Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-11 05:58:45.599 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:51394 10 6452 1 2025-12-11 05:59:46.008 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:52542 10 6452 1 2025-12-11 06:00:17.494 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-11 06:00:17.368 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-11 06:00:17.411 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-11 06:00:17.162 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-11 06:00:17.410 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-11 06:00:46.407 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:41314 10 6452 1 2025-12-11 05:57:14.184 00:05:02.388 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-11 05:57:14.186 00:05:02.383 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-11 06:01:46.806 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40796 10 6452 1 2025-12-11 06:02:47.208 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:34988 10 6452 1 2025-12-11 06:03:47.634 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58432 10 6452 1 2025-12-11 06:04:48.037 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49506 10 6452 1 2025-12-11 06:05:17.633 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-11 06:05:17.409 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-11 06:05:17.363 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-11 06:05:17.677 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-11 06:05:17.760 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-11 06:05:48.440 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56178 10 6452 1 2025-12-11 06:06:48.841 00:00:10.400 TCP 1.101.0.1:3000 -> 23.104.0.1:55450 10 6452 1 2025-12-11 06:03:14.187 00:05:02.384 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-11 06:03:14.185 00:05:02.390 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-11 06:07:49.277 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:60662 10 6452 1 2025-12-11 06:08:49.678 00:00:11.406 TCP 1.101.0.1:3000 -> 23.104.0.1:35648 10 6452 1 2025-12-11 06:09:51.120 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:37688 10 6452 1 2025-12-11 06:10:17.555 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-11 06:10:17.545 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-11 06:10:17.548 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-11 06:10:17.438 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-11 06:10:17.474 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-11 06:10:51.519 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:38662 10 6452 1 2025-12-11 06:11:51.924 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:54768 10 6452 1 2025-12-11 06:12:52.334 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46226 10 6452 1 2025-12-11 06:09:14.187 00:05:02.389 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-11 06:09:14.190 00:05:02.384 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-11 06:13:52.737 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:46906 10 6452 1 2025-12-11 06:14:53.144 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:46714 10 6452 1 2025-12-11 06:15:17.616 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-11 06:15:17.755 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-11 06:15:17.509 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-11 06:15:17.560 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-11 06:15:17.642 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-11 06:15:53.515 00:00:10.349 TCP 1.101.0.1:3000 -> 23.104.0.1:39878 10 6452 1 2025-12-11 06:16:53.902 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:55058 11 6504 1 2025-12-11 06:17:54.323 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:49674 10 6452 1 2025-12-11 06:18:54.715 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:53862 10 6452 1 2025-12-11 06:15:14.197 00:05:02.382 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-11 06:15:14.200 00:05:02.377 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-11 06:19:55.103 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:58852 10 6452 1 2025-12-11 06:20:17.922 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-11 06:20:17.734 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-11 06:20:17.929 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-11 06:20:17.913 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-11 06:20:17.840 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-11 06:20:55.502 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36984 10 6452 1 2025-12-11 06:21:55.911 00:00:11.094 TCP 1.101.0.1:3000 -> 23.104.0.1:36332 10 6452 1 2025-12-11 06:22:57.055 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:36450 10 6452 1 2025-12-11 06:23:57.420 00:00:10.566 TCP 1.101.0.1:3000 -> 23.104.0.1:43978 10 6452 1 2025-12-11 06:24:58.024 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55590 10 6452 1 2025-12-11 06:25:17.949 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-11 06:21:14.199 00:05:02.381 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-11 06:25:17.814 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-11 06:21:14.201 00:05:02.376 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-11 06:25:17.648 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-11 06:25:17.465 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-11 06:25:17.866 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-11 06:25:58.421 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:45316 10 6452 1 2025-12-11 06:26:58.824 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:45704 10 6452 1 2025-12-11 06:27:59.224 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:45206 10 6452 1 2025-12-11 06:28:59.586 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:59150 10 6452 1 2025-12-11 06:29:59.996 00:00:10.437 