Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-04 15:58:47.936 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:35568 10 6452 1 2025-12-04 15:59:48.373 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:34676 10 6452 1 2025-12-04 16:00:48.738 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:60706 10 6452 1 2025-12-04 15:57:10.727 00:05:02.197 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 15:57:10.724 00:05:02.202 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 16:01:49.151 00:00:10.810 TCP 1.101.0.1:3000 -> 23.104.0.1:41014 10 6452 1 2025-12-04 16:02:07.144 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 16:02:06.783 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 16:02:07.233 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 16:02:07.074 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 16:02:07.317 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 16:02:50.003 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51798 10 6452 1 2025-12-04 16:03:50.403 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:36314 10 6452 1 2025-12-04 16:04:50.799 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:33722 10 6452 1 2025-12-04 16:05:51.207 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33330 10 6452 1 2025-12-04 16:06:51.605 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:56244 10 6452 1 2025-12-04 16:07:07.330 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 16:07:07.403 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 16:07:07.246 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 16:07:07.503 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 16:07:07.329 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 16:03:10.726 00:05:02.202 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 16:03:10.729 00:05:02.197 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 16:07:51.968 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40546 10 6452 1 2025-12-04 16:08:52.369 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55874 10 6452 1 2025-12-04 16:09:52.771 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:60850 10 6452 1 2025-12-04 16:10:53.134 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:51622 10 6452 1 2025-12-04 16:11:53.533 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:60796 10 6452 1 2025-12-04 16:12:07.632 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 16:12:07.351 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 16:12:07.507 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 16:12:07.627 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 16:12:07.591 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 16:12:53.900 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:41362 10 6452 1 2025-12-04 16:09:10.726 00:05:02.205 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 16:09:10.731 00:05:02.199 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 16:13:54.321 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36300 10 6452 1 2025-12-04 16:14:54.724 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:40744 10 6452 1 2025-12-04 16:15:55.155 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:58570 10 6452 1 2025-12-04 16:16:55.560 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:56524 10 6452 1 2025-12-04 16:17:07.389 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 16:17:07.391 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 16:17:07.221 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 16:17:07.308 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 16:17:07.390 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 16:17:55.927 00:00:10.420 TCP 1.101.0.1:3000 -> 23.104.0.1:53092 12 10369 1 2025-12-04 16:18:56.383 00:00:10.416 TCP 1.101.0.1:3000 -> 23.104.0.1:50482 11 6504 1 2025-12-04 16:15:10.734 00:05:02.200 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 16:15:10.738 00:05:02.195 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 16:19:56.836 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:46670 10 6452 1 2025-12-04 16:20:57.210 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:47234 10 6452 1 2025-12-04 16:22:07.632 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 16:22:07.489 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 16:22:07.782 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 16:22:07.550 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 16:22:07.617 00:00:00.031 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 16:21:57.569 00:00:20.183 TCP 1.101.0.1:3000 -> 23.104.0.1:52096 10 6452 1 2025-12-04 16:23:07.807 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:60164 10 6452 1 2025-12-04 16:24:08.208 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:59318 10 6452 1 2025-12-04 16:21:10.732 00:05:02.205 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 16:21:10.737 00:05:02.200 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 16:25:08.611 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56556 12 6556 1 2025-12-04 16:26:09.010 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:58118 10 6452 1 2025-12-04 16:27:07.782 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 16:27:07.575 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 16:27:07.383 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 16:27:07.700 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 16:27:07.547 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 16:27:09.422 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49466 10 6452 1 2025-12-04 16:28:09.829 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37984 10 6452 1 2025-12-04 16:29:10.234 00:00:10.751 TCP 1.101.0.1:3000 -> 23.104.0.1:48648 10 6452 1 2025-12-04 16:30:11.025 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55590 10 6452 1 2025-12-04 16:27:10.734 00:05:02.206 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 16:27:10.737 00:05:02.201 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 16:31:11.424 00:00:11.442 TCP 1.101.0.1:3000 -> 23.104.0.1:49024 10 6452 1 2025-12-04 16:32:08.226 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 16:32:08.143 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 16:32:07.907 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 16:32:08.143 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 16:32:08.268 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 16:32:12.905 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:52954 10 6452 1 2025-12-04 16:33:13.321 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58868 10 6452 1 2025-12-04 16:34:13.723 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:41608 10 6452 1 2025-12-04 16:35:14.109 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:36318 10 6452 1 2025-12-04 16:36:14.509 00:00:11.909 TCP 1.101.0.1:3000 -> 23.104.0.1:53674 10 6452 1 2025-12-04 16:37:08.118 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 16:37:07.743 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 16:37:07.999 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 16:37:07.654 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 16:37:08.080 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 16:33:10.737 00:05:02.205 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 16:33:10.740 00:05:02.199 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 16:37:16.453 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37206 10 6452 1 2025-12-04 16:38:16.858 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:35560 10 6452 1 2025-12-04 16:39:17.232 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38608 10 6452 1 2025-12-04 16:40:17.638 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40770 10 6452 1 2025-12-04 16:41:18.061 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:57344 10 6452 1 2025-12-04 16:42:08.045 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 16:42:08.009 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 16:42:07.867 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 16:42:07.963 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 16:42:07.922 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 16:42:18.426 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58448 10 6452 1 2025-12-04 16:39:10.743 00:05:02.199 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 16:39:10.740 00:05:02.204 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 16:43:18.831 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:41586 10 6452 1 2025-12-04 16:44:19.255 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53750 10 6452 1 2025-12-04 16:45:19.662 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:60684 10 6452 1 2025-12-04 16:46:20.028 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:36010 10 6452 1 2025-12-04 16:47:07.969 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 16:47:08.058 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 16:47:07.836 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 16:47:07.885 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 16:47:08.071 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 16:47:20.426 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:59938 10 6452 1 2025-12-04 16:48:20.870 00:00:10.441 TCP 1.101.0.1:3000 -> 23.104.0.1:53192 12 10375 1 2025-12-04 16:45:10.741 00:05:02.204 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 16:45:10.744 00:05:02.199 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 16:49:21.350 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:38006 10 6452 1 2025-12-04 16:50:21.723 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:57456 10 6452 1 2025-12-04 16:51:22.110 00:00:10.406 TCP 1.101.0.1:3000 -> 23.104.0.1:46344 10 6452 1 2025-12-04 16:52:08.719 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 16:52:08.790 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 16:52:08.566 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 16:52:08.638 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 16:52:08.790 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 16:52:22.557 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:60000 10 6452 1 2025-12-04 16:53:22.916 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:38520 10 6452 1 2025-12-04 16:54:23.279 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:55654 10 6452 1 2025-12-04 16:51:10.742 00:05:02.203 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 16:51:10.744 00:05:02.199 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 16:55:23.681 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:48666 10 6452 1 2025-12-04 16:56:24.108 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:42156 10 6452 1 2025-12-04 16:57:08.428 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 16:57:08.345 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 16:57:08.313 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 16:57:08.345 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 16:57:08.291 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 16:57:24.508 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:56178 10 6452 1 2025-12-04 16:58:24.869 00:00:10.447 TCP 1.101.0.1:3000 -> 23.104.0.1:56866 12 10369 1 Summary: total flows: 140, total bytes: 428913, total packets: 1029, avg bps: 931, avg pps: 0, avg bpp: 416 Time window: 2025-12-04 15:57:10 - 2025-12-04 16:58:35 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0043s User: 0.0008s Wall: 0.0016s flows/second: 85151.2 Runtime: 0.0017s