Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-11 20:59:13.605 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:42208 10 6452 1 2025-12-11 21:00:13.965 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:41940 10 6452 1 2025-12-11 21:00:35.296 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-11 21:00:35.373 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-11 21:00:35.239 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-11 21:00:35.375 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-11 21:00:35.458 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-11 20:57:14.491 00:05:02.402 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-11 20:57:14.494 00:05:02.397 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-11 21:01:14.326 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:58324 10 6452 1 2025-12-11 21:02:14.734 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:58014 10 6452 1 2025-12-11 21:03:15.141 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38410 10 6452 1 2025-12-11 21:04:15.548 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:54922 10 6452 1 2025-12-11 21:05:15.955 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:34536 10 6452 1 2025-12-11 21:05:35.278 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-11 21:05:35.506 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-11 21:05:35.259 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-11 21:05:35.197 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-11 21:05:35.413 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-11 21:06:16.360 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39862 10 6452 1 2025-12-11 21:03:14.494 00:05:02.403 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-11 21:03:14.497 00:05:02.398 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-11 21:07:16.764 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:40636 10 6452 1 2025-12-11 21:08:17.186 00:00:10.342 TCP 1.101.0.1:3000 -> 23.104.0.1:60760 10 6452 1 2025-12-11 21:09:17.576 00:00:12.834 TCP 1.101.0.1:3000 -> 23.104.0.1:59820 12 10375 1 2025-12-11 21:10:20.458 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:45188 10 6452 1 2025-12-11 21:10:35.572 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-11 21:10:35.486 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-11 21:10:35.490 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-11 21:10:35.632 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-11 21:10:35.714 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-11 21:11:20.860 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:47466 10 6452 1 2025-12-11 21:12:21.280 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57264 10 6452 1 2025-12-11 21:09:14.495 00:05:02.408 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-11 21:09:14.497 00:05:02.403 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-11 21:13:21.682 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:46894 10 6452 1 2025-12-11 21:14:22.053 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:51444 10 6452 1 2025-12-11 21:15:35.832 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-11 21:15:22.415 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:58590 10 6452 1 2025-12-11 21:15:35.689 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-11 21:15:35.688 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-11 21:15:35.631 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-11 21:15:35.749 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-11 21:16:22.779 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:38144 10 6452 1 2025-12-11 21:17:23.143 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:39650 10 6452 1 2025-12-11 21:18:23.554 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:36922 10 6452 1 2025-12-11 21:15:14.497 00:05:02.408 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-11 21:15:14.500 00:05:02.403 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-11 21:19:23.956 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:42276 10 6452 1 2025-12-11 21:20:24.318 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:32932 10 6452 1 2025-12-11 21:20:35.889 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-11 21:20:35.836 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-11 21:20:35.790 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-11 21:20:35.894 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-11 21:20:35.978 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-11 21:21:24.721 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:47584 10 6452 1 2025-12-11 21:22:25.132 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:35424 10 6452 1 2025-12-11 21:23:25.491 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:35742 10 6452 1 2025-12-11 21:24:25.890 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:43848 10 6452 1 2025-12-11 21:21:14.500 00:05:02.407 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-11 21:21:14.499 00:05:02.412 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-11 21:25:35.949 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-11 21:25:26.302 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:51468 10 6452 1 2025-12-11 21:25:35.821 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-11 21:25:35.731 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-11 21:25:35.891 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-11 21:25:35.973 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-11 21:26:26.713 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:43434 10 6452 1 2025-12-11 21:27:27.115 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:51398 10 6452 1 2025-12-11 21:28:27.475 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:51302 10 6452 1 2025-12-11 21:29:27.842 00:00:10.462 TCP 1.101.0.1:3000 -> 23.104.0.1:56472 12 10375 1 2025-12-11 21:30:35.947 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-11 21:30:28.347 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:44844 10 6452 1 2025-12-11 21:30:35.893 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-11 21:30:35.793 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-11 21:30:35.958 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-11 21:30:36.030 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-11 21:27:14.503 00:05:02.405 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-11 21:27:14.500 00:05:02.410 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-11 21:31:28.712 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36234 10 6452 1 2025-12-11 21:32:29.114 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:34926 10 6452 1 2025-12-11 21:33:29.517 00:00:10.506 TCP 1.101.0.1:3000 -> 23.104.0.1:54180 10 6452 1 2025-12-11 21:34:30.071 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:53172 10 6452 1 2025-12-11 21:35:36.387 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-11 21:35:36.309 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-11 21:35:36.287 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-11 21:35:35.860 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-11 21:35:36.304 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-11 21:35:30.486 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33296 10 6452 1 2025-12-11 21:36:30.891 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:58174 12 6556 1 2025-12-11 21:33:14.514 00:05:02.396 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-11 21:33:14.505 00:05:02.408 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-11 21:37:31.320 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:55874 10 6452 1 2025-12-11 21:38:31.687 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:51746 10 6452 1 2025-12-11 21:39:32.108 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:54448 10 6452 1 2025-12-11 21:40:36.458 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-11 21:40:36.463 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-11 21:40:35.995 00:00:00.032 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-11 21:40:36.535 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-11 21:40:36.617 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-11 21:40:32.505 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:37482 10 6452 1 2025-12-11 21:41:32.887 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:33878 10 6452 1 2025-12-11 21:42:33.290 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39436 10 6452 1 2025-12-11 21:39:14.508 00:05:02.404 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-11 21:39:14.507 00:05:02.409 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-11 21:43:33.696 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:35870 10 6452 1 2025-12-11 21:44:34.111 00:00:10.399 TCP 1.101.0.1:3000 -> 23.104.0.1:35508 12 10375 1 2025-12-11 21:45:36.182 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-11 21:45:36.252 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-11 21:45:36.337 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-11 21:45:36.362 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-11 21:45:36.444 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-11 21:45:34.552 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:38122 10 6452 1 2025-12-11 21:46:34.954 00:00:11.107 TCP 1.101.0.1:3000 -> 23.104.0.1:55290 10 6452 1 2025-12-11 21:47:36.110 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:43134 10 6452 1 2025-12-11 21:48:36.476 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:49150 10 6452 1 2025-12-11 21:45:14.509 00:05:02.403 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-11 21:45:14.509 00:05:02.408 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-11 21:49:36.874 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:44402 10 6452 1 2025-12-11 21:50:36.495 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-11 21:50:36.420 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-11 21:50:36.236 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-11 21:50:36.366 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-11 21:50:36.447 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-11 21:50:37.280 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:58272 10 6452 1 2025-12-11 21:51:37.683 00:00:11.894 TCP 1.101.0.1:3000 -> 23.104.0.1:42974 10 6452 1 2025-12-11 21:52:39.626 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:51490 10 6452 1 2025-12-11 21:53:40.031 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33080 10 6452 1 2025-12-11 21:54:40.434 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57338 10 6452 1 2025-12-11 21:51:14.511 00:05:02.410 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-11 21:51:14.513 00:05:02.405 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-11 21:55:36.544 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-11 21:55:36.390 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-11 21:55:36.388 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-11 21:55:36.333 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-11 21:55:36.461 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-11 21:55:40.835 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:37860 10 6452 1 2025-12-11 21:56:41.258 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38638 10 6452 1 2025-12-11 21:57:41.661 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:45574 10 6452 1 Summary: total flows: 139, total bytes: 422421, total packets: 1018, avg bps: 929, avg pps: 0, avg bpp: 414 Time window: 2025-12-11 20:57:14 - 2025-12-11 21:57:52 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0035s User: 0.0014s Wall: 0.0022s flows/second: 62953.1 Runtime: 0.0022s