Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-05 09:59:08.114 00:00:10.804 TCP 1.101.0.1:3000 -> 23.104.0.1:59450 10 6452 1 2025-12-05 10:00:08.956 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35302 12 6556 1 2025-12-05 09:57:11.149 00:05:02.228 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 09:57:11.151 00:05:02.224 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 10:01:09.364 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:49636 10 6452 1 2025-12-05 10:02:09.765 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:52174 10 6452 1 2025-12-05 10:02:28.960 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 10:02:28.655 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 10:02:28.567 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 10:02:28.878 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 10:02:28.641 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 10:03:10.189 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:48298 10 6452 1 2025-12-05 10:04:10.598 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:57682 10 6452 1 2025-12-05 10:05:11.006 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:54598 10 6452 1 2025-12-05 10:06:11.412 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60250 10 6452 1 2025-12-05 10:03:11.153 00:05:02.224 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 10:03:11.150 00:05:02.229 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 10:07:11.814 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:54596 10 6452 1 2025-12-05 10:07:28.880 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 10:07:28.998 00:00:00.029 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 10:07:28.933 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 10:07:28.766 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 10:07:29.016 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 10:08:12.223 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:40062 10 6452 1 2025-12-05 10:09:12.581 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39644 10 6452 1 2025-12-05 10:10:12.984 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:39372 10 6452 1 2025-12-05 10:11:13.420 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57756 10 6452 1 2025-12-05 10:12:13.841 00:00:10.348 TCP 1.101.0.1:3000 -> 23.104.0.1:51746 10 6452 1 2025-12-05 10:12:29.066 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 10:12:29.111 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 10:12:29.174 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 10:12:29.109 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 10:12:29.195 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 10:09:11.151 00:05:02.230 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 10:09:11.152 00:05:02.226 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 10:13:14.231 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:55012 10 6452 1 2025-12-05 10:14:14.640 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:57676 10 6452 1 2025-12-05 10:15:15.042 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36628 10 6452 1 2025-12-05 10:16:15.445 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:39744 10 6452 1 2025-12-05 10:17:29.280 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 10:17:29.233 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 10:17:29.110 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 10:17:29.193 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 10:17:29.104 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 10:17:15.845 00:00:10.351 TCP 1.101.0.1:3000 -> 23.104.0.1:44718 10 6452 1 2025-12-05 10:18:16.240 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:47012 10 6452 1 2025-12-05 10:15:11.155 00:05:02.224 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 10:15:11.152 00:05:02.230 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 10:19:16.638 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40174 10 6452 1 2025-12-05 10:20:17.041 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:37430 10 6452 1 2025-12-05 10:21:17.405 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44914 10 6452 1 2025-12-05 10:22:29.616 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 10:22:29.734 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 10:22:17.809 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:37094 10 6452 1 2025-12-05 10:22:29.331 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 10:22:29.533 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 10:22:29.738 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 10:23:18.218 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:52836 10 6452 1 2025-12-05 10:24:18.581 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:44724 10 6452 1 2025-12-05 10:21:11.156 00:05:02.224 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 10:21:11.154 00:05:02.229 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 10:25:18.981 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:44950 10 6452 1 2025-12-05 10:26:19.342 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53614 10 6452 1 2025-12-05 10:27:29.427 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 10:27:29.465 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 10:27:29.303 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 10:27:29.344 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 10:27:29.397 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 10:27:19.745 00:00:10.502 TCP 1.101.0.1:3000 -> 23.104.0.1:52712 10 6452 1 2025-12-05 10:28:20.291 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58134 10 6452 1 2025-12-05 10:29:20.699 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:40964 10 6452 1 2025-12-05 10:30:21.066 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:44440 10 6452 1 2025-12-05 10:27:11.159 00:05:02.230 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 10:27:11.156 00:05:02.236 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 10:31:21.433 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60748 10 6452 1 2025-12-05 10:32:29.356 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 10:32:29.391 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 10:32:29.419 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 10:32:29.422 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 10:32:29.502 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 10:32:21.837 00:00:10.345 TCP 1.101.0.1:3000 -> 23.104.0.1:50984 10 6452 1 2025-12-05 10:33:22.225 00:00:10.440 TCP 1.101.0.1:3000 -> 23.104.0.1:60042 12 10369 1 2025-12-05 10:34:22.706 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:49888 10 6452 1 2025-12-05 10:35:23.093 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49450 10 6452 1 2025-12-05 10:36:23.493 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:46568 10 6452 1 2025-12-05 10:33:11.166 00:05:02.226 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 10:33:11.163 00:05:02.232 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 10:37:29.454 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 10:37:29.404 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 10:37:29.258 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 10:37:29.464 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 10:37:29.341 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 10:37:23.898 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:43202 10 6452 1 2025-12-05 10:38:24.307 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:35546 10 6452 1 2025-12-05 10:39:24.710 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54416 10 6452 1 2025-12-05 10:40:25.117 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:52914 10 6452 1 2025-12-05 10:41:25.527 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:38576 10 6452 1 2025-12-05 10:42:29.769 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 10:42:29.431 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 10:42:29.694 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 10:42:29.687 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 10:42:29.751 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 10:42:25.893 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:57238 12 6556 1 2025-12-05 10:39:11.166 00:05:02.227 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 10:39:11.164 00:05:02.232 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 10:43:26.326 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:35638 10 6452 1 2025-12-05 10:44:26.698 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40534 10 6452 1 2025-12-05 10:45:27.107 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41872 10 6452 1 2025-12-05 10:46:27.518 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:51504 10 6452 1 2025-12-05 10:47:30.010 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 10:47:29.609 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 10:47:29.745 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 10:47:29.927 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 10:47:29.800 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 10:47:27.926 00:00:10.646 TCP 1.101.0.1:3000 -> 23.104.0.1:51934 10 6452 1 2025-12-05 10:48:28.610 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58704 10 6452 1 2025-12-05 10:45:11.167 00:05:02.230 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 10:45:11.168 00:05:02.226 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 10:49:29.018 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36310 10 6452 1 2025-12-05 10:50:29.423 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57784 10 6452 1 2025-12-05 10:51:29.826 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:56360 10 6452 1 2025-12-05 10:52:29.658 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 10:52:29.755 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 10:52:29.666 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 10:52:29.663 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 10:52:29.749 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 10:52:30.191 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:44740 10 6452 1 2025-12-05 10:53:30.592 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:47336 10 6452 1 2025-12-05 10:54:30.996 00:00:10.521 TCP 1.101.0.1:3000 -> 23.104.0.1:33372 10 6452 1 2025-12-05 10:51:11.169 00:05:02.226 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 10:51:11.167 00:05:02.231 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 10:55:31.554 00:00:10.417 TCP 1.101.0.1:3000 -> 23.104.0.1:59784 10 6452 1 2025-12-05 10:56:32.011 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:48738 10 6452 1 2025-12-05 10:57:29.853 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 10:57:29.759 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 10:57:29.601 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 10:57:29.770 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 10:57:29.977 00:00:00.057 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 10:57:32.413 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:43416 10 6452 1 2025-12-05 10:58:32.820 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:52976 10 6452 1 Summary: total flows: 140, total bytes: 421125, total packets: 1026, avg bps: 912, avg pps: 0, avg bpp: 410 Time window: 2025-12-05 09:57:11 - 2025-12-05 10:58:43 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0028s User: 0.0021s Wall: 0.0022s flows/second: 62802.4 Runtime: 0.0022s