Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-05 00:59:02.162 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55582 10 6452 1 2025-12-05 01:00:02.566 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58686 10 6452 1 2025-12-05 00:57:10.938 00:05:02.214 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 01:01:02.980 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:42228 10 6452 1 2025-12-05 00:57:10.942 00:05:02.208 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 01:02:03.400 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:53282 10 6452 1 2025-12-05 01:02:17.883 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 01:02:17.927 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 01:02:17.701 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 01:02:18.164 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 01:02:17.784 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 01:03:03.807 00:00:10.408 TCP 1.101.0.1:3000 -> 23.104.0.1:36248 12 10375 1 2025-12-05 01:04:04.253 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54532 10 6452 1 2025-12-05 01:05:04.657 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:51320 10 6452 1 2025-12-05 01:06:05.065 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:38504 10 6452 1 2025-12-05 01:03:10.940 00:05:02.213 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 01:07:05.464 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:45496 10 6452 1 2025-12-05 01:03:10.943 00:05:02.207 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 01:07:18.063 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 01:07:18.099 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 01:07:18.112 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 01:07:17.980 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 01:07:18.097 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 01:08:05.863 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:41088 10 6452 1 2025-12-05 01:09:06.286 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54204 10 6452 1 2025-12-05 01:10:06.691 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46224 10 6452 1 2025-12-05 01:11:07.107 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40636 10 6452 1 2025-12-05 01:12:18.521 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 01:12:07.510 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:39424 10 6452 1 2025-12-05 01:12:18.493 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 01:12:18.390 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 01:12:18.438 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 01:12:18.387 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 01:09:10.942 00:05:02.214 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 01:09:10.945 00:05:02.209 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 01:13:07.917 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:60764 10 6452 1 2025-12-05 01:14:08.326 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45050 10 6452 1 2025-12-05 01:15:08.729 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:41050 10 6452 1 2025-12-05 01:16:09.144 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:36560 10 6452 1 2025-12-05 01:17:18.348 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 01:17:18.163 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 01:17:18.360 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 01:17:18.353 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 01:17:09.514 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:32836 10 6452 1 2025-12-05 01:17:18.443 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 01:18:09.922 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:58262 10 6452 1 2025-12-05 01:15:10.943 00:05:02.216 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 01:15:10.945 00:05:02.210 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 01:19:10.340 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36948 10 6452 1 2025-12-05 01:20:10.745 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:35748 10 6452 1 2025-12-05 01:21:11.120 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:45604 10 6452 1 2025-12-05 01:22:18.327 00:00:00.026 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 01:22:18.445 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 01:22:18.734 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 01:22:18.893 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 01:22:18.816 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 01:22:11.520 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:37686 10 6452 1 2025-12-05 01:23:11.919 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:60370 10 6452 1 2025-12-05 01:24:12.337 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47490 10 6452 1 2025-12-05 01:21:10.943 00:05:02.215 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 01:21:10.948 00:05:02.209 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 01:25:12.743 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:50744 10 6452 1 2025-12-05 01:26:13.115 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:36350 10 6452 1 2025-12-05 01:27:18.537 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 01:27:18.581 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 01:27:18.493 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 01:27:18.455 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 01:27:18.579 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 01:27:13.526 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39966 10 6452 1 2025-12-05 01:28:13.928 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:53300 10 6452 1 2025-12-05 01:29:14.346 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:60084 10 6452 1 2025-12-05 01:30:14.753 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:41634 10 6452 1 2025-12-05 01:27:10.947 00:05:02.210 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 01:27:10.944 00:05:02.216 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 01:31:15.180 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:34378 10 6452 1 2025-12-05 01:32:18.871 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 01:32:18.788 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 01:32:18.475 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 01:32:18.789 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 01:32:18.660 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 01:32:15.585 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:56924 10 6452 1 2025-12-05 01:33:15.959 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53092 10 6452 1 2025-12-05 01:34:16.366 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:57992 10 6452 1 2025-12-05 01:35:16.770 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:54174 10 6452 1 2025-12-05 01:36:17.138 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41518 10 6452 1 2025-12-05 01:33:10.947 00:05:02.217 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 01:37:18.714 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 01:33:10.949 00:05:02.212 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 01:37:18.633 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 01:37:18.582 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 01:37:18.633 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 01:37:18.633 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 01:37:17.545 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45096 10 6452 1 2025-12-05 01:38:17.951 00:00:11.534 TCP 1.101.0.1:3000 -> 23.104.0.1:40244 10 6452 1 2025-12-05 01:39:19.524 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48076 10 6452 1 2025-12-05 01:40:19.929 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:36590 10 6452 1 2025-12-05 01:41:20.359 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:36060 10 6452 1 2025-12-05 01:42:18.814 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 01:42:18.727 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 01:42:18.679 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 01:42:18.732 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 01:42:18.796 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 01:42:20.762 00:00:10.815 TCP 1.101.0.1:3000 -> 23.104.0.1:39468 10 6452 1 2025-12-05 01:39:10.954 00:05:02.208 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 01:39:10.953 00:05:02.214 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 01:43:21.618 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:44280 10 6452 1 2025-12-05 01:44:22.025 00:00:10.561 TCP 1.101.0.1:3000 -> 23.104.0.1:56378 10 6452 1 2025-12-05 01:45:22.627 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58728 10 6452 1 2025-12-05 01:46:23.032 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57402 10 6452 1 2025-12-05 01:47:19.037 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 01:47:18.900 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 01:47:18.858 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 01:47:18.954 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 01:47:18.955 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 01:47:23.436 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53156 10 6452 1 2025-12-05 01:48:23.838 00:00:10.978 TCP 1.101.0.1:3000 -> 23.104.0.1:47034 10 6452 1 2025-12-05 01:45:10.953 00:05:02.213 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 01:45:10.957 00:05:02.208 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 01:49:24.881 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34302 10 6452 1 2025-12-05 01:50:25.286 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:48308 10 6452 1 2025-12-05 01:51:25.692 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:58578 10 6452 1 2025-12-05 01:52:19.043 00:00:00.026 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 01:52:18.874 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 01:52:19.188 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 01:52:19.106 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 01:52:18.958 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 01:52:26.120 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:47218 10 6452 1 2025-12-05 01:53:26.482 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:53964 10 6452 1 2025-12-05 01:54:26.833 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:48766 10 6452 1 2025-12-05 01:51:10.956 00:05:02.211 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 01:51:10.955 00:05:02.215 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 01:55:27.286 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39170 10 6452 1 2025-12-05 01:56:27.695 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:60240 10 6452 1 2025-12-05 01:57:19.462 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 01:57:19.181 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 01:57:19.563 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 01:57:19.379 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 01:57:19.452 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 01:57:28.107 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60716 10 6452 1 2025-12-05 01:58:28.516 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:41996 10 6452 1 Summary: total flows: 140, total bytes: 420923, total packets: 1022, avg bps: 913, avg pps: 0, avg bpp: 411 Time window: 2025-12-05 00:57:10 - 2025-12-05 01:58:38 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0038s User: 0.0019s Wall: 0.0020s flows/second: 68494.4 Runtime: 0.0021s