Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-13 17:58:48.589 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:58136 10 6452 1 2025-12-13 17:59:48.951 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:34074 10 6452 1 2025-12-13 18:00:49.367 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:37120 10 6452 1 2025-12-13 17:57:15.540 00:05:02.381 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-13 17:57:15.542 00:05:02.376 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-13 18:01:29.778 00:00:00.037 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-13 18:01:29.638 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-13 18:01:29.641 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-13 18:01:29.555 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 18:01:29.696 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 18:01:49.768 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:57392 10 6452 1 2025-12-13 18:02:50.171 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:57240 10 6452 1 2025-12-13 18:03:50.543 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:39862 10 6452 1 2025-12-13 18:04:50.906 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:40902 12 6556 1 2025-12-13 18:05:51.308 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39670 10 6452 1 2025-12-13 18:06:29.573 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-13 18:06:29.717 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-13 18:06:29.658 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 18:06:29.762 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 18:06:29.845 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-13 18:06:51.708 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60328 10 6452 1 2025-12-13 18:03:15.543 00:05:02.377 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-13 18:03:15.540 00:05:02.382 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-13 18:07:52.113 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:58822 10 6452 1 2025-12-13 18:08:52.516 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44918 10 6452 1 2025-12-13 18:09:52.919 00:00:10.436 TCP 1.101.0.1:3000 -> 23.104.0.1:53250 12 10375 1 2025-12-13 18:10:53.395 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:43818 10 6452 1 2025-12-13 18:11:29.771 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-13 18:11:29.614 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-13 18:11:29.573 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 18:11:29.769 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 18:11:29.852 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-13 18:11:53.762 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:37062 10 6452 1 2025-12-13 18:12:54.189 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49966 10 6452 1 2025-12-13 18:09:15.546 00:05:02.380 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-13 18:09:15.549 00:05:02.375 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-13 18:13:54.594 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35672 10 6452 1 2025-12-13 18:14:55.019 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:38258 10 6452 1 2025-12-13 18:15:55.389 00:00:11.021 TCP 1.101.0.1:3000 -> 23.104.0.1:33244 10 6452 1 2025-12-13 18:16:30.216 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-13 18:16:30.214 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-13 18:16:30.144 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 18:16:30.305 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 18:16:30.387 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-13 18:16:56.454 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:52704 10 6452 1 2025-12-13 18:17:56.853 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:56830 10 6452 1 2025-12-13 18:18:57.277 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53598 10 6452 1 2025-12-13 18:15:15.551 00:05:02.378 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-13 18:15:15.549 00:05:02.383 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-13 18:19:57.682 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:60446 10 6452 1 2025-12-13 18:20:58.109 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54074 10 6452 1 2025-12-13 18:21:29.963 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-13 18:21:29.951 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-13 18:21:29.846 00:00:00.027 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 18:21:29.813 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 18:21:29.897 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-13 18:21:58.509 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:55498 10 6452 1 2025-12-13 18:22:58.914 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:40858 10 6452 1 2025-12-13 18:23:59.314 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:48504 10 6452 1 2025-12-13 18:24:59.713 00:00:10.400 TCP 1.101.0.1:3000 -> 23.104.0.1:52210 12 10369 1 2025-12-13 18:21:15.552 00:05:02.378 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-13 18:21:15.550 00:05:02.383 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-13 18:26:00.158 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:36248 10 6452 1 2025-12-13 18:26:29.930 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-13 18:26:30.244 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-13 18:26:30.085 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 18:26:30.184 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 18:26:30.267 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-13 18:27:00.520 00:00:10.351 TCP 1.101.0.1:3000 -> 23.104.0.1:55202 10 6452 1 2025-12-13 18:28:00.911 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46012 10 6452 1 2025-12-13 18:29:01.313 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52914 10 6452 1 2025-12-13 18:30:01.717 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:43626 10 6452 1 2025-12-13 18:31:02.115 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39338 10 6452 1 2025-12-13 18:27:15.555 00:05:02.377 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-13 18:27:15.553 00:05:02.382 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-13 18:31:30.911 00:00:00.044 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-13 18:31:30.860 00:00:00.026 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-13 18:31:30.282 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 18:31:30.037 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 18:31:30.120 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-13 18:32:02.528 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:33582 10 6452 1 2025-12-13 18:33:02.897 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:36062 10 6452 1 2025-12-13 18:34:03.272 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49506 10 6452 1 2025-12-13 18:35:03.673 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41712 10 6452 1 2025-12-13 18:36:04.104 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:56808 10 6452 1 2025-12-13 18:36:30.132 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-13 18:36:30.224 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-13 18:36:30.262 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 18:36:30.368 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 18:36:30.451 00:00:00.035 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-13 18:37:04.500 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:45546 10 6452 1 2025-12-13 18:33:15.556 00:05:02.379 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-13 18:33:15.558 00:05:02.374 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-13 18:38:04.917 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56848 10 6452 1 2025-12-13 18:39:05.321 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:34398 10 6452 1 2025-12-13 18:40:05.728 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:56318 10 6452 1 2025-12-13 18:41:06.105 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:44398 10 6452 1 2025-12-13 18:41:30.413 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-13 18:41:30.497 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-13 18:41:30.080 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 18:41:30.313 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 18:41:30.395 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-13 18:42:06.511 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:50718 10 6452 1 2025-12-13 18:39:15.559 00:05:02.376 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-13 18:43:06.927 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:46270 10 6452 1 2025-12-13 18:39:15.557 00:05:02.381 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-13 18:44:07.340 00:00:10.996 TCP 1.101.0.1:3000 -> 23.104.0.1:33962 10 6452 1 2025-12-13 18:45:08.374 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:36100 10 6452 1 2025-12-13 18:46:08.738 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:46116 10 6452 1 2025-12-13 18:46:30.277 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-13 18:46:30.363 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-13 18:46:30.327 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 18:46:30.274 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 18:46:30.357 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-13 18:47:09.114 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:58362 10 6452 1 2025-12-13 18:48:09.474 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55448 10 6452 1 2025-12-13 18:45:15.560 00:05:02.381 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-13 18:45:15.564 00:05:02.376 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-13 18:49:09.877 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:43930 10 6452 1 2025-12-13 18:50:10.286 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58598 10 6452 1 2025-12-13 18:51:10.696 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45002 10 6452 1 2025-12-13 18:51:30.597 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-13 18:51:30.623 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-13 18:51:30.514 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-13 18:51:30.759 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 18:51:30.514 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 18:52:11.114 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:41692 10 6452 1 2025-12-13 18:53:11.476 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:48772 10 6452 1 2025-12-13 18:54:11.885 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:51970 10 6452 1 2025-12-13 18:51:15.564 00:05:02.381 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-13 18:51:15.566 00:05:02.376 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-13 18:55:12.309 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59104 10 6452 1 2025-12-13 18:56:12.712 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47984 10 6452 1 2025-12-13 18:56:30.780 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-13 18:56:30.753 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-13 18:56:30.604 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-13 18:56:30.561 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 18:56:30.697 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 18:57:13.120 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:58152 10 6452 1 2025-12-13 18:58:13.522 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40064 10 6452 1 Summary: total flows: 140, total bytes: 424944, total packets: 1026, avg bps: 926, avg pps: 0, avg bpp: 414 Time window: 2025-12-13 17:57:15 - 2025-12-13 18:58:23 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0037s User: 0.0024s Wall: 0.0019s flows/second: 74301.2 Runtime: 0.0019s