Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-04 11:59:08.135 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:37528 10 6452 1 2025-12-04 12:00:08.521 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:59788 10 6452 1 2025-12-04 11:57:10.643 00:05:02.190 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 11:57:10.646 00:05:02.184 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 12:01:08.929 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:47758 10 6452 1 2025-12-04 12:02:02.406 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 12:02:02.366 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 12:02:02.196 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 12:02:02.323 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 12:02:02.140 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 12:02:09.359 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42502 10 6452 1 2025-12-04 12:03:09.762 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:36412 10 6452 1 2025-12-04 12:04:10.175 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:32854 10 6452 1 2025-12-04 12:05:10.581 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:54820 10 6452 1 2025-12-04 12:06:10.941 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:58202 10 6452 1 2025-12-04 12:07:02.625 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 12:07:02.437 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 12:07:02.501 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 12:07:02.596 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 12:07:02.584 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 12:03:10.645 00:05:02.192 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 12:03:10.649 00:05:02.186 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 12:07:11.347 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:55184 10 6452 1 2025-12-04 12:08:11.759 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:47026 10 6452 1 2025-12-04 12:09:12.172 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59842 10 6452 1 2025-12-04 12:10:12.579 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53892 10 6452 1 2025-12-04 12:11:12.983 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:46670 10 6452 1 2025-12-04 12:12:02.645 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 12:12:02.286 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 12:12:02.531 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 12:12:02.563 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 12:12:02.561 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 12:12:13.351 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46868 10 6452 1 2025-12-04 12:09:10.649 00:05:02.187 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 12:09:10.646 00:05:02.192 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 12:13:13.756 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:60110 10 6452 1 2025-12-04 12:14:14.171 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35848 10 6452 1 2025-12-04 12:15:14.573 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35998 10 6452 1 2025-12-04 12:16:14.981 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:49570 10 6452 1 2025-12-04 12:17:02.654 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 12:17:02.683 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 12:17:02.489 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 12:17:02.571 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 12:17:02.671 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 12:17:15.395 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58146 10 6452 1 2025-12-04 12:18:15.794 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36084 10 6452 1 2025-12-04 12:15:10.647 00:05:02.192 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 12:15:10.650 00:05:02.187 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 12:19:16.199 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:48194 10 6452 1 2025-12-04 12:20:16.596 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:39046 10 6452 1 2025-12-04 12:21:16.954 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41676 10 6452 1 2025-12-04 12:22:02.632 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 12:22:02.564 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 12:22:02.608 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 12:22:02.549 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 12:22:02.728 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 12:22:17.358 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:52926 10 6452 1 2025-12-04 12:23:17.722 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59486 10 6452 1 2025-12-04 12:24:18.140 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42894 10 6452 1 2025-12-04 12:21:10.648 00:05:02.194 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 12:21:10.650 00:05:02.189 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 12:25:18.547 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55998 10 6452 1 2025-12-04 12:26:18.948 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:32788 10 6452 1 2025-12-04 12:27:02.857 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 12:27:02.690 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 12:27:02.722 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 12:27:02.774 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 12:27:02.831 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 12:27:19.360 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57426 10 6452 1 2025-12-04 12:28:19.771 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:43424 10 6452 1 2025-12-04 12:29:20.210 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34044 10 6452 1 2025-12-04 12:30:20.610 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42724 10 6452 1 2025-12-04 12:27:10.650 00:05:02.193 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 12:27:10.654 00:05:02.188 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 12:31:21.017 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41736 10 6452 1 2025-12-04 12:32:02.928 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 12:32:02.839 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 12:32:02.581 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 12:32:02.845 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 12:32:03.049 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 12:32:21.436 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:41280 10 6452 1 2025-12-04 12:33:21.803 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:40044 10 6452 1 2025-12-04 12:34:22.210 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54208 10 6452 1 2025-12-04 12:35:22.614 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47700 10 6452 1 2025-12-04 12:36:23.023 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:39118 10 6452 1 2025-12-04 12:37:03.485 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 12:37:03.398 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 12:37:03.286 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 12:37:03.401 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 12:37:03.400 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 12:33:10.655 00:05:02.189 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 12:33:10.651 00:05:02.195 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 12:37:23.423 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34084 10 6452 1 2025-12-04 12:38:23.828 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48484 10 6452 1 2025-12-04 12:39:24.237 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:33910 10 6452 1 2025-12-04 12:40:24.620 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53378 10 6452 1 2025-12-04 12:41:25.026 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38380 10 6452 1 2025-12-04 12:42:03.151 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 12:42:03.265 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 12:42:03.097 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 12:42:03.069 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 12:42:03.063 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 12:42:25.425 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:45992 10 6452 1 2025-12-04 12:39:10.655 00:05:02.193 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 12:39:10.652 00:05:02.198 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 12:43:25.832 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:39922 10 6452 1 2025-12-04 12:44:26.229 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54718 10 6452 1 2025-12-04 12:45:26.634 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:44628 10 6452 1 2025-12-04 12:46:27.041 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:42128 10 6452 1 2025-12-04 12:47:03.060 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 12:47:03.207 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 12:47:03.360 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 12:47:02.978 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 12:47:03.222 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 12:47:27.441 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39344 10 6452 1 2025-12-04 12:48:27.847 00:00:10.344 TCP 1.101.0.1:3000 -> 23.104.0.1:52426 10 6452 1 2025-12-04 12:45:10.654 00:05:02.193 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 12:45:10.652 00:05:02.199 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 12:49:28.225 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56704 10 6452 1 2025-12-04 12:50:28.626 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:36798 10 6452 1 2025-12-04 12:51:29.040 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57230 10 6452 1 2025-12-04 12:52:03.424 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 12:52:03.237 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 12:52:03.373 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 12:52:03.341 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 12:52:03.423 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 12:52:29.444 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37134 10 6452 1 2025-12-04 12:53:29.858 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:41398 10 6452 1 2025-12-04 12:54:30.233 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:37740 10 6452 1 2025-12-04 12:51:10.655 00:05:02.203 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 12:51:10.657 00:05:02.198 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 12:55:30.639 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:34474 10 6452 1 2025-12-04 12:56:31.009 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:41580 10 6452 1 2025-12-04 12:57:03.481 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 12:57:03.389 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 12:57:03.342 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 12:57:03.560 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 12:57:03.643 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 12:57:31.405 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42806 10 6452 1 2025-12-04 12:58:31.810 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34512 10 6452 1 Summary: total flows: 140, total bytes: 417000, total packets: 1020, avg bps: 903, avg pps: 0, avg bpp: 408 Time window: 2025-12-04 11:57:10 - 2025-12-04 12:58:42 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0027s User: 0.0027s Wall: 0.0027s flows/second: 50910.6 Runtime: 0.0028s