Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-04 19:58:41.642 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47942 10 6452 1 2025-12-04 19:59:42.061 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34656 10 6452 1 2025-12-04 20:00:42.463 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:43408 10 6452 1 2025-12-04 19:57:10.825 00:05:02.232 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 19:57:10.828 00:05:02.228 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 20:01:42.831 00:00:10.352 TCP 1.101.0.1:3000 -> 23.104.0.1:36954 10 6452 1 2025-12-04 20:02:12.004 00:00:00.049 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 20:02:11.548 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 20:02:11.989 00:00:00.040 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 20:02:11.983 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 20:02:12.074 00:00:00.040 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 20:02:43.221 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36896 10 6452 1 2025-12-04 20:03:43.627 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:36866 10 6452 1 2025-12-04 20:04:43.994 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:53968 10 6452 1 2025-12-04 20:05:44.399 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:54522 10 6452 1 2025-12-04 20:06:44.803 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47280 10 6452 1 2025-12-04 20:03:10.826 00:05:02.234 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 20:07:11.931 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 20:07:12.058 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 20:07:11.966 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 20:07:11.848 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 20:07:11.844 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 20:03:10.828 00:05:02.229 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 20:07:45.208 00:00:10.348 TCP 1.101.0.1:3000 -> 23.104.0.1:34578 10 6452 1 2025-12-04 20:08:45.572 00:00:10.409 TCP 1.101.0.1:3000 -> 23.104.0.1:38322 10 6452 1 2025-12-04 20:09:45.998 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:53212 10 6452 1 2025-12-04 20:10:46.403 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37612 10 6452 1 2025-12-04 20:11:46.805 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:35252 10 6452 1 2025-12-04 20:12:12.359 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 20:12:12.169 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 20:12:12.284 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 20:12:12.287 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 20:12:12.367 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 20:12:47.215 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:49260 10 6452 1 2025-12-04 20:09:10.827 00:05:02.234 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 20:09:10.831 00:05:02.228 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 20:13:47.613 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:32870 10 6452 1 2025-12-04 20:14:48.010 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:57226 10 6452 1 2025-12-04 20:15:48.368 00:00:10.737 TCP 1.101.0.1:3000 -> 23.104.0.1:58188 10 6452 1 2025-12-04 20:16:49.143 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:54148 10 6452 1 2025-12-04 20:17:12.488 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 20:17:12.267 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 20:17:12.171 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 20:17:12.462 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 20:17:12.253 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 20:17:49.539 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35058 10 6452 1 2025-12-04 20:18:49.941 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:40622 10 6452 1 2025-12-04 20:15:10.830 00:05:02.233 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 20:15:10.832 00:05:02.228 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 20:19:50.304 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:51730 10 6452 1 2025-12-04 20:20:50.674 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36322 10 6452 1 2025-12-04 20:21:51.107 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:38978 10 6452 1 2025-12-04 20:22:12.540 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 20:22:12.329 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 20:22:12.166 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 20:22:12.457 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 20:22:12.336 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 20:22:51.485 00:00:10.347 TCP 1.101.0.1:3000 -> 23.104.0.1:37106 10 6452 1 2025-12-04 20:23:51.893 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:58644 10 6452 1 2025-12-04 20:24:52.308 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:51570 10 6452 1 2025-12-04 20:21:10.831 00:05:02.232 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 20:21:10.835 00:05:02.227 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 20:25:52.711 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:42506 10 6452 1 2025-12-04 20:26:53.131 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34618 10 6452 1 2025-12-04 20:27:12.421 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 20:27:12.130 00:00:00.030 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 20:27:12.420 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 20:27:12.330 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 20:27:12.503 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 20:27:53.532 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:37658 10 6452 1 2025-12-04 20:28:53.897 00:00:10.345 TCP 1.101.0.1:3000 -> 23.104.0.1:54418 10 6452 1 2025-12-04 20:29:54.280 