Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-10 18:58:42.409 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:58516 10 6452 1 2025-12-10 18:59:42.812 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48736 10 6452 1 2025-12-10 19:00:04.508 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-10 19:00:04.442 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-10 19:00:04.327 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-10 19:00:04.508 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-10 19:00:04.591 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-10 19:00:43.209 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:36110 10 6452 1 2025-12-10 18:57:13.944 00:05:02.411 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-10 18:57:13.947 00:05:02.406 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-10 19:01:43.608 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46350 10 6452 1 2025-12-10 19:02:44.007 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:48408 10 6452 1 2025-12-10 19:03:44.377 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:37842 10 6452 1 2025-12-10 19:04:44.782 00:00:10.445 TCP 1.101.0.1:3000 -> 23.104.0.1:59590 12 10369 1 2025-12-10 19:05:04.278 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-10 19:05:04.406 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-10 19:05:04.067 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-10 19:05:04.410 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-10 19:05:04.492 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-10 19:05:45.266 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:56510 10 6452 1 2025-12-10 19:06:45.677 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:38700 10 6452 1 2025-12-10 19:03:13.946 00:05:02.411 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-10 19:03:13.948 00:05:02.405 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-10 19:07:46.103 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37786 10 6452 1 2025-12-10 19:08:46.511 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:41406 10 6452 1 2025-12-10 19:09:46.870 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:55122 10 6452 1 2025-12-10 19:10:04.189 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-10 19:10:04.415 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-10 19:10:04.413 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-10 19:10:04.281 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-10 19:10:04.364 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-10 19:10:47.282 00:00:10.926 TCP 1.101.0.1:3000 -> 23.104.0.1:51718 10 6452 1 2025-12-10 19:11:48.250 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47284 10 6452 1 2025-12-10 19:12:48.654 00:00:11.534 TCP 1.101.0.1:3000 -> 23.104.0.1:45284 10 6452 1 2025-12-10 19:09:13.950 00:05:02.405 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-10 19:09:13.949 00:05:02.410 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-10 19:13:50.238 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:34824 10 6452 1 2025-12-10 19:15:04.554 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-10 19:15:04.468 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-10 19:15:04.519 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-10 19:15:04.378 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-10 19:15:04.471 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-10 19:14:50.647 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:41480 10 6452 1 2025-12-10 19:15:51.061 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:42298 10 6452 1 2025-12-10 19:16:51.429 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38218 10 6452 1 2025-12-10 19:17:51.832 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:43186 10 6452 1 2025-12-10 19:18:52.230 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:39276 10 6452 1 2025-12-10 19:15:13.952 00:05:02.403 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-10 19:15:13.950 00:05:02.409 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-10 19:20:04.741 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-10 19:20:04.582 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-10 19:20:04.578 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-10 19:20:04.664 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-10 19:19:52.642 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:55638 10 6452 1 2025-12-10 19:20:04.657 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-10 19:20:53.069 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47844 10 6452 1 2025-12-10 19:21:53.469 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:43894 10 6452 1 2025-12-10 19:22:53.877 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:43170 10 6452 1 2025-12-10 19:23:54.246 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44606 10 6452 1 2025-12-10 19:25:04.429 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-10 19:25:04.813 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-10 19:25:04.495 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-10 19:25:04.574 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-10 19:25:04.658 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-10 19:24:54.646 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:49026 10 6452 1 2025-12-10 19:21:13.951 00:05:02.408 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-10 19:21:13.955 00:05:02.402 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-10 19:25:55.058 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38128 10 6452 1 2025-12-10 19:26:55.461 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60372 10 6452 1 2025-12-10 19:27:55.861 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:48330 10 6452 1 2025-12-10 19:28:56.276 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42006 10 6452 1 2025-12-10 19:30:05.137 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-10 19:30:04.869 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-10 19:30:04.877 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-10 19:30:04.437 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-10 19:29:56.683 00:00:10.464 TCP 1.101.0.1:3000 -> 23.104.0.1:52294 12 10369 1 2025-12-10 19:30:05.056 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-10 19:30:57.186 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:51118 10 6452 1 2025-12-10 19:27:13.957 00:05:02.405 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-10 19:27:13.958 00:05:02.400 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-10 19:31:57.588 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:53452 10 6452 1 2025-12-10 19:32:57.994 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57278 10 6452 1 2025-12-10 19:33:58.402 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56626 10 6452 1 2025-12-10 19:35:04.748 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-10 19:35:04.950 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-10 19:35:04.775 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-10 19:35:04.879 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-10 19:35:04.962 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-10 19:34:58.805 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:60610 10 6452 1 2025-12-10 19:35:59.208 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45946 10 6452 1 2025-12-10 19:36:59.610 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:59038 10 6452 1 2025-12-10 19:33:13.961 00:05:02.399 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-10 19:33:13.959 00:05:02.404 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-10 19:37:59.971 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:41290 10 6452 1 2025-12-10 19:39:00.384 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36968 10 6452 1 2025-12-10 19:40:04.847 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-10 19:40:04.934 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-10 19:40:04.849 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-10 19:40:04.932 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-10 19:40:05.066 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-10 19:40:00.804 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:54230 10 6452 1 2025-12-10 19:41:01.233 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:54822 10 6452 1 2025-12-10 19:42:01.641 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:37960 10 6452 1 2025-12-10 19:39:13.959 00:05:02.404 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-10 19:43:02.064 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:55496 10 6452 1 2025-12-10 19:39:13.962 00:05:02.399 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-10 19:44:02.433 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59550 10 6452 1 2025-12-10 19:45:05.070 00:00:00.051 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-10 19:45:04.989 00:00:00.051 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-10 19:45:05.154 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-10 19:45:05.094 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-10 19:45:05.228 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-10 19:45:02.836 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:46684 10 6452 1 2025-12-10 19:46:03.243 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:60832 10 6452 1 2025-12-10 19:47:03.650 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:40700 10 6452 1 2025-12-10 19:48:04.071 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40704 10 6452 1 2025-12-10 19:45:13.961 00:05:02.405 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-10 19:49:04.471 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:56838 10 6452 1 2025-12-10 19:45:13.963 00:05:02.400 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-10 19:50:05.209 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-10 19:50:05.058 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-10 19:50:05.055 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-10 19:50:05.055 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-10 19:50:05.137 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-10 19:50:04.878 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:37478 10 6452 1 2025-12-10 19:51:05.244 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:40108 10 6452 1 2025-12-10 19:52:05.644 00:00:10.801 TCP 1.101.0.1:3000 -> 23.104.0.1:48310 10 6452 1 2025-12-10 19:53:06.488 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51852 10 6452 1 2025-12-10 19:54:06.890 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:51266 12 6556 1 2025-12-10 19:55:05.361 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-10 19:55:05.270 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-10 19:55:05.219 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-10 19:55:05.149 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-10 19:55:05.278 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-10 19:55:07.323 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53048 10 6452 1 2025-12-10 19:51:13.971 00:05:02.393 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-10 19:51:13.969 00:05:02.398 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-10 19:56:07.729 00:00:10.675 TCP 1.101.0.1:3000 -> 23.104.0.1:40340 10 6452 1 2025-12-10 19:57:08.437 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:56108 10 6452 1 2025-12-10 19:58:08.829 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50202 10 6452 1 Summary: total flows: 140, total bytes: 424938, total packets: 1026, avg bps: 927, avg pps: 0, avg bpp: 414 Time window: 2025-12-10 18:57:13 - 2025-12-10 19:58:19 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0039s User: 0.0013s Wall: 0.0022s flows/second: 63262.5 Runtime: 0.0022s