 16:51:39.274 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 16:51:39.307 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 16:51:39.124 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 16:51:39.190 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 16:51:39.319 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 16:52:08.469 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55444 10 6452 1 2025-12-03 16:53:08.869 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58822 10 6452 1 2025-12-03 16:54:09.278 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44204 10 6452 1 2025-12-03 16:51:10.246 00:05:02.173 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 16:51:10.250 00:05:02.168 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 16:55:09.686 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:47010 10 6452 1 2025-12-03 16:56:10.118 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33328 10 6452 1 2025-12-03 16:56:39.572 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 16:56:39.082 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 16:56:39.259 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 16:56:39.489 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 16:56:39.204 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 16:57:10.518 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:46488 12 6556 1 2025-12-03 16:58:10.934 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:54092 10 6452 1 Summary: total flows: 140, total bytes: 425314, total packets: 1033, avg bps: 926, avg pps: 0, avg bpp: 411 Time window: 2025-12-03 15:57:10 - 2025-12-03 16:58:21 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0032s User: 0.0021s Wall: 0.0017s flows/second: 81874.3 Runtime: 0.0017s