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34452 10 6452 1 2025-12-04 20:30:54.682 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:59472 10 6452 1 2025-12-04 20:27:10.835 00:05:02.228 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 20:27:10.831 00:05:02.233 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 20:31:55.109 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:41292 10 6452 1 2025-12-04 20:32:12.799 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 20:32:12.769 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 20:32:12.793 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 20:32:12.523 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 20:32:12.875 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 20:32:55.516 00:00:10.441 TCP 1.101.0.1:3000 -> 23.104.0.1:44598 14 10479 1 2025-12-04 20:33:55.994 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56706 10 6452 1 2025-12-04 20:34:56.408 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:45826 10 6452 1 2025-12-04 20:35:56.777 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:42088 10 6452 1 2025-12-04 20:36:57.187 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47974 10 6452 1 2025-12-04 20:33:10.833 00:05:02.233 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 20:37:13.089 00:00:00.054 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 20:37:13.004 00:00:00.045 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 20:37:12.798 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 20:37:13.008 00:00:00.053 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 20:37:13.057 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 20:33:10.836 00:05:02.228 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 20:37:57.590 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:47474 10 6452 1 2025-12-04 20:38:58.006 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35738 10 6452 1 2025-12-04 20:39:58.407 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:33168 10 6452 1 2025-12-04 20:40:58.810 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39738 10 6452 1 2025-12-04 20:42:12.966 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 20:41:59.212 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51832 10 6452 1 2025-12-04 20:42:12.935 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 20:42:12.837 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 20:42:12.883 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 20:42:12.970 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 20:39:10.835 00:05:02.235 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 20:42:59.615 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:56536 10 6452 1 2025-12-04 20:39:10.839 00:05:02.230 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 20:44:00.024 00:00:10.495 TCP 1.101.0.1:3000 -> 23.104.0.1:35010 10 6452 1 2025-12-04 20:45:00.565 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:38962 10 6452 1 2025-12-04 20:46:00.965 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52894 10 6452 1 2025-12-04 20:47:12.955 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 20:47:12.941 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 20:47:12.938 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 20:47:12.873 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 20:47:13.069 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 20:47:01.364 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:43812 10 6452 1 2025-12-04 20:48:01.772 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:36012 10 6452 1 2025-12-04 20:45:10.841 00:05:02.227 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 20:49:02.181 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53558 10 6452 1 2025-12-04 20:45:10.839 00:05:02.231 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 20:50:02.586 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35226 11 6492 1 2025-12-04 20:51:02.990 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:39736 10 6452 1 2025-12-04 20:52:13.139 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 20:52:12.929 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 20:52:03.399 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:56500 10 6452 1 2025-12-04 20:52:13.223 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 20:52:13.276 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 20:52:13.306 00:00:00.029 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 20:53:03.804 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52618 10 6452 1 2025-12-04 20:54:04.214 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:35376 10 6452 1 2025-12-04 20:51:10.839 00:05:02.232 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 20:55:04.619 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:49554 10 6452 1 2025-12-04 20:51:10.841 00:05:02.227 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 20:56:04.983 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:54772 10 6452 1 2025-12-04 20:57:12.997 00:00:00.044 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 20:57:13.131 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 20:57:13.125 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 20:57:13.125 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 20:57:05.402 00:00:10.419 TCP 1.101.0.1:3000 -> 23.104.0.1:48018 11 6504 1 2025-12-04 20:57:13.208 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 20:58:05.864 00:00:10.526 TCP 1.101.0.1:3000 -> 23.104.0.1:41184 14 14292 1 Summary: total flows: 140, total bytes: 428959, total packets: 1030, avg bps: 936, avg pps: 0, avg bpp: 416 Time window: 2025-12-04 19:57:10 - 2025-12-04 20:58:16 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0062s User: 0.0000s Wall: 0.0025s flows/second: 56822.4 Runtime: 0.0025s