TCP 1.101.0.1:3000 -> 23.104.0.1:43176 12 10375 1 2025-12-11 06:30:18.331 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-11 06:30:18.394 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-11 06:30:18.227 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-11 06:30:18.191 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-11 06:30:18.274 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-11 06:27:14.200 00:05:02.383 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-11 06:31:00.474 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60790 10 6452 1 2025-12-11 06:27:14.203 00:05:02.377 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-11 06:32:00.879 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46942 10 6452 1 2025-12-11 06:33:01.288 00:00:11.054 TCP 1.101.0.1:3000 -> 23.104.0.1:35330 10 6452 1 2025-12-11 06:34:02.382 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46592 10 6452 1 2025-12-11 06:35:02.783 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:52008 10 6452 1 2025-12-11 06:35:18.070 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-11 06:35:17.961 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-11 06:35:17.986 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-11 06:35:17.957 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-11 06:35:18.039 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-11 06:36:03.147 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:42416 10 6452 1 2025-12-11 06:33:14.203 00:05:02.381 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-11 06:37:03.561 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60124 10 6452 1 2025-12-11 06:33:14.205 00:05:02.377 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-11 06:38:03.961 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:40158 10 6452 1 2025-12-11 06:39:04.373 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:37398 10 6452 1 2025-12-11 06:40:04.735 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:38506 10 6452 1 2025-12-11 06:40:18.098 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-11 06:40:18.099 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-11 06:40:17.964 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-11 06:40:17.910 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-11 06:40:18.180 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-11 06:41:05.117 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:41162 10 6452 1 2025-12-11 06:42:05.516 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:35112 10 6452 1 2025-12-11 06:39:14.208 00:05:02.374 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-11 06:43:05.920 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:46390 10 6452 1 2025-12-11 06:39:14.205 00:05:02.379 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-11 06:44:06.287 00:00:10.343 TCP 1.101.0.1:3000 -> 23.104.0.1:33346 10 6452 1 2025-12-11 06:45:18.314 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-11 06:45:18.382 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-11 06:45:18.345 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-11 06:45:18.321 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-11 06:45:06.669 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:42296 10 6452 1 2025-12-11 06:45:18.404 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-11 06:46:07.104 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47898 10 6452 1 2025-12-11 06:47:07.509 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38346 10 6452 1 2025-12-11 06:48:07.922 00:00:10.403 TCP 1.101.0.1:3000 -> 23.104.0.1:50158 13 6608 1 2025-12-11 06:45:14.208 00:05:02.375 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-11 06:49:08.368 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:51688 10 6452 1 2025-12-11 06:45:14.207 00:05:02.380 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-11 06:50:18.264 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-11 06:50:18.167 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-11 06:50:08.777 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:40804 10 6452 1 2025-12-11 06:50:18.368 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-11 06:50:18.394 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-11 06:50:18.477 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-11 06:51:09.144 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:59382 10 6452 1 2025-12-11 06:52:09.557 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:53474 10 6452 1 2025-12-11 06:53:09.962 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46744 10 6452 1 2025-12-11 06:54:10.369 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46154 10 6452 1 2025-12-11 06:55:18.563 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-11 06:51:14.208 00:05:02.379 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-11 06:55:18.480 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-11 06:51:14.212 00:05:02.374 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-11 06:55:18.481 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-11 06:55:18.548 00:00:00.016 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-11 06:55:18.482 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-11 06:55:10.770 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:49144 10 6452 1 2025-12-11 06:56:11.183 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54640 10 6452 1 2025-12-11 06:57:11.590 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51592 10 6452 1 2025-12-11 06:58:11.990 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38176 10 6452 1 Summary: total flows: 140, total bytes: 421131, total packets: 1026, avg bps: 918, avg pps: 0, avg bpp: 410 Time window: 2025-12-11 05:57:14 - 2025-12-11 06:58:22 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0046s User: 0.0018s Wall: 0.0024s flows/second: 58138.9 Runtime: 0.0024s