Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-04 23:59:32.360 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:54864 10 6452 1 2025-12-05 00:00:32.763 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:39030 12 6556 1 2025-12-04 23:57:10.919 00:05:02.212 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 23:57:10.916 00:05:02.217 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 00:01:33.176 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:55564 10 6452 1 2025-12-05 00:02:16.855 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 00:02:16.614 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 00:02:16.949 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 00:02:16.849 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 00:02:17.032 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 00:02:33.586 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:57480 10 6452 1 2025-12-05 00:03:33.954 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47198 10 6452 1 2025-12-05 00:04:34.357 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56056 10 6452 1 2025-12-05 00:05:34.761 00:00:10.534 TCP 1.101.0.1:3000 -> 23.104.0.1:59254 10 6452 1 2025-12-05 00:06:35.336 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42204 10 6452 1 2025-12-05 00:03:10.922 00:05:02.212 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 00:03:10.919 00:05:02.217 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 00:07:16.696 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 00:07:16.907 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 00:07:16.894 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 00:07:16.614 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 00:07:16.740 00:00:00.026 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 00:07:35.734 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:51184 10 6452 1 2025-12-05 00:08:36.140 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:40806 10 6452 1 2025-12-05 00:09:36.539 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:38004 10 6452 1 2025-12-05 00:10:36.905 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:49048 12 6556 1 2025-12-05 00:11:37.316 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:54704 10 6452 1 2025-12-05 00:12:17.108 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 00:12:16.895 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 00:12:16.858 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 00:12:17.112 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 00:12:16.940 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 00:12:37.715 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:57600 10 6452 1 2025-12-05 00:09:10.924 00:05:02.210 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 00:09:10.922 00:05:02.215 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 00:13:38.112 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37286 10 6452 1 2025-12-05 00:14:38.523 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:52708 10 6452 1 2025-12-05 00:15:38.926 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:49754 10 6452 1 2025-12-05 00:16:39.356 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:58460 10 6452 1 2025-12-05 00:17:17.012 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 00:17:17.020 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 00:17:16.866 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 00:17:16.928 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 00:17:17.170 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 00:17:39.715 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:41412 10 6452 1 2025-12-05 00:18:40.123 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44486 10 6452 1 2025-12-05 00:15:10.924 00:05:02.215 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 00:15:10.926 00:05:02.209 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 00:19:40.530 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:53588 10 6452 1 2025-12-05 00:20:40.943 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:51750 10 6452 1 2025-12-05 00:21:41.376 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:44536 10 6452 1 2025-12-05 00:22:17.436 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 00:22:17.222 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 00:22:17.214 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 00:22:17.353 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 00:22:17.037 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 00:22:41.785 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:42260 10 6452 1 2025-12-05 00:23:42.204 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48574 10 6452 1 2025-12-05 00:24:42.607 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39286 10 6452 1 2025-12-05 00:21:10.929 00:05:02.208 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 00:21:10.928 00:05:02.213 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 00:25:43.010 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:35178 10 6452 1 2025-12-05 00:26:43.389 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56346 10 6452 1 2025-12-05 00:27:17.448 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 00:27:17.181 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 00:27:17.188 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 00:27:17.367 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 00:27:17.297 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 00:27:43.793 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:59876 10 6452 1 2025-12-05 00:28:44.204 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:37776 10 6452 1 2025-12-05 00:29:44.605 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:59962 10 6452 1 2025-12-05 00:30:45.007 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:53072 10 6452 1 2025-12-05 00:27:10.931 00:05:02.209 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 00:27:10.928 00:05:02.214 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 00:31:45.402 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:60102 10 6452 1 2025-12-05 00:32:17.494 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 00:32:17.214 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 00:32:17.441 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 00:32:17.411 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 00:32:17.478 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 00:32:45.766 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47596 10 6452 1 2025-12-05 00:33:46.173 00:00:10.423 TCP 1.101.0.1:3000 -> 23.104.0.1:34170 11 6504 1 2025-12-05 00:34:46.639 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:40590 10 6452 1 2025-12-05 00:35:47.042 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42784 10 6452 1 2025-12-05 00:36:47.445 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44114 10 6452 1 2025-12-05 00:33:10.933 00:05:02.208 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 00:33:10.930 00:05:02.213 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 00:37:17.652 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 00:37:17.545 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 00:37:17.282 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 00:37:17.384 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 00:37:17.376 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 00:37:47.846 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:41990 10 6452 1 2025-12-05 00:38:48.272 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:34624 10 6452 1 2025-12-05 00:39:48.686 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:39696 10 6452 1 2025-12-05 00:40:49.057 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37244 10 6452 1 2025-12-05 00:41:49.464 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:36868 10 6452 1 2025-12-05 00:42:17.557 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 00:42:17.728 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 00:42:17.543 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 00:42:17.475 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 00:42:17.479 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 00:42:49.828 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60118 10 6452 1 2025-12-05 00:39:10.932 00:05:02.215 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 00:39:10.934 00:05:02.210 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 00:43:50.234 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:43802 10 6452 1 2025-12-05 00:44:50.635 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:46224 10 6452 1 2025-12-05 00:45:51.068 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:33922 10 6452 1 2025-12-05 00:46:51.476 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:60040 10 6452 1 2025-12-05 00:47:17.669 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 00:47:17.489 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 00:47:17.945 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 00:47:17.754 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 00:47:18.029 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 00:47:51.889 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:55184 10 6452 1 2025-12-05 00:48:52.310 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:51782 10 6452 1 2025-12-05 00:45:10.933 00:05:02.216 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 00:45:10.936 00:05:02.211 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 00:49:52.754 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:33158 10 6452 1 2025-12-05 00:50:53.166 00:00:16.097 TCP 1.101.0.1:3000 -> 23.104.0.1:47322 10 6452 1 2025-12-05 00:51:59.319 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34370 10 6452 1 2025-12-05 00:52:18.325 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 00:52:18.285 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 00:52:17.672 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 00:52:18.242 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 00:52:18.331 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 00:52:59.722 00:00:10.453 TCP 1.101.0.1:3000 -> 23.104.0.1:47270 12 10369 1 2025-12-05 00:54:00.211 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41266 10 6452 1 2025-12-05 00:55:00.614 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:46026 10 6452 1 2025-12-05 00:51:10.939 00:05:02.207 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 00:51:10.937 00:05:02.212 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 00:56:00.974 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:38058 10 6452 1 2025-12-05 00:57:01.345 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:45498 10 6452 1 2025-12-05 00:57:17.955 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 00:57:17.920 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 00:57:17.861 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 00:57:17.771 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 00:57:18.038 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 00:58:01.751 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:32802 10 6452 1 Summary: total flows: 139, total bytes: 414725, total packets: 1017, avg bps: 906, avg pps: 0, avg bpp: 407 Time window: 2025-12-04 23:57:10 - 2025-12-05 00:58:12 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0044s User: 0.0009s Wall: 0.0020s flows/second: 67807.4 Runtime: 0.0021s