Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-05 01:59:28.881 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56466 10 6452 1 2025-12-05 02:00:29.284 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:55964 10 6452 1 2025-12-05 01:57:10.960 00:05:02.213 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 01:57:10.962 00:05:02.208 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 02:01:29.697 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54478 10 6452 1 2025-12-05 02:02:19.221 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 02:02:18.950 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 02:02:19.312 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 02:02:19.013 00:00:00.028 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 02:02:19.395 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 02:02:30.121 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56340 10 6452 1 2025-12-05 02:03:30.525 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:55718 10 6452 1 2025-12-05 02:04:30.886 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:35690 12 6556 1 2025-12-05 02:05:31.306 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:47384 10 6452 1 2025-12-05 02:06:31.671 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:49436 10 6452 1 2025-12-05 02:03:10.961 00:05:02.212 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 02:03:10.964 00:05:02.207 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 02:07:19.531 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 02:07:19.334 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 02:07:19.258 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 02:07:19.446 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 02:07:19.341 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 02:07:32.111 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:49760 10 6452 1 2025-12-05 02:08:32.535 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48080 10 6452 1 2025-12-05 02:09:32.931 00:00:10.353 TCP 1.101.0.1:3000 -> 23.104.0.1:32900 10 6452 1 2025-12-05 02:10:33.322 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:50776 10 6452 1 2025-12-05 02:11:33.683 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53176 10 6452 1 2025-12-05 02:12:19.584 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 02:12:19.324 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 02:12:19.363 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 02:12:19.502 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 02:12:19.592 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 02:12:34.110 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44164 10 6452 1 2025-12-05 02:09:10.968 00:05:02.207 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 02:09:10.971 00:05:02.202 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 02:13:34.510 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:57230 10 6452 1 2025-12-05 02:14:34.916 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:56740 10 6452 1 2025-12-05 02:15:35.277 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:38292 10 6452 1 2025-12-05 02:16:35.685 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:57180 10 6452 1 2025-12-05 02:17:19.982 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 02:17:19.799 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 02:17:19.748 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 02:17:19.899 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 02:17:19.731 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 02:17:36.113 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48194 10 6452 1 2025-12-05 02:18:36.514 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46996 10 6452 1 2025-12-05 02:15:10.971 00:05:02.204 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 02:15:10.969 00:05:02.209 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 02:19:36.917 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57988 10 6452 1 2025-12-05 02:20:37.317 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:56258 10 6452 1 2025-12-05 02:21:37.682 00:00:15.900 TCP 1.101.0.1:3000 -> 23.104.0.1:39456 10 6452 1 2025-12-05 02:22:20.221 00:00:00.033 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 02:22:20.186 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 02:22:19.646 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 02:22:20.137 00:00:00.033 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 02:22:20.083 00:00:00.029 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 02:22:43.658 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38968 10 6452 1 2025-12-05 02:23:44.077 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:42068 10 6452 1 2025-12-05 02:24:44.486 00:00:16.008 TCP 1.101.0.1:3000 -> 23.104.0.1:34606 10 6452 1 2025-12-05 02:21:10.974 00:05:02.202 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 02:21:10.971 00:05:02.208 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 02:25:50.532 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:48018 10 6452 1 2025-12-05 02:26:50.890 00:00:10.772 TCP 1.101.0.1:3000 -> 23.104.0.1:43740 10 6452 1 2025-12-05 02:27:19.727 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 02:27:19.576 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 02:27:19.654 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 02:27:19.772 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 02:27:19.736 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 02:27:51.698 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:38018 10 6452 1 2025-12-05 02:28:52.113 00:00:10.703 TCP 1.101.0.1:3000 -> 23.104.0.1:59690 10 6452 1 2025-12-05 02:29:52.855 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:48058 10 6452 1 2025-12-05 02:30:53.227 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:35156 10 6452 1 2025-12-05 02:27:10.976 00:05:02.201 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 02:27:10.975 00:05:02.206 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 02:31:53.634 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:53242 10 6452 1 2025-12-05 02:32:19.793 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 02:32:19.706 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 02:32:19.520 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 02:32:19.711 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 02:32:19.587 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 02:32:54.037 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41396 10 6452 1 2025-12-05 02:33:54.442 00:00:11.049 TCP 1.101.0.1:3000 -> 23.104.0.1:35316 10 6452 1 2025-12-05 02:34:55.531 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41350 10 6452 1 2025-12-05 02:35:55.933 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:41472 10 6452 1 2025-12-05 02:36:56.358 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:37560 10 6452 1 2025-12-05 02:33:10.977 00:05:02.203 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 02:37:20.068 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 02:33:10.979 00:05:02.198 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 02:37:19.737 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 02:37:19.843 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 02:37:19.985 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 02:37:19.720 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 02:37:56.719 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:49342 10 6452 1 2025-12-05 02:38:57.129 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60128 10 6452 1 2025-12-05 02:39:57.535 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:57426 10 6452 1 2025-12-05 02:40:57.896 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:60290 10 6452 1 2025-12-05 02:41:58.314 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:47782 10 6452 1 2025-12-05 02:42:19.985 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 02:42:20.085 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 02:42:19.874 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 02:42:19.987 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 02:42:19.956 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 02:42:58.737 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:57432 10 6452 1 2025-12-05 02:39:10.982 00:05:02.197 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 02:39:10.979 00:05:02.202 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 02:43:59.136 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40250 10 6452 1 2025-12-05 02:44:59.539 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:42898 10 6452 1 2025-12-05 02:45:59.907 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49582 12 6556 1 2025-12-05 02:47:00.309 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59236 10 6452 1 2025-12-05 02:47:19.974 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 02:47:20.111 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 02:47:20.133 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 02:47:19.892 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 02:47:20.107 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 02:48:00.710 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:41476 10 6452 1 2025-12-05 02:45:10.981 00:05:02.201 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 02:49:01.126 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37270 10 6452 1 2025-12-05 02:45:10.984 00:05:02.196 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 02:50:01.530 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37838 10 6452 1 2025-12-05 02:51:01.939 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:48822 10 6452 1 2025-12-05 02:52:02.352 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:60110 10 6452 1 2025-12-05 02:52:20.327 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 02:52:19.934 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 02:52:20.169 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 02:52:20.108 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 02:52:20.253 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 02:53:02.757 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:56242 10 6452 1 2025-12-05 02:54:03.174 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:48526 10 6452 1 2025-12-05 02:55:03.541 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:42446 10 6452 1 2025-12-05 02:51:10.986 00:05:02.196 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 02:51:10.983 00:05:02.201 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 02:56:03.950 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59132 10 6452 1 2025-12-05 02:57:04.356 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:45232 10 6452 1 2025-12-05 02:57:20.491 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 02:57:20.440 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 02:57:20.494 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 02:57:20.358 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 02:57:20.578 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 02:58:04.759 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:55958 10 6452 1 Summary: total flows: 139, total bytes: 410756, total packets: 1014, avg bps: 896, avg pps: 0, avg bpp: 405 Time window: 2025-12-05 01:57:10 - 2025-12-05 02:58:15 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0059s User: 0.0008s Wall: 0.0020s flows/second: 69323.2 Runtime: 0.0020s