Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-09 08:58:41.112 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:57968 10 6452 1 2025-12-09 08:59:23.303 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-09 08:59:23.300 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-09 08:59:23.186 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-09 08:59:23.117 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-09 08:59:23.201 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-09 08:59:41.518 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41476 10 6452 1 2025-12-09 09:00:41.923 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:55140 10 6452 1 2025-12-09 09:01:42.338 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:54680 10 6452 1 2025-12-09 08:57:15.574 00:05:57.660 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-09 08:57:15.578 00:05:57.654 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-09 09:02:42.744 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44632 10 6452 1 2025-12-09 09:03:43.149 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:44122 10 6452 1 2025-12-09 09:04:23.345 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-09 09:04:23.254 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-09 09:04:23.262 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-09 09:04:22.988 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-09 09:04:23.263 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-09 09:04:43.547 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:38312 10 6452 1 2025-12-09 09:05:43.946 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:57336 10 6452 1 2025-12-09 09:06:44.360 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:48802 10 6452 1 2025-12-09 09:07:44.727 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:51024 10 6452 1 2025-12-09 09:03:15.582 00:05:57.651 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-09 09:03:15.580 00:05:57.656 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-09 09:08:45.145 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:40528 10 6452 1 2025-12-09 09:09:23.321 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-09 09:09:23.365 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-09 09:09:23.237 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-09 09:09:23.173 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-09 09:09:23.238 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-09 09:09:45.509 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:41018 10 6452 1 2025-12-09 09:10:45.917 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:52832 10 6452 1 2025-12-09 09:11:46.334 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:36914 10 6452 1 2025-12-09 09:12:46.694 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38252 10 6452 1 2025-12-09 09:13:47.114 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:34322 11 6504 1 2025-12-09 09:09:15.585 00:05:57.653 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-09 09:09:15.587 00:05:57.648 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-09 09:14:23.458 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-09 09:14:23.449 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-09 09:14:23.493 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-09 09:14:23.345 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-09 09:14:23.376 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-09 09:14:47.531 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:60218 10 6452 1 2025-12-09 09:15:47.928 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:46420 10 6452 1 2025-12-09 09:16:48.344 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:46186 10 6452 1 2025-12-09 09:17:48.739 00:00:10.343 TCP 1.101.0.1:3000 -> 23.104.0.1:60164 10 6452 1 2025-12-09 09:18:49.159 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56394 10 6452 1 2025-12-09 09:19:23.974 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-09 09:19:23.883 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-09 09:19:24.068 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-09 09:19:23.770 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-09 09:19:23.892 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-09 09:19:49.564 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:60086 10 6452 1 2025-12-09 09:15:15.586 00:05:57.653 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-09 09:15:15.588 00:05:57.648 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-09 09:20:49.935 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:45984 10 6452 1 2025-12-09 09:21:50.352 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:34614 10 6452 1 2025-12-09 09:22:50.762 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:56826 10 6452 1 2025-12-09 09:23:51.183 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:40210 10 6452 1 2025-12-09 09:24:23.528 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-09 09:24:23.890 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-09 09:24:23.556 00:00:00.041 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-09 09:24:23.425 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-09 09:24:23.507 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-09 09:24:51.583 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55244 10 6452 1 2025-12-09 09:25:51.987 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:41938 10 6452 1 2025-12-09 09:21:15.600 00:05:57.642 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-09 09:21:15.603 00:05:57.637 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-09 09:26:52.402 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:46666 10 6452 1 2025-12-09 09:27:52.762 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:45770 10 6452 1 2025-12-09 09:28:53.175 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44238 10 6452 1 2025-12-09 09:29:23.708 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-09 09:29:23.701 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-09 09:29:23.696 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-09 09:29:23.807 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-09 09:29:23.625 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-09 09:29:53.581 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51540 10 6452 1 2025-12-09 09:30:53.986 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:34138 12 6556 1 2025-12-09 09:31:54.393 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:48048 10 6452 1 2025-12-09 09:27:15.609 00:05:57.635 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-09 09:27:15.612 00:05:57.630 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-09 09:32:54.792 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:49156 10 6452 1 2025-12-09 09:33:55.189 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:36344 10 6452 1 2025-12-09 09:34:23.988 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-09 09:34:23.670 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-09 09:34:23.814 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-09 09:34:23.670 00:00:00.026 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-09 09:34:23.753 00:00:00.026 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-09 09:34:55.586 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:54218 10 6452 1 2025-12-09 09:35:55.994 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:56846 10 6452 1 2025-12-09 09:36:56.360 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:59846 10 6452 1 2025-12-09 09:37:56.735 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:60888 10 6452 1 2025-12-09 09:33:15.614 00:05:57.630 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-09 09:33:15.611 00:05:57.635 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-09 09:38:57.144 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:48700 10 6452 1 2025-12-09 09:39:23.893 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-09 09:39:23.552 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-09 09:39:23.930 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-09 09:39:23.893 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-09 09:39:24.014 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-09 09:39:57.558 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:41554 10 6452 1 2025-12-09 09:40:57.918 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:40406 10 6452 1 2025-12-09 09:41:58.278 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34572 10 6452 1 2025-12-09 09:42:58.683 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58310 10 6452 1 2025-12-09 09:43:59.110 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:47428 10 6452 1 2025-12-09 09:39:15.616 00:05:57.630 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-09 09:39:15.613 00:05:57.635 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-09 09:44:24.248 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-09 09:44:24.121 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-09 09:44:24.212 00:00:00.028 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-09 09:44:24.190 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-09 09:44:24.273 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-09 09:44:59.475 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60480 10 6452 1 2025-12-09 09:45:59.878 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42260 10 6452 1 2025-12-09 09:47:00.277 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:53484 10 6452 1 2025-12-09 09:48:00.687 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:40488 10 6452 1 2025-12-09 09:49:01.105 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:47156 10 6452 1 2025-12-09 09:49:24.191 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-09 09:49:24.187 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-09 09:49:24.108 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-09 09:49:23.848 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-09 09:49:24.178 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-09 09:45:15.614 00:05:57.635 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-09 09:50:01.511 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47392 10 6452 1 2025-12-09 09:45:15.617 00:05:57.630 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-09 09:51:01.916 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:57804 10 6452 1 2025-12-09 09:52:02.334 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:52290 10 6452 1 2025-12-09 09:53:02.754 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55132 10 6452 1 2025-12-09 09:54:03.156 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:34292 10 6452 1 2025-12-09 09:54:24.241 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-09 09:54:24.266 00:00:00.026 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-09 09:54:24.217 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-09 09:54:24.274 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-09 09:54:24.158 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-09 09:55:03.518 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41584 10 6452 1 2025-12-09 09:51:15.615 00:05:57.635 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-09 09:56:03.928 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:33406 10 6452 1 2025-12-09 09:51:15.616 00:05:57.630 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-09 09:57:04.345 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:46492 10 6452 1 2025-12-09 09:58:04.701 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:34346 10 6452 1 Summary: total flows: 140, total bytes: 417156, total packets: 1023, avg bps: 911, avg pps: 0, avg bpp: 407 Time window: 2025-12-09 08:57:15 - 2025-12-09 09:58:15 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0036s User: 0.0012s Wall: 0.0018s flows/second: 77992.1 Runtime: 0.0018s