Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-05 12:59:30.974 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57040 10 6452 1 2025-12-05 13:00:31.378 00:00:10.418 TCP 1.101.0.1:3000 -> 23.104.0.1:60332 12 6556 1 2025-12-05 12:57:11.211 00:05:02.237 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 12:57:11.214 00:05:02.233 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 13:01:31.870 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:46640 10 6452 1 2025-12-05 13:02:32.475 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 13:02:32.394 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 13:02:32.551 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 13:02:32.392 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 13:02:32.333 00:00:00.038 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 13:02:32.280 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34894 10 6452 1 2025-12-05 13:03:32.679 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39906 10 6452 1 2025-12-05 13:04:33.108 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:41586 10 6452 1 2025-12-05 13:05:33.472 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46102 10 6452 1 2025-12-05 13:06:33.878 00:00:10.529 TCP 1.101.0.1:3000 -> 23.104.0.1:47968 10 6452 1 2025-12-05 13:03:11.215 00:05:02.232 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 13:03:11.213 00:05:02.237 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 13:07:32.630 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 13:07:32.439 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 13:07:32.577 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 13:07:32.437 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 13:07:32.659 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 13:07:34.446 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:55356 10 6452 1 2025-12-05 13:08:34.845 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:57900 10 6452 1 2025-12-05 13:09:35.272 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:47112 10 6452 1 2025-12-05 13:10:35.636 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:38024 10 6452 1 2025-12-05 13:11:36.008 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51634 10 6452 1 2025-12-05 13:12:32.743 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 13:12:32.354 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 13:12:32.423 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 13:12:32.520 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 13:12:32.506 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 13:12:36.415 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:58946 10 6452 1 2025-12-05 13:09:11.221 00:05:02.229 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 13:09:11.217 00:05:02.234 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 13:13:36.802 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:46908 10 6452 1 2025-12-05 13:14:37.209 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:37806 10 6452 1 2025-12-05 13:15:37.611 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:35060 10 6452 1 2025-12-05 13:16:37.973 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59716 10 6452 1 2025-12-05 13:17:32.883 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 13:17:32.786 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 13:17:32.766 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 13:17:32.800 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 13:17:32.896 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 13:17:38.379 00:00:11.064 TCP 1.101.0.1:3000 -> 23.104.0.1:54828 10 6452 1 2025-12-05 13:18:39.484 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:40878 10 6452 1 2025-12-05 13:15:11.220 00:05:02.234 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 13:15:11.223 00:05:02.229 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 13:19:39.847 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:57322 10 6452 1 2025-12-05 13:20:40.273 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37946 10 6452 1 2025-12-05 13:21:40.675 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:50960 10 6452 1 2025-12-05 13:22:32.956 00:00:00.029 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 13:22:32.703 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 13:22:32.956 00:00:00.029 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 13:22:32.693 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 13:22:33.038 00:00:00.030 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 13:22:41.113 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:47858 10 6452 1 2025-12-05 13:23:41.525 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:58480 10 6452 1 2025-12-05 13:24:41.894 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:34968 10 6452 1 2025-12-05 13:21:11.227 00:05:02.239 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 13:21:11.224 00:05:02.245 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 13:25:42.317 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:55608 10 6452 1 2025-12-05 13:26:42.683 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:44046 10 6452 1 2025-12-05 13:27:33.212 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 13:27:33.140 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 13:27:33.217 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 13:27:33.213 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 13:27:33.300 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 13:27:43.057 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:45308 10 6452 1 2025-12-05 13:28:43.469 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59582 10 6452 1 2025-12-05 13:29:43.875 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44868 10 6452 1 2025-12-05 13:30:44.276 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54452 10 6452 1 2025-12-05 13:27:11.224 00:05:02.246 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 13:27:11.228 00:05:02.241 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 13:31:44.683 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:34362 10 6452 1 2025-12-05 13:32:32.743 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 13:32:32.895 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 13:32:32.952 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 13:32:33.155 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 13:32:33.034 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 13:32:45.108 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:46572 10 6452 1 2025-12-05 13:33:45.469 00:00:10.441 TCP 1.101.0.1:3000 -> 23.104.0.1:51162 12 10369 1 2025-12-05 13:34:45.950 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:56194 10 6452 1 2025-12-05 13:35:46.376 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:38416 10 6452 1 2025-12-05 13:36:46.736 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:46172 10 6452 1 2025-12-05 13:33:11.228 00:05:02.241 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 13:33:11.225 00:05:02.246 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 13:37:33.427 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 13:37:33.038 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 13:37:33.163 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 13:37:33.345 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 13:37:33.218 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 13:37:47.142 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:45050 10 6452 1 2025-12-05 13:38:47.509 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:49034 10 6452 1 2025-12-05 13:39:47.935 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:44316 10 6452 1 2025-12-05 13:40:48.350 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:36842 10 6452 1 2025-12-05 13:41:48.747 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:43332 12 6556 1 2025-12-05 13:42:33.663 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 13:42:33.678 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 13:42:33.441 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 13:42:33.738 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 13:42:33.524 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 13:42:49.147 00:00:10.653 TCP 1.101.0.1:3000 -> 23.104.0.1:56662 10 6452 1 2025-12-05 13:39:11.230 00:05:02.244 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 13:39:11.232 00:05:02.240 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 13:43:49.844 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:48032 10 6452 1 2025-12-05 13:44:50.268 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49812 11 6492 1 2025-12-05 13:45:50.671 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:35480 10 6452 1 2025-12-05 13:46:51.110 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43536 10 6452 1 2025-12-05 13:47:33.468 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 13:47:33.387 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 13:47:33.246 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 13:47:33.386 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 13:47:33.462 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 13:47:51.514 00:00:11.361 TCP 1.101.0.1:3000 -> 23.104.0.1:42334 10 6452 1 2025-12-05 13:48:52.913 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42002 10 6452 1 2025-12-05 13:45:11.234 00:05:02.240 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 13:45:11.231 00:05:02.246 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 13:49:53.318 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58118 10 6452 1 2025-12-05 13:50:53.718 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:58414 10 6452 1 2025-12-05 13:51:54.114 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53528 10 6452 1 2025-12-05 13:52:33.784 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 13:52:33.702 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 13:52:33.744 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 13:52:33.620 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 13:52:33.827 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 13:52:54.518 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50394 10 6452 1 2025-12-05 13:53:54.921 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:60362 10 6452 1 2025-12-05 13:54:55.330 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:55528 10 6452 1 2025-12-05 13:51:11.233 00:05:02.244 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 13:51:11.235 00:05:02.239 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 13:55:55.735 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:33890 10 6452 1 2025-12-05 13:56:56.147 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:53408 10 6452 1 2025-12-05 13:57:33.704 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 13:57:33.627 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 13:57:33.258 00:00:00.026 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 13:57:33.620 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 13:57:33.548 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 13:57:56.553 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:49868 10 6452 1 Summary: total flows: 139, total bytes: 414713, total packets: 1017, avg bps: 907, avg pps: 0, avg bpp: 407 Time window: 2025-12-05 12:57:11 - 2025-12-05 13:58:06 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0032s User: 0.0021s Wall: 0.0025s flows/second: 54830.1 Runtime: 0.0026s