Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-05 07:59:17.520 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:40528 10 6452 1 2025-12-05 08:00:17.931 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:33618 10 6452 1 2025-12-05 07:57:11.113 00:05:02.203 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 07:57:11.111 00:05:02.209 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 08:01:18.349 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:43344 10 6452 1 2025-12-05 08:02:26.405 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 08:02:18.718 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:36198 10 6452 1 2025-12-05 08:02:26.422 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 08:02:26.244 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 08:02:26.323 00:00:00.026 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 08:02:26.412 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 08:03:19.140 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:33566 10 6452 1 2025-12-05 08:04:19.548 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56486 10 6452 1 2025-12-05 08:05:19.970 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:48556 10 6452 1 2025-12-05 08:06:20.381 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:46030 10 6452 1 2025-12-05 08:03:11.115 00:05:02.204 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 08:03:11.111 00:05:02.210 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 08:07:26.965 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 08:07:26.930 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 08:07:26.803 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 08:07:26.640 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 08:07:26.885 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 08:07:20.779 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:34086 10 6452 1 2025-12-05 08:08:21.205 00:00:10.587 TCP 1.101.0.1:3000 -> 23.104.0.1:36698 11 6492 1 2025-12-05 08:09:21.808 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:40724 10 6452 1 2025-12-05 08:10:22.212 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:37870 10 6452 1 2025-12-05 08:11:22.616 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56074 10 6452 1 2025-12-05 08:12:26.703 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 08:12:26.663 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 08:12:26.346 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 08:12:26.621 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 08:12:26.555 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 08:12:23.018 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:60334 10 6452 1 2025-12-05 08:09:11.116 00:05:02.204 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 08:09:11.115 00:05:02.209 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 08:13:23.418 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:51406 10 6452 1 2025-12-05 08:14:23.822 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:44558 10 6452 1 2025-12-05 08:15:24.188 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54662 10 6452 1 2025-12-05 08:16:24.589 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56914 10 6452 1 2025-12-05 08:17:26.740 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 08:17:26.808 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 08:17:26.664 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 08:17:26.570 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 08:17:26.745 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 08:17:24.993 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:36556 10 6452 1 2025-12-05 08:18:25.395 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:47562 10 6452 1 2025-12-05 08:15:11.117 00:05:02.212 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 08:15:11.114 00:05:02.216 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 08:19:25.796 00:00:10.574 TCP 1.101.0.1:3000 -> 23.104.0.1:47224 10 6452 1 2025-12-05 08:20:26.412 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:35220 10 6452 1 2025-12-05 08:21:26.773 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:47114 10 6452 1 2025-12-05 08:22:26.900 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 08:22:26.888 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 08:22:26.769 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 08:22:26.817 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 08:22:26.747 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 08:22:27.183 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:56338 10 6452 1 2025-12-05 08:23:27.546 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:45228 10 6452 1 2025-12-05 08:24:27.915 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50502 10 6452 1 2025-12-05 08:21:11.119 00:05:02.211 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 08:21:11.116 00:05:02.215 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 08:25:28.320 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:43528 10 6452 1 2025-12-05 08:26:28.721 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:56572 10 6452 1 2025-12-05 08:27:27.074 00:00:00.041 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 08:27:26.986 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 08:27:26.980 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 08:27:26.991 00:00:00.042 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 08:27:26.909 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 08:27:29.112 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:40466 10 6452 1 2025-12-05 08:28:29.478 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:42778 10 6452 1 2025-12-05 08:29:29.884 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:46012 10 6452 1 2025-12-05 08:30:30.292 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:54658 10 6452 1 2025-12-05 08:27:11.123 00:05:02.211 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 08:27:11.120 00:05:02.216 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 08:31:30.707 00:00:10.507 TCP 1.101.0.1:3000 -> 23.104.0.1:42560 10 6452 1 2025-12-05 08:32:27.036 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 08:32:27.130 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 08:32:26.897 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 08:32:26.954 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 08:32:27.125 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 08:32:31.257 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:40810 10 6452 1 2025-12-05 08:33:31.630 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38532 10 6452 1 2025-12-05 08:34:32.033 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:42148 10 6452 1 2025-12-05 08:35:32.400 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:42196 10 6452 1 2025-12-05 08:36:32.802 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55686 10 6452 1 2025-12-05 08:33:11.118 00:05:02.219 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 08:33:11.123 00:05:02.214 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 08:37:27.217 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 08:37:27.138 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 08:37:27.231 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 08:37:27.135 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 08:37:27.068 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 08:37:33.216 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50364 10 6452 1 2025-12-05 08:38:33.624 00:00:10.442 TCP 1.101.0.1:3000 -> 23.104.0.1:35530 12 10375 1 2025-12-05 08:39:34.112 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:34552 10 6452 1 2025-12-05 08:40:34.519 00:00:11.343 TCP 1.101.0.1:3000 -> 23.104.0.1:45138 10 6452 1 2025-12-05 08:41:35.907 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:52052 10 6452 1 2025-12-05 08:42:27.009 00:00:00.037 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 08:42:26.876 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 08:42:27.257 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 08:42:27.247 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 08:42:27.341 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 08:42:36.312 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:35636 10 6452 1 2025-12-05 08:39:11.125 00:05:02.215 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 08:39:11.129 00:05:02.210 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 08:43:36.673 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:32780 10 6452 1 2025-12-05 08:44:37.103 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47644 10 6452 1 2025-12-05 08:45:37.511 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:50530 10 6452 1 2025-12-05 08:46:37.924 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:60930 10 6452 1 2025-12-05 08:47:27.215 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 08:47:27.313 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 08:47:27.130 00:00:00.026 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 08:47:27.133 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 08:47:27.417 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 08:47:38.301 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:49508 10 6452 1 2025-12-05 08:48:38.666 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39442 10 6452 1 2025-12-05 08:45:11.128 00:05:02.216 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 08:45:11.130 00:05:02.211 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 08:49:39.104 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:40588 10 6452 1 2025-12-05 08:50:39.556 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:43712 10 6452 1 2025-12-05 08:51:39.954 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:47306 10 6452 1 2025-12-05 08:52:27.228 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 08:52:27.418 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 08:52:27.312 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 08:52:27.145 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 08:52:27.521 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 08:52:40.367 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53792 10 6452 1 2025-12-05 08:53:40.771 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:50870 10 6452 1 2025-12-05 08:54:41.183 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54062 10 6452 1 2025-12-05 08:51:11.130 00:05:02.212 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 08:51:11.128 00:05:02.217 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 08:55:41.585 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59744 10 6452 1 2025-12-05 08:56:41.991 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:51798 10 6452 1 2025-12-05 08:57:27.705 00:00:00.017 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 08:57:27.468 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 08:57:27.333 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 08:57:27.616 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 08:57:27.473 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 08:57:42.352 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:53606 10 6452 1 Summary: total flows: 139, total bytes: 414511, total packets: 1013, avg bps: 910, avg pps: 0, avg bpp: 409 Time window: 2025-12-05 07:57:11 - 2025-12-05 08:57:52 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0041s User: 0.0010s Wall: 0.0026s flows/second: 52632.3 Runtime: 0.0027s