Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-05 04:58:53.813 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:55648 10 6452 1 2025-12-05 04:59:54.222 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46380 10 6452 1 2025-12-05 05:00:54.623 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56278 10 6452 1 2025-12-05 04:57:11.056 00:05:02.168 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 04:57:11.058 00:05:02.163 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 05:01:55.022 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57880 10 6452 1 2025-12-05 05:02:22.965 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 05:02:22.660 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 05:02:22.594 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 05:02:22.882 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 05:02:22.883 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 05:02:55.425 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:51786 10 6452 1 2025-12-05 05:03:55.839 00:00:10.343 TCP 1.101.0.1:3000 -> 23.104.0.1:46654 10 6452 1 2025-12-05 05:04:56.225 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:43584 10 6452 1 2025-12-05 05:05:56.637 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:58786 10 6452 1 2025-12-05 05:06:57.001 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:49788 10 6452 1 2025-12-05 05:03:11.057 00:05:02.168 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 05:03:11.060 00:05:02.163 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 05:07:22.992 00:00:00.048 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 05:07:22.748 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 05:07:22.812 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 05:07:22.708 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 05:07:22.894 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 05:07:57.408 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:45778 10 6452 1 2025-12-05 05:08:57.816 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:46684 10 6452 1 2025-12-05 05:09:58.227 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57366 10 6452 1 2025-12-05 05:10:58.628 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:43298 10 6452 1 2025-12-05 05:11:59.041 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49944 10 6452 1 2025-12-05 05:12:22.992 00:00:00.034 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 05:12:22.874 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 05:12:22.832 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 05:12:23.116 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 05:12:22.916 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 05:09:11.058 00:05:02.168 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 05:12:59.446 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34122 10 6452 1 2025-12-05 05:09:11.062 00:05:02.163 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 05:13:59.852 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:57104 10 6452 1 2025-12-05 05:15:00.273 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:58750 10 6452 1 2025-12-05 05:16:00.679 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:56372 10 6452 1 2025-12-05 05:17:01.121 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48836 10 6452 1 2025-12-05 05:17:23.161 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 05:17:23.169 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 05:17:23.010 00:00:00.036 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 05:17:23.079 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 05:17:23.079 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 05:18:01.521 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54752 10 6452 1 2025-12-05 05:19:01.927 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:55976 10 6452 1 2025-12-05 05:15:11.062 00:05:02.166 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 05:15:11.060 00:05:02.170 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 05:20:02.348 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:46676 10 6452 1 2025-12-05 05:21:02.724 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:40964 10 6452 1 2025-12-05 05:22:03.131 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45792 10 6452 1 2025-12-05 05:22:23.314 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 05:22:23.127 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 05:22:22.884 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 05:22:23.230 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 05:22:22.991 00:00:00.026 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 05:23:03.533 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:47224 10 6452 1 2025-12-05 05:24:03.933 00:00:10.350 TCP 1.101.0.1:3000 -> 23.104.0.1:40298 10 6452 1 2025-12-05 05:21:11.062 00:05:02.197 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 05:25:04.319 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55962 10 6452 1 2025-12-05 05:21:11.065 00:05:02.192 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 05:26:04.723 00:00:10.343 TCP 1.101.0.1:3000 -> 23.104.0.1:60328 10 6452 1 2025-12-05 05:27:05.110 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:53018 10 6452 1 2025-12-05 05:27:23.181 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 05:27:23.342 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 05:27:23.240 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 05:27:23.099 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 05:27:23.266 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 05:28:05.513 00:00:10.428 TCP 1.101.0.1:3000 -> 23.104.0.1:36942 11 6504 1 2025-12-05 05:29:05.983 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:54936 