Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-05 08:58:42.720 00:00:10.397 TCP 1.101.0.1:3000 -> 23.104.0.1:48616 12 10369 1 2025-12-05 08:59:43.156 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33274 10 6452 1 2025-12-05 09:00:43.563 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:41634 10 6452 1 2025-12-05 08:57:11.129 00:05:02.220 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 08:57:11.133 00:05:02.214 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 09:01:43.921 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:35416 10 6452 1 2025-12-05 09:02:27.833 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 09:02:27.801 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 09:02:27.616 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 09:02:27.831 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 09:02:27.700 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 09:02:44.342 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41234 10 6452 1 2025-12-05 09:03:44.749 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41554 10 6452 1 2025-12-05 09:04:45.152 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:52480 10 6452 1 2025-12-05 09:05:45.558 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:37140 10 6452 1 2025-12-05 09:06:45.959 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:39528 10 6452 1 2025-12-05 09:03:11.130 00:05:02.221 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 09:03:11.132 00:05:02.216 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 09:07:27.761 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 09:07:27.907 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 09:07:27.767 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 09:07:27.852 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 09:07:27.850 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 09:07:46.374 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48982 10 6452 1 2025-12-05 09:08:46.778 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57386 10 6452 1 2025-12-05 09:09:47.184 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37318 10 6452 1 2025-12-05 09:10:47.589 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:52654 10 6452 1 2025-12-05 09:11:47.996 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:54996 10 6452 1 2025-12-05 09:12:27.754 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 09:12:27.678 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 09:12:27.761 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 09:12:27.687 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 09:12:27.836 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 09:12:48.402 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:41030 10 6452 1 2025-12-05 09:09:11.132 00:05:02.222 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 09:09:11.136 00:05:02.217 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 09:13:48.760 00:00:10.454 TCP 1.101.0.1:3000 -> 23.104.0.1:59116 12 10369 1 2025-12-05 09:14:49.253 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59070 10 6452 1 2025-12-05 09:15:49.659 00:00:10.441 TCP 1.101.0.1:3000 -> 23.104.0.1:35684 10 6452 1 2025-12-05 09:16:50.143 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:44440 10 6452 1 2025-12-05 09:17:27.828 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 09:17:27.748 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 09:17:27.880 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 09:17:27.746 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 09:17:27.851 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 09:17:50.539 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49228 10 6452 1 2025-12-05 09:18:50.954 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:42274 10 6452 1 2025-12-05 09:15:11.136 00:05:02.221 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 09:15:11.139 00:05:02.216 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 09:19:51.369 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:38788 10 6452 1 2025-12-05 09:20:51.777 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:51328 10 6452 1 2025-12-05 09:21:52.186 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58460 10 6452 1 2025-12-05 09:22:28.971 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 09:22:28.682 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 09:22:28.825 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 09:22:28.967 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 09:22:28.908 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 09:22:52.591 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47720 10 6452 1 2025-12-05 09:23:52.994 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:45008 10 6452 1 2025-12-05 09:24:53.363 00:00:10.694 TCP 1.101.0.1:3000 -> 23.104.0.1:34730 10 6452 1 2025-12-05 09:21:11.141 00:05:02.216 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 09:21:11.137 00:05:02.222 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 09:25:54.107 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:38362 10 6452 1 2025-12-05 09:26:54.515 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:36286 10 6452 1 2025-12-05 09:27:28.084 00:00:00.042 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 09:27:27.992 00:00:00.044 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 09:27:27.901 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 09:27:28.003 00:00:00.041 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 09:27:28.099 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 09:27:54.881 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:60900 10 6452 1 2025-12-05 09:28:55.247 00:00:10.786 TCP 1.101.0.1:3000 -> 23.104.0.1:36728 10 6452 1 2025-12-05 09:29:56.102 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:54964 10 6452 1 2025-12-05 09:30:56.504 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50626 10 6452 1 2025-12-05 09:27:11.142 00:05:02.221 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 09:27:11.141 00:05:02.225 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 09:31:56.919 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:41282 10 6452 1 2025-12-05 09:32:28.371 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 09:32:28.160 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 09:32:28.247 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 09:32:28.289 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 09:32:28.221 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 09:32:57.320 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:45048 10 6452 1 2025-12-05 09:33:57.720 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:58484 10 6452 1 2025-12-05 09:34:58.132 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59952 10 6452 1 2025-12-05 09:35:58.537 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:50786 10 6452 1 2025-12-05 09:36:58.938 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:39282 10 6452 1 2025-12-05 09:33:11.139 00:05:02.228 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 09:33:11.143 00:05:02.223 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 09:37:28.114 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 09:37:28.314 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 09:37:27.957 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 09:37:28.032 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 09:37:28.309 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 09:37:59.315 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:52698 10 6452 1 2025-12-05 09:38:59.717 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:59274 10 6452 1 2025-12-05 09:40:00.135 00:00:10.710 TCP 1.101.0.1:3000 -> 23.104.0.1:57898 10 6452 1 2025-12-05 09:41:00.880 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:50812 10 6452 1 2025-12-05 09:42:01.241 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59554 10 6452 1 2025-12-05 09:42:28.646 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 09:42:28.727 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 09:42:28.791 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 09:42:28.563 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 09:42:28.851 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 09:39:11.141 00:05:02.228 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 09:43:01.645 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57700 10 6452 1 2025-12-05 09:39:11.144 00:05:02.223 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 09:44:02.054 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:44882 10 6452 1 2025-12-05 09:45:02.419 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33694 10 6452 1 2025-12-05 09:46:02.821 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:37784 10 6452 1 2025-12-05 09:47:03.228 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48986 10 6452 1 2025-12-05 09:47:28.543 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 09:47:28.512 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 09:47:28.377 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 09:47:28.450 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 09:47:28.233 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 09:48:03.638 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:35578 10 6452 1 2025-12-05 09:45:11.144 00:05:02.226 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 09:49:04.062 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:55400 10 6452 1 2025-12-05 09:45:11.147 00:05:02.222 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 09:50:04.423 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51526 10 6452 1 2025-12-05 09:51:04.830 00:00:10.395 TCP 1.101.0.1:3000 -> 23.104.0.1:47632 10 6452 1 2025-12-05 09:52:05.267 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50598 10 6452 1 2025-12-05 09:52:28.518 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 09:52:28.662 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 09:52:28.396 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 09:52:28.435 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 09:52:28.707 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 09:53:05.670 00:00:10.440 TCP 1.101.0.1:3000 -> 23.104.0.1:58524 12 10375 1 2025-12-05 09:54:06.148 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58326 10 6452 1 2025-12-05 09:51:11.148 00:05:02.226 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 09:51:11.147 00:05:02.230 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 09:55:06.553 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:43556 10 6452 1 2025-12-05 09:56:06.964 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:45516 10 6452 1 2025-12-05 09:57:07.336 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:52590 10 6452 1 2025-12-05 09:57:28.762 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 09:57:28.769 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 09:57:28.712 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 09:57:28.680 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 09:57:28.865 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 09:58:07.698 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:53910 10 6452 1 Summary: total flows: 140, total bytes: 428757, total packets: 1026, avg bps: 935, avg pps: 0, avg bpp: 417 Time window: 2025-12-05 08:57:11 - 2025-12-05 09:58:18 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0030s User: 0.0020s Wall: 0.0013s flows/second: 104484.4 Runtime: 0.0014s