Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-04 17:58:52.767 00:00:10.709 TCP 1.101.0.1:3000 -> 23.104.0.1:42448 10 6452 1 2025-12-04 17:59:53.518 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:55604 10 6452 1 2025-12-04 18:00:53.923 00:00:10.569 TCP 1.101.0.1:3000 -> 23.104.0.1:54172 10 6452 1 2025-12-04 17:57:10.768 00:05:02.198 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 17:57:10.767 00:05:02.203 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 18:01:54.535 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35552 10 6452 1 2025-12-04 18:02:09.610 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 18:02:09.477 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 18:02:09.667 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 18:02:09.612 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 18:02:09.749 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 18:02:54.940 00:00:10.443 TCP 1.101.0.1:3000 -> 23.104.0.1:41948 12 10369 1 2025-12-04 18:03:55.429 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:41174 10 6452 1 2025-12-04 18:04:55.803 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45508 10 6452 1 2025-12-04 18:05:56.206 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60630 10 6452 1 2025-12-04 18:07:09.716 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 18:07:09.675 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 18:07:09.491 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 18:06:56.605 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:46506 10 6452 1 2025-12-04 18:07:09.633 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 18:07:09.554 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 18:03:10.772 00:05:02.196 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 18:03:10.770 00:05:02.201 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 18:07:56.982 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:49302 10 6452 1 2025-12-04 18:08:57.389 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:59262 10 6452 1 2025-12-04 18:09:57.790 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49026 10 6452 1 2025-12-04 18:10:58.202 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:44448 10 6452 1 2025-12-04 18:12:09.930 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 18:12:09.613 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 18:12:09.651 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 18:11:58.609 00:00:10.774 TCP 1.101.0.1:3000 -> 23.104.0.1:35282 10 6452 1 2025-12-04 18:12:09.847 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 18:12:09.801 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 18:12:59.427 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:53784 10 6452 1 2025-12-04 18:09:10.772 00:05:02.199 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 18:09:10.770 00:05:02.205 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 18:13:59.827 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:49398 10 6452 1 2025-12-04 18:15:00.251 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54590 10 6452 1 2025-12-04 18:16:00.657 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59316 10 6452 1 2025-12-04 18:17:09.862 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 18:17:09.638 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 18:17:09.782 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 18:17:09.866 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 18:17:09.865 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 18:17:01.067 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:40122 10 6452 1 2025-12-04 18:18:01.469 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:49844 10 6452 1 2025-12-04 18:15:10.775 00:05:02.201 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 18:19:01.829 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36316 10 6452 1 2025-12-04 18:15:10.777 00:05:02.196 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 18:20:02.239 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:55650 10 6452 1 2025-12-04 18:21:02.602 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46562 10 6452 1 2025-12-04 18:22:09.858 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 18:22:10.006 00:00:00.033 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 18:22:09.703 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 18:22:09.776 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 18:22:09.934 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 18:22:03.008 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:40316 10 6452 1 2025-12-04 18:23:03.405 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:57016 10 6452 1 2025-12-04 18:24:03.807 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:60364 10 6452 1 2025-12-04 18:25:04.216 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:57018 10 6452 1 2025-12-04 18:21:10.787 00:05:02.189 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 18:21:10.783 00:05:02.194 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 18:26:04.583 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56148 10 6452 1 2025-12-04 18:27:10.044 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 18:27:09.965 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 18:27:09.912 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 18:27:09.961 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 18:27:09.967 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 18:27:04.983 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:47078 10 6452 1 2025-12-04 18:28:05.397 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:58250 10 6452 1 2025-12-04 18:29:05.836 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:51130 10 6452 1 2025-12-04 18:30:06.238 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35144 10 6452 1 2025-12-04 18:27:10.786 00:05:02.191 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 18:27:10.784 00:05:02.196 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 18:31:06.644 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:33354 10 6452 1 2025-12-04 18:32:10.260 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 18:32:10.121 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 18:32:10.185 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 18:32:10.071 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 18:32:10.268 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 18:32:07.058 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:39622 10 6452 1 2025-12-04 18:33:07.422 00:00:10.441 TCP 1.101.0.1:3000 -> 23.104.0.1:42346 12 10369 1 2025-12-04 18:34:07.902 00:00:10.408 TCP 1.101.0.1:3000 -> 23.104.0.1:43310 10 6452 1 2025-12-04 18:35:08.353 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:34126 10 6452 1 2025-12-04 18:36:08.754 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:42840 10 6452 1 2025-12-04 18:37:10.405 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 18:37:10.334 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 18:37:10.350 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 18:37:10.323 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 18:37:10.205 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 18:33:10.788 00:05:02.200 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 18:33:10.785 00:05:02.205 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 18:37:09.117 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:49096 10 6452 1 2025-12-04 18:38:09.480 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:46560 10 6452 1 2025-12-04 18:39:09.839 00:00:10.396 TCP 1.101.0.1:3000 -> 23.104.0.1:60956 10 6452 1 2025-12-04 18:40:10.271 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52200 10 6452 1 2025-12-04 18:41:10.673 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37904 10 6452 1 2025-12-04 18:42:10.532 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 18:42:10.397 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 18:42:10.325 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 18:42:10.450 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 18:42:10.388 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 18:42:11.103 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:51002 10 6452 1 2025-12-04 18:39:10.790 00:05:02.200 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 18:39:10.787 00:05:02.205 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 18:43:11.470 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57022 10 6452 1 2025-12-04 18:44:11.874 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:36628 10 6452 1 2025-12-04 18:45:12.286 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41942 10 6452 1 2025-12-04 18:46:12.686 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:37316 10 6452 1 2025-12-04 18:47:10.555 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 18:47:10.462 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 18:47:10.337 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 18:47:10.472 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 18:47:10.479 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 18:47:13.112 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:50090 10 6452 1 2025-12-04 18:48:13.519 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48432 10 6452 1 2025-12-04 18:45:10.791 00:05:02.199 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 18:45:10.788 00:05:02.204 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 18:49:13.916 00:00:10.395 TCP 1.101.0.1:3000 -> 23.104.0.1:40534 10 6452 1 2025-12-04 18:50:14.360 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:47186 10 6452 1 2025-12-04 18:51:14.766 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:56898 10 6452 1 2025-12-04 18:52:10.842 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 18:52:10.758 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 18:52:10.695 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 18:52:10.759 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 18:52:10.757 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 18:52:15.139 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48950 10 6452 1 2025-12-04 18:53:15.555 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45786 10 6452 1 2025-12-04 18:54:15.957 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:49008 10 6452 1 2025-12-04 18:51:10.790 00:05:02.206 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 18:51:10.792 00:05:02.200 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 18:55:16.400 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54574 10 6452 1 2025-12-04 18:56:16.806 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:32940 10 6452 1 2025-12-04 18:57:10.866 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 18:57:10.716 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 18:57:10.781 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 18:57:10.784 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 18:57:10.778 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 18:57:17.178 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43950 10 6452 1 2025-12-04 18:58:17.579 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:39608 10 6452 1 Summary: total flows: 140, total bytes: 424834, total packets: 1024, avg bps: 924, avg pps: 0, avg bpp: 414 Time window: 2025-12-04 17:57:10 - 2025-12-04 18:58:27 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0032s User: 0.0011s Wall: 0.0014s flows/second: 102335.8 Runtime: 0.0014s