Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-05 03:59:29.881 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51534 10 6452 1 2025-12-05 04:00:30.284 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40230 10 6452 1 2025-12-05 03:57:11.041 00:05:02.164 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 03:57:11.038 00:05:02.170 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 04:01:30.686 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52174 10 6452 1 2025-12-05 04:02:21.705 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 04:02:21.438 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 04:02:21.464 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 04:02:21.623 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 04:02:21.637 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 04:02:31.110 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41648 10 6452 1 2025-12-05 04:03:31.512 00:00:10.439 TCP 1.101.0.1:3000 -> 23.104.0.1:50712 12 10375 1 2025-12-05 04:04:31.991 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:59996 10 6452 1 2025-12-05 04:05:32.358 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:59576 10 6452 1 2025-12-05 04:06:32.717 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35986 10 6452 1 2025-12-05 04:03:11.039 00:05:02.172 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 04:03:11.042 00:05:02.166 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 04:07:21.696 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 04:07:21.478 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 04:07:21.517 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 04:07:21.412 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 04:07:21.599 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 04:07:33.124 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43024 10 6452 1 2025-12-05 04:08:33.527 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:42354 10 6452 1 2025-12-05 04:09:33.942 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:42500 10 6452 1 2025-12-05 04:10:34.356 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:41732 11 6492 1 2025-12-05 04:11:34.712 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:43038 11 6492 1 2025-12-05 04:12:21.888 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 04:12:21.646 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 04:12:21.820 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 04:12:21.882 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 04:12:21.902 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 04:12:35.119 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:43644 10 6452 1 2025-12-05 04:09:11.046 00:05:02.163 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 04:09:11.044 00:05:02.168 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 04:13:35.533 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53464 10 6452 1 2025-12-05 04:14:35.937 00:00:10.345 TCP 1.101.0.1:3000 -> 23.104.0.1:49564 10 6452 1 2025-12-05 04:15:36.315 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:53650 10 6452 1 2025-12-05 04:16:36.726 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:60398 12 6556 1 2025-12-05 04:17:21.779 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 04:17:21.610 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 04:17:21.917 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 04:17:21.871 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 04:17:22.001 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 04:17:37.143 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:37118 10 6452 1 2025-12-05 04:18:37.553 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41854 10 6452 1 2025-12-05 04:15:11.048 00:05:02.164 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 04:15:11.047 00:05:02.169 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 04:19:37.957 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:51440 10 6452 1 2025-12-05 04:20:38.359 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:53582 10 6452 1 2025-12-05 04:21:38.761 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:36856 10 6452 1 2025-12-05 04:22:22.295 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 04:22:21.765 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 04:22:21.997 00:00:00.040 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 04:22:22.212 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 04:22:22.309 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 04:22:39.179 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35596 10 6452 1 2025-12-05 04:23:39.582 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:59346 10 6452 1 2025-12-05 04:24:39.992 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41648 10 6452 1 2025-12-05 04:21:11.047 00:05:02.169 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 04:21:11.050 00:05:02.163 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 04:25:40.392 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:33468 10 6452 1 2025-12-05 04:26:40.757 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:52792 10 6452 1 2025-12-05 04:27:22.051 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 04:27:22.155 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 04:27:22.049 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 04:27:21.969 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 04:27:22.094 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 04:27:41.130 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:40984 10 6452 1 2025-12-05 04:28:41.529 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56842 10 6452 1 2025-12-05 04:29:41.931 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:58336 10 6452 1 2025-12-05 04:30:42.354 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:34108 10 6452 1 2025-12-05 04:27:11.049 00:05:02.168 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 04:27:11.052 00:05:02.163 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 04:31:42.723 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:54950 10 6452 1 2025-12-05 04:32:22.252 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 04:32:21.927 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 04:32:22.249 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 04:32:22.285 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 04:32:22.333 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 04:32:43.140 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59754 10 6452 1 2025-12-05 04:33:43.541 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:52840 10 6452 1 2025-12-05 04:34:43.901 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:36366 10 6452 1 2025-12-05 04:35:44.316 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58412 10 6452 1 2025-12-05 04:36:44.721 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:44768 10 6452 1 2025-12-05 04:33:11.053 00:05:02.163 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 04:33:11.050 00:05:02.168 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 04:37:22.557 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 04:37:22.470 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 04:37:22.230 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 04:37:22.475 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 04:37:22.472 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 04:37:45.144 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:32938 10 6452 1 2025-12-05 04:38:45.550 00:00:10.402 TCP 1.101.0.1:3000 -> 23.104.0.1:57304 12 10369 1 2025-12-05 04:39:45.995 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:53528 10 6452 1 2025-12-05 04:40:46.422 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60666 10 6452 1 2025-12-05 04:41:46.827 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60938 10 6452 1 2025-12-05 04:42:22.459 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 04:42:22.367 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 04:42:22.405 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 04:42:22.377 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 04:42:22.226 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 04:42:47.228 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:58116 10 6452 1 2025-12-05 04:39:11.054 00:05:02.167 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 04:39:11.057 00:05:02.162 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 04:43:47.648 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54272 10 6452 1 2025-12-05 04:44:48.060 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35828 10 6452 1 2025-12-05 04:45:48.463 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50000 10 6452 1 2025-12-05 04:46:48.865 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:43642 10 6452 1 2025-12-05 04:47:22.633 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 04:47:22.553 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 04:47:22.250 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 04:47:22.550 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 04:47:22.702 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 04:47:49.274 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48678 10 6452 1 2025-12-05 04:48:49.670 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38284 10 6452 1 2025-12-05 04:45:11.055 00:05:02.168 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 04:45:11.057 00:05:02.162 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 04:49:50.102 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:53368 10 6452 1 2025-12-05 04:50:50.500 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43894 10 6452 1 2025-12-05 04:51:50.903 00:00:10.534 TCP 1.101.0.1:3000 -> 23.104.0.1:57142 12 6556 1 2025-12-05 04:52:22.721 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 04:52:22.642 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 04:52:22.649 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 04:52:22.640 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 04:52:22.647 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 04:52:51.472 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:53488 10 6452 1 2025-12-05 04:53:51.834 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:41094 10 6452 1 2025-12-05 04:54:52.231 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56940 10 6452 1 2025-12-05 04:51:11.055 00:05:02.168 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 04:51:11.058 00:05:02.163 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 04:55:52.635 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54198 10 6452 1 2025-12-05 04:56:53.038 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:54736 10 6452 1 2025-12-05 04:57:22.717 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 04:57:22.601 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 04:57:22.455 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 04:57:22.633 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 04:57:22.626 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 04:57:53.401 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:47172 10 6452 1 Summary: total flows: 139, total bytes: 418676, total packets: 1020, avg bps: 916, avg pps: 0, avg bpp: 410 Time window: 2025-12-05 03:57:11 - 2025-12-05 04:58:03 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0093s User: 0.0021s Wall: 0.0026s flows/second: 54127.6 Runtime: 0.0026s