Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-08 13:58:59.955 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-08 13:59:00.289 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-08 13:59:00.084 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-08 13:59:00.241 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-08 13:59:00.323 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-08 13:59:04.234 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:54802 10 6452 1 2025-12-08 14:00:04.596 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:41636 10 6452 1 2025-12-08 14:01:05.007 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55380 10 6452 1 2025-12-08 13:58:12.738 00:05:02.473 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-08 13:58:12.741 00:05:02.468 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-08 14:02:05.418 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49370 10 6452 1 2025-12-08 14:03:05.826 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:44500 10 6452 1 2025-12-08 14:04:00.580 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-08 14:04:00.314 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-08 14:04:00.329 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-08 14:04:00.229 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-08 14:04:00.497 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-08 14:04:06.196 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56432 10 6452 1 2025-12-08 14:05:06.598 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36198 10 6452 1 2025-12-08 14:06:07.009 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:34154 10 6452 1 2025-12-08 14:07:07.399 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:39072 10 6452 1 2025-12-08 14:04:12.747 00:05:02.466 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-08 14:08:07.801 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53110 10 6452 1 2025-12-08 14:04:12.743 00:05:02.472 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-08 14:09:00.638 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-08 14:09:00.462 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-08 14:09:00.452 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-08 14:09:00.401 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-08 14:09:00.555 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-08 14:09:08.203 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:49486 10 6452 1 2025-12-08 14:10:08.563 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:45158 10 6452 1 2025-12-08 14:11:08.980 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:50786 10 6452 1 2025-12-08 14:12:09.339 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33734 10 6452 1 2025-12-08 14:13:09.745 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39328 10 6452 1 2025-12-08 14:14:00.637 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-08 14:14:00.561 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-08 14:14:00.551 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-08 14:14:00.407 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-08 14:14:00.554 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-08 14:10:12.748 00:05:02.465 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-08 14:10:12.746 00:05:02.470 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-08 14:14:10.147 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:45572 10 6452 1 2025-12-08 14:15:10.511 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:51440 10 6452 1 2025-12-08 14:16:10.913 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50498 10 6452 1 2025-12-08 14:17:11.318 00:00:10.468 TCP 1.101.0.1:3000 -> 23.104.0.1:49776 10 6452 1 2025-12-08 14:18:11.820 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54442 10 6452 1 2025-12-08 14:19:00.652 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-08 14:19:00.652 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-08 14:19:00.359 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-08 14:19:00.567 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-08 14:19:00.649 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-08 14:19:12.224 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:60314 10 6452 1 2025-12-08 14:16:12.747 00:05:02.469 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-08 14:16:12.751 00:05:02.464 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-08 14:20:12.628 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:53278 10 6452 1 2025-12-08 14:21:12.988 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:32992 10 6452 1 2025-12-08 14:22:13.397 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:59328 10 6452 1 2025-12-08 14:23:13.759 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:56534 10 6452 1 2025-12-08 14:24:00.764 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-08 14:24:00.813 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-08 14:24:00.684 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-08 14:24:00.770 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-08 14:24:00.854 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-08 14:24:14.173 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:52942 12 10375 1 2025-12-08 14:25:14.605 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53234 10 6452 1 2025-12-08 14:22:12.753 00:05:02.463 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-08 14:22:12.751 00:05:02.469 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-08 14:26:15.011 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:49794 10 6452 1 2025-12-08 14:27:15.372 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:49568 10 6452 1 2025-12-08 14:28:15.788 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40562 10 6452 1 2025-12-08 14:29:00.838 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-08 14:29:00.806 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-08 14:29:00.706 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-08 14:29:00.884 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-08 14:29:00.889 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-08 14:29:16.193 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:56918 10 6452 1 2025-12-08 14:30:16.607 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:57046 10 6452 1 2025-12-08 14:31:17.020 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36838 10 6452 1 2025-12-08 14:28:12.754 00:05:02.463 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-08 14:28:12.752 00:05:02.468 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-08 14:32:17.429 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:35484 10 6452 1 2025-12-08 14:33:17.845 00:00:10.351 TCP 1.101.0.1:3000 -> 23.104.0.1:58198 10 6452 1 2025-12-08 14:34:00.813 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-08 14:34:00.729 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-08 14:34:00.719 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-08 14:34:00.881 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-08 14:34:00.553 00:00:00.026 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-08 14:34:18.235 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:42212 10 6452 1 2025-12-08 14:35:18.641 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44862 10 6452 1 2025-12-08 14:36:19.047 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58982 10 6452 1 2025-12-08 14:37:19.450 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40666 10 6452 1 2025-12-08 14:34:12.754 00:05:02.467 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-08 14:34:12.758 00:05:02.462 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-08 14:38:19.849 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:51246 10 6452 1 2025-12-08 14:39:00.960 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-08 14:39:00.953 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-08 14:39:00.966 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-08 14:39:01.093 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-08 14:39:01.177 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-08 14:39:20.279 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:38228 10 6452 1 2025-12-08 14:40:20.644 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43484 10 6452 1 2025-12-08 14:41:21.053 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:51830 10 6452 1 2025-12-08 14:42:21.462 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42452 10 6452 1 2025-12-08 14:43:21.869 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:43468 10 6452 1 2025-12-08 14:44:01.157 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-08 14:44:01.142 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-08 14:44:01.305 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-08 14:44:01.190 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-08 14:44:01.074 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-08 14:40:12.755 00:05:02.468 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-08 14:40:12.758 00:05:02.463 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-08 14:44:22.293 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:59868 10 6452 1 2025-12-08 14:45:22.689 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38908 10 6452 1 2025-12-08 14:46:23.115 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55116 10 6452 1 2025-12-08 14:47:23.523 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57358 10 6452 1 2025-12-08 14:48:23.930 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:39834 10 6452 1 2025-12-08 14:49:01.419 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-08 14:49:01.336 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-08 14:49:01.277 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-08 14:49:01.111 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-08 14:49:01.337 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-08 14:49:24.351 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:37588 10 6452 1 2025-12-08 14:46:12.755 00:05:02.470 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-08 14:46:12.758 00:05:02.465 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-08 14:50:24.717 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:47744 10 6452 1 2025-12-08 14:51:25.137 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39052 10 6452 1 2025-12-08 14:52:25.540 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:50008 10 6452 1 2025-12-08 14:53:25.940 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:34424 10 6452 1 2025-12-08 14:54:01.622 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-08 14:54:01.481 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-08 14:54:01.386 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-08 14:54:01.539 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-08 14:54:01.388 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-08 14:54:26.353 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:49738 10 6452 1 2025-12-08 14:55:26.750 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59420 10 6452 1 2025-12-08 14:52:12.763 00:05:02.463 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-08 14:52:12.759 00:05:02.468 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-08 14:56:27.155 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42464 10 6452 1 2025-12-08 14:57:27.557 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43470 10 6452 1 2025-12-08 14:58:27.961 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:36480 10 6452 1 Summary: total flows: 140, total bytes: 420923, total packets: 1022, avg bps: 928, avg pps: 0, avg bpp: 411 Time window: 2025-12-08 13:58:12 - 2025-12-08 14:58:38 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0045s User: 0.0009s Wall: 0.0015s flows/second: 91265.6 Runtime: 0.0015s