Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-04 02:59:11.101 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:55976 10 6452 1 2025-12-04 03:00:11.464 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39784 10 6452 1 2025-12-04 02:57:10.466 00:05:02.164 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 02:57:10.464 00:05:02.169 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 03:01:11.868 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44854 10 6452 1 2025-12-04 03:01:51.917 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 03:01:51.759 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 03:01:51.903 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 03:01:51.834 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 03:01:51.899 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 03:02:12.274 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:52032 10 6452 1 2025-12-04 03:03:12.677 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:48142 10 6452 1 2025-12-04 03:04:13.037 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:59832 10 6452 1 2025-12-04 03:05:13.440 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:56428 10 6452 1 2025-12-04 03:06:13.840 00:00:10.345 TCP 1.101.0.1:3000 -> 23.104.0.1:42468 10 6452 1 2025-12-04 03:06:51.573 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 03:06:51.333 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 03:06:51.489 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 03:06:51.504 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 03:06:51.403 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 03:03:10.465 00:05:02.168 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 03:03:10.468 00:05:02.163 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 03:07:14.220 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38102 10 6452 1 2025-12-04 03:08:14.624 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:33436 10 6452 1 2025-12-04 03:09:14.992 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:34330 10 6452 1 2025-12-04 03:10:15.407 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:40364 10 6452 1 2025-12-04 03:11:15.816 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:45118 10 6452 1 2025-12-04 03:11:51.683 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 03:11:51.545 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 03:11:51.917 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 03:11:51.868 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 03:11:52.001 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 03:12:16.192 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48962 10 6452 1 2025-12-04 03:09:10.467 00:05:02.169 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 03:09:10.469 00:05:02.164 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 03:13:16.592 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55312 10 6452 1 2025-12-04 03:14:16.991 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:38198 10 6452 1 2025-12-04 03:15:17.360 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:54806 10 6452 1 2025-12-04 03:16:17.765 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:38542 10 6452 1 2025-12-04 03:16:51.710 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 03:16:51.861 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 03:16:51.716 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 03:16:51.903 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 03:16:51.799 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 03:17:18.137 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47438 10 6452 1 2025-12-04 03:18:18.541 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:48496 10 6452 1 2025-12-04 03:15:10.470 00:05:02.164 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 03:15:10.468 00:05:02.169 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 03:19:18.947 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:58182 10 6452 1 2025-12-04 03:20:19.356 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:34880 10 6452 1 2025-12-04 03:21:19.768 00:00:10.346 TCP 1.101.0.1:3000 -> 23.104.0.1:56434 10 6452 1 2025-12-04 03:21:51.689 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 03:21:51.825 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 03:21:51.692 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 03:21:51.696 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 03:21:51.778 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 03:22:20.151 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:51570 10 6452 1 2025-12-04 03:23:20.507 00:00:10.584 TCP 1.101.0.1:3000 -> 23.104.0.1:50352 10 6452 1 2025-12-04 03:24:21.135 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49658 10 6452 1 2025-12-04 03:21:10.470 00:05:02.166 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 03:21:10.468 00:05:02.170 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 03:25:21.539 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37884 10 6452 1 2025-12-04 03:26:21.942 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:51386 10 6452 1 2025-12-04 03:26:52.303 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 03:26:51.909 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 03:26:51.824 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 03:26:52.219 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 03:26:52.220 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 03:27:22.367 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47482 10 6452 1 2025-12-04 03:28:22.770 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:53310 10 6452 1 2025-12-04 03:29:23.135 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:51548 10 6452 1 2025-12-04 03:30:23.504 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:37348 10 6452 1 2025-12-04 03:27:10.472 00:05:02.168 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 03:27:10.467 00:05:02.173 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 03:31:23.869 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:36046 10 6452 1 2025-12-04 03:31:52.150 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 03:31:51.875 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 03:31:51.984 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 03:31:52.066 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 03:31:51.964 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 03:32:24.277 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36406 10 6452 1 2025-12-04 03:33:24.680 00:00:10.443 TCP 1.101.0.1:3000 -> 23.104.0.1:37344 12 10584 1 2025-12-04 03:34:25.163 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33904 10 6661 1 2025-12-04 03:35:25.569 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53918 10 6661 1 2025-12-04 03:36:25.972 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:36990 10 6661 1 2025-12-04 03:36:52.267 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 03:36:51.933 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 03:36:52.266 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 03:36:52.200 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 03:36:52.349 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 03:33:10.469 00:05:02.173 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 03:33:10.473 00:05:02.168 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 03:37:26.387 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:60126 10 6661 1 2025-12-04 03:38:26.790 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44414 10 6661 1 2025-12-04 03:39:27.193 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55242 10 6661 1 2025-12-04 03:40:27.600 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:36708 10 6661 1 2025-12-04 03:41:28.020 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52888 10 6661 1 2025-12-04 03:41:52.526 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 03:41:52.338 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 03:41:52.527 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 03:41:52.521 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 03:41:52.610 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 03:42:28.425 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38372 10 6661 1 2025-12-04 03:39:10.470 00:05:02.174 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 03:39:10.473 00:05:02.169 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 03:43:28.828 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42944 10 6661 1 2025-12-04 03:44:29.234 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:45140 10 6661 1 2025-12-04 03:45:29.637 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52188 10 6661 1 2025-12-04 03:46:30.039 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:33570 10 6661 1 2025-12-04 03:46:52.367 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 03:46:52.399 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 03:46:52.261 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 03:46:52.433 00:00:00.029 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 03:46:52.345 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 03:47:30.454 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:43126 10 6661 1 2025-12-04 03:48:30.866 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:48444 10 6661 1 2025-12-04 03:45:10.475 00:05:02.168 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 03:45:10.471 00:05:02.174 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 03:49:31.287 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48702 10 6661 1 2025-12-04 03:50:31.681 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:55042 10 6661 1 2025-12-04 03:51:32.106 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:45410 10 6661 1 2025-12-04 03:51:52.466 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 03:51:52.461 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 03:51:52.546 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 03:51:52.359 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 03:51:52.629 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 03:52:32.509 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:47362 10 6661 1 2025-12-04 03:53:32.876 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:60660 10 6661 1 2025-12-04 03:54:33.282 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:39642 10 6661 1 2025-12-04 03:51:10.473 00:05:02.177 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 03:51:10.475 00:05:02.173 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 03:55:33.689 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:39616 10 6661 1 2025-12-04 03:56:34.071 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47224 10 6661 1 2025-12-04 03:56:52.773 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 03:56:52.625 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 03:56:52.740 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 03:56:52.689 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 03:56:52.682 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 03:57:34.480 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47654 10 6661 1 2025-12-04 03:58:34.881 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46042 10 6661 1 Summary: total flows: 140, total bytes: 426357, total packets: 1022, avg bps: 923, avg pps: 0, avg bpp: 417 Time window: 2025-12-04 02:57:10 - 2025-12-04 03:58:45 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0067s User: 0.0000s Wall: 0.0027s flows/second: 52730.1 Runtime: 0.0027s