Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-05 15:58:46.223 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56498 10 6452 1 2025-12-05 15:59:46.638 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:38844 10 6452 1 2025-12-05 16:00:47.058 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:48652 10 6452 1 2025-12-05 15:57:11.275 00:05:02.240 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 15:57:11.273 00:05:02.246 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 16:01:47.419 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:35038 10 6452 1 2025-12-05 16:02:36.226 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 16:02:36.083 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 16:02:36.123 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 16:02:36.144 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 16:02:36.088 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 16:02:47.826 00:00:10.399 TCP 1.101.0.1:3000 -> 23.104.0.1:41926 10 6452 1 2025-12-05 16:03:48.261 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:60510 10 6452 1 2025-12-05 16:04:48.629 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:54820 10 6452 1 2025-12-05 16:05:48.993 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:37306 10 6452 1 2025-12-05 16:06:49.404 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59172 10 6452 1 2025-12-05 16:03:11.274 00:05:02.246 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 16:03:11.277 00:05:02.241 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 16:07:35.892 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 16:07:35.946 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 16:07:36.323 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 16:07:36.189 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 16:07:36.241 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 16:07:49.806 00:00:10.353 TCP 1.101.0.1:3000 -> 23.104.0.1:36054 10 6452 1 2025-12-05 16:08:50.186 00:00:10.448 TCP 1.101.0.1:3000 -> 23.104.0.1:41422 12 10375 1 2025-12-05 16:09:50.670 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48560 10 6452 1 2025-12-05 16:10:51.098 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:56054 10 6452 1 2025-12-05 16:11:51.466 00:00:12.703 TCP 1.101.0.1:3000 -> 23.104.0.1:38274 10 6452 1 2025-12-05 16:12:36.292 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 16:12:36.289 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 16:12:36.294 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 16:12:36.209 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 16:12:36.338 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 16:12:54.223 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:45812 10 6452 1 2025-12-05 16:09:11.277 00:05:02.242 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 16:09:11.275 00:05:02.247 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 16:13:54.632 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:52944 10 6452 1 2025-12-05 16:14:54.992 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:40366 10 6452 1 2025-12-05 16:15:55.406 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34738 10 6452 1 2025-12-05 16:16:55.811 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:39366 12 6556 1 2025-12-05 16:17:36.582 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 16:17:36.628 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 16:17:36.698 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 16:17:36.582 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 16:17:36.781 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 16:17:56.215 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:33626 10 6452 1 2025-12-05 16:18:56.624 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:37548 10 6452 1 2025-12-05 16:15:11.279 00:05:02.244 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 16:15:11.276 00:05:02.249 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 16:19:56.989 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:51522 10 6452 1 2025-12-05 16:20:57.395 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:33482 10 6452 1 2025-12-05 16:21:57.806 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:59070 10 6452 1 2025-12-05 16:22:36.474 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 16:22:36.559 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 16:22:36.508 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 16:22:36.391 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 16:22:36.679 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 16:22:58.220 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55964 10 6452 1 2025-12-05 16:23:58.623 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:50944 10 6452 1 2025-12-05 16:24:58.980 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:56712 10 6452 1 2025-12-05 16:21:11.286 00:05:02.238 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 16:21:11.289 00:05:02.233 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 16:25:59.390 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:34048 10 6452 1 2025-12-05 16:26:59.800 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:58690 10 6452 1 2025-12-05 16:27:36.582 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 16:27:36.544 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 16:27:36.422 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 16:27:36.700 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 16:27:36.505 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 16:28:00.202 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:46944 10 6452 1 2025-12-05 16:29:00.572 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:37094 10 6452 1 2025-12-05 16:30:00.983 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49736 10 6452 1 2025-12-05 16:27:11.286 00:05:02.240 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 16:31:01.387 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:50746 10 6452 1 2025-12-05 16:27:11.290 00:05:02.235 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 16:32:01.799 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:40758 10 6452 1 2025-12-05 16:32:36.634 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 16:32:36.294 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 16:32:36.758 00:00:00.026 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 16:32:36.630 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 16:32:36.840 00:00:00.027 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 16:33:02.200 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:38428 10 6452 1 2025-12-05 16:34:02.606 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:52658 10 6452 1 2025-12-05 16:35:03.011 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52270 10 6452 1 2025-12-05 16:36:03.414 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:54018 10 6452 1 2025-12-05 16:37:03.794 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:40002 10 6452 1 2025-12-05 16:33:11.292 00:05:02.233 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 16:33:11.290 00:05:02.238 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 16:37:36.967 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 16:37:36.659 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 16:37:36.615 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 16:37:36.822 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 16:37:36.698 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 16:38:04.192 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:46462 10 6452 1 2025-12-05 16:39:04.597 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:55870 10 6452 1 2025-12-05 16:40:05.003 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:50312 10 6452 1 2025-12-05 16:41:05.413 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:56326 10 6452 1 2025-12-05 16:42:05.822 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54434 10 6452 1 2025-12-05 16:42:36.710 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 16:42:36.825 00:00:00.030 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 16:42:36.725 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 16:42:36.626 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 16:42:36.730 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 16:39:11.291 00:05:02.239 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 16:39:11.294 00:05:02.234 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 16:43:06.228 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:60848 10 6452 1 2025-12-05 16:44:06.640 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53164 10 6452 1 2025-12-05 16:45:07.056 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:41280 10 6452 1 2025-12-05 16:46:07.417 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38276 10 6452 1 2025-12-05 16:47:07.827 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:45988 10 6452 1 2025-12-05 16:47:36.969 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 16:47:37.004 00:00:00.046 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 16:47:37.261 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 16:47:36.832 00:00:00.030 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 16:47:37.343 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 16:48:08.195 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:33188 10 6452 1 2025-12-05 16:45:11.294 00:05:02.238 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 16:45:11.294 00:05:02.233 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 16:49:08.558 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48796 10 6452 1 2025-12-05 16:50:08.965 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:41900 10 6452 1 2025-12-05 16:51:09.370 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41304 10 6452 1 2025-12-05 16:52:09.783 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60752 10 6452 1 2025-12-05 16:52:37.246 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 16:52:37.164 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 16:52:37.061 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 16:52:37.163 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 16:52:37.299 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 16:53:10.185 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:38430 10 6452 1 2025-12-05 16:54:10.588 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35544 10 6452 1 2025-12-05 16:51:11.294 00:05:02.238 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 16:51:11.296 00:05:02.233 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 16:55:10.991 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37844 10 6452 1 2025-12-05 16:56:11.396 00:00:10.576 TCP 1.101.0.1:3000 -> 23.104.0.1:41308 10 6452 1 2025-12-05 16:57:12.011 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:44638 10 6452 1 2025-12-05 16:57:37.333 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 16:57:37.157 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 16:57:37.201 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 16:57:37.251 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 16:57:37.252 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 16:58:12.375 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:48932 10 6452 1 Summary: total flows: 140, total bytes: 421027, total packets: 1024, avg bps: 917, avg pps: 0, avg bpp: 411 Time window: 2025-12-05 15:57:11 - 2025-12-05 16:58:22 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0037s User: 0.0028s Wall: 0.0027s flows/second: 50968.0 Runtime: 0.0028s