Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-05 00:59:02.161 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55582 10 6452 1 2025-12-05 01:00:02.567 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58686 10 6452 1 2025-12-05 01:01:02.980 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:42228 10 6452 1 2025-12-05 00:58:10.939 00:05:02.214 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 01:02:03.400 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:53282 10 6452 1 2025-12-05 00:58:10.941 00:05:02.208 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 01:02:17.784 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 01:02:17.884 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 01:02:18.165 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 01:02:17.928 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 01:02:17.702 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 01:03:03.806 00:00:10.407 TCP 1.101.0.1:3000 -> 23.104.0.1:36248 12 10375 1 2025-12-05 01:04:04.252 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54532 10 6452 1 2025-12-05 01:05:04.658 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:51320 10 6452 1 2025-12-05 01:06:05.063 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:38504 10 6452 1 2025-12-05 01:07:18.098 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 01:07:05.465 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:45496 10 6452 1 2025-12-05 01:07:18.096 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 01:07:18.111 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 01:07:17.979 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 01:07:18.062 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 01:04:10.941 00:05:02.213 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 01:04:10.944 00:05:02.208 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 01:08:05.864 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:41088 10 6452 1 2025-12-05 01:09:06.287 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54204 10 6452 1 2025-12-05 01:10:06.691 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46224 10 6452 1 2025-12-05 01:11:07.107 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40636 10 6452 1 2025-12-05 01:12:18.521 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 01:12:18.440 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 01:12:18.495 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 01:12:18.389 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 01:12:18.392 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 01:12:07.512 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39424 10 6452 1 2025-12-05 01:13:07.917 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:60764 10 6452 1 2025-12-05 01:10:10.941 00:05:02.214 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 01:10:10.944 00:05:02.209 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 01:14:08.326 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45050 10 6452 1 2025-12-05 01:15:08.728 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:41050 10 6452 1 2025-12-05 01:16:09.144 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:36560 10 6452 1 2025-12-05 01:17:18.442 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 01:17:18.349 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 01:17:18.355 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 01:17:18.164 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 01:17:09.516 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:32836 10 6452 1 2025-12-05 01:17:18.361 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 01:18:09.923 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:58262 10 6452 1 2025-12-05 01:19:10.341 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36948 10 6452 1 2025-12-05 01:16:10.943 00:05:02.214 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 01:16:10.947 00:05:02.209 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 01:20:10.745 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:35748 10 6452 1 2025-12-05 01:21:11.119 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:45604 10 6452 1 2025-12-05 01:22:18.816 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 01:22:18.327 00:00:00.026 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 01:22:18.893 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 01:22:18.445 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 01:22:18.734 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 01:22:11.521 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:37686 10 6452 1 2025-12-05 01:23:11.920 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:60370 10 6452 1 2025-12-05 01:24:12.338 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47490 10 6452 1 2025-12-05 01:25:12.743 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:50744 10 6452 1 2025-12-05 01:22:10.946 00:05:02.210 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 01:22:10.944 00:05:02.215 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 01:26:13.115 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:36350 10 6452 1 2025-12-05 01:27:18.580 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 01:27:18.579 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 01:27:18.493 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 01:27:18.455 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 01:27:18.537 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 01:27:13.525 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39966 10 6452 1 2025-12-05 01:28:13.928 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:53300 10 6452 1 2025-12-05 01:29:14.347 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:60084 10 6452 1 2025-12-05 01:30:14.754 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:41634 10 6452 1 2025-12-05 01:31:15.180 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:34378 10 6452 1 2025-12-05 01:28:10.946 00:05:02.211 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 01:28:10.944 00:05:02.216 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 01:32:18.788 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 01:32:18.660 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 01:32:18.475 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 01:32:18.789 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 01:32:18.872 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 01:32:15.584 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:56924 10 6452 1 2025-12-05 01:33:15.959 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:53092 10 6452 1 2025-12-05 01:34:16.366 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:57992 10 6452 1 2025-12-05 01:35:16.770 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:54174 10 6452 1 2025-12-05 01:36:17.138 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41518 10 6452 1 2025-12-05 01:37:18.715 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 01:37:18.632 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 01:37:18.632 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 01:37:18.581 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 01:37:18.632 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 01:37:17.547 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45096 10 6452 1 2025-12-05 01:34:10.952 00:05:02.208 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 01:34:10.950 00:05:02.214 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 01:38:17.952 00:00:11.534 TCP 1.101.0.1:3000 -> 23.104.0.1:40244 10 6452 1 2025-12-05 01:39:19.522 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48076 10 6452 1 2025-12-05 01:40:19.928 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:36590 10 6452 1 2025-12-05 01:41:20.358 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:36060 10 6452 1 2025-12-05 01:42:18.814 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 01:42:18.727 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 01:42:18.796 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 01:42:18.679 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 01:42:18.731 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 01:42:20.761 00:00:10.815 TCP 1.101.0.1:3000 -> 23.104.0.1:39468 10 6452 1 2025-12-05 01:43:21.617 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:44280 10 6452 1 2025-12-05 01:40:10.955 00:05:02.207 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 01:40:10.953 00:05:02.213 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 01:44:22.025 00:00:10.561 TCP 1.101.0.1:3000 -> 23.104.0.1:56378 10 6452 1 2025-12-05 01:45:22.627 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58728 10 6452 1 2025-12-05 01:46:23.033 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57402 10 6452 1 2025-12-05 01:47:19.037 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 01:47:18.954 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 01:47:18.901 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 01:47:18.955 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 01:47:18.858 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 01:47:23.435 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53156 10 6452 1 2025-12-05 01:48:23.839 00:00:10.978 TCP 1.101.0.1:3000 -> 23.104.0.1:47034 10 6452 1 2025-12-05 01:49:24.880 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34302 10 6452 1 2025-12-05 01:46:10.957 00:05:02.207 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 01:46:10.954 00:05:02.213 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 01:50:25.285 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:48308 10 6452 1 2025-12-05 01:51:25.693 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:58578 10 6452 1 2025-12-05 01:52:18.956 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 01:52:19.105 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 01:52:19.187 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 01:52:19.042 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 01:52:18.873 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 01:52:26.119 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:47218 10 6452 1 2025-12-05 01:53:26.482 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:53964 10 6452 1 2025-12-05 01:54:26.835 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:48766 10 6452 1 2025-12-05 01:55:27.287 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39170 10 6452 1 2025-12-05 01:52:10.954 00:05:02.216 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 01:52:10.957 00:05:02.210 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 01:56:27.695 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:60240 10 6452 1 2025-12-05 01:57:19.462 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 01:57:19.181 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 01:57:19.451 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 01:57:19.563 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 01:57:19.379 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 01:57:28.106 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60716 10 6452 1 2025-12-05 01:58:28.517 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:41996 10 6452 1 Summary: total flows: 140, total bytes: 420923, total packets: 1022, avg bps: 928, avg pps: 0, avg bpp: 411 Time window: 2025-12-05 00:58:10 - 2025-12-05 01:58:38 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0054s User: 0.0000s Wall: 0.0022s flows/second: 64577.4 Runtime: 0.0022s