Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-04 20:59:06.431 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49750 10 6452 1 2025-12-04 21:00:06.835 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:51788 10 6452 1 2025-12-04 20:57:10.840 00:05:02.237 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 20:57:10.843 00:05:02.232 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 21:01:07.266 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:52892 10 6452 1 2025-12-04 21:02:13.639 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 21:02:13.488 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 21:02:13.153 00:00:00.026 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 21:02:13.558 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 21:02:13.487 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 21:02:07.671 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52254 10 6452 1 2025-12-04 21:03:08.107 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42710 10 6452 1 2025-12-04 21:04:08.511 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44512 10 6452 1 2025-12-04 21:05:08.915 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:50304 10 6452 1 2025-12-04 21:06:09.321 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38570 10 6452 1 2025-12-04 21:03:10.841 00:05:02.237 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 21:07:13.405 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 21:07:13.366 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 21:07:13.138 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 21:07:13.322 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 21:07:13.270 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 21:03:10.844 00:05:02.232 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 21:07:09.722 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56340 10 6452 1 2025-12-04 21:08:10.128 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36786 10 6452 1 2025-12-04 21:09:10.538 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:54224 10 6452 1 2025-12-04 21:10:10.946 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:38330 10 6452 1 2025-12-04 21:11:11.319 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:36920 10 6452 1 2025-12-04 21:12:13.476 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 21:12:13.344 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 21:12:13.233 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 21:12:13.394 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 21:12:13.350 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 21:12:11.686 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:56698 10 6452 1 2025-12-04 21:09:10.842 00:05:02.237 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 21:09:10.844 00:05:02.233 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 21:13:12.053 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:49054 10 6452 1 2025-12-04 21:14:12.419 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:57046 10 6452 1 2025-12-04 21:15:12.825 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:56146 10 6452 1 2025-12-04 21:16:13.234 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:32810 10 6452 1 2025-12-04 21:17:13.642 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 21:17:13.477 00:00:00.030 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 21:17:13.342 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 21:17:13.684 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 21:17:13.426 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 21:17:13.637 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40376 10 6452 1 2025-12-04 21:18:14.041 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:36960 10 6452 1 2025-12-04 21:15:10.846 00:05:02.233 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 21:15:10.843 00:05:02.238 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 21:19:14.435 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:58728 10 6452 1 2025-12-04 21:20:14.845 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:50332 10 6452 1 2025-12-04 21:21:15.273 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:42766 10 6452 1 2025-12-04 21:22:13.906 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 21:22:13.612 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 21:22:14.056 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 21:22:13.747 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 21:22:14.137 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 21:22:15.678 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:56880 10 6452 1 2025-12-04 21:23:16.107 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:52172 10 6452 1 2025-12-04 21:24:16.470 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:38964 10 6452 1 2025-12-04 21:21:10.848 00:05:02.232 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 21:21:10.848 00:05:02.236 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 21:25:16.880 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41870 10 6452 1 2025-12-04 21:26:17.280 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:45180 10 6452 1 2025-12-04 21:27:13.570 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 21:27:13.655 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 21:27:13.499 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 21:27:13.486 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 21:27:13.577 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 21:27:17.648 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:40332 10 6452 1 2025-12-04 21:28:18.079 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:38858 10 6452 1 2025-12-04 21:29:18.441 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50084 10 6452 1 2025-12-04 21:30:18.848 00:00:10.347 TCP 1.101.0.1:3000 -> 23.104.0.1:43776 10 6452 1 2025-12-04 21:27:10.849 00:05:02.235 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 21:27:10.852 00:05:02.230 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 21:31:19.234 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:39524 10 6452 1 2025-12-04 21:32:13.596 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 21:32:13.616 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 21:32:13.811 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 21:32:13.497 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 21:32:13.621 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 21:32:19.606 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36280 10 6452 1 2025-12-04 21:33:20.012 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42232 10 6452 1 2025-12-04 21:34:20.411 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:52818 10 6452 1 2025-12-04 21:35:20.829 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36566 10 6452 1 2025-12-04 21:36:21.232 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:36874 10 6452 1 2025-12-04 21:33:10.851 00:05:02.234 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 21:37:13.833 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 21:37:13.764 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 21:37:13.720 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 21:37:13.750 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 21:37:13.763 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 21:33:10.853 00:05:02.229 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 21:37:21.635 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:44800 10 6452 1 2025-12-04 21:38:22.062 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:45548 10 6452 1 2025-12-04 21:39:22.468 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:33696 10 6452 1 2025-12-04 21:40:22.872 00:00:10.498 TCP 1.101.0.1:3000 -> 23.104.0.1:39866 10 6452 1 2025-12-04 21:41:23.411 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:47222 10 6452 1 2025-12-04 21:42:13.758 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 21:42:13.714 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 21:42:13.755 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 21:42:13.755 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 21:42:13.838 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 21:42:23.837 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:36022 10 6452 1 2025-12-04 21:39:10.858 00:05:02.230 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 21:39:10.855 00:05:02.236 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 21:43:24.216 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:57450 10 6452 1 2025-12-04 21:44:24.582 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39012 10 6452 1 2025-12-04 21:45:24.989 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:39624 10 6452 1 2025-12-04 21:46:25.398 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53264 10 6452 1 2025-12-04 21:47:13.954 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 21:47:13.897 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 21:47:14.154 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 21:47:14.076 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 21:47:14.240 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 21:47:25.803 00:00:10.903 TCP 1.101.0.1:3000 -> 23.104.0.1:55122 10 6452 1 2025-12-04 21:48:26.741 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51614 10 6452 1 2025-12-04 21:45:10.857 00:05:02.236 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 21:45:10.859 00:05:02.231 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 21:49:27.143 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:35990 10 6452 1 2025-12-04 21:50:27.507 00:00:10.918 TCP 1.101.0.1:3000 -> 23.104.0.1:33592 10 6452 1 2025-12-04 21:51:28.461 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34312 10 6452 1 2025-12-04 21:52:14.268 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 21:52:14.092 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 21:52:14.164 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 21:52:14.271 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 21:52:14.251 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 21:52:28.874 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51084 10 6452 1 2025-12-04 21:53:29.277 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:50654 10 6452 1 2025-12-04 21:54:29.691 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:52354 10 6452 1 2025-12-04 21:51:10.861 00:05:02.230 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 21:51:10.858 00:05:02.236 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 21:55:30.071 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:33154 10 6452 1 2025-12-04 21:56:30.486 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34304 10 6452 1 2025-12-04 21:57:14.256 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 21:57:14.210 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 21:57:14.250 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 21:57:14.053 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 21:57:14.332 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 21:57:30.895 00:00:10.416 TCP 1.101.0.1:3000 -> 23.104.0.1:46542 12 6556 1 2025-12-04 21:58:31.355 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:41382 10 6452 1 Summary: total flows: 140, total bytes: 417104, total packets: 1022, avg bps: 904, avg pps: 0, avg bpp: 408 Time window: 2025-12-04 20:57:10 - 2025-12-04 21:58:41 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0048s User: 0.0012s Wall: 0.0016s flows/second: 86467.8 Runtime: 0.0016s