Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-10 09:58:55.966 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:47996 10 6452 1 2025-12-10 09:59:53.321 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-10 09:59:53.321 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-10 09:59:53.185 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-10 09:59:53.180 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-10 09:59:53.264 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-10 09:59:56.374 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:36276 10 6452 1 2025-12-10 10:00:56.771 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:47986 10 6452 1 2025-12-10 09:57:13.773 00:05:02.407 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-10 09:57:13.770 00:05:02.412 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-10 10:01:57.181 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48442 10 6452 1 2025-12-10 10:02:57.584 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:34830 10 6452 1 2025-12-10 10:03:57.990 00:00:10.481 TCP 1.101.0.1:3000 -> 23.104.0.1:49002 14 14292 1 2025-12-10 10:04:53.572 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-10 10:04:53.405 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-10 10:04:53.489 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-10 10:04:53.422 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-10 10:04:53.490 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-10 10:04:58.505 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:51868 10 6452 1 2025-12-10 10:05:58.911 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:56038 10 6452 1 2025-12-10 10:06:59.323 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:41334 10 6452 1 2025-12-10 10:03:13.783 00:05:02.398 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-10 10:03:13.781 00:05:02.402 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-10 10:07:59.722 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:55568 10 6452 1 2025-12-10 10:09:00.130 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42504 10 6452 1 2025-12-10 10:09:53.823 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-10 10:09:53.796 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-10 10:09:53.607 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-10 10:09:53.148 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-10 10:09:53.739 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-10 10:10:00.530 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:33804 10 6452 1 2025-12-10 10:11:00.933 00:00:10.395 TCP 1.101.0.1:3000 -> 23.104.0.1:57906 10 6452 1 2025-12-10 10:12:01.374 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:36046 10 6452 1 2025-12-10 10:13:01.793 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57098 10 6452 1 2025-12-10 10:09:13.784 00:05:02.402 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-10 10:09:13.782 00:05:02.406 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-10 10:14:02.196 00:00:10.425 TCP 1.101.0.1:3000 -> 23.104.0.1:33650 10 6452 1 2025-12-10 10:14:53.485 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-10 10:14:53.286 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-10 10:14:53.542 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-10 10:14:53.400 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-10 10:14:53.483 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-10 10:15:02.656 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:58014 10 6452 1 2025-12-10 10:16:03.095 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44524 10 6452 1 2025-12-10 10:17:03.499 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:58828 10 6452 1 2025-12-10 10:18:03.916 00:00:10.408 TCP 1.101.0.1:3000 -> 23.104.0.1:60260 10 6452 1 2025-12-10 10:19:04.360 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:55900 10 6452 1 2025-12-10 10:15:13.787 00:05:02.401 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-10 10:15:13.785 00:05:02.406 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-10 10:19:53.604 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-10 10:19:53.605 00:00:00.029 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-10 10:19:53.791 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-10 10:19:53.690 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-10 10:19:53.688 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-10 10:20:04.733 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:47992 10 6452 1 2025-12-10 10:21:05.139 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:36602 10 6452 1 2025-12-10 10:22:05.543 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:40826 10 6452 1 2025-12-10 10:23:05.939 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:45372 10 6452 1 2025-12-10 10:24:06.354 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:52186 10 6452 1 2025-12-10 10:24:53.675 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-10 10:24:53.673 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-10 10:24:53.670 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-10 10:24:53.670 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-10 10:24:53.753 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-10 10:21:13.786 00:05:02.406 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-10 10:21:13.788 00:05:02.401 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-10 10:25:06.750 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37530 10 6452 1 2025-12-10 10:26:07.151 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:44170 10 6452 1 2025-12-10 10:27:07.551 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:55488 10 6452 1 2025-12-10 10:28:07.964 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59872 10 6452 1 2025-12-10 10:29:08.369 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45624 10 6452 1 2025-12-10 10:29:54.238 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-10 10:29:54.094 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-10 10:29:54.163 00:00:00.029 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-10 10:29:54.267 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-10 10:29:54.349 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-10 10:30:08.788 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:43846 10 6452 1 2025-12-10 10:27:13.791 00:05:02.399 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-10 10:31:09.160 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:59254 10 6452 1 2025-12-10 10:27:13.790 00:05:02.403 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-10 10:32:09.559 00:00:10.704 TCP 1.101.0.1:3000 -> 23.104.0.1:55086 10 6452 1 2025-12-10 10:33:10.301 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42008 10 6452 1 2025-12-10 10:34:10.705 00:00:10.400 TCP 1.101.0.1:3000 -> 23.104.0.1:37590 12 10375 1 2025-12-10 10:34:54.035 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-10 10:34:53.725 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-10 10:34:53.963 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-10 10:34:53.860 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-10 10:34:53.952 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-10 10:35:11.147 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57120 10 6452 1 2025-12-10 10:36:11.552 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41950 10 6452 1 2025-12-10 10:33:13.791 00:05:02.403 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-10 10:33:13.792 00:05:02.398 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-10 10:37:11.956 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36026 10 6452 1 2025-12-10 10:38:12.365 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48280 10 6452 1 2025-12-10 10:39:12.771 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:38310 10 6452 1 2025-12-10 10:39:54.174 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-10 10:39:54.211 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-10 10:39:54.167 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-10 10:39:54.058 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-10 10:39:54.258 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-10 10:40:13.136 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45380 10 6452 1 2025-12-10 10:41:13.540 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56986 10 6452 1 2025-12-10 10:42:13.942 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:42964 10 6452 1 2025-12-10 10:39:13.795 00:05:02.396 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-10 10:39:13.792 00:05:02.402 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-10 10:43:14.359 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:43574 10 6452 1 2025-12-10 10:44:14.766 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52282 10 6452 1 2025-12-10 10:44:54.382 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-10 10:44:54.416 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-10 10:44:54.348 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-10 10:44:54.229 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-10 10:44:54.312 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-10 10:45:15.166 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:58696 10 6452 1 2025-12-10 10:46:15.588 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:52886 10 6452 1 2025-12-10 10:47:15.991 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60420 10 6452 1 2025-12-10 10:48:16.394 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57968 10 6452 1 2025-12-10 10:45:13.796 00:05:02.396 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-10 10:45:13.794 00:05:02.401 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-10 10:49:16.801 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60836 10 6452 1 2025-12-10 10:49:54.372 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-10 10:49:54.248 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-10 10:49:54.196 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-10 10:49:54.246 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-10 10:49:54.330 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-10 10:50:17.204 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:34366 10 6452 1 2025-12-10 10:51:17.609 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40854 10 6452 1 2025-12-10 10:52:18.013 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37784 10 6452 1 2025-12-10 10:53:18.414 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44844 10 6452 1 2025-12-10 10:54:18.817 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40476 10 6452 1 2025-12-10 10:54:54.423 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-10 10:54:54.351 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-10 10:54:54.332 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-10 10:54:54.182 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-10 10:54:54.342 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-10 10:51:13.796 00:05:02.399 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-10 10:51:13.793 00:05:02.403 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-10 10:55:19.222 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:52408 10 6452 1 2025-12-10 10:56:19.625 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37054 10 6452 1 2025-12-10 10:57:20.034 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51954 10 6452 1 2025-12-10 10:58:20.440 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45384 10 6452 1 Summary: total flows: 140, total bytes: 428763, total packets: 1026, avg bps: 932, avg pps: 0, avg bpp: 417 Time window: 2025-12-10 09:57:13 - 2025-12-10 10:58:30 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0040s User: 0.0020s Wall: 0.0029s flows/second: 48917.2 Runtime: 0.0029s