Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-13 03:59:38.943 00:00:10.342 TCP 1.101.0.1:3000 -> 23.104.0.1:59398 10 6452 1 2025-12-13 04:00:39.329 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58552 10 6452 1 2025-12-13 04:01:12.571 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-13 04:01:12.740 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-13 04:01:12.717 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 04:01:12.738 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 03:57:15.226 00:05:02.348 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-13 04:01:12.821 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-13 03:57:15.223 00:05:02.354 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-13 04:01:39.729 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:33740 10 6452 1 2025-12-13 04:02:40.136 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39882 10 6452 1 2025-12-13 04:03:40.542 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37514 10 6452 1 2025-12-13 04:04:40.944 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:49274 10 6452 1 2025-12-13 04:05:41.318 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:48220 10 6452 1 2025-12-13 04:06:12.886 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-13 04:06:12.833 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-13 04:06:12.669 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 04:06:12.890 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 04:06:12.973 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-13 04:06:41.687 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:36166 10 6452 1 2025-12-13 04:03:15.227 00:05:02.353 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-13 04:03:15.229 00:05:02.347 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-13 04:07:42.104 00:00:10.648 TCP 1.101.0.1:3000 -> 23.104.0.1:60808 10 6452 1 2025-12-13 04:08:42.788 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57212 10 6452 1 2025-12-13 04:09:43.197 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:43670 10 6452 1 2025-12-13 04:10:43.559 00:00:10.672 TCP 1.101.0.1:3000 -> 23.104.0.1:56314 10 6452 1 2025-12-13 04:11:13.200 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-13 04:11:13.118 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 04:11:12.880 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-13 04:11:12.981 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-13 04:11:12.651 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 04:11:44.271 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:50876 10 6452 1 2025-12-13 04:12:44.679 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:48136 10 6452 1 2025-12-13 04:09:15.228 00:05:02.352 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-13 04:09:15.231 00:05:02.347 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-13 04:13:45.113 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:36090 10 6452 1 2025-12-13 04:14:45.532 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57534 10 6452 1 2025-12-13 04:15:45.933 00:00:10.422 TCP 1.101.0.1:3000 -> 23.104.0.1:33632 11 6504 1 2025-12-13 04:16:13.213 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-13 04:16:12.987 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-13 04:16:12.926 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 04:16:13.100 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 04:16:13.182 00:00:00.028 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-13 04:16:46.404 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55294 10 6452 1 2025-12-13 04:17:46.812 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:35788 10 6452 1 2025-12-13 04:18:47.171 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:54584 10 6452 1 2025-12-13 04:15:15.229 00:05:02.353 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-13 04:15:15.233 00:05:02.347 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-13 04:19:47.531 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:42976 10 6452 1 2025-12-13 04:20:47.933 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:42426 10 6452 1 2025-12-13 04:21:13.453 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-13 04:21:13.365 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-13 04:21:13.307 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-13 04:21:12.902 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 04:21:13.371 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 04:21:48.344 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:53682 10 6452 1 2025-12-13 04:22:48.760 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:34680 10 6452 1 2025-12-13 04:23:49.192 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36582 10 6452 1 2025-12-13 04:24:49.600 00:00:10.404 TCP 1.101.0.1:3000 -> 23.104.0.1:39744 12 10375 1 2025-12-13 04:21:15.233 00:05:02.347 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-13 04:21:15.229 00:05:02.353 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-13 04:25:50.060 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:58688 10 6452 1 2025-12-13 04:26:13.234 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-13 04:26:13.171 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-13 04:26:12.978 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 04:26:13.282 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 04:26:13.364 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-13 04:26:50.463 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:47148 10 6452 1 2025-12-13 04:27:50.826 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:55772 10 6452 1 2025-12-13 04:28:51.200 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57448 10 6452 1 2025-12-13 04:29:51.604 00:00:10.436 TCP 1.101.0.1:3000 -> 23.104.0.1:59384 