Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-04 08:58:52.108 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52810 10 6452 1 2025-12-04 08:59:52.510 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:45486 10 6452 1 2025-12-04 09:00:52.875 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35982 12 6556 1 2025-12-04 08:57:10.587 00:05:02.164 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 08:57:10.589 00:05:02.160 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 09:01:58.897 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 09:01:58.812 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 09:01:58.768 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 09:01:58.814 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 09:01:58.714 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 09:01:53.279 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59700 10 6452 1 2025-12-04 09:02:53.682 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48920 10 6452 1 2025-12-04 09:03:54.107 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:32876 10 6452 1 2025-12-04 09:04:54.520 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:41982 10 6452 1 2025-12-04 09:05:54.922 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59826 10 6452 1 2025-12-04 09:06:58.774 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 09:06:58.780 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 09:06:58.668 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 09:06:58.691 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 09:06:58.683 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 09:06:55.330 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:54026 10 6452 1 2025-12-04 09:03:10.588 00:05:02.164 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 09:03:10.592 00:05:02.159 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 09:07:55.731 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:49230 10 6452 1 2025-12-04 09:08:56.138 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:41944 10 6452 1 2025-12-04 09:09:56.555 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:51732 10 6452 1 2025-12-04 09:10:56.933 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:40866 10 6452 1 2025-12-04 09:11:59.318 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 09:11:59.137 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 09:11:59.181 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 09:11:59.234 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 09:11:59.135 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 09:11:57.356 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:38400 10 6452 1 2025-12-04 09:12:57.759 00:00:10.464 TCP 1.101.0.1:3000 -> 23.104.0.1:59652 12 10375 1 2025-12-04 09:09:10.592 00:05:02.167 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 09:09:10.591 00:05:02.172 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 09:13:58.261 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:49962 10 6452 1 2025-12-04 09:14:58.626 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:37712 10 6452 1 2025-12-04 09:15:59.026 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50826 10 6452 1 2025-12-04 09:16:59.007 00:00:00.031 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 09:16:58.978 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 09:16:58.940 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 09:16:59.184 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 09:16:59.024 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 09:16:59.431 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:41652 10 6452 1 2025-12-04 09:17:59.814 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33054 10 6452 1 2025-12-04 09:19:00.221 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:36302 10 6452 1 2025-12-04 09:15:10.598 00:05:02.162 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 09:15:10.595 00:05:02.168 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 09:20:00.584 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57670 10 6452 1 2025-12-04 09:21:00.986 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:54754 10 6452 1 2025-12-04 09:21:59.167 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 09:21:59.264 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 09:21:58.809 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 09:21:59.084 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 09:21:59.213 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 09:22:01.389 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49458 10 6452 1 2025-12-04 09:23:01.789 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38332 10 6452 1 2025-12-04 09:24:02.193 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:49452 10 6452 1 2025-12-04 09:21:10.602 00:05:02.165 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 09:25:02.565 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44978 10 6452 1 2025-12-04 09:21:10.606 00:05:02.160 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 09:26:02.969 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:40376 10 6452 1 2025-12-04 09:26:59.069 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 09:26:59.195 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 09:26:59.073 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 09:26:59.322 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 09:26:59.156 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 09:27:03.337 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:47010 10 6452 1 2025-12-04 09:28:03.739 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:34784 10 6452 1 2025-12-04 09:29:04.147 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54546 10 6452 1 2025-12-04 09:30:04.549 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57634 10 6452 1 2025-12-04 09:31:04.954 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55030 10 6452 1 2025-12-04 09:27:10.606 00:05:02.164 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 09:27:10.603 00:05:02.169 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 09:31:59.371 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 09:31:59.267 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 09:31:59.232 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 09:31:59.247 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 09:31:59.315 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 09:32:05.359 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49558 10 6452 1 2025-12-04 09:33:05.763 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:60378 10 6452 1 2025-12-04 09:34:06.174 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:37494 10 6452 1 2025-12-04 09:35:06.574 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:44026 10 6452 1 2025-12-04 09:36:06.978 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:38928 10 6452 1 2025-12-04 09:36:59.387 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 09:36:59.303 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 09:36:59.430 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 09:36:59.306 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 09:36:59.490 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 09:33:10.604 00:05:02.176 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 09:33:10.608 00:05:02.170 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 09:37:07.398 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:37788 10 6452 1 2025-12-04 09:38:07.757 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:55146 10 6452 1 2025-12-04 09:39:08.154 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:52574 10 6452 1 2025-12-04 09:40:08.524 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:44862 10 6452 1 2025-12-04 09:41:08.921 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:43876 10 6452 1 2025-12-04 09:41:59.670 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 09:41:59.402 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 09:41:59.462 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 09:41:59.587 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 09:41:59.369 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 09:42:09.287 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58776 10 6452 1 2025-12-04 09:39:10.605 00:05:02.179 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 09:39:10.609 00:05:02.173 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 09:43:09.692 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:55586 10 6452 1 2025-12-04 09:44:10.063 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38128 10 6452 1 2025-12-04 09:45:10.462 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:44010 10 6452 1 2025-12-04 09:46:10.866 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:57854 10 6452 1 2025-12-04 09:46:59.610 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 09:46:59.633 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 09:46:59.681 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 09:46:59.681 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 09:46:59.764 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 09:47:11.273 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:44920 10 6452 1 2025-12-04 09:48:11.638 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:32898 10 6452 1 2025-12-04 09:45:10.607 00:05:02.177 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 09:45:10.610 00:05:02.173 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 09:49:12.054 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:55674 10 6452 1 2025-12-04 09:50:12.464 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:52422 10 6452 1 2025-12-04 09:51:12.866 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:59938 10 6452 1 2025-12-04 09:51:59.937 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 09:51:59.716 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 09:51:59.506 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 09:51:59.855 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 09:51:59.803 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 09:52:13.282 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56514 10 6452 1 2025-12-04 09:53:13.682 00:00:10.439 TCP 1.101.0.1:3000 -> 23.104.0.1:57640 12 10375 1 2025-12-04 09:54:14.157 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53250 10 6452 1 2025-12-04 09:51:10.609 00:05:02.178 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 09:51:10.612 00:05:02.172 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 09:55:14.560 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36048 10 6452 1 2025-12-04 09:56:14.963 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:45550 10 6452 1 2025-12-04 09:56:59.911 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 09:56:59.911 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 09:56:59.807 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 09:56:59.693 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 09:56:59.890 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 09:57:15.364 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:33184 10 6452 1 2025-12-04 09:58:15.761 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:56272 10 6452 1 Summary: total flows: 140, total bytes: 424950, total packets: 1026, avg bps: 924, avg pps: 0, avg bpp: 414 Time window: 2025-12-04 08:57:10 - 2025-12-04 09:58:26 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0044s User: 0.0026s Wall: 0.0026s flows/second: 54095.1 Runtime: 0.0026s