Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-03 00:59:05.760 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:47610 10 6452 1 2025-12-03 01:00:06.131 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51702 10 6452 1 2025-12-03 00:57:09.928 00:05:02.188 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 01:01:20.415 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 00:57:09.930 00:05:02.183 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 01:01:20.254 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 01:01:20.361 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 01:01:20.333 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 01:01:20.379 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 01:01:06.535 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47688 10 6452 1 2025-12-03 01:02:06.939 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:46124 10 6452 1 2025-12-03 01:03:07.313 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47790 10 6452 1 2025-12-03 01:04:07.713 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45328 10 6452 1 2025-12-03 01:05:08.115 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:32806 10 6452 1 2025-12-03 01:06:20.240 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 01:06:19.953 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 01:06:08.519 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:54486 10 6452 1 2025-12-03 01:06:20.513 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 01:06:20.320 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 01:06:20.596 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 01:03:09.930 00:05:02.192 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 01:03:09.932 00:05:02.187 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 01:07:08.886 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43266 10 6452 1 2025-12-03 01:08:09.293 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:51412 10 6452 1 2025-12-03 01:09:09.695 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:37864 10 6452 1 2025-12-03 01:10:10.066 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:33002 10 6452 1 2025-12-03 01:11:20.543 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 01:11:20.122 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 01:11:20.464 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 01:11:20.496 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 01:11:10.473 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37800 10 6452 1 2025-12-03 01:11:20.546 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 01:12:10.880 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40802 10 6452 1 2025-12-03 01:09:09.933 00:05:02.184 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 01:09:09.931 00:05:02.189 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 01:13:11.282 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:49106 10 6452 1 2025-12-03 01:14:11.682 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:51692 10 6452 1 2025-12-03 01:15:12.054 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:51416 10 6452 1 2025-12-03 01:16:20.626 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 01:16:20.635 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 01:16:20.416 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 01:16:20.543 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 01:16:20.588 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 01:16:12.474 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:37900 10 6452 1 2025-12-03 01:17:12.883 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35692 10 6452 1 2025-12-03 01:18:13.287 00:00:10.440 TCP 1.101.0.1:3000 -> 23.104.0.1:35014 12 10375 1 2025-12-03 01:15:09.938 00:05:02.181 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 01:15:09.935 00:05:02.186 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 01:19:13.765 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:33428 10 6452 1 2025-12-03 01:20:14.179 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35512 10 6452 1 2025-12-03 01:21:20.582 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 01:21:20.723 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 01:21:20.636 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 01:21:20.579 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 01:21:20.718 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 01:21:14.580 00:00:10.958 TCP 1.101.0.1:3000 -> 23.104.0.1:56348 10 6452 1 2025-12-03 01:22:15.578 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:44868 10 6452 1 2025-12-03 01:23:15.940 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:40430 10 6452 1 2025-12-03 01:24:16.358 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56496 10 6452 1 2025-12-03 01:21:09.940 00:05:02.182 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 01:21:09.943 00:05:02.178 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 01:25:16.765 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:56330 10 6452 1 2025-12-03 01:26:20.791 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 01:26:21.066 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 01:26:20.984 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 01:26:20.985 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 01:26:21.052 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 01:26:17.181 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:48102 10 6452 1 2025-12-03 01:27:17.545 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:56154 10 6452 1 2025-12-03 01:28:17.958 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:38254 10 6452 1 2025-12-03 01:29:18.319 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:55686 10 6452 1 2025-12-03 01:30:18.676 00:00:10.416 TCP 1.101.0.1:3000 -> 23.104.0.1:59622 11 6504 1 2025-12-03 01:27:09.949 00:05:02.174 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 01:27:09.952 00:05:02.169 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 01:31:20.732 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 01:31:20.794 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 01:31:20.627 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 01:31:21.091 00:00:00.034 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 01:31:21.009 00:00:00.034 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 01:31:19.132 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:58696 10 6452 1 2025-12-03 01:32:19.498 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:57608 10 6452 1 2025-12-03 01:33:19.901 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:49276 12 6556 1 2025-12-03 01:34:20.318 00:00:15.841 TCP 1.101.0.1:3000 -> 23.104.0.1:43624 10 6452 1 2025-12-03 01:35:26.197 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36008 10 6452 1 2025-12-03 01:36:20.835 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 01:36:20.776 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 01:36:20.924 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 01:36:20.915 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 01:36:21.008 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 01:36:26.596 00:00:11.309 TCP 1.101.0.1:3000 -> 23.104.0.1:54950 10 6452 1 2025-12-03 01:33:09.952 00:05:02.172 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 01:33:09.954 00:05:02.167 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 01:37:27.940 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:49196 10 6452 1 2025-12-03 01:38:28.360 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39592 10 6452 1 2025-12-03 01:39:28.763 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:60430 10 6452 1 2025-12-03 01:40:29.183 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47070 10 6452 1 2025-12-03 01:41:20.752 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 01:41:20.876 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 01:41:21.150 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 01:41:20.986 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 01:41:21.067 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 01:41:29.586 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:51738 10 6452 1 2025-12-03 01:42:29.990 00:00:10.431 TCP 1.101.0.1:3000 -> 23.104.0.1:53442 10 6452 1 2025-12-03 01:39:09.955 00:05:02.171 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 01:39:09.953 00:05:02.176 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 01:43:30.458 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:35450 10 6452 1 2025-12-03 01:44:30.858 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:56110 10 6452 1 2025-12-03 01:45:31.270 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40706 10 6452 1 2025-12-03 01:46:20.945 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 01:46:21.645 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 01:46:21.724 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 01:46:21.623 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 01:46:21.029 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 01:46:31.670 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36712 10 6452 1 2025-12-03 01:47:32.102 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41340 10 6452 1 2025-12-03 01:48:32.509 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:48906 10 6452 1 2025-12-03 01:45:09.957 00:05:02.171 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 01:45:09.954 00:05:02.177 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 01:49:32.922 00:00:11.922 TCP 1.101.0.1:3000 -> 23.104.0.1:46790 10 6452 1 2025-12-03 01:50:34.892 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:55588 10 6452 1 2025-12-03 01:51:21.322 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 01:51:21.008 00:00:00.035 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 01:51:21.356 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 01:51:21.240 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 01:51:21.385 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 01:51:35.271 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:33286 10 6452 1 2025-12-03 01:52:35.677 00:00:10.439 TCP 1.101.0.1:3000 -> 23.104.0.1:54766 12 10369 1 2025-12-03 01:53:36.155 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:46754 10 6452 1 2025-12-03 01:54:36.562 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:34420 10 6452 1 2025-12-03 01:51:09.959 00:05:02.171 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 01:51:09.956 00:05:02.176 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 01:55:36.929 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:59238 10 6452 1 2025-12-03 01:56:21.428 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 01:56:21.312 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 01:56:21.464 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 01:56:21.372 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 01:56:21.546 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 01:56:37.353 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:55922 10 6452 1 2025-12-03 01:57:37.764 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:45112 10 6452 1 2025-12-03 01:58:38.132 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45688 10 6452 1 Summary: total flows: 140, total bytes: 424996, total packets: 1027, avg bps: 919, avg pps: 0, avg bpp: 413 Time window: 2025-12-03 00:57:09 - 2025-12-03 01:58:48 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0037s User: 0.0028s Wall: 0.0020s flows/second: 70568.7 Runtime: 0.0020s