Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-04 12:59:32.215 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45118 10 6452 1 2025-12-04 13:00:32.621 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51204 10 6452 1 2025-12-04 12:57:10.655 00:05:02.213 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 12:57:10.658 00:05:02.207 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 13:01:33.028 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42328 10 6452 1 2025-12-04 13:02:03.626 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 13:02:03.541 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 13:02:03.619 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 13:02:03.543 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 13:02:03.609 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 13:02:33.427 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51838 10 6452 1 2025-12-04 13:03:33.833 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:39190 10 6452 1 2025-12-04 13:04:34.265 00:00:11.999 TCP 1.101.0.1:3000 -> 23.104.0.1:41500 10 6452 1 2025-12-04 13:05:36.306 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:34640 10 6452 1 2025-12-04 13:06:36.670 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:51592 10 6452 1 2025-12-04 13:07:03.823 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 13:07:03.679 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 13:07:03.536 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 13:07:03.741 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 13:07:03.673 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 13:03:10.657 00:05:02.216 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 13:03:10.660 00:05:02.211 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 13:07:37.034 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51564 10 6452 1 2025-12-04 13:08:37.436 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53908 10 6452 1 2025-12-04 13:09:37.839 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:49502 10 6452 1 2025-12-04 13:10:38.261 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:54332 10 6452 1 2025-12-04 13:11:38.631 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34940 10 6452 1 2025-12-04 13:12:03.692 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 13:12:03.552 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 13:12:03.623 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 13:12:03.750 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 13:12:03.706 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 13:12:39.033 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:42770 10 6452 1 2025-12-04 13:09:10.660 00:05:02.214 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 13:09:10.662 00:05:02.209 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 13:13:39.444 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:45798 10 6452 1 2025-12-04 13:14:39.850 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:57524 10 6452 1 2025-12-04 13:15:40.274 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45736 10 6452 1 2025-12-04 13:16:40.676 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:52878 10 6452 1 2025-12-04 13:17:03.955 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 13:17:03.873 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 13:17:03.879 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 13:17:03.873 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 13:17:03.841 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 13:17:41.065 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:59334 10 6452 1 2025-12-04 13:18:41.429 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:36940 10 6452 1 2025-12-04 13:15:10.664 00:05:02.208 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 13:15:10.663 00:05:02.213 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 13:19:41.832 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:46892 10 6452 1 2025-12-04 13:20:42.196 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:40476 12 6556 1 2025-12-04 13:21:42.600 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:49414 10 6452 1 2025-12-04 13:22:03.922 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 13:22:03.796 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 13:22:03.967 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 13:22:03.955 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 13:22:04.049 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 13:22:42.962 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48678 10 6452 1 2025-12-04 13:23:43.367 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44244 10 6452 1 2025-12-04 13:24:43.774 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:50892 10 6452 1 2025-12-04 13:21:10.672 00:05:02.201 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 13:21:10.670 00:05:02.207 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 13:25:44.176 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:33590 10 6452 1 2025-12-04 13:26:44.584 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45750 10 6452 1 2025-12-04 13:27:04.219 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 13:27:04.206 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 13:27:04.325 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 13:27:04.137 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 13:27:04.004 00:00:00.049 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 13:27:44.985 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:47472 10 6452 1 2025-12-04 13:28:45.392 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:40118 10 6452 1 2025-12-04 13:29:45.757 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:41498 10 6452 1 2025-12-04 13:30:46.130 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:60840 10 6452 1 2025-12-04 13:27:10.672 00:05:02.202 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 13:27:10.669 00:05:02.207 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 13:31:46.494 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50010 10 6452 1 2025-12-04 13:32:04.338 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 13:32:04.338 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 13:32:04.328 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 13:32:04.449 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 13:32:04.412 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 13:32:46.897 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33326 10 6452 1 2025-12-04 13:33:47.303 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60862 10 6452 1 2025-12-04 13:34:47.709 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42624 10 6452 1 2025-12-04 13:35:48.114 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49596 10 6452 1 2025-12-04 13:36:48.519 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:32814 10 6452 1 2025-12-04 13:37:04.216 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 13:37:04.353 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 13:37:04.433 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 13:37:04.282 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 13:37:04.515 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 13:33:10.673 00:05:02.202 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 13:33:10.671 00:05:02.208 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 13:37:48.919 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52712 10 6452 1 2025-12-04 13:38:49.322 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:55554 10 6452 1 2025-12-04 13:39:49.739 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:33078 10 6452 1 2025-12-04 13:40:50.142 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:57268 10 6452 1 2025-12-04 13:41:50.512 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:46616 10 6452 1 2025-12-04 13:42:04.161 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 13:42:04.413 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 13:42:04.304 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 13:42:04.079 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 13:42:04.460 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 13:42:50.915 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:49878 10 6452 1 2025-12-04 13:39:10.676 00:05:02.207 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 13:39:10.679 00:05:02.201 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 13:43:51.317 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:37524 10 6452 1 2025-12-04 13:44:51.734 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:58574 10 6452 1 2025-12-04 13:45:52.110 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:43536 10 6452 1 2025-12-04 13:47:04.580 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 13:46:52.538 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:47470 10 6452 1 2025-12-04 13:47:04.495 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 13:47:04.515 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 13:47:04.497 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 13:47:04.493 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 13:47:52.902 00:00:10.400 TCP 1.101.0.1:3000 -> 23.104.0.1:55146 12 10375 1 2025-12-04 13:48:53.342 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:40914 10 6452 1 2025-12-04 13:45:10.677 00:05:02.205 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 13:45:10.680 00:05:02.200 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 13:49:53.756 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:38098 10 6452 1 2025-12-04 13:50:54.167 00:00:10.984 TCP 1.101.0.1:3000 -> 23.104.0.1:53850 10 6452 1 2025-12-04 13:51:55.183 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:46200 10 6452 1 2025-12-04 13:52:04.535 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 13:52:04.445 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 13:52:04.424 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 13:52:04.532 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 13:52:04.506 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 13:52:55.587 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:57540 10 6452 1 2025-12-04 13:53:55.995 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42768 10 6452 1 2025-12-04 13:51:10.679 00:05:02.205 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 13:54:56.402 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:48606 10 6452 1 2025-12-04 13:51:10.681 00:05:02.200 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 13:55:56.810 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59098 10 6452 1 2025-12-04 13:57:04.626 00:00:00.029 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 13:57:04.850 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 13:57:04.730 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 13:57:04.542 00:00:00.029 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 13:57:04.542 00:00:00.028 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 13:56:57.213 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49730 10 6452 1 2025-12-04 13:57:57.617 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49738 10 6452 1 Summary: total flows: 139, total bytes: 414575, total packets: 1014, avg bps: 906, avg pps: 0, avg bpp: 408 Time window: 2025-12-04 12:57:10 - 2025-12-04 13:58:07 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0050s User: 0.0000s Wall: 0.0022s flows/second: 63640.2 Runtime: 0.0022s