Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-04 05:59:37.392 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:57284 10 6452 1 2025-12-04 06:00:37.799 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:55164 10 6452 1 2025-12-04 05:57:10.522 00:05:02.159 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 05:57:10.520 00:05:02.164 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 06:01:38.204 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:45274 10 6452 1 2025-12-04 06:01:55.046 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 06:01:54.836 00:00:00.036 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 06:01:55.235 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 06:01:55.113 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 06:01:55.318 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 06:02:38.567 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:56430 10 6452 1 2025-12-04 06:03:38.968 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:55972 10 6452 1 2025-12-04 06:04:39.392 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47716 10 6452 1 2025-12-04 06:05:39.799 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:43344 10 6452 1 2025-12-04 06:06:40.210 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60550 10 6452 1 2025-12-04 06:06:55.309 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 06:06:55.364 00:00:00.030 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 06:06:55.126 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 06:06:55.509 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 06:06:55.207 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 06:03:10.523 00:05:02.160 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 06:03:10.520 00:05:02.165 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 06:07:40.611 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:38362 10 6452 1 2025-12-04 06:08:40.975 00:00:10.448 TCP 1.101.0.1:3000 -> 23.104.0.1:36130 12 10371 1 2025-12-04 06:09:41.462 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46720 10 6452 1 2025-12-04 06:10:41.863 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58230 10 6452 1 2025-12-04 06:11:55.361 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 06:11:54.918 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 06:11:55.270 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 06:11:55.313 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 06:11:42.272 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:34388 10 6452 1 2025-12-04 06:11:55.354 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 06:12:42.677 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:53110 10 6452 1 2025-12-04 06:09:10.520 00:05:02.166 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 06:09:10.524 00:05:02.160 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 06:13:43.105 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56660 10 6452 1 2025-12-04 06:14:43.528 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53184 10 6452 1 2025-12-04 06:15:43.943 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:45966 10 6452 1 2025-12-04 06:16:55.556 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 06:16:55.371 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 06:16:55.235 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 06:16:55.473 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 06:16:55.474 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 06:16:44.373 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:39176 10 6452 1 2025-12-04 06:17:44.742 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:36488 10 6452 1 2025-12-04 06:18:45.153 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:48170 10 6452 1 2025-12-04 06:15:10.526 00:05:02.163 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 06:15:10.530 00:05:02.158 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 06:19:45.548 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:35422 10 6452 1 2025-12-04 06:20:45.949 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:39368 10 6452 1 2025-12-04 06:21:55.491 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 06:21:55.472 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 06:21:55.263 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 06:21:55.409 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 06:21:55.471 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 06:21:46.361 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:38324 10 6452 1 2025-12-04 06:22:46.769 00:00:10.344 TCP 1.101.0.1:3000 -> 23.104.0.1:39476 10 6452 1 2025-12-04 06:23:47.152 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56606 10 6452 1 2025-12-04 06:24:47.559 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43438 10 6452 1 2025-12-04 06:21:10.530 00:05:02.158 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 06:21:10.527 00:05:02.162 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 06:25:47.966 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51864 10 6452 1 2025-12-04 06:26:55.712 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 06:26:55.624 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 06:26:55.478 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 06:26:55.629 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 06:26:55.548 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 06:26:48.369 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38422 10 6452 1 2025-12-04 06:27:48.774 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:37408 10 6452 1 2025-12-04 06:28:49.190 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51864 10 6452 1 2025-12-04 06:29:49.595 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47748 10 6452 1 2025-12-04 06:30:50.044 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38842 10 6452 1 2025-12-04 06:27:10.532 00:05:02.157 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 06:27:10.530 00:05:02.161 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 06:31:56.040 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 06:31:55.788 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 06:31:55.498 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 06:31:55.958 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 06:31:55.896 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 06:31:50.447 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59250 10 6452 1 2025-12-04 06:32:50.854 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:60928 10 6452 1 2025-12-04 06:33:51.278 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42784 10 6452 1 2025-12-04 06:34:51.681 00:00:10.904 TCP 1.101.0.1:3000 -> 23.104.0.1:50548 10 6452 1 2025-12-04 06:35:52.627 00:00:10.827 TCP 1.101.0.1:3000 -> 23.104.0.1:42294 10 6452 1 2025-12-04 06:36:55.740 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 06:36:55.790 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 06:36:55.561 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 06:36:55.876 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 06:36:55.644 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 06:36:53.494 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:38318 10 6452 1 2025-12-04 06:33:10.534 00:05:02.157 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 06:33:10.532 00:05:02.162 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 06:37:53.896 00:00:10.603 TCP 1.101.0.1:3000 -> 23.104.0.1:56912 10 6452 1 2025-12-04 06:38:54.543 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:49798 10 6452 1 2025-12-04 06:39:54.950 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:47558 10 6452 1 2025-12-04 06:40:55.374 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:52464 10 6452 1 2025-12-04 06:41:55.924 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 06:41:55.775 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 06:41:55.798 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 06:41:55.841 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 06:41:55.903 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 06:41:55.773 00:00:10.612 TCP 1.101.0.1:3000 -> 23.104.0.1:43356 10 6452 1 2025-12-04 06:42:56.417 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:36094 10 6452 1 2025-12-04 06:39:10.535 00:05:02.159 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 06:39:10.533 00:05:02.164 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 06:43:56.810 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:34284 10 6452 1 2025-12-04 06:44:57.212 00:00:10.348 TCP 1.101.0.1:3000 -> 23.104.0.1:37678 10 6452 1 2025-12-04 06:45:57.610 00:00:10.347 TCP 1.101.0.1:3000 -> 23.104.0.1:41726 10 6452 1 2025-12-04 06:46:56.216 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 06:46:55.831 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 06:46:55.909 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 06:46:56.069 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 06:46:56.133 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 06:46:57.991 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:40830 10 6452 1 2025-12-04 06:47:58.399 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:49112 10 6452 1 2025-12-04 06:48:58.810 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:44896 10 6452 1 2025-12-04 06:45:10.535 00:05:02.161 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 06:45:10.532 00:05:02.166 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 06:49:59.216 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:37594 10 6452 1 2025-12-04 06:50:59.630 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:34896 10 6452 1 2025-12-04 06:51:55.861 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 06:51:56.341 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 06:51:56.226 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 06:51:56.106 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 06:51:56.258 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 06:52:00.036 00:00:10.522 TCP 1.101.0.1:3000 -> 23.104.0.1:57778 10 6452 1 2025-12-04 06:53:00.595 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49252 10 6452 1 2025-12-04 06:54:00.995 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:58608 10 6452 1 2025-12-04 06:55:01.403 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:43726 10 6452 1 2025-12-04 06:51:10.536 00:05:02.163 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 06:51:10.533 00:05:02.169 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 06:56:01.775 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:45704 10 6452 1 2025-12-04 06:56:56.173 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 06:56:56.047 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 06:56:56.095 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 06:56:56.222 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 06:56:56.178 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 06:57:02.143 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54898 10 6452 1 2025-12-04 06:58:02.541 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43390 10 6452 1 Summary: total flows: 139, total bytes: 414467, total packets: 1012, avg bps: 905, avg pps: 0, avg bpp: 409 Time window: 2025-12-04 05:57:10 - 2025-12-04 06:58:12 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0044s User: 0.0018s Wall: 0.0025s flows/second: 54532.6 Runtime: 0.0026s