Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-03 03:59:27.773 00:00:11.989 TCP 1.101.0.1:3000 -> 23.104.0.1:52024 10 6452 1 2025-12-03 04:00:29.799 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:49254 10 6452 1 2025-12-03 04:01:23.841 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 04:01:23.832 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 04:01:23.916 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 04:01:23.836 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 04:01:23.914 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 04:01:30.207 00:00:10.461 TCP 1.101.0.1:3000 -> 23.104.0.1:45772 10 6452 1 2025-12-03 03:58:09.995 00:05:02.171 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 03:58:09.992 00:05:02.177 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 04:02:30.704 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44758 10 6452 1 2025-12-03 04:03:31.114 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58666 10 6452 1 2025-12-03 04:04:31.524 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39906 10 6452 1 2025-12-03 04:05:31.934 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:44760 10 6452 1 2025-12-03 04:06:23.815 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 04:06:23.923 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 04:06:23.919 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 04:06:23.938 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 04:06:23.899 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 04:06:32.356 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:52476 10 6452 1 2025-12-03 04:07:32.771 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:59276 10 6452 1 2025-12-03 04:04:09.994 00:05:02.177 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 04:04:09.997 00:05:02.171 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 04:08:33.188 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:54882 10 6452 1 2025-12-03 04:09:33.584 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:36898 10 6452 1 2025-12-03 04:10:33.949 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55758 10 6452 1 2025-12-03 04:11:24.100 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 04:11:23.995 00:00:00.045 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 04:11:23.825 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 04:11:23.900 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 04:11:23.982 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 04:11:34.355 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37824 10 6452 1 2025-12-03 04:12:34.757 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:51716 10 6452 1 2025-12-03 04:13:35.186 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43354 10 6452 1 2025-12-03 04:10:09.999 00:05:02.170 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 04:10:09.996 00:05:02.176 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 04:14:35.588 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:46060 10 6452 1 2025-12-03 04:15:35.996 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:35884 10 6452 1 2025-12-03 04:16:24.234 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 04:16:24.312 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 04:16:24.262 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 04:16:24.234 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 04:16:24.316 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 04:16:36.376 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:54830 10 6452 1 2025-12-03 04:17:36.776 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:39452 10 6452 1 2025-12-03 04:18:37.183 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:52280 10 6452 1 2025-12-03 04:19:37.547 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39212 10 6452 1 2025-12-03 04:16:10.000 00:05:02.172 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 04:16:09.996 00:05:02.178 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 04:20:37.946 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:41146 10 6452 1 2025-12-03 04:21:24.300 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 04:21:24.224 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 04:21:24.089 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 04:21:24.347 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 04:21:24.429 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 04:21:38.318 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:47682 10 6452 1 2025-12-03 04:22:38.676 00:00:10.441 TCP 1.101.0.1:3000 -> 23.104.0.1:40518 12 10369 1 2025-12-03 04:23:39.150 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59350 10 6452 1 2025-12-03 04:24:39.566 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:45966 10 6452 1 2025-12-03 04:25:40.006 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36956 10 6452 1 2025-12-03 04:22:10.002 00:05:02.177 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 04:22:09.997 00:05:02.183 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 04:26:24.533 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 04:26:24.421 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 04:26:24.363 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 04:26:24.493 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 04:26:24.577 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 04:26:40.410 00:00:10.647 TCP 1.101.0.1:3000 -> 23.104.0.1:43388 10 6452 1 2025-12-03 04:27:41.112 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41760 10 6452 1 2025-12-03 04:28:41.518 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:53492 10 6452 1 2025-12-03 04:29:41.923 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:34544 10 6452 1 2025-12-03 04:30:42.304 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51122 10 6452 1 2025-12-03 04:31:24.519 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 04:31:24.442 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 04:31:24.551 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 04:31:24.390 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 04:31:24.436 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 04:31:42.706 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:45092 10 6452 1 2025-12-03 04:28:10.000 00:05:02.181 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 04:28:10.003 00:05:02.176 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 04:32:43.114 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36976 10 6452 1 2025-12-03 04:33:43.518 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:47236 10 6452 1 2025-12-03 04:34:43.876 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:36888 10 6452 1 2025-12-03 04:35:44.244 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41176 10 6452 1 2025-12-03 04:36:24.958 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 04:36:24.875 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 04:36:24.952 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 04:36:24.760 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 04:36:24.875 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 04:36:44.653 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:49728 10 6452 1 2025-12-03 04:37:45.024 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43826 10 6452 1 2025-12-03 04:34:10.002 00:05:02.178 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 04:34:10.000 00:05:02.183 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 04:38:45.428 00:00:11.101 TCP 1.101.0.1:3000 -> 23.104.0.1:58644 10 6452 1 2025-12-03 04:39:46.569 00:00:10.619 TCP 1.101.0.1:3000 -> 23.104.0.1:39092 10 6452 1 2025-12-03 04:40:47.227 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:44394 10 6452 1 2025-12-03 04:41:24.942 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 04:41:24.899 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 04:41:24.549 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 04:41:24.859 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 04:41:24.940 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 04:41:47.634 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46502 10 6452 1 2025-12-03 04:42:48.038 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36776 10 6452 1 2025-12-03 04:43:48.443 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:45868 10 6452 1 2025-12-03 04:40:10.001 00:05:02.186 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 04:40:10.004 00:05:02.181 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 04:44:48.844 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:40414 10 6452 1 2025-12-03 04:45:49.280 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:35122 10 6452 1 2025-12-03 04:46:24.883 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 04:46:24.717 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 04:46:24.914 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 04:46:24.742 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 04:46:24.802 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 04:46:49.733 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:40696 10 6452 1 2025-12-03 04:47:50.142 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:34288 10 6452 1 2025-12-03 04:48:50.557 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:41290 10 6452 1 2025-12-03 04:49:50.960 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56400 10 6452 1 2025-12-03 04:46:10.006 00:05:02.183 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 04:46:10.009 00:05:02.177 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 04:50:51.368 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47802 10 6452 1 2025-12-03 04:51:24.751 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 04:51:25.307 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 04:51:25.106 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 04:51:25.224 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 04:51:25.166 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 04:51:51.773 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:53706 10 6452 1 2025-12-03 04:52:52.189 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:44678 10 6452 1 2025-12-03 04:53:52.594 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:48426 10 6452 1 2025-12-03 04:54:53.002 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:59838 10 6452 1 2025-12-03 04:55:53.412 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:44674 10 6452 1 2025-12-03 04:52:10.032 00:05:02.155 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 04:52:10.031 00:05:02.159 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 04:56:24.971 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 04:56:24.975 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 04:56:24.905 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 04:56:25.066 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 04:56:24.987 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 04:56:53.813 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:39870 10 6452 1 2025-12-03 04:57:54.184 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:52718 10 6452 1 Summary: total flows: 139, total bytes: 414465, total packets: 1012, avg bps: 922, avg pps: 0, avg bpp: 409 Time window: 2025-12-03 03:58:09 - 2025-12-03 04:58:04 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0058s User: 0.0010s Wall: 0.0028s flows/second: 50255.0 Runtime: 0.0028s