Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-13 05:59:35.699 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43012 10 6452 1 2025-12-13 06:00:36.111 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:53690 10 6452 1 2025-12-13 06:01:16.002 00:00:00.039 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-13 05:57:15.268 00:05:02.350 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-13 06:01:15.350 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-13 06:01:15.064 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 06:01:16.109 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 06:01:16.192 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-13 05:57:15.267 00:05:02.354 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-13 06:01:36.516 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54546 10 6452 1 2025-12-13 06:02:36.924 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:35358 10 6452 1 2025-12-13 06:03:37.295 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45650 10 6452 1 2025-12-13 06:04:37.698 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:41772 10 6452 1 2025-12-13 06:05:38.107 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:39426 10 6452 1 2025-12-13 06:06:15.371 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-13 06:06:15.242 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-13 06:06:15.178 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-13 06:06:15.193 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 06:06:15.288 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 06:06:38.470 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:45048 10 6452 1 2025-12-13 06:03:15.268 00:05:02.352 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-13 06:03:15.272 00:05:02.347 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-13 06:07:38.867 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:59270 10 6452 1 2025-12-13 06:08:39.276 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:34648 10 6452 1 2025-12-13 06:09:39.646 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51354 10 6452 1 2025-12-13 06:10:40.054 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:48188 10 6452 1 2025-12-13 06:11:15.453 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-13 06:11:15.308 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-13 06:11:15.481 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-13 06:11:15.353 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 06:11:15.372 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 06:11:40.416 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:43486 10 6452 1 2025-12-13 06:12:40.816 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47736 10 6452 1 2025-12-13 06:09:15.275 00:05:02.347 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-13 06:09:15.273 00:05:02.352 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-13 06:13:41.224 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52814 10 6452 1 2025-12-13 06:14:41.630 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53614 10 6452 1 2025-12-13 06:15:42.035 00:00:10.939 TCP 1.101.0.1:3000 -> 23.104.0.1:60828 10 6452 1 2025-12-13 06:16:15.570 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-13 06:16:15.491 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-13 06:16:15.426 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-13 06:16:15.319 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 06:16:15.489 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 06:16:43.014 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:42056 12 6556 1 2025-12-13 06:17:43.429 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35474 10 6452 1 2025-12-13 06:18:43.832 00:00:10.348 TCP 1.101.0.1:3000 -> 23.104.0.1:52876 10 6452 1 2025-12-13 06:15:15.276 00:05:02.349 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-13 06:15:15.274 00:05:02.355 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-13 06:19:44.218 00:00:10.419 TCP 1.101.0.1:3000 -> 23.104.0.1:56614 12 10369 1 2025-12-13 06:20:44.701 00:00:10.398 TCP 1.101.0.1:3000 -> 23.104.0.1:42432 10 6452 1 2025-12-13 06:21:15.550 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-13 06:21:15.400 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-13 06:21:15.596 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-13 06:21:15.409 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 06:21:15.467 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 06:21:45.138 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:59620 10 6452 1 2025-12-13 06:22:45.542 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:45360 10 6452 1 2025-12-13 06:23:45.950 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:57892 10 6452 1 2025-12-13 06:24:46.361 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:53970 10 6452 1 2025-12-13 06:21:15.276 00:05:02.350 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-13 06:21:15.273 00:05:02.355 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-13 06:25:46.763 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:51060 10 6452 1 2025-12-13 06:26:15.750 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-13 06:26:15.817 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-13 06:26:15.471 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 06:26:15.633 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 06:26:15.716 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-13 06:26:47.185 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:44870 10 6452 1 2025-12-13 06:27:47.546 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:54766 10 6452 1 2025-12-13 06:28:47.955 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:52658 10 6452 1 2025-12-13 06:29:48.360 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:42796 10 6452 1 2025-12-13 06:30:48.761 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:44186 10 6452 1 2025-12-13 06:27:15.278 00:05:02.349 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-13 06:31:15.658 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-13 06:31:15.597 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 06:31:15.657 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 06:31:15.842 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-13 06:31:15.739 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-13 06:27:15.275 00:05:02.354 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-13 06:31:49.177 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38828 10 6452 1 2025-12-13 06:32:49.580 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:55508 10 6452 1 2025-12-13 06:33:49.941 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:44850 10 6452 1 2025-12-13 06:34:50.355 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:49826 10 6452 1 2025-12-13 06:35:50.715 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:40556 10 6452 1 2025-12-13 06:36:15.761 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-13 06:36:15.861 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-13 06:36:15.777 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 06:36:15.861 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 06:36:15.945 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-13 06:36:51.126 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:35992 10 6452 1 2025-12-13 06:33:15.280 00:05:02.348 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-13 06:33:15.277 00:05:02.354 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-13 06:37:51.527 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:35040 10 6452 1 2025-12-13 06:38:51.886 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:53804 10 6452 1 2025-12-13 06:39:52.304 00:00:10.746 TCP 1.101.0.1:3000 -> 23.104.0.1:56632 10 6452 1 2025-12-13 06:40:53.109 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34928 10 6452 1 2025-12-13 06:41:16.124 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 06:41:16.125 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-13 06:41:16.121 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-13 06:41:15.986 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 06:41:16.206 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-13 06:41:53.511 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:40808 10 6452 1 2025-12-13 06:42:53.918 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57408 10 6452 1 2025-12-13 06:39:15.279 00:05:02.353 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-13 06:39:15.281 00:05:02.348 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-13 06:43:54.322 00:00:10.316 TCP 1.101.0.1:3000 -> 23.104.0.1:52444 10 6452 1 2025-12-13 06:44:54.675 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:52042 10 6452 1 2025-12-13 06:45:55.055 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48682 10 6452 1 2025-12-13 06:46:15.922 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-13 06:46:16.011 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 06:46:16.107 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 06:46:15.989 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-13 06:46:16.189 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-13 06:46:55.461 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:37766 10 6452 1 2025-12-13 06:47:55.865 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:59348 10 6452 1 2025-12-13 06:48:56.276 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53144 10 6452 1 2025-12-13 06:45:15.283 00:05:02.352 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-13 06:45:15.285 00:05:02.347 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-13 06:49:56.690 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:57222 10 6452 1 2025-12-13 06:50:57.110 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:38666 10 6452 1 2025-12-13 06:51:16.025 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-13 06:51:15.937 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-13 06:51:16.189 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-13 06:51:16.092 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 06:51:15.941 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 06:51:57.523 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:45222 10 6452 1 2025-12-13 06:52:57.926 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:50056 10 6452 1 2025-12-13 06:53:58.339 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:42928 10 6452 1 2025-12-13 06:54:58.742 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39738 10 6452 1 2025-12-13 06:51:15.284 00:05:02.353 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-13 06:51:15.286 00:05:02.348 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-13 06:55:59.147 00:00:10.595 TCP 1.101.0.1:3000 -> 23.104.0.1:56996 10 6452 1 2025-12-13 06:56:16.212 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-13 06:56:16.328 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-13 06:56:16.326 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-13 06:56:16.350 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 06:56:16.131 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 06:56:59.796 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53016 10 6452 1 2025-12-13 06:58:00.197 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:36360 10 6452 1 Summary: total flows: 139, total bytes: 414569, total packets: 1014, avg bps: 907, avg pps: 0, avg bpp: 408 Time window: 2025-12-13 05:57:15 - 2025-12-13 06:58:10 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0033s User: 0.0016s Wall: 0.0024s flows/second: 58576.1 Runtime: 0.0024s