Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-04 04:59:04.382 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:32934 10 6452 1 2025-12-04 05:00:04.786 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42068 10 6452 1 2025-12-04 05:01:05.183 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:40586 10 6452 1 2025-12-04 05:01:54.300 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 05:01:54.298 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 05:01:53.916 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 05:01:54.218 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 05:01:54.303 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 04:58:10.498 00:05:02.166 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 04:58:10.502 00:05:02.160 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 05:02:05.546 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34274 10 6452 1 2025-12-04 05:03:05.947 00:00:11.613 TCP 1.101.0.1:3000 -> 23.104.0.1:44588 10 6452 1 2025-12-04 05:04:07.593 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:34836 10 6452 1 2025-12-04 05:05:07.993 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:35000 10 6452 1 2025-12-04 05:06:08.361 00:00:16.352 TCP 1.101.0.1:3000 -> 23.104.0.1:59508 10 6452 1 2025-12-04 05:06:54.301 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 05:06:54.281 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 05:06:54.221 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 05:06:53.607 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 05:06:54.220 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 05:07:14.753 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:57580 10 6452 1 2025-12-04 05:04:10.504 00:05:02.159 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 05:04:10.502 00:05:02.164 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 05:08:15.182 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:50402 10 6452 1 2025-12-04 05:09:15.594 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:43840 10 6452 1 2025-12-04 05:10:15.962 00:00:11.107 TCP 1.101.0.1:3000 -> 23.104.0.1:43718 10 6452 1 2025-12-04 05:11:17.108 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:37556 10 6452 1 2025-12-04 05:11:54.232 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 05:11:54.000 00:00:00.050 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 05:11:53.982 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 05:11:54.237 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 05:11:54.320 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 05:12:17.464 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59386 10 6452 1 2025-12-04 05:13:17.868 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:38368 10 6452 1 2025-12-04 05:10:10.505 00:05:02.159 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 05:10:10.503 00:05:02.164 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 05:14:18.277 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34390 10 6452 1 2025-12-04 05:15:18.688 00:00:10.792 TCP 1.101.0.1:3000 -> 23.104.0.1:42816 10 6452 1 2025-12-04 05:16:19.521 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33018 10 6452 1 2025-12-04 05:16:54.422 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 05:16:54.337 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 05:16:54.250 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 05:16:54.284 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 05:16:54.338 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 05:17:19.922 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:36048 10 6452 1 2025-12-04 05:18:20.304 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52960 10 6452 1 2025-12-04 05:19:20.705 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57160 10 6452 1 2025-12-04 05:16:10.503 00:05:02.167 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 05:16:10.507 00:05:02.161 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 05:20:21.111 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58146 10 6452 1 2025-12-04 05:21:21.515 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:35826 10 6452 1 2025-12-04 05:21:54.365 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 05:21:54.516 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 05:21:54.397 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 05:21:54.314 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 05:21:54.283 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 05:22:21.881 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39390 10 6452 1 2025-12-04 05:23:22.290 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52990 10 6452 1 2025-12-04 05:24:22.691 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36592 10 6452 1 2025-12-04 05:25:23.111 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:45056 10 6452 1 2025-12-04 05:22:10.509 00:05:02.161 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 05:22:10.505 00:05:02.166 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 05:26:23.515 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56522 10 6452 1 2025-12-04 05:26:54.709 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 05:26:54.512 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 05:26:54.423 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 05:26:54.626 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 05:26:54.518 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 05:27:23.917 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:47816 10 6452 1 2025-12-04 05:28:24.281 00:00:10.446 TCP 1.101.0.1:3000 -> 23.104.0.1:46928 12 10369 1 2025-12-04 05:29:24.775 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:41116 10 6452 1 2025-12-04 05:30:25.137 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:32890 10 6452 1 2025-12-04 05:31:25.544 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:46684 10 6452 1 2025-12-04 05:31:54.562 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 05:31:54.491 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 05:31:54.342 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 05:31:54.599 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 05:31:54.681 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 05:28:10.511 00:05:02.160 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 05:28:10.509 00:05:02.165 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 05:32:25.909 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:57792 12 6556 1 2025-12-04 05:33:26.318 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:39602 10 6452 1 2025-12-04 05:34:26.722 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:58624 10 6452 1 2025-12-04 05:35:27.134 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:60394 10 6452 1 2025-12-04 05:36:27.535 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:42878 10 6452 1 2025-12-04 05:36:54.505 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 05:36:54.634 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 05:36:54.280 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 05:36:54.508 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 05:36:54.591 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 05:37:27.931 00:00:10.350 TCP 1.101.0.1:3000 -> 23.104.0.1:41096 10 6452 1 2025-12-04 05:34:10.515 00:05:02.161 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 05:34:10.517 00:05:02.157 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 05:38:28.319 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34138 10 6452 1 2025-12-04 05:39:28.726 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:47724 10 6452 1 2025-12-04 05:40:29.143 00:00:10.835 TCP 1.101.0.1:3000 -> 23.104.0.1:32772 10 6452 1 2025-12-04 05:41:30.021 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:60014 10 6452 1 2025-12-04 05:41:54.844 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 05:41:54.845 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 05:41:54.660 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 05:41:54.795 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 05:41:54.878 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 05:42:30.378 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46302 10 6452 1 2025-12-04 05:43:30.780 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53996 10 6452 1 2025-12-04 05:40:10.516 00:05:02.163 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 05:40:10.519 00:05:02.158 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 05:44:31.184 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45750 12 6556 1 2025-12-04 05:45:31.596 00:00:10.473 TCP 1.101.0.1:3000 -> 23.104.0.1:33386 10 6452 1 2025-12-04 05:46:32.110 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56084 10 6452 1 2025-12-04 05:46:55.316 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 05:46:55.229 00:00:00.028 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 05:46:54.975 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 05:46:55.215 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 05:46:55.300 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 05:47:32.511 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39700 10 6452 1 2025-12-04 05:48:32.915 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56482 10 6452 1 2025-12-04 05:49:33.323 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:51426 10 6452 1 2025-12-04 05:46:10.517 00:05:02.163 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 05:46:10.521 00:05:02.158 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 05:50:33.685 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:53580 10 6452 1 2025-12-04 05:51:34.107 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:40994 10 6452 1 2025-12-04 05:51:54.861 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 05:51:54.769 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 05:51:54.825 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 05:51:54.779 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 05:51:55.005 00:00:00.032 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 05:52:34.522 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:43586 10 6452 1 2025-12-04 05:53:34.946 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:46752 10 6452 1 2025-12-04 05:54:35.358 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39780 10 6452 1 2025-12-04 05:55:35.762 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:50972 10 6452 1 2025-12-04 05:52:10.521 00:05:02.159 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 05:52:10.518 00:05:02.164 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 05:56:55.084 00:00:00.041 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 05:56:36.178 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48468 10 6452 1 2025-12-04 05:56:54.839 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 05:56:54.838 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 05:56:55.005 00:00:00.043 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 05:56:55.002 00:00:00.040 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 05:57:36.582 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:35556 10 6452 1 2025-12-04 05:58:36.991 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:47146 10 6452 1 Summary: total flows: 140, total bytes: 421125, total packets: 1026, avg bps: 926, avg pps: 0, avg bpp: 410 Time window: 2025-12-04 04:58:10 - 2025-12-04 05:58:47 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0055s User: 0.0000s Wall: 0.0045s flows/second: 30965.7 Runtime: 0.0045s