Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-03 04:58:54.590 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44020 10 6452 1 2025-12-03 04:59:55.003 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:55014 12 6556 1 2025-12-03 05:00:55.400 00:00:11.149 TCP 1.101.0.1:3000 -> 23.104.0.1:41500 10 6452 1 2025-12-03 04:57:10.038 00:05:02.154 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 04:57:10.041 00:05:02.149 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 05:01:25.148 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 05:01:25.066 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 05:01:24.982 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 05:01:24.905 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 05:01:25.064 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 05:01:56.585 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:54892 10 6452 1 2025-12-03 05:02:56.998 00:00:10.439 TCP 1.101.0.1:3000 -> 23.104.0.1:46834 12 10369 1 2025-12-03 05:03:57.475 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59166 10 6452 1 2025-12-03 05:04:57.880 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41212 10 6452 1 2025-12-03 05:05:58.282 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:35778 10 6452 1 2025-12-03 05:06:25.410 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 05:06:25.202 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 05:06:25.140 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 05:06:25.326 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 05:06:25.301 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 05:06:58.684 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:51246 10 6452 1 2025-12-03 05:03:10.041 00:05:02.155 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 05:03:10.044 00:05:02.150 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 05:07:59.108 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54844 10 6452 1 2025-12-03 05:08:59.510 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:45878 10 6452 1 2025-12-03 05:09:59.920 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45600 10 6452 1 2025-12-03 05:11:00.323 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:33166 10 6452 1 2025-12-03 05:11:25.419 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 05:11:25.362 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 05:11:25.414 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 05:11:25.523 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 05:11:25.498 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 05:12:00.728 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:42256 10 6452 1 2025-12-03 05:13:01.133 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:34594 10 6452 1 2025-12-03 05:09:10.046 00:05:02.148 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 05:09:10.043 00:05:02.153 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 05:14:01.535 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:38772 10 6452 1 2025-12-03 05:15:01.939 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:41160 10 6452 1 2025-12-03 05:16:02.359 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52038 10 6452 1 2025-12-03 05:16:25.705 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 05:16:25.440 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 05:16:25.450 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 05:16:25.621 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 05:16:25.508 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 05:17:02.769 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:52172 10 6452 1 2025-12-03 05:18:03.188 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:36278 10 6452 1 2025-12-03 05:19:03.603 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:46258 10 6452 1 2025-12-03 05:15:10.048 00:05:02.146 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 05:15:10.046 00:05:02.151 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 05:20:04.015 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:36204 10 6452 1 2025-12-03 05:21:04.385 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:33900 10 6452 1 2025-12-03 05:21:25.501 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 05:21:25.363 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 05:21:25.308 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 05:21:25.500 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 05:21:25.390 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 05:22:04.753 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:58104 10 6452 1 2025-12-03 05:23:05.169 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:35742 10 6452 1 2025-12-03 05:24:05.579 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52700 10 6452 1 2025-12-03 05:21:10.046 00:05:02.152 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 05:21:10.050 00:05:02.146 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 05:25:05.981 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:52694 10 6452 1 2025-12-03 05:26:06.344 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:41330 10 6452 1 2025-12-03 05:26:25.725 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 05:26:25.500 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 05:26:25.394 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 05:26:25.642 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 05:26:25.645 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 05:27:06.763 00:00:10.917 TCP 1.101.0.1:3000 -> 23.104.0.1:33748 10 6452 1 2025-12-03 05:28:07.724 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:36332 10 6452 1 2025-12-03 05:29:08.129 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33810 10 6452 1 2025-12-03 05:30:08.535 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:42500 10 6452 1 2025-12-03 05:27:10.051 00:05:02.150 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 05:27:10.052 00:05:02.145 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 05:31:08.900 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:42036 10 6452 1 2025-12-03 05:31:25.752 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 05:31:25.610 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 05:31:25.694 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 05:31:25.669 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 05:31:25.614 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 05:32:09.311 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54082 10 6452 1 2025-12-03 05:33:09.710 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54144 10 6452 1 2025-12-03 05:34:10.112 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37508 10 6452 1 2025-12-03 05:35:10.509 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46314 10 6452 1 2025-12-03 05:36:25.642 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 05:36:25.561 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 05:36:25.657 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 05:36:10.913 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44352 10 6452 1 2025-12-03 05:36:25.823 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 05:36:25.587 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 05:33:10.054 00:05:02.147 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 05:33:10.056 00:05:02.142 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 05:37:11.312 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:44960 10 6452 1 2025-12-03 05:38:11.672 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:46672 10 6452 1 2025-12-03 05:39:12.092 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:58720 10 6452 1 2025-12-03 05:40:12.501 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:33958 10 6452 1 2025-12-03 05:41:25.894 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 05:41:12.917 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49120 10 6452 1 2025-12-03 05:41:25.884 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 05:41:25.736 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 05:41:25.812 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 05:41:25.807 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 05:42:13.320 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53644 10 6452 1 2025-12-03 05:39:10.057 00:05:02.145 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 05:39:10.059 00:05:02.140 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 05:43:13.719 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:56486 10 6452 1 2025-12-03 05:44:14.135 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:39314 10 6452 1 2025-12-03 05:45:14.502 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41444 10 6452 1 2025-12-03 05:46:25.743 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 05:46:25.776 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 05:46:14.907 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:54014 10 6452 1 2025-12-03 05:46:26.142 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 05:46:26.010 00:00:00.037 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 05:46:26.225 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 05:47:15.313 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:33970 10 6452 1 2025-12-03 05:48:15.681 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:59342 10 6452 1 2025-12-03 05:45:10.058 00:05:02.151 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 05:45:10.062 00:05:02.145 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 05:49:16.115 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51386 10 6452 1 2025-12-03 05:50:16.518 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:59214 11 6504 1 2025-12-03 05:51:25.828 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 05:51:25.969 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 05:51:25.931 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 05:51:26.015 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 05:51:16.951 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40880 10 6452 1 2025-12-03 05:51:26.105 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 05:52:17.358 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:57378 10 6452 1 2025-12-03 05:53:17.726 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:42362 10 6452 1 2025-12-03 05:54:18.137 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39246 10 6452 1 2025-12-03 05:51:10.058 00:05:02.148 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 05:51:10.061 00:05:02.143 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 05:55:18.540 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:35160 10 6452 1 2025-12-03 05:56:25.972 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 05:56:25.986 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 05:56:18.916 00:00:10.397 TCP 1.101.0.1:3000 -> 23.104.0.1:42136 10 6452 1 2025-12-03 05:56:26.192 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 05:56:26.083 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 05:56:26.274 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 05:57:19.354 00:00:10.740 TCP 1.101.0.1:3000 -> 23.104.0.1:38666 10 6452 1 2025-12-03 05:58:20.132 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:42476 10 6452 1 Summary: total flows: 140, total bytes: 421073, total packets: 1025, avg bps: 915, avg pps: 0, avg bpp: 410 Time window: 2025-12-03 04:57:10 - 2025-12-03 05:58:30 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0051s User: 0.0010s Wall: 0.0017s flows/second: 81442.8 Runtime: 0.0017s