Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-04 10:58:41.814 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:38076 10 6452 1 2025-12-04 10:59:42.187 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:53182 10 6452 1 2025-12-04 11:00:42.592 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57652 12 6556 1 2025-12-04 10:57:10.625 00:05:02.182 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 10:57:10.629 00:05:02.177 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 11:01:43.001 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:47972 10 6452 1 2025-12-04 11:02:01.263 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 11:02:01.085 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 11:02:01.219 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 11:02:01.135 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 11:02:01.302 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 11:02:43.361 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46998 10 6452 1 2025-12-04 11:03:43.763 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:42980 10 6452 1 2025-12-04 11:04:44.170 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:44574 10 6452 1 2025-12-04 11:05:44.572 00:00:12.432 TCP 1.101.0.1:3000 -> 23.104.0.1:41320 10 6452 1 2025-12-04 11:06:47.119 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:45428 10 6452 1 2025-12-04 11:07:00.877 00:00:00.031 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 11:07:01.161 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 11:07:01.309 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 11:07:01.265 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 11:07:01.392 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 11:03:10.630 00:05:02.178 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 11:03:10.627 00:05:02.183 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 11:07:47.484 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:49470 10 6452 1 2025-12-04 11:08:47.894 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:58356 10 6452 1 2025-12-04 11:09:48.310 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39114 10 6452 1 2025-12-04 11:10:48.711 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:35254 10 6452 1 2025-12-04 11:11:49.115 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60060 10 6452 1 2025-12-04 11:12:01.641 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 11:12:01.558 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 11:12:01.560 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 11:12:01.738 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 11:12:01.582 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 11:12:49.521 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:50374 10 6452 1 2025-12-04 11:09:10.631 00:05:02.178 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 11:09:10.628 00:05:02.184 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 11:13:49.883 00:00:10.452 TCP 1.101.0.1:3000 -> 23.104.0.1:49012 12 10369 1 2025-12-04 11:14:50.369 00:00:10.346 TCP 1.101.0.1:3000 -> 23.104.0.1:47720 10 6452 1 2025-12-04 11:15:50.733 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:42752 10 6452 1 2025-12-04 11:17:01.531 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 11:17:01.556 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 11:17:01.255 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 11:17:01.449 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 11:17:01.516 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 11:16:51.112 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:48234 11 6504 1 2025-12-04 11:17:51.534 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:57072 10 6452 1 2025-12-04 11:18:51.898 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:48130 10 6452 1 2025-12-04 11:15:10.630 00:05:02.183 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 11:15:10.634 00:05:02.178 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 11:19:52.311 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:50748 10 6452 1 2025-12-04 11:20:52.673 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37358 10 6452 1 2025-12-04 11:22:01.491 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 11:22:01.144 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 11:22:01.568 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 11:22:01.557 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 11:21:53.090 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58008 10 6452 1 2025-12-04 11:22:01.651 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 11:22:53.496 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57738 10 6452 1 2025-12-04 11:23:53.902 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:38680 12 6556 1 2025-12-04 11:24:54.310 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37408 10 6452 1 2025-12-04 11:21:10.635 00:05:02.178 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 11:21:10.633 00:05:02.183 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 11:25:54.713 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39856 10 6452 1 2025-12-04 11:27:01.807 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 11:27:01.729 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 11:27:01.577 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 11:26:55.119 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:37558 10 6452 1 2025-12-04 11:27:01.726 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 11:27:01.728 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 11:27:55.526 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:58790 10 6452 1 2025-12-04 11:28:55.893 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:59220 10 6452 1 2025-12-04 11:29:56.276 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:35156 10 6452 1 2025-12-04 11:30:56.653 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46814 10 6452 1 2025-12-04 11:27:10.637 00:05:02.177 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 11:27:10.634 00:05:02.182 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 11:32:02.270 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 11:32:02.054 00:00:00.026 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 11:32:02.022 00:00:00.030 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 11:32:02.338 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 11:32:02.106 00:00:00.028 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 11:31:57.063 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:37078 10 6452 1 2025-12-04 11:32:57.484 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:41952 10 6452 1 2025-12-04 11:33:57.913 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:58748 10 6452 1 2025-12-04 11:34:58.278 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:49506 10 6452 1 2025-12-04 11:35:58.637 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:38152 10 6452 1 2025-12-04 11:37:01.811 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 11:37:01.594 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 11:37:01.994 00:00:00.032 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 11:37:01.811 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 11:37:02.077 00:00:00.032 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 11:36:59.050 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:36752 10 6452 1 2025-12-04 11:33:10.636 00:05:02.188 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 11:33:10.638 00:05:02.183 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 11:37:59.451 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:45730 10 6452 1 2025-12-04 11:38:59.812 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:49368 10 6452 1 2025-12-04 11:40:00.219 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43326 10 6452 1 2025-12-04 11:41:00.624 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:42152 10 6452 1 2025-12-04 11:42:02.160 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 11:42:02.073 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 11:42:01.887 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 11:42:02.077 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 11:42:01.964 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 11:42:00.989 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54184 10 6452 1 2025-12-04 11:39:10.639 00:05:02.188 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 11:43:01.395 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:60786 10 6452 1 2025-12-04 11:39:10.641 00:05:02.183 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 11:44:01.798 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:35974 10 6452 1 2025-12-04 11:45:02.209 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46688 10 6452 1 2025-12-04 11:46:02.611 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57868 10 6452 1 2025-12-04 11:47:02.026 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 11:47:02.076 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 11:47:01.696 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 11:47:01.942 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 11:47:02.068 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 11:47:03.014 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:45900 10 6452 1 2025-12-04 11:48:03.413 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:45652 11 6504 1 2025-12-04 11:45:10.642 00:05:02.185 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 11:49:03.832 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51898 10 6452 1 2025-12-04 11:45:10.646 00:05:02.180 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 11:50:04.233 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55272 10 6452 1 2025-12-04 11:51:04.641 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:37076 10 6452 1 2025-12-04 11:52:02.211 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 11:52:02.130 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 11:52:01.719 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 11:52:02.129 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 11:52:02.129 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 11:52:05.041 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:52868 10 6452 1 2025-12-04 11:53:05.442 00:00:10.640 TCP 1.101.0.1:3000 -> 23.104.0.1:54224 14 14298 1 2025-12-04 11:54:06.121 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55868 10 6452 1 2025-12-04 11:51:10.643 00:05:02.187 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 11:51:10.646 00:05:02.181 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 11:55:06.523 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:57214 10 6452 1 2025-12-04 11:56:06.935 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:39458 10 6452 1 2025-12-04 11:57:02.566 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 11:57:02.562 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 11:57:01.866 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 11:57:02.484 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 11:57:02.694 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 11:57:07.362 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:38524 10 6452 1 2025-12-04 11:58:07.727 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57064 10 6452 1 Summary: total flows: 140, total bytes: 429075, total packets: 1032, avg bps: 935, avg pps: 0, avg bpp: 415 Time window: 2025-12-04 10:57:10 - 2025-12-04 11:58:18 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0053s User: 0.0009s Wall: 0.0018s flows/second: 76628.3 Runtime: 0.0019s