Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-05 03:59:29.879 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51534 10 6452 1 2025-12-05 04:00:30.284 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:40230 10 6452 1 2025-12-05 04:01:30.687 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52174 10 6452 1 2025-12-05 03:58:11.039 00:05:02.169 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 03:58:11.041 00:05:02.165 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 04:02:21.438 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 04:02:21.637 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 04:02:21.464 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 04:02:21.623 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 04:02:21.705 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 04:02:31.109 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41648 10 6452 1 2025-12-05 04:03:31.513 00:00:10.439 TCP 1.101.0.1:3000 -> 23.104.0.1:50712 12 10375 1 2025-12-05 04:04:31.991 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:59996 10 6452 1 2025-12-05 04:05:32.358 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:59576 10 6452 1 2025-12-05 04:06:32.716 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35986 10 6452 1 2025-12-05 04:07:21.599 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 04:07:21.697 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 04:07:21.412 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 04:07:21.478 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 04:07:21.517 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 04:07:33.124 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43024 10 6452 1 2025-12-05 04:04:11.041 00:05:02.170 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 04:04:11.042 00:05:02.165 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 04:08:33.529 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:42354 10 6452 1 2025-12-05 04:09:33.943 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:42500 10 6452 1 2025-12-05 04:10:34.356 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:41732 11 6492 1 2025-12-05 04:11:34.713 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:43038 11 6492 1 2025-12-05 04:12:21.901 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 04:12:21.887 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 04:12:21.881 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 04:12:21.645 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 04:12:21.819 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 04:12:35.118 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:43644 10 6452 1 2025-12-05 04:13:35.533 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53464 10 6452 1 2025-12-05 04:10:11.044 00:05:02.168 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 04:10:11.046 00:05:02.163 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 04:14:35.935 00:00:10.346 TCP 1.101.0.1:3000 -> 23.104.0.1:49564 10 6452 1 2025-12-05 04:15:36.316 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53650 10 6452 1 2025-12-05 04:16:36.726 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:60398 12 6556 1 2025-12-05 04:17:21.780 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 04:17:21.872 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 04:17:21.610 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 04:17:21.917 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 04:17:22.001 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 04:17:37.144 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:37118 10 6452 1 2025-12-05 04:18:37.553 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41854 10 6452 1 2025-12-05 04:19:37.956 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:51440 10 6452 1 2025-12-05 04:16:11.046 00:05:02.169 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 04:16:11.051 00:05:02.163 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 04:20:38.359 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53582 10 6452 1 2025-12-05 04:21:38.761 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:36856 10 6452 1 2025-12-05 04:22:21.766 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 04:22:22.309 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 04:22:21.997 00:00:00.040 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 04:22:22.212 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 04:22:22.294 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 04:22:39.180 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35596 10 6452 1 2025-12-05 04:23:39.582 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:59346 10 6452 1 2025-12-05 04:24:39.993 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41648 10 6452 1 2025-12-05 04:25:40.392 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:33468 10 6452 1 2025-12-05 04:22:11.048 00:05:02.169 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 04:22:11.051 00:05:02.164 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 04:26:40.758 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:52792 10 6452 1 2025-12-05 04:27:22.154 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 04:27:22.092 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 04:27:22.047 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 04:27:21.968 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 04:27:22.050 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 04:27:41.130 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:40984 10 6452 1 2025-12-05 04:28:41.528 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56842 10 6452 1 2025-12-05 04:29:41.931 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:58336 10 6452 1 2025-12-05 04:30:42.355 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:34108 10 6452 1 2025-12-05 04:31:42.723 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:54950 10 6452 1 2025-12-05 04:28:11.052 00:05:02.164 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 04:28:11.049 00:05:02.169 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 04:32:22.253 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 04:32:22.285 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 04:32:21.927 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 04:32:22.249 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 04:32:22.332 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 04:32:43.141 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59754 10 6452 1 2025-12-05 04:33:43.540 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:52840 10 6452 1 2025-12-05 04:34:43.903 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:36366 10 6452 1 2025-12-05 04:35:44.317 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58412 10 6452 1 2025-12-05 04:36:44.720 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:44768 10 6452 1 2025-12-05 04:37:22.470 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 04:37:22.471 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 04:37:22.230 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 04:37:22.475 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 04:37:22.558 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 04:37:45.144 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:32938 10 6452 1 2025-12-05 04:34:11.050 00:05:02.168 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 04:34:11.052 00:05:02.164 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 04:38:45.550 00:00:10.402 TCP 1.101.0.1:3000 -> 23.104.0.1:57304 12 10369 1 2025-12-05 04:39:45.996 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:53528 10 6452 1 2025-12-05 04:40:46.422 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60666 10 6452 1 2025-12-05 04:41:46.827 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60938 10 6452 1 2025-12-05 04:42:22.459 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 04:42:22.366 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 04:42:22.225 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 04:42:22.404 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 04:42:22.376 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 04:42:47.227 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:58116 10 6452 1 2025-12-05 04:43:47.646 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54272 10 6452 1 2025-12-05 04:40:11.057 00:05:02.161 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 04:40:11.055 00:05:02.167 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 04:44:48.059 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35828 10 6452 1 2025-12-05 04:45:48.464 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50000 10 6452 1 2025-12-05 04:46:48.866 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:43642 10 6452 1 2025-12-05 04:47:22.551 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 04:47:22.554 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 04:47:22.702 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 04:47:22.251 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 04:47:22.633 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 04:47:49.274 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48678 10 6452 1 2025-12-05 04:48:49.669 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38284 10 6452 1 2025-12-05 04:49:50.102 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:53368 10 6452 1 2025-12-05 04:46:11.055 00:05:02.168 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 04:46:11.058 00:05:02.162 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 04:50:50.501 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43894 10 6452 1 2025-12-05 04:51:50.905 00:00:10.534 TCP 1.101.0.1:3000 -> 23.104.0.1:57142 12 6556 1 2025-12-05 04:52:22.720 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 04:52:22.641 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 04:52:22.646 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 04:52:22.647 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 04:52:22.638 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 04:52:51.472 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:53488 10 6452 1 2025-12-05 04:53:51.834 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:41094 10 6452 1 2025-12-05 04:54:52.230 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56940 10 6452 1 2025-12-05 04:55:52.635 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54198 10 6452 1 2025-12-05 04:52:11.059 00:05:02.162 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 04:52:11.056 00:05:02.168 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 04:56:53.039 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:54736 10 6452 1 2025-12-05 04:57:22.716 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 04:57:22.601 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 04:57:22.626 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 04:57:22.455 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 04:57:22.634 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 04:57:53.399 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:47172 10 6452 1 Summary: total flows: 139, total bytes: 418676, total packets: 1020, avg bps: 932, avg pps: 0, avg bpp: 410 Time window: 2025-12-05 03:58:11 - 2025-12-05 04:58:03 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0031s User: 0.0021s Wall: 0.0022s flows/second: 63474.0 Runtime: 0.0022s