Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-04 13:58:58.018 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:42158 10 6452 1 2025-12-04 13:59:58.425 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57038 10 6452 1 2025-12-04 14:00:58.829 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:55620 10 6452 1 2025-12-04 13:57:10.681 00:05:02.204 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 13:57:10.684 00:05:02.199 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 14:02:04.576 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 14:02:04.590 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 14:02:04.729 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 14:02:04.493 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 14:02:04.769 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 14:01:59.191 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35646 10 6452 1 2025-12-04 14:02:59.594 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43842 10 6452 1 2025-12-04 14:04:00.003 00:00:10.935 TCP 1.101.0.1:3000 -> 23.104.0.1:60246 10 6452 1 2025-12-04 14:05:00.971 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35852 10 6452 1 2025-12-04 14:06:01.377 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:50298 10 6452 1 2025-12-04 14:07:04.948 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 14:07:04.918 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 14:07:04.803 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 14:07:04.865 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 14:07:04.960 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 14:03:10.681 00:05:02.206 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 14:07:01.780 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:35066 10 6452 1 2025-12-04 14:03:10.684 00:05:02.201 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 14:08:02.191 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:41592 10 6452 1 2025-12-04 14:09:02.593 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45450 10 6452 1 2025-12-04 14:10:02.996 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40618 10 6452 1 2025-12-04 14:11:03.399 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:47632 10 6452 1 2025-12-04 14:12:05.278 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 14:12:05.099 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 14:12:04.813 00:00:00.030 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 14:12:04.810 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 14:12:04.896 00:00:00.029 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 14:12:03.767 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:49712 10 6452 1 2025-12-04 14:13:04.171 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40900 10 6452 1 2025-12-04 14:09:10.689 00:05:02.198 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 14:09:10.688 00:05:02.202 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 14:14:04.576 00:00:10.435 TCP 1.101.0.1:3000 -> 23.104.0.1:43822 11 6504 1 2025-12-04 14:15:05.062 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56752 10 6452 1 2025-12-04 14:16:05.465 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:60564 10 6452 1 2025-12-04 14:17:05.425 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 14:17:05.347 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 14:17:04.995 00:00:00.061 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 14:17:05.341 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 14:17:05.272 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 14:17:05.869 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:55618 10 6452 1 2025-12-04 14:18:06.285 00:00:10.453 TCP 1.101.0.1:3000 -> 23.104.0.1:38760 12 10369 1 2025-12-04 14:15:10.688 00:05:02.203 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 14:15:10.690 00:05:02.199 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 14:19:06.782 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38668 10 6452 1 2025-12-04 14:20:07.192 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:53476 10 6452 1 2025-12-04 14:21:07.607 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:54762 10 6452 1 2025-12-04 14:22:05.207 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 14:22:05.132 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 14:22:05.158 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 14:22:05.126 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 14:22:05.137 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 14:22:08.010 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37856 10 6452 1 2025-12-04 14:23:08.413 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:40484 10 6452 1 2025-12-04 14:24:08.820 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:53632 10 6452 1 2025-12-04 14:21:10.691 00:05:02.201 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 14:21:10.694 00:05:02.196 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 14:25:09.222 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38000 10 6452 1 2025-12-04 14:26:09.630 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:44606 10 6452 1 2025-12-04 14:27:05.370 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 14:27:05.285 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 14:27:05.289 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 14:27:05.287 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 14:27:04.980 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 14:27:10.036 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:39444 10 6452 1 2025-12-04 14:28:10.441 00:00:10.435 TCP 1.101.0.1:3000 -> 23.104.0.1:49792 12 10375 1 2025-12-04 14:29:10.914 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54952 10 6452 1 2025-12-04 14:30:11.316 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:38046 10 6452 1 2025-12-04 14:27:10.693 00:05:02.201 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 14:27:10.697 00:05:02.196 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 14:31:11.693 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55016 10 6452 1 2025-12-04 14:32:05.339 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 14:32:05.414 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 14:32:05.486 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 14:32:05.493 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 14:32:05.497 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 14:32:12.104 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45096 10 6452 1 2025-12-04 14:33:12.511 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:35638 10 6452 1 2025-12-04 14:34:12.911 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:47068 10 6452 1 2025-12-04 14:35:13.274 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58150 10 6452 1 2025-12-04 14:36:13.681 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:44214 10 6452 1 2025-12-04 14:37:05.785 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 14:37:05.361 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 14:37:05.510 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 14:37:05.702 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 14:37:05.497 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 14:33:10.696 00:05:02.197 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 14:33:10.694 00:05:02.201 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 14:37:14.104 00:00:10.355 TCP 1.101.0.1:3000 -> 23.104.0.1:46104 10 6452 1 2025-12-04 14:38:14.500 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35008 10 6452 1 2025-12-04 14:39:14.903 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:42132 10 6452 1 2025-12-04 14:40:15.317 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:53186 10 6452 1 2025-12-04 14:41:15.718 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:44044 10 6452 1 2025-12-04 14:42:05.728 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 14:42:05.649 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 14:42:05.541 00:00:00.026 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 14:42:05.646 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 14:42:05.653 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 14:42:16.138 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:56850 10 6452 1 2025-12-04 14:39:10.700 00:05:02.197 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 14:39:10.698 00:05:02.202 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 14:43:16.550 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:53100 10 6452 1 2025-12-04 14:44:16.916 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38218 10 6452 1 2025-12-04 14:45:17.316 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37550 10 6452 1 2025-12-04 14:46:17.719 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:35014 10 6452 1 2025-12-04 14:47:05.649 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 14:47:05.545 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 14:47:05.528 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 14:47:05.591 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 14:47:05.612 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 14:47:18.134 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60930 10 6452 1 2025-12-04 14:48:18.537 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54622 10 6452 1 2025-12-04 14:45:10.699 00:05:02.199 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 14:45:10.697 00:05:02.203 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 14:49:18.940 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:37062 10 6452 1 2025-12-04 14:50:19.353 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50658 10 6452 1 2025-12-04 14:51:19.759 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:50430 10 6452 1 2025-12-04 14:52:05.880 00:00:00.033 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 14:52:05.844 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 14:52:06.163 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 14:52:06.081 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 14:52:05.996 00:00:00.044 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 14:52:20.134 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60496 10 6452 1 2025-12-04 14:53:20.538 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:50356 10 6452 1 2025-12-04 14:54:20.950 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:54882 10 6452 1 2025-12-04 14:51:10.701 00:05:02.199 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 14:51:10.699 00:05:02.204 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 14:55:21.361 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:39324 10 6452 1 2025-12-04 14:56:21.737 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54302 10 6452 1 2025-12-04 14:57:05.906 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 14:57:05.797 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 14:57:05.943 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 14:57:05.905 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 14:57:06.026 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 14:57:22.147 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:36514 10 6452 1 2025-12-04 14:58:22.506 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47800 10 6452 1 Summary: total flows: 140, total bytes: 424892, total packets: 1025, avg bps: 923, avg pps: 0, avg bpp: 414 Time window: 2025-12-04 13:57:10 - 2025-12-04 14:58:32 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0040s User: 0.0010s Wall: 0.0012s flows/second: 118554.9 Runtime: 0.0012s