Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-03 00:59:05.760 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:47610 10 6452 1 2025-12-03 01:00:06.131 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51702 10 6452 1 2025-12-03 01:01:06.536 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:47688 10 6452 1 2025-12-03 01:01:20.254 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 01:01:20.379 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 01:01:20.361 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 01:01:20.333 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 01:01:20.415 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 00:58:09.932 00:05:02.183 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 00:58:09.928 00:05:02.188 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 01:02:06.938 00:00:10.342 TCP 1.101.0.1:3000 -> 23.104.0.1:46124 10 6452 1 2025-12-03 01:03:07.312 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47790 10 6452 1 2025-12-03 01:04:07.712 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45328 10 6452 1 2025-12-03 01:05:08.117 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:32806 10 6452 1 2025-12-03 01:06:08.519 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:54486 10 6452 1 2025-12-03 01:06:19.953 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 01:06:20.239 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 01:06:20.320 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 01:06:20.513 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 01:06:20.597 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 01:07:08.885 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43266 10 6452 1 2025-12-03 01:04:09.931 00:05:02.185 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 01:04:09.930 00:05:02.189 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 01:08:09.292 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:51412 10 6452 1 2025-12-03 01:09:09.695 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:37864 10 6452 1 2025-12-03 01:10:10.067 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:33002 10 6452 1 2025-12-03 01:11:20.547 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 01:11:20.542 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 01:11:10.473 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37800 10 6452 1 2025-12-03 01:11:20.495 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 01:11:20.121 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 01:11:20.463 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 01:12:10.880 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40802 10 6452 1 2025-12-03 01:13:11.281 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:49106 10 6452 1 2025-12-03 01:10:09.931 00:05:02.190 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 01:10:09.933 00:05:02.185 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 01:14:11.681 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:51692 10 6452 1 2025-12-03 01:15:12.053 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:51416 10 6452 1 2025-12-03 01:16:20.587 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 01:16:20.416 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 01:16:20.543 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 01:16:12.473 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:37900 10 6452 1 2025-12-03 01:16:20.635 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 01:16:20.626 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 01:17:12.883 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35692 10 6452 1 2025-12-03 01:18:13.287 00:00:10.441 TCP 1.101.0.1:3000 -> 23.104.0.1:35014 12 10375 1 2025-12-03 01:19:13.766 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:33428 10 6452 1 2025-12-03 01:16:09.938 00:05:02.181 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 01:16:09.936 00:05:02.185 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 01:20:14.180 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35512 10 6452 1 2025-12-03 01:21:20.582 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 01:21:20.579 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 01:21:20.723 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 01:21:20.635 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 01:21:20.720 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 01:21:14.580 00:00:10.957 TCP 1.101.0.1:3000 -> 23.104.0.1:56348 10 6452 1 2025-12-03 01:22:15.578 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:44868 10 6452 1 2025-12-03 01:23:15.939 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:40430 10 6452 1 2025-12-03 01:24:16.358 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56496 10 6452 1 2025-12-03 01:25:16.766 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:56330 10 6452 1 2025-12-03 01:22:09.949 00:05:02.170 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 01:22:09.947 00:05:02.175 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 01:26:20.985 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 01:26:20.791 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 01:26:21.052 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 01:26:20.984 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 01:26:21.068 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 01:26:17.181 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:48102 10 6452 1 2025-12-03 01:27:17.545 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:56154 10 6452 1 2025-12-03 01:28:17.958 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:38254 10 6452 1 2025-12-03 01:29:18.319 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:55686 10 6452 1 2025-12-03 01:30:18.676 00:00:10.416 TCP 1.101.0.1:3000 -> 23.104.0.1:59622 11 6504 1 2025-12-03 01:31:20.731 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 01:31:20.626 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 01:31:20.793 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 01:31:21.009 00:00:00.034 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 01:31:21.092 00:00:00.035 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 01:31:19.131 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:58696 10 6452 1 2025-12-03 01:28:09.951 00:05:02.169 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 01:28:09.948 00:05:02.174 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 01:32:19.498 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:57608 10 6452 1 2025-12-03 01:33:19.901 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:49276 12 6556 1 2025-12-03 01:34:20.318 00:00:15.841 TCP 1.101.0.1:3000 -> 23.104.0.1:43624 10 6452 1 2025-12-03 01:35:26.194 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36008 10 6452 1 2025-12-03 01:36:20.915 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 01:36:20.776 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 01:36:20.924 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 01:36:20.835 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 01:36:21.009 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 01:36:26.596 00:00:11.309 TCP 1.101.0.1:3000 -> 23.104.0.1:54950 10 6452 1 2025-12-03 01:37:27.940 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:49196 10 6452 1 2025-12-03 01:34:09.954 00:05:02.168 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 01:34:09.952 00:05:02.173 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 01:38:28.358 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39592 10 6452 1 2025-12-03 01:39:28.763 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:60430 10 6452 1 2025-12-03 01:40:29.181 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47070 10 6452 1 2025-12-03 01:41:21.151 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 01:41:20.750 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 01:41:20.875 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 01:41:20.987 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 01:41:21.068 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 01:41:29.587 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:51738 10 6452 1 2025-12-03 01:42:29.991 00:00:10.431 TCP 1.101.0.1:3000 -> 23.104.0.1:53442 10 6452 1 2025-12-03 01:43:30.457 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:35450 10 6452 1 2025-12-03 01:40:09.954 00:05:02.171 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 01:40:09.952 00:05:02.176 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 01:44:30.859 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:56110 10 6452 1 2025-12-03 01:45:31.270 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40706 10 6452 1 2025-12-03 01:46:21.645 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 01:46:21.623 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 01:46:21.724 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 01:46:20.945 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 01:46:21.029 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 01:46:31.670 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36712 10 6452 1 2025-12-03 01:47:32.102 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41340 10 6452 1 2025-12-03 01:48:32.509 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:48906 10 6452 1 2025-12-03 01:49:32.921 00:00:11.922 TCP 1.101.0.1:3000 -> 23.104.0.1:46790 10 6452 1 2025-12-03 01:46:09.956 00:05:02.176 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 01:46:09.958 00:05:02.171 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 01:50:34.892 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:55588 10 6452 1 2025-12-03 01:51:21.006 00:00:00.035 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 01:51:21.383 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 01:51:21.355 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 01:51:21.239 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 01:51:21.322 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 01:51:35.271 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:33286 10 6452 1 2025-12-03 01:52:35.677 00:00:10.440 TCP 1.101.0.1:3000 -> 23.104.0.1:54766 12 10369 1 2025-12-03 01:53:36.155 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:46754 10 6452 1 2025-12-03 01:54:36.562 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:34420 10 6452 1 2025-12-03 01:55:36.929 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:59238 10 6452 1 2025-12-03 01:52:09.957 00:05:02.172 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 01:52:09.956 00:05:02.176 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 01:56:21.427 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 01:56:21.371 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 01:56:21.311 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 01:56:21.463 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 01:56:21.546 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 01:56:37.353 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:55922 10 6452 1 2025-12-03 01:57:37.762 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:45112 10 6452 1 2025-12-03 01:58:38.130 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45688 10 6452 1 Summary: total flows: 140, total bytes: 424996, total packets: 1027, avg bps: 934, avg pps: 0, avg bpp: 413 Time window: 2025-12-03 00:58:09 - 2025-12-03 01:58:48 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0042s User: 0.0010s Wall: 0.0039s flows/second: 35980.5 Runtime: 0.0039s