Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-05 10:59:33.218 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:52180 10 6452 1 2025-12-05 11:00:33.621 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:33478 10 6452 1 2025-12-05 10:57:11.169 00:05:02.229 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 10:57:11.172 00:05:02.225 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 11:01:33.984 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45672 10 6452 1 2025-12-05 11:02:30.070 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 11:02:29.991 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 11:02:29.798 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 11:02:29.900 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 11:02:29.881 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 11:02:34.389 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:41168 10 6452 1 2025-12-05 11:03:34.753 00:00:10.441 TCP 1.101.0.1:3000 -> 23.104.0.1:42228 12 10375 1 2025-12-05 11:04:35.233 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43344 10 6452 1 2025-12-05 11:05:35.636 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49280 10 6452 1 2025-12-05 11:06:36.040 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39628 10 6452 1 2025-12-05 11:03:11.170 00:05:02.232 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 11:03:11.173 00:05:02.226 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 11:07:30.249 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 11:07:30.090 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 11:07:30.250 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 11:07:30.364 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 11:07:30.333 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 11:07:36.443 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:47232 10 6452 1 2025-12-05 11:08:36.842 00:00:11.168 TCP 1.101.0.1:3000 -> 23.104.0.1:55618 10 6452 1 2025-12-05 11:09:38.051 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53068 10 6452 1 2025-12-05 11:10:38.456 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:41802 10 6452 1 2025-12-05 11:11:38.857 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:58752 10 6452 1 2025-12-05 11:12:30.431 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 11:12:30.380 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 11:12:30.004 00:00:00.051 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 11:12:30.349 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 11:12:30.308 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 11:12:39.294 00:00:10.348 TCP 1.101.0.1:3000 -> 23.104.0.1:59206 10 6452 1 2025-12-05 11:09:11.173 00:05:02.226 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 11:09:11.170 00:05:02.231 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 11:13:39.691 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:41120 10 6452 1 2025-12-05 11:14:40.067 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:59406 10 6452 1 2025-12-05 11:15:40.435 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:46920 10 6452 1 2025-12-05 11:16:40.842 00:00:10.399 TCP 1.101.0.1:3000 -> 23.104.0.1:36804 10 6452 1 2025-12-05 11:17:30.417 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 11:17:30.334 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 11:17:30.350 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 11:17:30.333 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 11:17:30.335 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 11:17:41.281 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:39758 10 6452 1 2025-12-05 11:18:41.688 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:33536 10 6452 1 2025-12-05 11:15:11.173 00:05:02.226 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 11:15:11.172 00:05:02.232 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 11:19:42.052 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:35856 10 6452 1 2025-12-05 11:20:42.455 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:54136 10 6452 1 2025-12-05 11:21:42.860 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:46748 10 6452 1 2025-12-05 11:22:30.257 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 11:22:30.532 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 11:22:30.352 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 11:22:30.463 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 11:22:30.339 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 11:22:43.273 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51786 10 6452 1 2025-12-05 11:23:43.678 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33426 10 6452 1 2025-12-05 11:24:44.104 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51634 10 6452 1 2025-12-05 11:21:11.175 00:05:02.227 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 11:21:11.173 00:05:02.231 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 11:25:44.506 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:60652 10 6452 1 2025-12-05 11:26:44.918 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:45636 10 6452 1 2025-12-05 11:27:30.718 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 11:27:30.375 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 11:27:30.278 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 11:27:30.635 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 11:27:30.565 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 11:27:45.319 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39932 10 6452 1 2025-12-05 11:28:45.723 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:60130 10 6452 1 2025-12-05 11:29:46.133 00:00:10.409 TCP 1.101.0.1:3000 -> 23.104.0.1:38890 10 6452 1 2025-12-05 11:30:46.582 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:43960 10 6452 1 2025-12-05 11:27:11.176 00:05:02.228 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 11:27:11.174 00:05:02.233 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 11:31:46.941 00:00:10.695 TCP 1.101.0.1:3000 -> 23.104.0.1:49566 10 6452 1 2025-12-05 11:32:30.521 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 11:32:30.825 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 11:32:30.459 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 11:32:30.440 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 11:32:30.823 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 11:32:47.674 00:00:17.680 TCP 1.101.0.1:3000 -> 23.104.0.1:49174 10 6452 1 2025-12-05 11:33:55.397 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:33192 10 6452 1 2025-12-05 11:34:55.797 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:34028 10 6452 1 2025-12-05 11:35:56.204 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:54500 10 6452 1 2025-12-05 11:36:56.607 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:57360 10 6452 1 2025-12-05 11:33:11.177 00:05:02.233 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 11:33:11.174 00:05:02.238 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 11:37:30.724 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 11:37:30.785 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 11:37:30.559 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 11:37:30.642 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 11:37:30.723 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 11:37:57.011 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:57582 10 6452 1 2025-12-05 11:38:57.408 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35778 10 6452 1 2025-12-05 11:39:57.811 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35708 10 6452 1 2025-12-05 11:40:58.216 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:39308 10 6452 1 2025-12-05 11:41:58.577 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:55758 10 6452 1 2025-12-05 11:42:30.731 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 11:42:30.769 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 11:42:30.575 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 11:42:30.649 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 11:42:30.848 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 11:42:58.982 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:58402 10 6452 1 2025-12-05 11:39:11.179 00:05:02.240 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 11:39:11.178 00:05:02.244 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 11:43:59.406 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:37138 10 6452 1 2025-12-05 11:44:59.763 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:41268 10 6452 1 2025-12-05 11:46:00.135 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:42712 10 6452 1 2025-12-05 11:47:00.551 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42436 10 6452 1 2025-12-05 11:47:30.966 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 11:47:30.949 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 11:47:30.795 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 11:47:30.791 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 11:47:30.878 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 11:48:00.959 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:52654 10 6452 1 2025-12-05 11:49:01.368 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:57792 10 6452 1 2025-12-05 11:45:11.189 00:05:02.234 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 11:45:11.187 00:05:02.238 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 11:50:01.774 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:51222 10 6452 1 2025-12-05 11:51:02.185 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51576 10 6452 1 2025-12-05 11:52:02.585 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44118 10 6452 1 2025-12-05 11:52:30.868 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 11:52:30.930 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 11:52:30.934 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 11:52:31.067 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 11:52:31.014 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 11:53:02.989 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:49726 10 6452 1 2025-12-05 11:54:03.393 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:46110 10 6452 1 2025-12-05 11:51:11.188 00:05:02.238 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 11:55:03.798 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46062 10 6452 1 2025-12-05 11:51:11.190 00:05:02.233 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 11:56:04.206 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:40546 10 6452 1 2025-12-05 11:57:04.609 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:32820 10 6452 1 2025-12-05 11:57:31.341 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 11:57:31.152 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 11:57:31.171 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 11:57:31.167 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 11:57:31.253 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 11:58:05.010 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:53702 10 6452 1 Summary: total flows: 139, total bytes: 414471, total packets: 1012, avg bps: 904, avg pps: 0, avg bpp: 409 Time window: 2025-12-05 10:57:11 - 2025-12-05 11:58:15 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0036s User: 0.0009s Wall: 0.0020s flows/second: 69955.4 Runtime: 0.0020s