Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-03 03:59:27.773 00:00:11.989 TCP 1.101.0.1:3000 -> 23.104.0.1:52024 10 6452 1 2025-12-03 04:00:29.799 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:49254 10 6452 1 2025-12-03 03:57:09.992 00:05:02.177 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 03:57:09.996 00:05:02.171 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 04:01:23.915 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 04:01:23.841 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 04:01:23.831 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 04:01:23.836 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 04:01:23.914 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 04:01:30.207 00:00:10.461 TCP 1.101.0.1:3000 -> 23.104.0.1:45772 10 6452 1 2025-12-03 04:02:30.704 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44758 10 6452 1 2025-12-03 04:03:31.115 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58666 10 6452 1 2025-12-03 04:04:31.525 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39906 10 6452 1 2025-12-03 04:05:31.935 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:44760 10 6452 1 2025-12-03 04:06:23.898 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 04:06:23.924 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 04:06:23.939 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 04:06:23.816 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 04:06:23.919 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 04:06:32.355 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:52476 10 6452 1 2025-12-03 04:03:09.994 00:05:02.175 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 04:03:09.996 00:05:02.171 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 04:07:32.770 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:59276 10 6452 1 2025-12-03 04:08:33.188 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:54882 10 6452 1 2025-12-03 04:09:33.583 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:36898 10 6452 1 2025-12-03 04:10:33.950 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55758 10 6452 1 2025-12-03 04:11:24.100 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 04:11:23.825 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 04:11:23.901 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 04:11:23.995 00:00:00.045 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 04:11:23.983 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 04:11:34.355 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37824 10 6452 1 2025-12-03 04:12:34.757 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:51716 10 6452 1 2025-12-03 04:09:09.995 00:05:02.176 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 04:09:09.997 00:05:02.171 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 04:13:35.185 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43354 10 6452 1 2025-12-03 04:14:35.587 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46060 10 6452 1 2025-12-03 04:15:35.996 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:35884 10 6452 1 2025-12-03 04:16:24.234 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 04:16:24.262 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 04:16:24.234 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 04:16:24.312 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 04:16:24.316 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 04:16:36.376 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54830 10 6452 1 2025-12-03 04:17:36.776 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:39452 10 6452 1 2025-12-03 04:18:37.183 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:52280 10 6452 1 2025-12-03 04:15:10.000 00:05:02.172 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 04:15:09.995 00:05:02.179 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 04:19:37.545 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39212 10 6452 1 2025-12-03 04:20:37.946 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:41146 10 6452 1 2025-12-03 04:21:24.300 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 04:21:24.089 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 04:21:24.347 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 04:21:24.224 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 04:21:24.430 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 04:21:38.318 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:47682 10 6452 1 2025-12-03 04:22:38.676 00:00:10.442 TCP 1.101.0.1:3000 -> 23.104.0.1:40518 12 10369 1 2025-12-03 04:23:39.151 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59350 10 6452 1 2025-12-03 04:24:39.568 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:45966 10 6452 1 2025-12-03 04:21:09.998 00:05:02.186 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 04:21:10.001 00:05:02.180 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 04:25:40.006 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36956 10 6452 1 2025-12-03 04:26:24.494 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 04:26:24.423 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 04:26:24.534 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 04:26:24.364 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 04:26:24.577 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 04:26:40.410 00:00:10.647 TCP 1.101.0.1:3000 -> 23.104.0.1:43388 10 6452 1 2025-12-03 04:27:41.111 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41760 10 6452 1 2025-12-03 04:28:41.520 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53492 10 6452 1 2025-12-03 04:29:41.923 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:34544 10 6452 1 2025-12-03 04:30:42.305 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51122 10 6452 1 2025-12-03 04:27:10.001 00:05:02.182 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 04:27:10.004 00:05:02.176 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 04:31:24.442 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 04:31:24.390 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 04:31:24.436 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 04:31:24.551 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 04:31:24.519 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 04:31:42.706 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:45092 10 6452 1 2025-12-03 04:32:43.116 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36976 10 6452 1 2025-12-03 04:33:43.518 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:47236 10 6452 1 2025-12-03 04:34:43.876 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:36888 10 6452 1 2025-12-03 04:35:44.246 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41176 10 6452 1 2025-12-03 04:36:24.875 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 04:36:24.760 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 04:36:24.876 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 04:36:24.953 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 04:36:24.958 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 04:36:44.654 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:49728 10 6452 1 2025-12-03 04:33:10.000 00:05:02.182 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 04:33:10.003 00:05:02.176 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 04:37:45.024 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43826 10 6452 1 2025-12-03 04:38:45.428 00:00:11.102 TCP 1.101.0.1:3000 -> 23.104.0.1:58644 10 6452 1 2025-12-03 04:39:46.568 00:00:10.620 TCP 1.101.0.1:3000 -> 23.104.0.1:39092 10 6452 1 2025-12-03 04:40:47.227 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:44394 10 6452 1 2025-12-03 04:41:24.940 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 04:41:24.548 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 04:41:24.859 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 04:41:24.898 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 04:41:24.942 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 04:41:47.636 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46502 10 6452 1 2025-12-03 04:42:48.037 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36776 10 6452 1 2025-12-03 04:39:10.001 00:05:02.186 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 04:39:10.003 00:05:02.180 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 04:43:48.443 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:45868 10 6452 1 2025-12-03 04:44:48.844 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:40414 10 6452 1 2025-12-03 04:45:49.279 00:00:10.393 TCP 1.101.0.1:3000 -> 23.104.0.1:35122 10 6452 1 2025-12-03 04:46:24.884 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 04:46:24.801 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 04:46:24.914 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 04:46:24.716 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 04:46:24.742 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 04:46:49.733 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:40696 10 6452 1 2025-12-03 04:47:50.142 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:34288 10 6452 1 2025-12-03 04:48:50.557 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:41290 10 6452 1 2025-12-03 04:45:10.001 00:05:02.187 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 04:45:10.003 00:05:02.182 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 04:49:50.961 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56400 10 6452 1 2025-12-03 04:50:51.369 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:47802 10 6452 1 2025-12-03 04:51:25.306 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 04:51:25.166 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 04:51:24.750 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 04:51:25.224 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 04:51:25.106 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 04:51:51.772 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:53706 10 6452 1 2025-12-03 04:52:52.189 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:44678 10 6452 1 2025-12-03 04:53:52.595 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:48426 10 6452 1 2025-12-03 04:54:53.003 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59838 10 6452 1 2025-12-03 04:51:10.032 00:05:02.154 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 04:51:10.031 00:05:02.159 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 04:55:53.411 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44674 10 6452 1 2025-12-03 04:56:24.972 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 04:56:25.067 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 04:56:24.905 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 04:56:24.975 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 04:56:24.986 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 04:56:53.814 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:39870 10 6452 1 2025-12-03 04:57:54.184 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:52718 10 6452 1 Summary: total flows: 139, total bytes: 414465, total packets: 1012, avg bps: 907, avg pps: 0, avg bpp: 409 Time window: 2025-12-03 03:57:09 - 2025-12-03 04:58:04 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0036s User: 0.0018s Wall: 0.0032s flows/second: 43288.4 Runtime: 0.0032s