10 6452 1 2025-12-05 05:30:06.394 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:53422 10 6452 1 2025-12-05 05:27:11.066 00:05:02.191 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 05:27:11.064 00:05:02.195 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 05:31:06.801 00:00:14.078 TCP 1.101.0.1:3000 -> 23.104.0.1:48670 10 6452 1 2025-12-05 05:32:10.950 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:46084 10 6452 1 2025-12-05 05:32:23.309 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 05:32:23.317 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 05:32:23.434 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 05:32:23.229 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 05:32:23.517 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 05:33:11.321 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:42714 10 6452 1 2025-12-05 05:34:11.724 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:40028 10 6452 1 2025-12-05 05:35:12.114 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57108 10 6452 1 2025-12-05 05:36:12.518 00:00:10.473 TCP 1.101.0.1:3000 -> 23.104.0.1:46056 10 6452 1 2025-12-05 05:33:11.074 00:05:02.187 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 05:33:11.071 00:05:02.192 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 05:37:23.678 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 05:37:23.640 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 05:37:13.031 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:54978 10 6452 1 2025-12-05 05:37:23.471 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 05:37:23.594 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 05:37:23.532 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 05:38:13.389 00:00:10.440 TCP 1.101.0.1:3000 -> 23.104.0.1:34076 12 10375 1 2025-12-05 05:39:13.872 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:48554 10 6452 1 2025-12-05 05:40:14.241 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:52564 10 6452 1 2025-12-05 05:41:14.643 00:00:10.945 TCP 1.101.0.1:3000 -> 23.104.0.1:52860 10 6452 1 2025-12-05 05:42:23.598 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 05:42:15.625 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:60160 10 6452 1 2025-12-05 05:42:23.367 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 05:42:23.538 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 05:42:23.539 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 05:42:23.623 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 05:39:11.072 00:05:02.192 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 05:39:11.074 00:05:02.188 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 05:43:16.028 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:37740 10 6452 1 2025-12-05 05:44:16.434 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:48562 10 6452 1 2025-12-05 05:45:16.842 00:00:10.394 TCP 1.101.0.1:3000 -> 23.104.0.1:54216 10 6452 1 2025-12-05 05:46:17.269 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:49584 10 6452 1 2025-12-05 05:47:23.746 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 05:47:23.663 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 05:47:23.752 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 05:47:23.663 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 05:47:23.783 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 05:47:17.680 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:49134 10 6452 1 2025-12-05 05:48:18.070 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49404 10 6452 1 2025-12-05 05:45:11.075 00:05:02.187 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 05:45:11.073 00:05:02.191 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 05:49:18.476 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:36600 10 6452 1 2025-12-05 05:50:18.841 00:00:10.344 TCP 1.101.0.1:3000 -> 23.104.0.1:56256 10 6452 1 2025-12-05 05:51:19.230 00:00:10.598 TCP 1.101.0.1:3000 -> 23.104.0.1:48430 11 6504 1 2025-12-05 05:52:24.048 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 05:52:23.884 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 05:52:23.789 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 05:52:23.965 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 05:52:23.877 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 05:52:19.870 00:00:10.746 TCP 1.101.0.1:3000 -> 23.104.0.1:39260 10 6452 1 2025-12-05 05:53:20.656 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:51362 10 6452 1 2025-12-05 05:54:21.021 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45034 10 6452 1 2025-12-05 05:51:11.074 00:05:02.193 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 05:51:11.076 00:05:02.189 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 05:55:21.431 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43360 10 6452 1 2025-12-05 05:56:21.838 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:51424 10 6452 1 2025-12-05 05:57:23.959 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 05:57:23.780 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 05:57:23.912 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 05:57:23.957 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 05:57:23.994 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 05:57:22.265 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42816 10 6452 1 2025-12-05 05:58:22.678 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58898 10 6452 1 Summary: total flows: 140, total bytes: 421027, total packets: 1024, avg bps: 914, avg pps: 0, avg bpp: 411 Time window: 2025-12-05 04:57:11 - 2025-12-05 05:58:33 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0036s User: 0.0027s Wall: 0.0018s flows/second: 76628.3 Runtime: 0.0018s