Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-04 00:58:59.023 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:44050 10 6452 1 2025-12-04 00:59:59.388 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:59902 10 6452 1 2025-12-04 01:00:59.793 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:54956 10 6452 1 2025-12-04 00:57:10.434 00:05:02.162 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 00:57:10.438 00:05:02.157 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 01:01:49.312 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 01:01:49.407 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 01:01:49.078 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 01:01:49.230 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 01:01:49.293 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 01:02:00.153 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:44500 10 6452 1 2025-12-04 01:03:00.516 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:34694 10 6452 1 2025-12-04 01:04:00.923 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:41234 10 6452 1 2025-12-04 01:05:01.338 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:44300 10 6452 1 2025-12-04 01:06:01.745 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53620 10 6452 1 2025-12-04 01:06:50.514 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 01:06:50.429 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 01:06:49.951 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 01:06:50.429 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 01:06:50.420 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 01:03:10.436 00:05:02.162 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 01:07:02.152 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60514 10 6452 1 2025-12-04 01:03:10.441 00:05:02.156 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 01:08:02.553 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53592 10 6452 1 2025-12-04 01:09:02.956 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48992 10 6452 1 2025-12-04 01:10:03.361 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:45912 10 6452 1 2025-12-04 01:11:03.733 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:58438 10 6452 1 2025-12-04 01:11:49.381 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 01:11:49.358 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 01:11:48.975 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 01:11:49.299 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 01:11:49.436 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 01:12:04.147 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:34128 10 6452 1 2025-12-04 01:09:10.441 00:05:02.156 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 01:13:04.555 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:33726 10 6452 1 2025-12-04 01:09:10.439 00:05:02.161 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 01:14:04.917 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57350 10 6452 1 2025-12-04 01:15:05.321 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:54286 10 6452 1 2025-12-04 01:16:05.727 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:33536 10 6452 1 2025-12-04 01:16:49.415 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 01:16:48.980 00:00:00.027 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 01:16:49.343 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 01:16:49.135 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 01:16:49.426 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 01:17:06.141 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:45470 10 6452 1 2025-12-04 01:18:06.541 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:45064 10 6452 1 2025-12-04 01:15:10.443 00:05:02.156 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 01:15:10.440 00:05:02.161 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 01:19:06.946 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:60182 10 6452 1 2025-12-04 01:20:07.360 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58304 10 6452 1 2025-12-04 01:21:07.763 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:40516 10 6452 1 2025-12-04 01:21:49.755 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 01:21:49.599 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 01:21:49.503 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 01:21:49.672 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 01:21:49.494 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 01:22:08.191 00:00:10.346 TCP 1.101.0.1:3000 -> 23.104.0.1:40230 10 6452 1 2025-12-04 01:23:08.574 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45462 10 6452 1 2025-12-04 01:24:08.975 00:00:10.397 TCP 1.101.0.1:3000 -> 23.104.0.1:50888 10 6452 1 2025-12-04 01:21:10.446 00:05:02.154 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 01:21:10.442 00:05:02.160 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 01:25:09.407 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:50370 10 6452 1 2025-12-04 01:26:09.832 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:55466 10 6452 1 2025-12-04 01:26:49.788 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 01:26:49.651 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 01:26:49.523 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 01:26:49.706 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 01:26:49.492 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 01:27:10.256 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:46710 10 6452 1 2025-12-04 01:28:10.656 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48248 10 6452 1 2025-12-04 01:29:11.077 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:42200 10 6452 1 2025-12-04 01:30:11.486 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49776 10 6452 1 2025-12-04 01:27:10.443 00:05:02.162 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 01:27:10.445 00:05:02.157 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 01:31:11.887 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:54610 10 6452 1 2025-12-04 01:31:49.474 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 01:31:49.574 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 01:31:49.526 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 01:31:49.392 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 01:31:49.641 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 01:32:12.293 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59592 10 6452 1 2025-12-04 01:33:12.696 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:40936 10 6452 1 2025-12-04 01:34:13.067 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39678 10 6452 1 2025-12-04 01:35:13.473 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:39064 10 6452 1 2025-12-04 01:36:13.884 00:00:10.351 TCP 1.101.0.1:3000 -> 23.104.0.1:38756 10 6452 1 2025-12-04 01:36:49.975 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 01:36:49.858 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 01:36:49.785 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 01:36:49.894 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 01:36:49.814 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 01:33:10.444 00:05:02.163 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 01:33:10.447 00:05:02.157 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 01:37:14.267 00:00:10.346 TCP 1.101.0.1:3000 -> 23.104.0.1:33184 10 6452 1 2025-12-04 01:38:14.658 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57136 10 6452 1 2025-12-04 01:39:15.093 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:38254 10 6452 1 2025-12-04 01:40:15.500 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:38182 10 6452 1 2025-12-04 01:41:15.919 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34808 10 6452 1 2025-12-04 01:41:50.082 00:00:00.039 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 01:41:50.119 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 01:41:49.680 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 01:41:49.999 00:00:00.039 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 01:41:49.785 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 01:42:16.327 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:38218 10 6452 1 2025-12-04 01:39:10.450 00:05:02.157 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 01:39:10.447 00:05:02.162 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 01:43:16.691 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:37708 10 6452 1 2025-12-04 01:44:17.110 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:45440 10 6452 1 2025-12-04 01:45:17.512 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:39352 10 6452 1 2025-12-04 01:46:17.937 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:54948 10 6452 1 2025-12-04 01:46:49.814 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 01:46:49.969 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 01:46:49.939 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 01:46:49.732 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 01:46:49.808 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 01:47:18.318 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:45268 10 6452 1 2025-12-04 01:48:18.744 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52968 10 6452 1 2025-12-04 01:45:10.447 00:05:02.164 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 01:45:10.449 00:05:02.159 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 01:49:19.147 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:57614 10 6452 1 2025-12-04 01:50:19.514 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60406 10 6452 1 2025-12-04 01:51:19.915 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55838 10 6452 1 2025-12-04 01:51:50.133 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 01:51:50.220 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 01:51:49.960 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 01:51:50.050 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 01:51:49.895 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 01:52:20.323 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:34562 10 6452 1 2025-12-04 01:53:20.738 00:00:10.443 TCP 1.101.0.1:3000 -> 23.104.0.1:43370 12 10369 1 2025-12-04 01:54:21.225 00:00:10.469 TCP 1.101.0.1:3000 -> 23.104.0.1:35246 10 6452 1 2025-12-04 01:51:10.447 00:05:02.164 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 01:51:10.450 00:05:02.159 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 01:55:21.733 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:39670 10 6452 1 2025-12-04 01:56:22.145 00:00:10.579 TCP 1.101.0.1:3000 -> 23.104.0.1:32790 10 6452 1 2025-12-04 01:56:50.174 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 01:56:50.067 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 01:56:50.181 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 01:56:50.362 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 01:56:50.265 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 01:57:22.764 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:35714 10 6452 1 2025-12-04 01:58:23.175 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:55388 10 6452 1 Summary: total flows: 140, total bytes: 420917, total packets: 1022, avg bps: 914, avg pps: 0, avg bpp: 411 Time window: 2025-12-04 00:57:10 - 2025-12-04 01:58:33 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0043s User: 0.0022s Wall: 0.0021s flows/second: 66037.2 Runtime: 0.0021s