12 10375 1 2025-12-13 04:30:52.108 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:56020 10 6452 1 2025-12-13 04:31:13.583 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-13 04:31:13.369 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-13 04:31:13.181 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-13 04:31:13.400 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 04:31:13.500 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 04:27:15.241 00:05:02.340 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-13 04:27:15.238 00:05:02.346 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-13 04:31:52.537 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:34614 10 6452 1 2025-12-13 04:32:52.911 00:00:14.000 TCP 1.101.0.1:3000 -> 23.104.0.1:34710 10 6452 1 2025-12-13 04:33:56.952 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:58464 10 6452 1 2025-12-13 04:34:57.362 00:00:10.451 TCP 1.101.0.1:3000 -> 23.104.0.1:45324 12 10375 1 2025-12-13 04:36:13.461 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-13 04:35:57.845 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:50286 10 6452 1 2025-12-13 04:36:13.519 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-13 04:36:13.457 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-13 04:36:13.287 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 04:36:13.379 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 04:36:58.274 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:48080 10 6452 1 2025-12-13 04:33:15.240 00:05:02.347 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-13 04:33:15.243 00:05:02.342 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-13 04:37:58.673 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:51010 10 6452 1 2025-12-13 04:38:59.097 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:49064 10 6452 1 2025-12-13 04:39:59.467 00:00:10.434 TCP 1.101.0.1:3000 -> 23.104.0.1:53550 13 13949 1 2025-12-13 04:41:13.856 00:00:00.029 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-13 04:41:13.810 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-13 04:41:13.423 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 04:41:13.625 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 04:40:59.938 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:44546 10 6452 1 2025-12-13 04:41:13.709 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-13 04:42:00.356 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57270 10 6452 1 2025-12-13 04:43:00.761 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:48816 10 6452 1 2025-12-13 04:39:15.244 00:05:02.342 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-13 04:39:15.243 00:05:02.347 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-13 04:44:01.190 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:60816 10 6452 1 2025-12-13 04:45:01.592 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:47866 10 6452 1 2025-12-13 04:46:13.677 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-13 04:46:13.671 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-13 04:46:13.698 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 04:46:01.994 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:55434 10 6452 1 2025-12-13 04:46:13.622 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 04:46:13.706 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-13 04:47:02.408 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:56396 10 6452 1 2025-12-13 04:48:02.816 00:00:10.427 TCP 1.101.0.1:3000 -> 23.104.0.1:37052 11 6504 1 2025-12-13 04:49:03.285 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42362 10 6452 1 2025-12-13 04:45:15.242 00:05:02.348 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-13 04:45:15.245 00:05:02.343 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-13 04:50:03.690 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:38392 10 6452 1 2025-12-13 04:51:13.894 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-13 04:51:13.749 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-13 04:51:04.116 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:47686 10 6452 1 2025-12-13 04:51:13.810 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-13 04:51:13.518 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 04:51:13.812 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 04:52:04.525 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55612 10 6452 1 2025-12-13 04:53:04.933 00:00:11.011 TCP 1.101.0.1:3000 -> 23.104.0.1:36738 11 6504 1 2025-12-13 04:54:05.986 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46896 10 6452 1 2025-12-13 04:51:15.246 00:05:02.346 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-13 04:55:06.393 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:40680 10 6452 1 2025-12-13 04:51:15.249 00:05:02.342 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-13 04:56:14.302 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-13 04:56:13.591 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 04:56:14.254 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 04:56:13.758 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-13 04:56:14.337 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-13 04:56:06.796 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:38212 10 6452 1 2025-12-13 04:57:07.205 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:58942 10 6452 1 2025-12-13 04:58:07.622 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60960 10 6452 1 Summary: total flows: 139, total bytes: 429970, total packets: 1022, avg bps: 939, avg pps: 0, avg bpp: 420 Time window: 2025-12-13 03:57:15 - 2025-12-13 04:58:17 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0035s User: 0.0017s Wall: 0.0022s flows/second: 61943.1 Runtime: 0.0023s