Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-04 00:58:59.022 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:44050 10 6452 1 2025-12-04 00:59:59.390 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:59902 10 6452 1 2025-12-04 01:00:59.792 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:54956 10 6452 1 2025-12-04 01:01:49.312 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 01:01:49.229 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 01:01:49.406 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 01:01:49.292 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 01:01:49.077 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 00:58:10.436 00:05:02.158 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 01:02:00.153 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:44500 10 6452 1 2025-12-04 00:58:10.434 00:05:02.163 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 01:03:00.515 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:34694 10 6452 1 2025-12-04 01:04:00.924 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:41234 10 6452 1 2025-12-04 01:05:01.338 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:44300 10 6452 1 2025-12-04 01:06:01.744 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53620 10 6452 1 2025-12-04 01:06:49.952 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 01:06:50.430 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 01:06:50.421 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 01:06:50.430 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 01:06:50.513 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 01:07:02.150 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60514 10 6452 1 2025-12-04 01:04:10.437 00:05:02.161 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 01:04:10.439 00:05:02.157 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 01:08:02.553 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53592 10 6452 1 2025-12-04 01:09:02.956 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48992 10 6452 1 2025-12-04 01:10:03.361 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:45912 10 6452 1 2025-12-04 01:11:03.732 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:58438 10 6452 1 2025-12-04 01:11:49.357 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 01:11:49.435 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 01:11:48.974 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 01:11:49.298 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 01:11:49.381 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 01:12:04.147 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:34128 10 6452 1 2025-12-04 01:13:04.554 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:33726 10 6452 1 2025-12-04 01:10:10.441 00:05:02.157 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 01:10:10.439 00:05:02.161 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 01:14:04.917 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57350 10 6452 1 2025-12-04 01:15:05.320 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:54286 10 6452 1 2025-12-04 01:16:05.728 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:33536 10 6452 1 2025-12-04 01:16:49.414 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 01:16:49.135 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 01:16:48.980 00:00:00.027 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 01:16:49.343 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 01:16:49.427 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 01:17:06.141 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:45470 10 6452 1 2025-12-04 01:18:06.541 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:45064 10 6452 1 2025-12-04 01:19:06.946 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:60182 10 6452 1 2025-12-04 01:16:10.442 00:05:02.157 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 01:16:10.440 00:05:02.161 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 01:20:07.360 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58304 10 6452 1 2025-12-04 01:21:07.764 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:40516 10 6452 1 2025-12-04 01:21:49.599 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 01:21:49.493 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 01:21:49.502 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 01:21:49.671 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 01:21:49.755 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 01:22:08.191 00:00:10.346 TCP 1.101.0.1:3000 -> 23.104.0.1:40230 10 6452 1 2025-12-04 01:23:08.576 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45462 10 6452 1 2025-12-04 01:24:08.974 00:00:10.397 TCP 1.101.0.1:3000 -> 23.104.0.1:50888 10 6452 1 2025-12-04 01:25:09.407 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:50370 10 6452 1 2025-12-04 01:22:10.447 00:05:02.153 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 01:22:10.442 00:05:02.160 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 01:26:09.832 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:55466 10 6452 1 2025-12-04 01:26:49.491 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 01:26:49.523 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 01:26:49.706 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 01:26:49.650 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 01:26:49.787 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 01:27:10.255 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:46710 10 6452 1 2025-12-04 01:28:10.657 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48248 10 6452 1 2025-12-04 01:29:11.077 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:42200 10 6452 1 2025-12-04 01:30:11.485 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49776 10 6452 1 2025-12-04 01:31:11.889 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:54610 10 6452 1 2025-12-04 01:31:49.574 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 01:31:49.640 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 01:31:49.525 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 01:31:49.392 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 01:31:49.476 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 01:28:10.445 00:05:02.161 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 01:28:10.447 00:05:02.156 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 01:32:12.293 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59592 10 6452 1 2025-12-04 01:33:12.697 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:40936 10 6452 1 2025-12-04 01:34:13.067 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39678 10 6452 1 2025-12-04 01:35:13.474 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:39064 10 6452 1 2025-12-04 01:36:13.884 00:00:10.350 TCP 1.101.0.1:3000 -> 23.104.0.1:38756 10 6452 1 2025-12-04 01:36:49.975 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 01:36:49.856 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 01:36:49.812 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 01:36:49.784 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 01:36:49.892 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 01:37:14.268 00:00:10.345 TCP 1.101.0.1:3000 -> 23.104.0.1:33184 10 6452 1 2025-12-04 01:34:10.447 00:05:02.157 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 01:34:10.445 00:05:02.162 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 01:38:14.658 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57136 10 6452 1 2025-12-04 01:39:15.093 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:38254 10 6452 1 2025-12-04 01:40:15.499 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:38182 10 6452 1 2025-12-04 01:41:15.918 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34808 10 6452 1 2025-12-04 01:41:49.785 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 01:41:49.680 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 01:41:50.083 00:00:00.039 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 01:41:50.120 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 01:41:50.001 00:00:00.038 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 01:42:16.326 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:38218 10 6452 1 2025-12-04 01:43:16.691 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:37708 10 6452 1 2025-12-04 01:40:10.447 00:05:02.162 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 01:40:10.449 00:05:02.157 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 01:44:17.111 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:45440 10 6452 1 2025-12-04 01:45:17.512 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:39352 10 6452 1 2025-12-04 01:46:17.938 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:54948 10 6452 1 2025-12-04 01:46:49.968 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 01:46:49.807 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 01:46:49.938 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 01:46:49.731 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 01:46:49.814 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 01:47:18.318 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:45268 10 6452 1 2025-12-04 01:48:18.742 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52968 10 6452 1 2025-12-04 01:49:19.146 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:57614 10 6452 1 2025-12-04 01:46:10.450 00:05:02.158 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 01:46:10.448 00:05:02.163 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 01:50:19.514 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60406 10 6452 1 2025-12-04 01:51:19.915 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55838 10 6452 1 2025-12-04 01:51:49.896 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 01:51:49.960 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 01:51:50.220 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 01:51:50.051 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 01:51:50.133 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 01:52:20.324 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:34562 10 6452 1 2025-12-04 01:53:20.739 00:00:10.442 TCP 1.101.0.1:3000 -> 23.104.0.1:43370 12 10369 1 2025-12-04 01:54:21.224 00:00:10.470 TCP 1.101.0.1:3000 -> 23.104.0.1:35246 10 6452 1 2025-12-04 01:55:21.735 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:39670 10 6452 1 2025-12-04 01:52:10.451 00:05:02.159 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 01:52:10.448 00:05:02.164 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 01:56:22.146 00:00:10.578 TCP 1.101.0.1:3000 -> 23.104.0.1:32790 10 6452 1 2025-12-04 01:56:50.263 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 01:56:50.174 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 01:56:50.361 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 01:56:50.066 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 01:56:50.181 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 01:57:22.765 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:35714 10 6452 1 2025-12-04 01:58:23.176 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:55388 10 6452 1 Summary: total flows: 140, total bytes: 420917, total packets: 1022, avg bps: 929, avg pps: 0, avg bpp: 411 Time window: 2025-12-04 00:58:10 - 2025-12-04 01:58:33 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0020s User: 0.0031s Wall: 0.0022s flows/second: 64365.1 Runtime: 0.0022s