Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-04 16:59:25.349 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:33682 10 6452 1 2025-12-04 17:00:25.709 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:44402 10 6452 1 2025-12-04 16:57:10.746 00:05:02.201 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 16:57:10.744 00:05:02.206 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 17:01:26.134 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:39826 10 6452 1 2025-12-04 17:02:08.531 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 17:02:08.337 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 17:02:08.321 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 17:02:08.497 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 17:02:08.403 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 17:02:26.549 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:57268 10 6452 1 2025-12-04 17:03:26.950 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:54042 10 6452 1 2025-12-04 17:04:27.363 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55952 10 6452 1 2025-12-04 17:05:27.766 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:58608 10 6452 1 2025-12-04 17:06:28.187 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53776 10 6452 1 2025-12-04 17:07:08.380 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 17:07:08.415 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 17:07:08.512 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 17:07:08.381 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 17:07:08.595 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 17:03:10.747 00:05:02.204 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 17:03:10.749 00:05:02.199 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 17:07:28.590 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:35820 10 6452 1 2025-12-04 17:08:28.996 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:34118 10 6452 1 2025-12-04 17:09:29.395 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47978 10 6452 1 2025-12-04 17:10:29.797 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:38328 10 6452 1 2025-12-04 17:11:30.212 00:00:10.855 TCP 1.101.0.1:3000 -> 23.104.0.1:54128 10 6452 1 2025-12-04 17:12:08.587 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 17:12:08.446 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 17:12:08.638 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 17:12:08.527 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 17:12:08.720 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 17:12:31.116 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36700 10 6452 1 2025-12-04 17:09:10.749 00:05:02.202 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 17:09:10.753 00:05:02.197 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 17:13:31.524 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41072 10 6452 1 2025-12-04 17:14:31.926 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:38840 10 6452 1 2025-12-04 17:15:32.369 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:42022 10 6452 1 2025-12-04 17:16:32.773 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:40370 10 6452 1 2025-12-04 17:17:08.922 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 17:17:08.645 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 17:17:08.525 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 17:17:08.840 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 17:17:08.708 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 17:17:33.189 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:48610 10 6452 1 2025-12-04 17:18:33.552 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:48516 10 6452 1 2025-12-04 17:15:10.753 00:05:02.197 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 17:15:10.752 00:05:02.202 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 17:19:33.963 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:52046 10 6452 1 2025-12-04 17:20:34.376 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47788 10 6452 1 2025-12-04 17:21:34.772 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:60746 10 6452 1 2025-12-04 17:22:08.690 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 17:22:08.719 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 17:22:08.687 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 17:22:08.951 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 17:22:08.770 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 17:22:35.188 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:59772 10 6452 1 2025-12-04 17:23:35.587 00:00:10.484 TCP 1.101.0.1:3000 -> 23.104.0.1:52228 10 6452 1 2025-12-04 17:24:36.117 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:49508 10 6452 1 2025-12-04 17:21:10.751 00:05:02.203 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 17:21:10.754 00:05:02.197 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 17:25:36.518 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:36252 10 6452 1 2025-12-04 17:26:36.927 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:33074 10 6452 1 2025-12-04 17:27:08.866 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 17:27:08.852 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 17:27:08.718 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 17:27:08.784 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 17:27:08.788 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 17:27:37.347 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:37224 10 6452 1 2025-12-04 17:28:37.754 00:00:10.997 TCP 1.101.0.1:3000 -> 23.104.0.1:42256 10 6452 1 2025-12-04 17:29:38.792 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:37176 10 6452 1 2025-12-04 17:30:39.195 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36184 10 6452 1 2025-12-04 17:27:10.752 00:05:02.202 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 17:27:10.755 00:05:02.197 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 17:31:39.597 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:42346 10 6452 1 2025-12-04 17:32:09.026 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 17:32:08.943 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 17:32:08.909 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 17:32:08.942 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 17:32:08.985 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 17:32:40.013 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:55548 10 6452 1 2025-12-04 17:33:40.371 00:00:11.740 TCP 1.101.0.1:3000 -> 23.104.0.1:36250 10 6452 1 2025-12-04 17:34:42.149 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39972 10 6452 1 2025-12-04 17:35:42.551 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:57546 10 6452 1 2025-12-04 17:36:42.962 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:53824 10 6452 1 2025-12-04 17:37:09.079 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 17:37:08.682 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 17:37:08.771 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 17:37:09.173 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 17:33:10.759 00:05:02.197 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 17:37:08.854 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 17:33:10.756 00:05:02.202 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 17:37:43.342 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:38578 10 6452 1 2025-12-04 17:38:43.747 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:35922 10 6452 1 2025-12-04 17:39:44.108 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:50550 10 6452 1 2025-12-04 17:40:44.508 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:38914 10 6452 1 2025-12-04 17:41:44.915 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:51048 10 6452 1 2025-12-04 17:42:09.356 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 17:42:09.486 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 17:42:09.269 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 17:42:09.274 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 17:42:09.489 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 17:42:45.326 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:53166 10 6452 1 2025-12-04 17:39:10.758 00:05:02.203 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 17:39:10.759 00:05:02.198 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 17:43:45.697 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49390 10 6452 1 2025-12-04 17:44:46.112 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:37684 10 6452 1 2025-12-04 17:45:46.526 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48812 10 6452 1 2025-12-04 17:46:46.930 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:60946 10 6452 1 2025-12-04 17:47:09.469 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 17:47:09.266 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 17:47:09.132 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 17:47:09.386 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 17:47:09.420 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 17:47:47.346 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:48872 10 6452 1 2025-12-04 17:48:47.724 00:00:11.425 TCP 1.101.0.1:3000 -> 23.104.0.1:34772 12 10369 1 2025-12-04 17:45:10.763 00:05:02.201 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 17:45:10.766 00:05:02.196 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 17:49:49.190 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:44836 10 6452 1 2025-12-04 17:50:49.591 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:37992 10 6452 1 2025-12-04 17:51:49.954 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:54334 10 6452 1 2025-12-04 17:52:09.612 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 17:52:09.498 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 17:52:09.327 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 17:52:09.530 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 17:52:09.307 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 17:52:50.370 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:35052 10 6452 1 2025-12-04 17:53:50.785 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34962 10 6452 1 2025-12-04 17:54:51.202 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38710 10 6452 1 2025-12-04 17:51:10.766 00:05:02.200 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 17:51:10.768 00:05:02.195 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 17:55:51.605 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:58574 10 6452 1 2025-12-04 17:57:09.620 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 17:56:51.961 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37952 10 6452 1 2025-12-04 17:57:09.539 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 17:57:09.377 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 17:57:09.536 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 17:57:09.533 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 17:57:52.366 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40506 10 6452 1 Summary: total flows: 139, total bytes: 414465, total packets: 1012, avg bps: 907, avg pps: 0, avg bpp: 409 Time window: 2025-12-04 16:57:10 - 2025-12-04 17:58:02 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0051s User: 0.0010s Wall: 0.0021s flows/second: 66190.8 Runtime: 0.0021s