Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-23 02:59:35.404 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33678 10 6452 1 2025-11-23 03:00:35.810 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:37886 10 6452 1 2025-11-23 03:01:33.767 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 03:01:33.888 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 03:01:33.984 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 03:01:33.755 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 03:01:34.067 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 03:01:36.212 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:59500 10 6452 1 2025-11-23 03:02:36.612 00:00:15.105 TCP 1.101.0.1:3000 -> 23.104.0.1:56486 10 6452 1 2025-11-23 02:59:04.829 00:05:00.681 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 02:59:04.826 00:05:00.686 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 03:03:41.785 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58924 10 6452 1 2025-11-23 03:04:42.185 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49286 10 6452 1 2025-11-23 03:05:42.590 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45250 10 6452 1 2025-11-23 03:06:33.801 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 03:06:33.505 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 03:06:33.699 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 03:06:33.919 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 03:06:33.782 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 03:06:43.002 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:52130 10 6452 1 2025-11-23 03:07:43.364 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59370 10 6452 1 2025-11-23 03:08:43.768 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:50528 10 6452 1 2025-11-23 03:05:04.831 00:05:00.680 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 03:05:04.829 00:05:00.685 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 03:09:44.142 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:34050 10 6452 1 2025-11-23 03:10:44.513 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51730 10 6452 1 2025-11-23 03:11:33.989 00:00:00.033 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 03:11:34.013 00:00:00.039 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 03:11:33.990 00:00:00.044 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 03:11:34.246 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 03:11:34.072 00:00:00.045 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 03:11:44.919 00:00:10.876 TCP 1.101.0.1:3000 -> 23.104.0.1:43436 10 6452 1 2025-11-23 03:12:45.834 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45680 10 6452 1 2025-11-23 03:13:46.233 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36254 10 6452 1 2025-11-23 03:14:46.633 00:00:10.441 TCP 1.101.0.1:3000 -> 23.104.0.1:44862 12 10375 1 2025-11-23 03:11:04.832 00:05:00.686 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 03:11:04.835 00:05:00.680 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 03:15:47.116 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:38708 10 6452 1 2025-11-23 03:16:34.636 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 03:16:34.448 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 03:16:34.220 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 03:16:34.553 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 03:16:34.453 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 03:16:47.519 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:54096 10 6452 1 2025-11-23 03:17:47.926 00:00:10.394 TCP 1.101.0.1:3000 -> 23.104.0.1:44742 10 6452 1 2025-11-23 03:18:48.357 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36816 10 6452 1 2025-11-23 03:19:48.762 00:00:10.453 TCP 1.101.0.1:3000 -> 23.104.0.1:50176 12 10369 1 2025-11-23 03:20:49.251 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:44298 10 6452 1 2025-11-23 03:17:04.836 00:05:00.680 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 03:17:04.834 00:05:00.686 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 03:21:34.321 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 03:21:34.162 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 03:21:34.273 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 03:21:34.407 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 03:21:34.356 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 03:21:49.661 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:57838 10 6452 1 2025-11-23 03:22:50.029 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:59496 10 6452 1 2025-11-23 03:23:50.449 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45500 10 6452 1 2025-11-23 03:24:50.851 00:00:10.460 TCP 1.101.0.1:3000 -> 23.104.0.1:42126 12 10375 1 2025-11-23 03:25:51.352 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52010 10 6452 1 2025-11-23 03:26:34.299 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 03:26:34.185 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 03:26:34.300 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 03:26:34.229 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 03:26:34.382 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 03:26:51.759 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:50524 10 6452 1 2025-11-23 03:23:04.833 00:05:00.710 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 03:23:04.835 00:05:00.695 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 03:27:52.188 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:36656 10 6452 1 2025-11-23 03:28:52.592 00:00:10.458 TCP 1.101.0.1:3000 -> 23.104.0.1:37404 10 6452 1 2025-11-23 03:29:53.126 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54792 10 6452 1 2025-11-23 03:30:53.530 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:39508 10 6452 1 2025-11-23 03:31:34.798 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 03:31:34.833 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 03:31:34.713 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 03:31:34.797 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 03:31:34.797 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 03:31:53.933 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:56754 10 6452 1 2025-11-23 03:29:04.840 00:05:00.693 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 03:32:54.358 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:35474 10 6452 1 2025-11-23 03:29:04.836 00:05:00.698 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 03:33:54.713 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35206 10 6452 1 2025-11-23 03:34:55.116 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:49970 10 6452 1 2025-11-23 03:35:55.516 00:00:13.983 TCP 1.101.0.1:3000 -> 23.104.0.1:46240 10 6452 1 2025-11-23 03:36:34.534 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 03:36:34.705 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 03:36:34.664 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 03:36:34.732 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 03:36:34.745 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 03:36:59.541 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37344 10 6452 1 2025-11-23 03:37:59.941 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:56348 10 6452 1 2025-11-23 03:35:04.838 00:05:00.697 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 03:39:00.348 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:56846 10 6452 1 2025-11-23 03:35:04.847 00:05:00.687 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 03:40:00.717 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:57226 10 6452 1 2025-11-23 03:41:01.134 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36942 10 6452 1 2025-11-23 03:41:34.543 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 03:41:34.666 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 03:41:34.417 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 03:41:34.539 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 03:41:34.499 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 03:42:01.537 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:32822 10 6452 1 2025-11-23 03:43:01.944 00:00:11.008 TCP 1.101.0.1:3000 -> 23.104.0.1:47776 10 6452 1 2025-11-23 03:44:02.990 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:36692 10 6452 1 2025-11-23 03:41:04.842 00:05:00.714 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 03:41:04.839 00:05:00.719 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 03:45:03.360 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35544 10 6452 1 2025-11-23 03:46:03.768 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:41740 10 6452 1 2025-11-23 03:46:34.746 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 03:46:34.560 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 03:46:34.491 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 03:46:34.744 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 03:46:34.574 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 03:47:04.192 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:39364 10 6452 1 2025-11-23 03:48:04.599 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46626 10 6452 1 2025-11-23 03:49:04.993 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:32940 10 6452 1 2025-11-23 03:50:05.402 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:59738 10 6452 1 2025-11-23 03:47:04.841 00:05:00.725 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 03:47:04.843 00:05:00.721 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 03:51:05.805 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:56250 10 6452 1 2025-11-23 03:51:34.790 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 03:51:35.149 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 03:51:34.705 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 03:51:34.893 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 03:51:34.787 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 03:52:06.223 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50458 10 6452 1 2025-11-23 03:53:06.626 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41714 10 6452 1 2025-11-23 03:54:07.034 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53978 10 6452 1 2025-11-23 03:55:07.443 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:56766 10 6452 1 2025-11-23 03:56:07.844 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:56216 10 6452 1 2025-11-23 03:56:34.596 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 03:56:34.722 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 03:56:34.810 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-23 03:56:34.724 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 03:56:34.893 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-23 03:53:04.844 00:05:00.724 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-23 03:53:04.845 00:05:00.719 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-23 03:57:08.274 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:38586 10 6452 1 2025-11-23 03:58:08.683 00:00:17.745 TCP 1.101.0.1:3000 -> 23.104.0.1:37298 10 6452 1 Summary: total flows: 139, total bytes: 422311, total packets: 1016, avg bps: 948, avg pps: 0, avg bpp: 415 Time window: 2025-11-23 02:59:04 - 2025-11-23 03:58:26 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0047s User: 0.0019s Wall: 0.0019s flows/second: 73779.8 Runtime: 0.0019s