Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-05 05:59:23.111 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60802 10 6452 1 2025-12-05 06:00:23.510 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55814 10 6452 1 2025-12-05 06:01:23.918 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:45022 10 6452 1 2025-12-05 05:58:11.085 00:05:02.181 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 05:58:11.078 00:05:02.191 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 06:02:24.389 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 06:02:24.303 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 06:02:24.421 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 06:02:24.164 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 06:02:24.306 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 06:02:24.320 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:51238 10 6452 1 2025-12-05 06:03:24.721 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:47820 10 6452 1 2025-12-05 06:04:25.138 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39332 10 6452 1 2025-12-05 06:05:25.543 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36598 10 6452 1 2025-12-05 06:06:25.948 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:47670 10 6452 1 2025-12-05 06:07:24.075 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 06:07:24.131 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 06:07:23.955 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 06:07:24.090 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 06:07:24.159 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 06:07:26.375 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:36558 10 6452 1 2025-12-05 06:04:11.081 00:05:02.187 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 06:04:11.079 00:05:02.192 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 06:08:26.777 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43288 10 6452 1 2025-12-05 06:09:27.179 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:44262 12 6556 1 2025-12-05 06:10:27.588 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:52164 10 6452 1 2025-12-05 06:11:27.986 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:52984 10 6452 1 2025-12-05 06:12:24.305 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 06:12:24.223 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 06:12:24.136 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 06:12:24.274 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 06:12:23.931 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 06:12:28.399 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:47760 10 6452 1 2025-12-05 06:13:28.797 00:00:10.434 TCP 1.101.0.1:3000 -> 23.104.0.1:42298 12 10375 1 2025-12-05 06:10:11.081 00:05:02.196 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 06:10:11.083 00:05:02.190 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 06:14:29.273 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:53532 10 6452 1 2025-12-05 06:15:29.677 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:46766 10 6452 1 2025-12-05 06:16:30.112 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:43632 10 6452 1 2025-12-05 06:17:24.582 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 06:17:24.293 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 06:17:24.301 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 06:17:24.463 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 06:17:24.546 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 06:17:30.509 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:60004 10 6452 1 2025-12-05 06:18:30.924 00:00:10.351 TCP 1.101.0.1:3000 -> 23.104.0.1:57012 10 6452 1 2025-12-05 06:19:31.314 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:45792 10 6452 1 2025-12-05 06:16:11.082 00:05:02.195 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 06:16:11.084 00:05:02.190 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 06:20:31.717 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59716 10 6452 1 2025-12-05 06:21:32.117 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55196 10 6452 1 2025-12-05 06:22:24.541 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 06:22:24.455 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 06:22:24.533 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 06:22:24.361 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 06:22:24.457 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 06:22:32.520 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41868 10 6452 1 2025-12-05 06:23:32.928 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:33778 10 6452 1 2025-12-05 06:24:33.337 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:34596 10 6452 1 2025-12-05 06:25:33.705 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46848 10 6452 1 2025-12-05 06:22:11.083 00:05:02.196 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 06:22:11.084 00:05:02.192 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 06:26:34.112 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:43914 10 6452 1 2025-12-05 06:27:24.509 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 06:27:24.436 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 06:27:24.517 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 06:27:24.160 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 06:27:24.428 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 06:27:34.479 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46474 10 6452 1 2025-12-05 06:28:34.879 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59532 10 6452 1 2025-12-05 06:29:35.281 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46928 10 6452 1 2025-12-05 06:30:35.684 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52714 10 6452 1 2025-12-05 06:31:36.104 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:45636 10 6452 1 2025-12-05 06:28:11.085 00:05:02.195 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 06:28:11.087 00:05:02.190 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 06:32:24.331 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 06:32:24.613 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 06:32:24.590 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 06:32:24.547 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 06:32:24.630 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 06:32:36.512 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:35660 10 6452 1 2025-12-05 06:33:36.920 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:52024 10 6452 1 2025-12-05 06:34:37.337 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54198 10 6452 1 2025-12-05 06:35:37.745 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:40904 10 6452 1 2025-12-05 06:36:38.171 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51642 10 6452 1 2025-12-05 06:37:24.752 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 06:37:24.651 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 06:37:24.726 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 06:37:24.705 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 06:37:24.666 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 06:37:38.579 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:43776 10 6452 1 2025-12-05 06:34:11.095 00:05:02.183 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 06:34:11.093 00:05:02.189 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 06:38:38.983 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:55124 10 6452 1 2025-12-05 06:39:39.348 00:00:10.638 TCP 1.101.0.1:3000 -> 23.104.0.1:36242 10 6452 1 2025-12-05 06:40:40.028 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50554 10 6452 1 2025-12-05 06:41:40.437 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37830 12 6556 1 2025-12-05 06:42:25.166 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 06:42:25.163 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 06:42:25.171 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 06:42:25.257 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 06:42:25.339 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 06:42:40.838 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:53690 10 6452 1 2025-12-05 06:43:41.253 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:45946 10 6452 1 2025-12-05 06:40:11.097 00:05:02.182 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 06:40:11.095 00:05:02.187 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 06:44:41.659 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:56640 10 6452 1 2025-12-05 06:45:42.093 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55478 10 6452 1 2025-12-05 06:46:42.501 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:41002 10 6452 1 2025-12-05 06:47:24.941 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 06:47:24.814 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 06:47:24.811 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 06:47:24.892 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 06:47:24.974 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 06:47:42.908 00:00:11.091 TCP 1.101.0.1:3000 -> 23.104.0.1:42712 10 6452 1 2025-12-05 06:48:44.033 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57706 10 6452 1 2025-12-05 06:49:44.436 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:40888 10 6452 1 2025-12-05 06:46:11.095 00:05:02.192 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 06:46:11.099 00:05:02.187 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 06:50:44.790 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:47628 10 6452 1 2025-12-05 06:51:45.207 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53874 10 6452 1 2025-12-05 06:52:25.094 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 06:52:25.090 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 06:52:25.096 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 06:52:25.094 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 06:52:25.178 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 06:52:45.608 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:60142 10 6452 1 2025-12-05 06:53:46.021 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46656 10 6452 1 2025-12-05 06:54:46.427 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:36638 10 6452 1 2025-12-05 06:55:46.793 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:55144 10 6452 1 2025-12-05 06:52:11.099 00:05:02.187 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 06:52:11.098 00:05:02.192 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 06:56:47.153 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:33342 10 6452 1 2025-12-05 06:57:25.183 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 06:57:24.975 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 06:57:24.893 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 06:57:24.891 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 06:57:25.101 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 06:57:47.518 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60118 10 6452 1 Summary: total flows: 139, total bytes: 414679, total packets: 1016, avg bps: 924, avg pps: 0, avg bpp: 408 Time window: 2025-12-05 05:58:11 - 2025-12-05 06:57:57 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0036s User: 0.0018s Wall: 0.0026s flows/second: 52909.4 Runtime: 0.0026s