Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-05 02:59:05.180 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:56684 10 6452 1 2025-12-05 03:00:05.587 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:50834 10 6452 1 2025-12-05 02:57:10.986 00:05:02.199 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 02:57:10.985 00:05:02.204 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 03:01:06.002 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:47924 10 6452 1 2025-12-05 03:02:20.502 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 03:02:20.428 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 03:02:20.285 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 03:02:06.401 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:52990 10 6452 1 2025-12-05 03:02:20.418 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 03:02:20.475 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 03:03:06.764 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:40742 10 6452 1 2025-12-05 03:04:07.183 00:00:10.560 TCP 1.101.0.1:3000 -> 23.104.0.1:58600 10 6452 1 2025-12-05 03:05:07.779 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:41800 10 6452 1 2025-12-05 03:06:08.187 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50084 10 6452 1 2025-12-05 03:03:10.985 00:05:02.203 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 03:03:10.987 00:05:02.198 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 03:07:20.511 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 03:07:20.451 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 03:07:20.516 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 03:07:20.626 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 03:07:08.588 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:37820 10 6452 1 2025-12-05 03:07:20.600 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 03:08:08.948 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:36908 10 6452 1 2025-12-05 03:09:09.361 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60348 10 6452 1 2025-12-05 03:10:09.765 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:47622 10 6452 1 2025-12-05 03:11:10.181 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35062 10 6452 1 2025-12-05 03:12:20.629 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 03:12:20.657 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 03:12:10.586 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:34592 10 6452 1 2025-12-05 03:12:20.300 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 03:12:20.546 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 03:12:20.652 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 03:09:10.988 00:05:02.198 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 03:09:10.985 00:05:02.203 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 03:13:10.987 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:57484 10 6452 1 2025-12-05 03:14:11.393 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:36686 10 6452 1 2025-12-05 03:15:11.800 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:54520 10 6452 1 2025-12-05 03:16:12.171 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:55912 10 6452 1 2025-12-05 03:17:20.721 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 03:17:20.666 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 03:17:20.723 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 03:17:20.540 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 03:17:20.806 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 03:17:12.566 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:33954 10 6452 1 2025-12-05 03:18:12.963 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:46382 10 6452 1 2025-12-05 03:15:10.988 00:05:02.202 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 03:15:10.991 00:05:02.197 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 03:19:13.326 00:00:11.004 TCP 1.101.0.1:3000 -> 23.104.0.1:60914 10 6452 1 2025-12-05 03:20:14.370 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:40796 10 6452 1 2025-12-05 03:21:14.729 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:40328 10 6452 1 2025-12-05 03:22:20.856 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 03:22:20.620 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 03:22:20.674 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 03:22:20.775 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 03:22:20.839 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 03:22:15.141 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:40852 10 6452 1 2025-12-05 03:23:15.558 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:59306 10 6452 1 2025-12-05 03:24:15.940 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:57254 10 6452 1 2025-12-05 03:21:10.992 00:05:02.197 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 03:21:10.990 00:05:02.202 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 03:25:16.353 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:48604 10 6452 1 2025-12-05 03:26:16.759 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:38512 10 6452 1 2025-12-05 03:27:20.931 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 03:27:20.820 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 03:27:20.875 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 03:27:20.615 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 03:27:20.959 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 03:27:17.182 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:44438 10 6452 1 2025-12-05 03:28:17.585 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:42278 10 6452 1 2025-12-05 03:29:17.989 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:53682 10 6452 1 2025-12-05 03:30:18.358 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:51490 10 6452 1 2025-12-05 03:27:10.992 00:05:02.201 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 03:27:10.996 00:05:02.195 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 03:31:18.722 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:52640 10 6452 1 2025-12-05 03:32:20.960 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 03:32:20.827 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 03:32:20.899 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 03:32:21.158 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 03:32:21.076 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 03:32:19.132 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53566 10 6452 1 2025-12-05 03:33:19.536 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:34094 10 6452 1 2025-12-05 03:34:19.942 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:33154 10 6452 1 2025-12-05 03:35:20.364 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:55036 10 6452 1 2025-12-05 03:36:20.796 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:38924 10 6452 1 2025-12-05 03:33:10.994 00:05:02.202 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 03:33:10.997 00:05:02.197 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 03:37:21.165 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 03:37:21.409 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 03:37:21.099 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 03:37:21.085 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 03:37:21.349 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 03:37:21.194 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:56592 10 6452 1 2025-12-05 03:38:21.597 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:51692 10 6452 1 2025-12-05 03:39:22.019 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:47028 10 6452 1 2025-12-05 03:40:22.380 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48480 10 6452 1 2025-12-05 03:41:22.783 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44270 10 6452 1 2025-12-05 03:42:20.874 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 03:42:21.181 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 03:42:21.192 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 03:42:21.251 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 03:42:21.275 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 03:42:23.186 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:48390 10 6452 1 2025-12-05 03:39:11.001 00:05:02.195 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 03:39:10.997 00:05:02.202 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 03:43:23.554 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:59308 10 6452 1 2025-12-05 03:44:23.916 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:44710 10 6452 1 2025-12-05 03:45:24.315 00:00:10.415 TCP 1.101.0.1:3000 -> 23.104.0.1:41808 11 6504 1 2025-12-05 03:46:24.772 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:41358 10 6452 1 2025-12-05 03:47:21.603 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 03:47:21.408 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 03:47:21.115 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 03:47:21.518 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 03:47:21.448 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 03:47:25.142 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:34454 10 6452 1 2025-12-05 03:48:25.499 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60760 10 6452 1 2025-12-05 03:45:11.004 00:05:02.194 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 03:45:11.002 00:05:02.199 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 03:49:25.902 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:58152 10 6452 1 2025-12-05 03:50:26.318 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:59898 10 6452 1 2025-12-05 03:51:26.678 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:59924 10 6452 1 2025-12-05 03:52:21.352 00:00:00.026 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 03:52:21.397 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 03:52:21.365 00:00:00.026 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 03:52:21.820 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 03:52:21.447 00:00:00.026 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 03:52:27.071 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:48270 10 6452 1 2025-12-05 03:53:27.485 00:00:10.440 TCP 1.101.0.1:3000 -> 23.104.0.1:37322 12 10375 1 2025-12-05 03:54:27.960 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:47094 10 6452 1 2025-12-05 03:51:11.034 00:05:02.169 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 03:51:11.037 00:05:02.165 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 03:55:28.322 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42704 10 6452 1 2025-12-05 03:56:28.728 00:00:10.347 TCP 1.101.0.1:3000 -> 23.104.0.1:46156 10 6452 1 2025-12-05 03:57:21.351 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 03:57:21.535 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 03:57:21.507 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 03:57:21.508 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 03:57:21.591 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 03:57:29.113 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56124 10 6452 1 2025-12-05 03:58:29.514 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:40268 10 6452 1 Summary: total flows: 140, total bytes: 420975, total packets: 1023, avg bps: 912, avg pps: 0, avg bpp: 411 Time window: 2025-12-05 02:57:10 - 2025-12-05 03:58:39 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0038s User: 0.0019s Wall: 0.0030s flows/second: 46448.5 Runtime: 0.0030s