Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-05 16:59:12.790 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:59530 10 6452 1 2025-12-05 17:00:13.202 00:00:10.714 TCP 1.101.0.1:3000 -> 23.104.0.1:47808 10 6452 1 2025-12-05 16:57:11.298 00:05:02.235 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 16:57:11.301 00:05:02.230 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 17:01:13.954 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:60234 10 6452 1 2025-12-05 17:02:14.366 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:44816 10 6452 1 2025-12-05 17:02:37.267 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 17:02:37.092 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 17:02:37.102 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 17:02:37.184 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 17:02:37.408 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 17:03:14.774 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:35984 10 6452 1 2025-12-05 17:04:15.139 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39142 10 6452 1 2025-12-05 17:05:15.541 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:58910 10 6452 1 2025-12-05 17:06:15.942 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:42858 10 6452 1 2025-12-05 17:03:11.299 00:05:02.235 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 17:03:11.302 00:05:02.230 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 17:07:16.368 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:50338 10 6452 1 2025-12-05 17:07:37.325 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 17:07:37.406 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 17:07:37.381 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 17:07:37.243 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 17:07:37.409 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 17:08:16.806 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:54202 10 6452 1 2025-12-05 17:09:17.222 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:52900 10 6452 1 2025-12-05 17:10:17.596 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:50712 10 6452 1 2025-12-05 17:11:18.007 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:35422 10 6452 1 2025-12-05 17:12:18.372 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:40096 10 6452 1 2025-12-05 17:12:37.598 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 17:12:37.357 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 17:12:37.480 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 17:12:37.515 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 17:12:37.336 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 17:09:11.304 00:05:02.228 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 17:09:11.301 00:05:02.233 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 17:13:18.735 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59366 10 6452 1 2025-12-05 17:14:19.136 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51870 10 6452 1 2025-12-05 17:15:19.537 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:42378 10 6452 1 2025-12-05 17:16:19.963 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55310 10 6452 1 2025-12-05 17:17:20.365 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56634 10 6452 1 2025-12-05 17:17:37.541 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 17:17:37.544 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 17:17:37.644 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 17:17:37.543 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 17:17:37.726 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 17:18:20.770 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:48468 10 6452 1 2025-12-05 17:15:11.308 00:05:02.225 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 17:15:11.306 00:05:02.230 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 17:19:21.142 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60730 10 6452 1 2025-12-05 17:20:21.554 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:34022 10 6452 1 2025-12-05 17:21:21.924 00:00:10.346 TCP 1.101.0.1:3000 -> 23.104.0.1:45214 10 6452 1 2025-12-05 17:22:22.304 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:58468 10 6452 1 2025-12-05 17:22:38.144 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 17:22:38.056 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 17:22:38.102 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 17:22:38.061 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 17:22:38.162 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 17:23:22.665 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54820 10 6452 1 2025-12-05 17:24:23.099 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:32782 10 6452 1 2025-12-05 17:21:11.310 00:05:02.227 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 17:21:11.308 00:05:02.233 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 17:25:23.503 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53354 10 6452 1 2025-12-05 17:26:23.909 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35120 12 6556 1 2025-12-05 17:27:24.322 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44210 10 6452 1 2025-12-05 17:27:37.675 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 17:27:37.766 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 17:27:37.778 00:00:00.027 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 17:27:37.777 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 17:27:37.862 00:00:00.026 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 17:28:24.727 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:45086 10 6452 1 2025-12-05 17:29:25.133 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53952 10 6452 1 2025-12-05 17:30:25.537 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:34378 10 6452 1 2025-12-05 17:27:11.307 00:05:02.235 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 17:27:11.310 00:05:02.229 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 17:31:25.963 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:36590 10 6452 1 2025-12-05 17:32:38.049 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 17:32:37.966 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 17:32:37.930 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 17:32:26.369 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56014 10 6452 1 2025-12-05 17:32:37.879 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 17:32:37.931 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 17:33:26.770 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:54934 10 6452 1 2025-12-05 17:34:27.177 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:48676 10 6452 1 2025-12-05 17:35:27.576 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40184 10 6452 1 2025-12-05 17:36:27.983 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:56634 10 6452 1 2025-12-05 17:33:11.311 00:05:02.232 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 17:33:11.314 00:05:02.226 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 17:37:38.147 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 17:37:37.970 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 17:37:28.386 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49528 10 6452 1 2025-12-05 17:37:37.835 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 17:37:38.064 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 17:37:37.786 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 17:38:28.789 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:53166 10 6452 1 2025-12-05 17:39:29.200 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:45380 10 6452 1 2025-12-05 17:40:29.564 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:40930 10 6452 1 2025-12-05 17:41:30.005 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:37296 10 6452 1 2025-12-05 17:42:38.135 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 17:42:38.127 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 17:42:37.966 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 17:42:30.410 00:00:10.317 TCP 1.101.0.1:3000 -> 23.104.0.1:43248 10 6452 1 2025-12-05 17:42:38.053 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 17:42:38.054 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 17:39:11.316 00:05:02.225 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 17:39:11.313 00:05:02.231 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 17:43:30.766 00:00:10.453 TCP 1.101.0.1:3000 -> 23.104.0.1:55186 12 10369 1 2025-12-05 17:44:31.253 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:42348 10 6452 1 2025-12-05 17:45:31.666 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:60586 10 6452 1 2025-12-05 17:46:32.102 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:44640 10 6452 1 2025-12-05 17:47:38.375 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 17:47:38.162 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 17:47:38.155 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 17:47:38.156 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 17:47:38.239 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 17:47:32.512 00:00:11.055 TCP 1.101.0.1:3000 -> 23.104.0.1:38166 11 6504 1 2025-12-05 17:48:33.606 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58502 10 6452 1 2025-12-05 17:45:11.318 00:05:02.230 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 17:45:11.320 00:05:02.225 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 17:49:34.008 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39692 10 6452 1 2025-12-05 17:50:34.415 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59398 10 6452 1 2025-12-05 17:51:34.820 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49420 10 6452 1 2025-12-05 17:52:38.373 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 17:52:38.407 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 17:52:38.311 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 17:52:38.291 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 17:52:38.408 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 17:52:35.222 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50256 10 6452 1 2025-12-05 17:53:35.623 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:34224 10 6452 1 2025-12-05 17:54:35.988 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:53378 10 6452 1 2025-12-05 17:51:11.320 00:05:02.230 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 17:51:11.323 00:05:02.225 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 17:55:36.395 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:44618 10 6452 1 2025-12-05 17:56:36.762 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:44178 10 6452 1 2025-12-05 17:57:38.351 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 17:57:38.396 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 17:57:38.337 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 17:57:38.337 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 17:57:38.420 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 17:57:37.174 00:00:11.087 TCP 1.101.0.1:3000 -> 23.104.0.1:58288 10 6452 1 2025-12-05 17:58:38.299 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:49166 10 6452 1 Summary: total flows: 140, total bytes: 421073, total packets: 1025, avg bps: 911, avg pps: 0, avg bpp: 410 Time window: 2025-12-05 16:57:11 - 2025-12-05 17:58:48 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0026s User: 0.0026s Wall: 0.0026s flows/second: 54603.2 Runtime: 0.0026s