Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-05 19:59:26.914 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44446 10 6452 1 2025-12-05 20:00:27.320 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:35018 10 6452 1 2025-12-05 19:57:11.365 00:05:02.221 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 19:57:11.367 00:05:02.217 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 20:01:27.750 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:37190 10 6452 1 2025-12-05 20:02:40.974 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 20:02:40.889 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 20:02:40.909 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 20:02:40.891 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 20:02:28.113 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:40468 10 6452 1 2025-12-05 20:02:41.067 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 20:03:28.519 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:60852 10 6452 1 2025-12-05 20:04:28.881 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:36652 10 6452 1 2025-12-05 20:05:29.301 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47512 10 6452 1 2025-12-05 20:06:29.704 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56228 10 6452 1 2025-12-05 20:03:11.370 00:05:02.222 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 20:03:11.367 00:05:02.228 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 20:07:40.773 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 20:07:40.890 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 20:07:30.120 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:48870 10 6452 1 2025-12-05 20:07:40.937 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 20:07:40.935 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 20:07:41.022 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 20:08:30.519 00:00:10.401 TCP 1.101.0.1:3000 -> 23.104.0.1:53814 12 10375 1 2025-12-05 20:09:30.973 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:42418 10 6452 1 2025-12-05 20:10:31.378 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:34930 10 6452 1 2025-12-05 20:11:31.772 00:00:10.425 TCP 1.101.0.1:3000 -> 23.104.0.1:55152 11 6504 1 2025-12-05 20:12:41.079 00:00:00.040 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 20:12:41.094 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 20:12:41.192 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 20:12:32.238 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:52796 10 6452 1 2025-12-05 20:12:40.995 00:00:00.040 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 20:12:41.269 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 20:09:11.369 00:05:02.221 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 20:09:11.369 00:05:02.225 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 20:13:32.658 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:33908 10 6452 1 2025-12-05 20:14:33.095 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:45948 10 6452 1 2025-12-05 20:15:33.497 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:48366 10 6452 1 2025-12-05 20:16:33.864 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:46584 10 6452 1 2025-12-05 20:17:41.226 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 20:17:41.193 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 20:17:41.235 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 20:17:41.267 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 20:17:34.279 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:42246 10 6452 1 2025-12-05 20:17:41.317 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 20:18:34.707 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55808 10 6452 1 2025-12-05 20:15:11.368 00:05:02.226 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 20:15:11.371 00:05:02.221 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 20:19:35.121 00:00:10.903 TCP 1.101.0.1:3000 -> 23.104.0.1:59672 10 6452 1 2025-12-05 20:20:36.069 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:50066 10 6452 1 2025-12-05 20:21:36.428 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:50750 10 6452 1 2025-12-05 20:22:41.554 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 20:22:41.522 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 20:22:41.340 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 20:22:41.471 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 20:22:41.471 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 20:22:36.831 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57308 10 6452 1 2025-12-05 20:23:37.233 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:34226 10 6452 1 2025-12-05 20:24:37.634 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:57402 10 6452 1 2025-12-05 20:21:11.373 00:05:02.223 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 20:21:11.376 00:05:02.218 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 20:25:38.010 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44060 10 6452 1 2025-12-05 20:26:38.420 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43800 10 6452 1 2025-12-05 20:27:41.573 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 20:27:41.544 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 20:27:41.243 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 20:27:41.489 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 20:27:41.581 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 20:27:38.818 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56874 10 6452 1 2025-12-05 20:28:39.224 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:55386 10 6452 1 2025-12-05 20:29:39.632 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54456 10 6452 1 2025-12-05 20:30:40.048 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47260 10 6452 1 2025-12-05 20:27:11.375 00:05:02.227 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 20:27:11.377 00:05:02.222 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 20:31:40.445 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43848 10 6452 1 2025-12-05 20:32:41.485 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 20:32:41.409 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 20:32:41.466 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 20:32:41.470 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 20:32:41.549 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 20:32:40.849 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:47518 10 6452 1 2025-12-05 20:33:41.277 00:00:10.401 TCP 1.101.0.1:3000 -> 23.104.0.1:44620 12 10375 1 2025-12-05 20:34:41.716 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:50408 10 6452 1 2025-12-05 20:35:42.130 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33622 10 6452 1 2025-12-05 20:36:42.533 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:43020 10 6452 1 2025-12-05 20:33:11.380 00:05:02.223 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 20:33:11.382 00:05:02.218 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 20:37:41.491 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 20:37:41.343 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 20:37:41.499 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 20:37:41.500 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 20:37:41.581 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 20:37:42.945 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:55194 10 6452 1 2025-12-05 20:38:43.356 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:40074 10 6452 1 2025-12-05 20:39:43.760 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:60314 10 6452 1 2025-12-05 20:40:44.170 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:41994 10 6452 1 2025-12-05 20:41:44.538 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:51310 10 6452 1 2025-12-05 20:42:41.553 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 20:42:41.575 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 20:42:41.605 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 20:42:41.470 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 20:42:41.647 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 20:42:44.941 00:00:10.396 TCP 1.101.0.1:3000 -> 23.104.0.1:37260 11 6504 1 2025-12-05 20:39:11.384 00:05:02.217 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 20:39:11.382 00:05:02.222 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 20:43:45.378 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:53876 10 6452 1 2025-12-05 20:44:45.738 00:00:10.880 TCP 1.101.0.1:3000 -> 23.104.0.1:60988 10 6452 1 2025-12-05 20:45:46.655 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:34806 10 6452 1 2025-12-05 20:46:47.018 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44744 10 6452 1 2025-12-05 20:47:41.916 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 20:47:41.927 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 20:47:41.803 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 20:47:41.833 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 20:47:42.006 00:00:00.031 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 20:47:47.426 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:53616 10 6452 1 2025-12-05 20:48:47.794 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57232 10 6452 1 2025-12-05 20:45:11.386 00:05:02.218 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 20:45:11.384 00:05:02.222 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 20:49:48.199 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35390 10 6452 1 2025-12-05 20:50:48.604 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47488 10 6452 1 2025-12-05 20:51:49.008 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:35248 10 6452 1 2025-12-05 20:52:43.126 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 20:52:42.965 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 20:52:42.920 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 20:52:42.926 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 20:52:43.006 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 20:52:49.409 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36434 10 6452 1 2025-12-05 20:53:49.812 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:40834 10 6452 1 2025-12-05 20:54:50.217 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:45790 10 6452 1 2025-12-05 20:51:11.381 00:05:02.225 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 20:51:11.384 00:05:02.220 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 20:55:50.633 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37800 10 6452 1 2025-12-05 20:56:51.038 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:50578 10 6452 1 2025-12-05 20:57:42.230 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 20:57:42.071 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 20:57:41.743 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 20:57:42.149 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 20:57:41.839 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 20:57:51.439 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40326 10 6452 1 Summary: total flows: 139, total bytes: 418498, total packets: 1016, avg bps: 917, avg pps: 0, avg bpp: 411 Time window: 2025-12-05 19:57:11 - 2025-12-05 20:58:01 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0047s User: 0.0012s Wall: 0.0046s flows/second: 30501.6 Runtime: 0.0046s